Hi Tobias, Thorstein, and anyone who is after a backport of these patches,
I have completed backporting the below patches to the Bionic and Focal adcli and sssd packages, and I am looking for some help with testing. If you have some spare time, a Windows Active Directory server available, and some test Ubuntu machines, I would really appreciate help ensuring these test packages work as expected.
Source code / debdiffs for the test sssd and adcli packages are below if you are interested:
Hi Tobias, Thorstein, and anyone who is after a backport of these patches,
I have completed backporting the below patches to the Bionic and Focal adcli and sssd packages, and I am looking for some help with testing. If you have some spare time, a Windows Active Directory server available, and some test Ubuntu machines, I would really appreciate help ensuring these test packages work as expected.
Source code / debdiffs for the test sssd and adcli packages are below if you are interested:
Focal: /paste. ubuntu. com/p/JCVcV26RS 2/ /paste. ubuntu. com/p/RSqSWdCYQ H/
sssd: https:/
adcli: https:/
Bionic: /paste. ubuntu. com/p/vcyYnjVdg 7/ /paste. ubuntu. com/p/SVpHZc59p q/
sssd: https:/
adcli: https:/
Please note, these test packages are NOT SUPPORTED by Canonical, and are for
TEST PURPOSES ONLY. ONLY install in a dedicated test environment.
Instructions to install (on a bionic or focal system): sf294530- test sf294530v202010 13b1 // for focal sf294530v202010 19b1 // for bionic sf294530v202010 12b1 // for focal 1ubuntu1. 6+sf294530v2020 1021b1 // for bionic
1) sudo add-apt-repository ppa:mruffell/
2) sudo apt update
3) sudo apt install adcli sssd
4) sudo apt-cache policy adcli | grep Installed
Installed: 0.9.0-1ubuntu0+
Installed: 0.8.2-1ubuntu0+
5) sudo apt-cache policy sssd | grep Installed
Installed: 2.2.3-3ubuntu0+
Installed: 1.16.1-
Please let me know if these test packages work as expected in regards to the "ad_use_ldaps" flag, or if you run into any problems.
List of commits backported are below:
adcli
=====
For both Bionic and Focal: ------- ------- -----
-------
commit a6f795ba3d6048b 32d7863468688bf 7f42b2cafd /gitlab. freedesktop. org/realmd/ adcli/- /commit/ a6f795ba3d6048b 32d7863468688bf 7f42b2cafd
Author: Sumit Bose <email address hidden>
Date: Fri Oct 11 16:39:25 2019 +0200
Subject: Use GSS-SPNEGO if available
Link: https:/
commit 85097245b57f190 337225dbdbf6e33 b58616c092 /gitlab. freedesktop. org/realmd/ adcli/- /commit/ 85097245b57f190 337225dbdbf6e33 b58616c092
Author: Sumit Bose <email address hidden>
Date: Thu Dec 19 07:22:33 2019 +0100
Subject: add option use-ldaps
Link: https:/
sssd
====
Bionic only (dependency) ------- ------- ---
-------
commit 070f22f896b909c 140ed7598aed239 3d61a834ae /github. com/SSSD/ sssd/commit/ 070f22f896b909c 140ed7598aed239 3d61a834ae
Author: Sumit Bose <email address hidden>
Date: Tue May 21 10:22:04 2019 +0200
Subject: sdap: inherit SDAP_SASL_MECH if not set explicitly
Link: https:/
For Bionic and Focal: ------- -------
-------
commit 090cf77a0fd5f30 0a753667658af3e d763a88e83 opts_if_ needed( ) /github. com/SSSD/ sssd/commit/ 090cf77a0fd5f30 0a753667658af3e d763a88e83
Author: Sumit Bose <email address hidden>
Date: Thu Sep 26 20:24:34 2019 +0200
Subject: ad: allow booleans for ad_inherit_
Link: https:/
commit 341ba49b0deb42e 17d535744824786 c2499656b7 /github. com/SSSD/ sssd/commit/ 341ba49b0deb42e 17d535744824786 c2499656b7
Author: Sumit Bose <email address hidden>
Date: Thu Sep 26 20:27:09 2019 +0200
Subject: ad: add ad_use_ldaps
Link: https:/
commit 78649907b81b4bd af8fc6a6e6ae55e d3cd5419f5 /github. com/SSSD/ sssd/commit/ 78649907b81b4bd af8fc6a6e6ae55e d3cd5419f5
Author: Sumit Bose <email address hidden>
Date: Fri Sep 27 11:49:59 2019 +0200
Subject: ldap: add new option ldap_sasl_maxssf
Link: https:/
commit 24387e19f065e6a 585b1120d5568cb 4df271d102 /github. com/SSSD/ sssd/commit/ 24387e19f065e6a 585b1120d5568cb 4df271d102
Author: Sumit Bose <email address hidden>
Date: Fri Sep 27 13:45:13 2019 +0200
Subject: ad: set min and max ssf for ldaps
Link: https:/
Thanks,
Matthew