python3-libipa_hbac-2.9.5-4.el9_5.1> M Mv ĉJ4!!%joLne)Ip-Bm5 ']g3f' p-Bm5 ']/6#eXaީ޴S A4M $fV7&);lci2ݤc-/&GQOlrB۵F!5\R_L >I0ıXYބ=gG6t0XK"pX<<jœэg9Cfy7Gkti.%EDTR*)m8>%8n{&@jqL*?~ BSf+2/Dkf=FI(ۥђi0a{ِA\< ۭW~}4>%MLE;1Ө<36zi `/ku-^k@ВC[O޳ :x ''r(PZt % dH(v+@K,DeIDWUXA2׉g]g|. Bʁˍ) LRW:"~M Σ.h0:_|-~@ZY^s259fa8a910f5924113f4b185a5c8d645213119b38b22341cbf13de42ef881f57124b4a4a36a873db31b3c0cd203a45d84bbcfb3aic\EȈ5l:0 A>@.)?.d & ^5= x     T`o~D( 89|: .B)G)H*I*X*Y*$Z*d[*l\*]*^*b+d,be,gf,ll,ot,u,v,w-@x-Ly-X -----Cpython3-libipa_hbac2.9.54.el9_5.1Python3 bindings for the FreeIPA HBAC Evaluator libraryThe python3-libipa_hbac contains the bindings so that libipa_hbac can be used by Python applications.g3cUpb-dfe44e04-fcf5-407d-aaad-91b0d41820e1-b-aarch64GRocky Linux 9.5Rocky Enterprise Software FoundationLGPLv3+Rocky Linux Build System (Peridot) Unspecified! @fg@e!@e@e@e)eReRe@d dd@ddu@doMdbc<@c]cdAlexey Tikhonov - 2.9.5-4.1Alexey Tikhonov - 2.9.5-4Alexey Tikhonov - 2.9.5-3Alexey Tikhonov - 2.9.5-2Alexey Tikhonov - 2.9.5-1Alexey Tikhonov - 2.9.4-7Alexey Tikhonov - 2.9.4-6Alexey Tikhonov - 2.9.4-5Alexey Tikhonov - 2.9.4-4Alexey Tikhonov - 2.9.4-3Alexey Tikhonov - 2.9.4-2Alexey Tikhonov - 2.9.4-1Alexey Tikhonov - 2.9.3-2Alexey Tikhonov - 2.9.3-1Alexey Tikhonov - 2.9.2-2Alexey Tikhonov - 2.9.2-1Alexey Tikhonov - 2.9.1-2Alexey Tikhonov - 2.9.1-1Alexey Tikhonov - 2.9.0-5Alexey Tikhonov - 2.9.0-4Alexey Tikhonov - 2.9.0-3Alexey Tikhonov - 2.9.0-1Alexey Tikhonov - 2.8.2-2Alexey Tikhonov - 2.8.2-1Alexey Tikhonov - 2.8.1-1- Resolves: RHEL-59876 - EL9/CentOS Stream 9 lost offline smart card authentication - Resolves: RHEL-50912 - possible regression of rhbz#2196521- Resolves: RHEL-49711 - SYSDB: remove index on dataExpireTimestamp - Resolves: RHEL-49811 - 2FA is being enforced after upgrading 2.9.1->2.9.4- Resolves: RHEL-40742 - passkey_child with wrong owner- Resolves: RHEL-40742 - passkey_child with wrong owner - Resolves: RHEL-41047 - sssd is skipping GPO evaluation with auto_private_groups - Resolves: RHEL-40570 - GPO access the wrong memory location- Resolves: RHEL-36586 - Rebase SSSD for RHEL 9.5 - Resolves: RHEL-27716 - SSSD fails to process AD groups with 'Global Scope' correctly causing incomplete group-membership on RHEL if cache is empty - Resolves: RHEL-17659 - [RfE] SSSD Failover Enhancements - Resolves: RHEL-35781 - Passkey errors when handling multiple altSecurityIdentities values - Resolves: RHEL-30142 - sssd_pac is crashing - Resolves: RHEL-22206 - Errors in krb5_child.log every time a user authenticates - Pre-authentication failed: No pkinit_anchors supplied - Resolves: RHEL-32595 - Excessive "Domain not found' messages logged to sssd_nss & sssd_be in multidomain AD forest - Resolves: RHEL-28666 - sssctl config-check is reporting false positive