Back to bug 766333
| Who | When | What | Removed | Added |
|---|---|---|---|---|
| Guenther Deschner | 2011-12-14 15:18:47 UTC | CC | gdeschner | |
| Jenny Severance | 2011-12-14 15:37:19 UTC | CC | jgalipea | |
| Simo Sorce | 2011-12-14 16:22:21 UTC | Depends On | 767672 | |
| Simo Sorce | 2011-12-14 16:27:53 UTC | CC | ssorce | |
| Summary | Rebase Samba4 client libraries to pick up functionality required for IdM | Rebase Samba4 libraries to pick up functionality required for IdM | ||
| Dmitri Pal | 2012-02-01 17:42:48 UTC | Priority | unspecified | high |
| Dmitri Pal | 2012-03-21 23:33:56 UTC | Blocks | 791327 | |
| Tomas Kopecek | 2012-04-26 12:40:29 UTC | Assignee | mbarnes | asn |
| Siddharth Nagar | 2012-07-17 01:26:29 UTC | Blocks | 840699 | |
| Andreas Schneider | 2012-07-24 12:47:02 UTC | Depends On | 766334, 766335, 766336 | |
| Ales Zelinka | 2012-08-08 16:12:32 UTC | QA Contact | qe-baseos-daemons | seceng-idm-qe-list |
| Matthew Barnes | 2012-09-07 22:15:20 UTC | CC | mbarnes | |
| Andreas Schneider | 2012-09-19 13:02:00 UTC | Status | NEW | ASSIGNED |
| Andreas Schneider | 2012-09-20 12:19:17 UTC | Status | ASSIGNED | MODIFIED |
| Fixed In Version | samba4-4.0.0-24.el6.rc1 | |||
| errata-xmlrpc | 2012-09-20 12:32:08 UTC | Status | MODIFIED | ON_QA |
| Jenny Severance | 2012-09-21 18:03:47 UTC | QA Contact | seceng-idm-qe-list | nsoman |
| Dennis Gregorovic | 2012-09-24 15:30:34 UTC | CC | dgregor | |
| Martin Prpič | 2012-11-15 12:44:41 UTC | Flags | needinfo?(sbose) | |
| Sumit Bose | 2012-11-15 15:39:42 UTC | Flags | needinfo?(sbose) | |
| Namita Soman | 2012-11-30 20:05:02 UTC | Status | ON_QA | VERIFIED |
| Andreas Schneider | 2012-12-05 16:02:06 UTC | Doc Text | I want to be filled out by Sumit! | |
| Flags | needinfo?(sbose) | |||
| Sumit Bose | 2012-12-05 20:57:24 UTC | Doc Text | I want to be filled out by Sumit! | This rebase was needed because more libraries than the old samba4-libs package provided were needed to improve the interoperability with Active Directory domains. SSSD uses libndr-krb5pac library to parse the PAC issued by an AD KDC. Besides this the trust feature of IPA which is included as a technical preview in RHEL-6.4 also uses libndr-nbt to prepare CLDAP messages. Additionally various improvements in the LSA and NETLOGON services are needed to allow to verify a trust from the windows side. Since the trust feature is a technical preview all samba4 components, except the ones used by openchange and sssd are technical preview as well. |
| Flags | needinfo?(sbose) | |||
| Martin Prpič | 2012-12-11 13:32:43 UTC | Doc Text | This rebase was needed because more libraries than the old samba4-libs package provided were needed to improve the interoperability with Active Directory domains. SSSD uses libndr-krb5pac library to parse the PAC issued by an AD KDC. Besides this the trust feature of IPA which is included as a technical preview in RHEL-6.4 also uses libndr-nbt to prepare CLDAP messages. Additionally various improvements in the LSA and NETLOGON services are needed to allow to verify a trust from the windows side. Since the trust feature is a technical preview all samba4 components, except the ones used by openchange and sssd are technical preview as well. | Updated samba4 Libraries Provide Cross Realm Kerberos Trust Functionality The samba4 libraries (provided by the samba4-libs package) have been upgraded to the latest upstream version to improve the interoperability with Active Directory (AD) domains. SSSD now uses the libndr-krb5pac library to parse the Privilege Attribute Certificate (PAC) issued by an AD Key Distribution Center (KDC). The Cross Realm Kerberos Trust functionality provided by Identity Management which relies on the capabilities of the samba4 client library, is included as a Technology Preview. This functionality uses the libndr-nbt library to prepare Connection-less Lightweight Directory Access Protocol (CLDAP) messages. Additionally various improvements have been made to the Local Security Authority (LSA) and Net Logon services to allow verification of trust from a Windows system. Because the Cross Realm Kerberos Trust functionality is considered a Technology Preview selected samba4 components are considered to be a Technology Preview. For more information on which Samba packages are considered a Technology Preview, refer to Table 5.1 “Samba4 Package Support ”. Table 5.1. Samba4 Package Support Package Name New Package in 6.4? Support Status samba4-libs No Technology Preview, except functionality required by OpenChange samba4-pidl No Technology Preview except functionality required by OpenChange samba4 No Technology Preview samba4-client Yes Technology Preview samba4-common Yes Technology Preview samba4-python Yes Technology Preview samba4-winbind Yes Technology Preview samba4-dc Yes Technology Preview samba4-dc-libs Yes Technology Preview samba4-swat Yes Technology Preview samba4-test Yes Technology Preview samba4-winbind-clients Yes Technology Preview samba4-winbind-krb5-locator Yes Technology Preview |
| Doc Type | Rebase: Bug Fixes and Enhancements | Release Note | ||
| errata-xmlrpc | 2013-02-21 08:45:54 UTC | Status | VERIFIED | CLOSED |
| Resolution | --- | ERRATA | ||
| Last Closed | 2013-02-21 03:45:54 UTC |
Back to bug 766333