-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
Previously, we were setting the client context PAM lookup timeout after the first domain replied. However, if the user wasn't a member of the first domain, their information wasn't being updated.
This patch ensures that we only set this timeout after the user has been found or all domains were searched.
- -- Stephen Gallagher RHCE 804006346421761
Delivering value year after year. Red Hat ranks #1 in value among software vendors. http://www.redhat.com/promo/vendor/
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
On 02/18/2011 09:40 AM, Stephen Gallagher wrote:
Previously, we were setting the client context PAM lookup timeout after the first domain replied. However, if the user wasn't a member of the first domain, their information wasn't being updated.
This patch ensures that we only set this timeout after the user has been found or all domains were searched.
Updating the subject line so it's more clear that this is not ALL initgroups calls that are affected.
- -- Stephen Gallagher RHCE 804006346421761
Delivering value year after year. Red Hat ranks #1 in value among software vendors. http://www.redhat.com/promo/vendor/
On Fri, Feb 18, 2011 at 09:45:13AM -0500, Stephen Gallagher wrote:
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
On 02/18/2011 09:40 AM, Stephen Gallagher wrote:
Previously, we were setting the client context PAM lookup timeout after the first domain replied. However, if the user wasn't a member of the first domain, their information wasn't being updated.
This patch ensures that we only set this timeout after the user has been found or all domains were searched.
Updating the subject line so it's more clear that this is not ALL initgroups calls that are affected.
ACK
bye, Sumit
Stephen Gallagher RHCE 804006346421761
Delivering value year after year. Red Hat ranks #1 in value among software vendors. http://www.redhat.com/promo/vendor/ -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.11 (GNU/Linux) Comment: Using GnuPG with Fedora - http://enigmail.mozdev.org/
iEYEARECAAYFAk1ehfkACgkQeiVVYja6o6PQmgCZAfSBZB93YCfqF/SjcmEVWIzo ozwAn0iRCkpCLjzD56cXdIIxAFYxNZws =fvBR -----END PGP SIGNATURE----- _______________________________________________ sssd-devel mailing list sssd-devel@lists.fedorahosted.org https://fedorahosted.org/mailman/listinfo/sssd-devel
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
On 02/21/2011 06:30 AM, Sumit Bose wrote:
On Fri, Feb 18, 2011 at 09:45:13AM -0500, Stephen Gallagher wrote: On 02/18/2011 09:40 AM, Stephen Gallagher wrote:
Previously, we were setting the client context PAM lookup timeout after the first domain replied. However, if the user wasn't a member of the first domain, their information wasn't being updated.
This patch ensures that we only set this timeout after the user has been found or all domains were searched.
Updating the subject line so it's more clear that this is not ALL initgroups calls that are affected.
ACK
Pushed to master and sssd-1-5.
- -- Stephen Gallagher RHCE 804006346421761
Delivering value year after year. Red Hat ranks #1 in value among software vendors. http://www.redhat.com/promo/vendor/
sssd-devel@lists.fedorahosted.org