Bug 654141

Summary: sssd, installed and activated by default, changes the behavior of ldap authentication without notice
Product: [Fedora] Fedora Documentation Reporter: Joe Julian <joe>
Component: release-notesAssignee: Release Notes Tracker <relnotes>
Status: CLOSED WONTFIX QA Contact: Karsten Wade <kwade>
Severity: medium Docs Contact:
Priority: low    
Version: develCC: david, dcantrell, stickster, wb8rcr
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2012-03-26 14:46:47 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Joe Julian 2010-11-17 00:45:20 UTC
Description of problem:
An authentication scheme using unencrypted pam ldap authentication will not function after an upgrade to Fedora 14 due to sssd not accepting unencrypted ldap connections.


Steps to Reproduce:
1. Fedora 13 system with ldap authentication to a server without tls support.
2. Upgrade to Fedora 14
3. Users will no longer be able to log in.
  
Actual results:
No users can log in

Expected results:
Users can log in

Additional info:
This requirement for secure ldap connections seems reasonable, but needs to be in the release notes so administrators can plan their upgrades appropriately.

Comment 1 John J. McDonough 2012-03-26 14:46:47 UTC
Not updating F14 release notes at this time