X-Git-Url: https://git.adam-barratt.org.uk/?a=blobdiff_plain;f=debian%2Fchangelog;h=8da79cb0e29cb956a14d1c63e592b643d5951781;hb=34c5d26cd16f3e10dc9a6275068e9dc74e35c8c4;hp=f3af41323a6366dd3640f5b421f1802251e267ae;hpb=261625cd254f84738372746745481b669fb8fd02;p=mirror%2Fuserdir-ldap.git diff --git a/debian/changelog b/debian/changelog index f3af413..8da79cb 100644 --- a/debian/changelog +++ b/debian/changelog @@ -1,4 +1,119 @@ -userdir-ldap (0.3.3xxx) unstable; urgency=low +userdir-ldap (0.3.XX) unstable; urgency=low + + * Update template/welcome-message-800 to match the actual template used + on db.debian.org. + * Add subgroup support: A group can now have subgroups. This means + that if a user is a member of a group he also becomes a member of + all its subgroups. E.g. members of a wb-all group will automatically + be members of wb-i386, wb-arm, wb-mips, etc. [Luk Claes] + * Extend that support so that subgroups work on a per host basis too, + so that for instance the debbugs group can be in group + maillog@rietz.debian.org. + + -- Peter Palfrader Sun, 23 Nov 2008 21:06:53 +0100 + +userdir-ldap (0.3.50) unstable; urgency=low + + * ud-generate: Support $gid@$host supplementary group entries for users. + + -- Peter Palfrader Sat, 15 Nov 2008 11:20:09 +0100 + +userdir-ldap (0.3.49) unstable; urgency=low + + * ud-replicate: Only link ssh-rsa-shadow to var/lib/misc/$host and etc/ssh + if it exists. Else remove the symlink. + + -- Peter Palfrader Fri, 14 Nov 2008 23:14:58 +0100 + +userdir-ldap (0.3.48) unstable; urgency=low + + * ud-generate: Remove support for single ssh key shadow file. + * ud-generate: Make ssh key tarballs the default. + * ud-generate: Move ssh tarball generation into its own function. + Currently it's part of the main loop. + + -- Peter Palfrader Fri, 14 Nov 2008 23:04:21 +0100 + +userdir-ldap (0.3.47) unstable; urgency=low + + * Fix a typo on ud-mailgate. + + -- Peter Palfrader Fri, 14 Nov 2008 20:40:19 +0100 + +userdir-ldap (0.3.46) unstable; urgency=low + + * Change the hmac that protect sudopassword entries to also + hash the purpose ("sudo") and the owning user's uid into + the mac. + + -- Peter Palfrader Fri, 14 Nov 2008 20:27:38 +0100 + +userdir-ldap (0.3.45) unstable; urgency=low + + * ud-generate: Declare [UNTRSUTED] flag as obsolete. + * ud-generate: Add [NOMARKERS] flag to not push markers (gps coordinates) to host. + * ud-replicate: Use --delete-after with rsync. Previously we didn't delete + stuff ever. + * ud-replicate: Sync only ssh_known_hosts into chroots, not ssh*. + * ud-replicate: Clean up better, correcting some mistakes done by earlier + versions. + + -- Peter Palfrader Sun, 26 Oct 2008 22:31:46 +0100 + +userdir-ldap (0.3.44) unstable; urgency=low + + * ud-mailgate: Do not support del requests for sshDSAAuthKey - there is no + such attribute. + * ud-generate: do not export sudopassword to untrusted or nopasswd hosts, + unless the password is explicitly added for this host and not just for '*'. + + -- Peter Palfrader Fri, 03 Oct 2008 13:23:22 +0200 + +userdir-ldap (0.3.43) unstable; urgency=low + + * FQHNs sometimes, well always, include dots. + + -- Peter Palfrader Tue, 16 Sep 2008 15:07:21 +0200 + +userdir-ldap (0.3.42) unstable; urgency=low + + * Export all accounts into sudo-passwd, even if they + do not have a sudo password set. Set their password to '*' then. + etc/pam.d/sudo should look like this then: + auth [authinfo_unavail=ignore success=done ignore=ignore default=die] pam_pwdfile.so pwdfile=/var/lib/misc/thishost/sudo-passwd + auth required pam_unix.so nullok_secure try_first_pass + @include common-account + + -- Peter Palfrader Tue, 16 Sep 2008 14:30:41 +0200 + +userdir-ldap (0.3.41) unstable; urgency=low + + * ud-generate: lower casing the sudopasswd ldap entry prior to parsing + and verifying it was a bad idea. + + -- Peter Palfrader Mon, 15 Sep 2008 19:26:14 +0200 + +userdir-ldap (0.3.40) unstable; urgency=low + + * Reading the hmac key only once is too troublesome. + + -- Peter Palfrader Mon, 15 Sep 2008 01:12:23 +0200 + +userdir-ldap (0.3.39) unstable; urgency=low + + * Lowercasing hashed sudo passwords in ud-mailgate not considered smart. + + -- Peter Palfrader Mon, 15 Sep 2008 00:40:13 +0200 + +userdir-ldap (0.3.38) unstable; urgency=low + + * Fix order of some calls so stuff works again. + * And import pwd and os and the hmac crowed in userdir_ldap.py. + * Using the right variable name will also help. + + -- Peter Palfrader Mon, 15 Sep 2008 00:18:37 +0200 + +userdir-ldap (0.3.37) unstable; urgency=low * ud-mailgate: Do not commit any changes if one of the requests is invalid or could not be parsed or caused an error or anything. @@ -11,7 +126,7 @@ userdir-ldap (0.3.3xxx) unstable; urgency=low "confirm sudopassword ::")>" * ud-generate: generate a sudo passwd file - -- Peter Palfrader Sat, 13 Sep 2008 20:16:04 +0200 + -- Peter Palfrader Sun, 14 Sep 2008 23:45:36 +0200 userdir-ldap (0.3.36) unstable; urgency=low