error msg - Resolves: RHEL-29454 - NULL dereference in inotify handling - Resolves: RHEL-1654 - Improve documentation for allowing e-mail address as username- Relates: RHEL-33645 - Rebase Samba to the latest 4.20.x release- Resolves: RHEL-27209 - Race condition during authorization leads to GPO policies functioning inconsistently [rhel-9.4.0]- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-22340 - socket leak - Resolves: RHEL-28161 - Passkey cannot fall back to password- Resolves: RHEL-12503 - AD users are unable to log in due to case sensitivity of user because the domain is found as an alias to the email address. - Resolves: RHEL-22288 - ssh pubkey stored in ldap/AD no longer works to authenticate via sssd - Resolves: RHEL-22194 - gdm smartcard login fails with sssd-2.9.3 in case of multiple identities- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-18395 - latest sssd breaks logging in via XDMCP for LDAP/Kerberos users - Resolves: RHEL-17498 - New sssd.conf seems not to be backwards compatible (wrt SmartCard auth of local users using 'files provider') [rhel-9] - Resolves: RHEL-21079 - SSSD GPO lacks group resolution on hosts [rhel-9] - Resolves: RHEL-19211 - Excessive logging to sssd_nss and sssd_be in multi-domain AD forest [rhel-9]- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-14427 - Expected cn in RDN, got uid - Resolves: RHEL-12229 - HANA validation on RHEL 9.2 issue possibly related to libc/nss_sss behaviour - Resolves: RHEL-3925 - SSSD goes offline when, while reading a single user, misses a required attribute (i.e. SID) - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: RHEL-4146 - Incorrect handling of reverse IPv6 update results in update failure - Resolves: RHEL-4971 - sssd-kcm does not appear to expire Kerberos tickets (RFE: sssd_kcm should have the option to automatically delete the expired tickets)- Resolves: RHEL-2319 - Passkey authentication for centrally managed users- Resolves: RHEL-2632 - Rebase SSSD for RHEL 9.4 - Resolves: RHEL-2319 - Passkey authentication for centrally managed users - Resolves: rhbz#2234829 - SSSD runs multiples lookup search for each NFS request (SBUS req chaining stopped working) - Resolves: rhbz#2236119 - dbus and crond getting terminated with SIGBUS in sss_client code- Resolves: rhbz#2218858 - [sssd] SSSD enters failed state after heavy load in the system- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#2196816 - [RHEL9] [sssd] User lookup on IPA client fails with 's2n get_fqlist request failed' - Resolves: rhbz#2162552 - sssd client caches old data after removing netgroup member on IDM - Resolves: rhbz#2189542 - [sssd] RHEL 9.3 Tier 0 Localization - Resolves: rhbz#2133854 - [RHEL9] In some cases when `sdap_add_incomplete_groups()` is called with `ignore_group_members = true`, groups should be treated as complete - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Related: rhbz#2190415 - Rebase Samba to the latest 4.18.x release Rebuild against rebased Samba libs.- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3- Resolves: rhbz#2167837 - Rebase SSSD for RHEL 9.3 - Resolves: rhbz#1765354 - [RFE] - Show password expiration warning when IdM users login with SSH keys - Resolves: rhbz#1913839 - filter_groups doesn't filter GID from 'id' output: AD + 'ldap_id_mapping = True' corner case - Resolves: rhbz#2100789 - [Improvement] sssctl config-check command does not show an error when we don't have id_provider in the domain section - Resolves: rhbz#2152177 - [RFE] Add support for ldapi:// URLs - Resolves: rhbz#2164852 - man page entry should make clear that a nested group needs a name - Resolves: rhbz#2166627 - Improvement: sss_client: add 'getsidbyusername()' and 'getsidbygroupname()' and corresponding python bindings - Resolves: rhbz#2166943 - kinit switches KCM away from the newly issued ticket - Resolves: rhbz#2167728 - [sssd] Auth fails if client cannot speak to forest root domain (ldap_sasl_interactive_bind_s failed)- Resolves: rhbz#2160001 - Reference to 'sssd-ldap-attributes' man page is missing in 'sssd-ldap', etc man pages - Resolves: rhbz#2143159 - automount killed by SIGSEGV- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1608496 - sssd failing to register dynamic DNS addresses against an AD server due to unnecessary DNS search - Resolves: rhbz#2110091 - SSSD doesn't handle changes in 'resolv.conf' properly (when started right before network service) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139684 - [sssd] RHEL 9.2 Tier 0 Localization - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose list - Resolves: rhbz#2142794 - SSSD: `sssctl analyze` command shouldn't require 'root' privileged - Resolves: rhbz#2144893 - changing password with ldap_password_policy = shadow does not take effect immediately - Resolves: rhbz#2148737 - UPN check cannot be disabled explicitly but requires krb5_validate = false' as a work-around- Resolves: rhbz#2127510 - Rebase SSSD for RHEL 9.2 - Resolves: rhbz#1507035 - [RFE] SSSD does not support to change the user’s password when option ldap_pwd_policy equals to shadow in sssd.conf file - Resolves: rhbz#1766490 - Use negative cache better and domain checks for lookup by SIDs - Resolves: rhbz#1964121 - RFE: Add an option to sssd config to convert home directories to lowercase (or add a new template for the 'override_homedir' option) - Resolves: rhbz#2074307 - reduce debug level in case well_known_sid_to_name() fails - Resolves: rhbz#2096031 - SSSD: sdap_handle_id_collision_for_incomplete_groups debug message missing a new line - Resolves: