#1835 [RFE] Implement localauth plugin for MIT krb5 1.12
Closed: Fixed Opened by abbra.

Since localauth plugin API is committed to MIT krb5 upstream, we need to implement the plugin to allow SSSD to expose trusted domains and UPN suffixes associated with our domain instead of configuring them manually.

https://github.com/krb5/krb5/commit/4216fb5b0e0abb80a3ccd8251abddc18435d81f3


Fields changed

milestone: NEEDS_TRIAGE => SSSD 1.11 beta
rhbz: => todo
summary: Implement localauth plugin for MIT krb5 1.12 => [RFE] Implement localauth plugin for MIT krb5 1.12
type: defect => enhancement

Fields changed

changelog: =>
priority: major => critical
review: => 0

Fields changed

milestone: SSSD 1.13 beta => SSSD 1.12 beta

Fields changed

milestone: SSSD 1.12 beta => SSSD 1.12.1

Fields changed

design: => https://fedorahosted.org/sssd/wiki/DesignDocs/NSSWithKerberosPrincipal

Fields changed

changelog: => Allow the MIT Kerberos client library to map Kerberos principals to user names with the help of SSSD.

Fields changed

owner: somebody => sbose
status: new => assigned

Fields changed

patch: 0 => 1

FreeIPA counterpart for updating the default krb5.conf: https://fedorahosted.org/freeipa/ticket/4514

Ticket has been cloned to Bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=1135043

rhbz: todo => [https://bugzilla.redhat.com/show_bug.cgi?id=1135043 1135043]

  • master:
    • 8a5e793a0576250da80371e53aa3e7eba15cdb63
    • 6b5044001e4b0a0caf971a2cf5f27674e0d270f4

resolution: => fixed
status: assigned => closed

Metadata Update from @abbra:
- Issue assigned to sbose
- Issue set to the milestone: SSSD 1.12.1

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/2877

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Metadata