Bug 773327 - The full dyndns update message should be logged into debug logs
Summary: The full dyndns update message should be logged into debug logs
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat Enterprise Linux 5
Classification: Red Hat
Component: sssd
Version: 5.8
Hardware: Unspecified
OS: Unspecified
unspecified
unspecified
Target Milestone: rc
: ---
Assignee: Stephen Gallagher
QA Contact: IDM QE LIST
URL:
Whiteboard:
Depends On: 773326
Blocks: 748853 784372
TreeView+ depends on / blocked
 
Reported: 2012-01-11 14:43 UTC by Stephen Gallagher
Modified: 2020-05-04 10:30 UTC (History)
5 users (show)

Fixed In Version: sssd-1.5.1-49.el5
Doc Type: Bug Fix
Doc Text:
Clone Of: 773326
Environment:
Last Closed: 2012-02-21 06:27:20 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Github SSSD sssd issues 1935 0 None None None 2020-05-04 10:30:50 UTC
Red Hat Product Errata RHBA-2012:0164 0 normal SHIPPED_LIVE sssd bug fix and enhancement update 2012-02-20 15:06:51 UTC

Description Stephen Gallagher 2012-01-11 14:43:52 UTC
+++ This bug was initially created as a clone of Bug #773326 +++

This bug is created as a clone of upstream ticket:
https://fedorahosted.org/sssd/ticket/893

Right now, the dynamic DNS update message is not logged anywhere. I suspect that the reason for not including it were security concerns.

I think the message should be logged, because the logs are readable by root only anyway and moreover the update message only contains the following data:

 * hostname of the client
 * IP addresses of clients's network interface (either the one the client uses to connect to LDAP or one selected in the sssd config file)
 * client DNS zone
 * Kerberos realm of the client
 * IPA server hostname

Adding the full nsupdate message would help in debugging dyndns issues as it would be possible to use the same message directly with nsupdate from the command line.

Comment 8 Gowrishankar Rajaiyan 2012-01-18 15:29:48 UTC
Verified.

[root@ratchet ~]# rpm -qi sssd | head
Name        : sssd                         Relocations: (not relocatable)
Version     : 1.5.1                             Vendor: Red Hat, Inc.
Release     : 49.el5                        Build Date: Tue 17 Jan 2012 01:30:04 PM EST
Install Date: Wed 18 Jan 2012 07:20:52 AM EST      Build Host: x86-003.build.bos.redhat.com
Group       : Applications/System           Source RPM: sssd-1.5.1-49.el5.src.rpm
Size        : 3651337                          License: GPLv3+
Signature   : (none)
Packager    : Red Hat, Inc. <http://bugzilla.redhat.com/bugzilla>
URL         : http://fedorahosted.org/sssd/
Summary     : System Security Services Daemon
[root@ratchet ~]#

Comment 9 errata-xmlrpc 2012-02-21 06:27:20 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

http://rhn.redhat.com/errata/RHBA-2012-0164.html


Note You need to log in before you can comment on or make changes to this bug.