[Freeipa-interest] [SSSD-users] Announcing SSSD 2.4.2

Pavel Březina pbrezina at redhat.com
Fri Feb 19 16:13:39 UTC 2021


# SSSD 2.4.2

The SSSD team is proud to announce the release of version 2.4.2 of the
System Security Services Daemon. The tarball can be downloaded from:
      https://github.com/SSSD/sssd/releases/tag/2.4.2

See the full release notes at:
      https://sssd.io/docs/users/relnotes/notes_2_4_2

RPM packages will be made available for Fedora shortly.

## Feedback

Please provide comments, bugs and other feedback via the sssd-devel
or sssd-users mailing lists:
      https://lists.fedorahosted.org/mailman/listinfo/sssd-devel
      https://lists.fedorahosted.org/mailman/listinfo/sssd-users

## Highlights

### General information

* Default value of 'user' config option was fixed into accordance with 
man page, i.e. default is 'root'
* Example systemd service configs now makes use of CapabilityBoundingSet 
option as a security hardening measure.

### New features

* `pam_sss_gss` now support authentication indicators to further harden 
the authentication

### Configuration changes

* Added `pam_gssapi_indicators_map` to configure authentication 
indicators requirements




More information about the Freeipa-interest mailing list