lists.arthurdejong.org
RSS feed

release 0.7.4 of nss-pam-ldapd

[Date Prev][Date Next] [Thread Prev][Thread Next]

release 0.7.4 of nss-pam-ldapd



Release 0.7.4 has just been made available which fixes some bugs and
includes some new functionality. This should be a reasonably stable and
well tested release.

A summary of the changes since 0.7.3:
* fix a buffer overflow that should have no security consequences
* perform proper fail-over when authenticating in the PAM module
* add an nss_initgroups_ignoreusers option to ignore user name to group
  lookups for the specified users
* add an pam_authz_search option to perform a flexible authorisation
  check on login (e.g. to restrict which users can login to which hosts,
  etc)
* implement a minimum_uid option for the PAM module to ignore users that
  have a lower numeric user id
* change the way retries are done to error out quicker if the LDAP
  server is down for some time (this should make the system more
  responsive when the LDAP server is unavailable) and rename the
  reconnect_maxsleeptime option to reconnect_retrytime to better
  describe the behaviour
* only log "connected to LDAP server" if the previous connection failed
* documentation improvements

More information on this release can be found at:
  http://arthurdejong.org/nss-pam-ldapd/news.html#20100509

Any feedback is very much appreciated and thanks go out to those people
that have provided feedback and patches for this release.

-- 
-- arthur - arthur@arthurdejong.org - http://arthurdejong.org --
--
To unsubscribe send an email to
nss-pam-ldapd-announce-unsubscribe@lists.arthurdejong.org or see
http://lists.arthurdejong.org/nss-pam-ldapd-announce