rhbz#2103325 - Supported AD group types should be explained in the docs - Resolves: rhbz#2111388 - authenticating against external IdP services okta (native app) with OAuth client secret failed - Resolves: rhbz#2115171 - SSSD: duplicate dns_resolver_* option in man sssd.conf - Resolves: rhbz#2127492 - sssd timezone issues sudonotafter - Resolves: rhbz#2128840 - [RFE] provide dbus method to find users by attr - Resolves: rhbz#2128883 - Cannot SSH with AD user to ipa-client (`krb5_validate` and `pac_check` settings conflict) - Resolves: rhbz#2136791 - Lower the severity of the log message for SSSD so that it is not shown at the default debug level. - Resolves: rhbz#2139837 - Analyzer: Optimize and remove duplicate messages in verbose -flto=auto -ffat-lto-objects -fexceptions -g -grecord-gcc-switches -pipe -Wall -Werror=format-security -Wp,-D_FORTIFY_SOURCE=2 -Wp,-D_GLIBCXX_ASSERTIONS -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -fstack-protector-strong -specs=/usr/lib/rpm/redhat/redhat-annobin-cc1 -fasynchronous-unwind-tables -fstack-clash-protectioncpiozstd19aarch64-redhat-linux-gnudirectoryELF 64-bit LSB shared object, ARM aarch64, version 1 (SYSV), dynamically linked, BuildID[sha1]=466916fc5c2702369c7e5b02a503f0204f3cf07e, stripped OR RRRRRRR RRRutf-8200cec51f1e9423a16544eb7f2fbc72ec9ad078c2b67512de8ef308a23b8b722dc8a686cc823b207538646e3b6d3533fcb636c46925b1f0aa9d45ab9f1346bac?(/h mKm7W-|Ve7~o™,c i_dUYkvZ]bX[p`EtvM0G+DMJoD6*o={`$.nbf:z|ޘ2gɻ xN4m':pC(w^\Y@yoߧF%<9䤓᥯g}8iOaƇ-͌1: ˝߄}yD6s ~P=`S~cҌ?ӌuV&cمd3)L^j ޽mhGEJE3chD7'w>'8'4nF754?!j*7x0:l0j(];.\Wxq`IdH?n*A*U=5ݠ*?zHz@Ӏ4Sѥj-@AURЕ1F quU7ETl.mUDi"r3W=JSH(,"u{1o/XbF"BpWSUP)\*j ~R4=$>q x.o܆Bl넩?]>8%>q޼l׋YeKB'2RqʍG.H 4dzCg7/ȯg>~Pd}鋡pFn]~ÇzdC⾸z]WPSMϮ XDh~]/K2^O u6꟢n7}l~JiN}Pܶnֹ۬k.VMw֭tjL<[cװ;WRכmϴzLKӶU+UVݥVOӳO=jJ=Unܴj^n2Ӷݭ%zIkntV-SrQ͡R.Ѥ.Uԋ]Ӱ;ݽ}y ~U14f{:~uJVɴдتh)խ*V[u[ݭmJlm6L>Zf>&MڠճF귻l%mfs-LUzGu6v݋EӻU Tw+nФG#}Dɣg䍴'=+t?OJY|u QnhBH1|/>!o>A`{B El"yGV`( # @j++`,Ʊhh@g#>W?!5|@o'뭯gOVOOTUP[S^-wQ͹M:Y)urR*_ZU΢ΠR%UJZMA}XR}JUϦt(*[M,KU:QY뤌zZOQSPPTSOV)jD P]6siл-e L\ IJ͹2 ?p|' +qMˌ B,!#Q7Avd*v9싥5zD1iÆ&LFf„;#e#Y[8B E *YV\@IL 47}e(o0b:{ 0>[,e~(Nq gs^O"8|_#vsѮm݀iREdz6O ts/Ȍ`xsK_׈B%rv*bxx c oϙ>&LQIhss OZ8S!d@l9f0 q2y'[:Sf7N ]1=1Ke pQ,J@!  4CC }!k2EصQbhJi6JRA 0CD(ࡠ}| X'Аao[yT?CgU9z^,2:AEX5PA;R [^6粔Px&K!uȒ uXvt9 V2x'uq05NS_\7kA'΅kvZd9|qM6b$qX߉_zО(GHfD:f@ o,1 NZhXLo65ΩilêƤ"Rt4k\E 'nQ2}S\D#ѷOP!`&`3rjXqWMQ#NHG|(VCѦFRl6?%g 8h͗1y9 ]O'?9ΡL ꟨z2K0]|e0BVui\d~CΨ}4ri /1bx:k9fN/@/]j8=rڇ3'=gӁ;pAQCr+UgW4v+w kr9yMGXH_^ Ura[W.ٞ>y\v…S+4arV ;TimM[ؔ-?} d5K.weha.b 8 gdeݬA'fLXͣi 1}]+kxACF="6+D!s!4< O:h<g˲p8%ȻrUdunO%'0˛y9(8|䥒11p ߔlsbuR?¾@{~ƼHz{۪l;VuɄ*!KDJ iJ2赊%FX5L޽-6̶kV ԭ{vyl dҊ!ÒV-b^Vݫ|"yi)٬dճ^$SzM\Jحܱ]1yn1swd[Jz|{{{뽛ĚX~__̈́Z;kzW_׼ؼ{{(ve&I6Ƅ=[bh %9L+=ES˄+uE\c(UlIV&=_OlU&E1&2/V\j~]]E"+bX^wzmMzIͼI*ت*C6ש^2ˁmY?vjG>wV cw-6ݢ{^=o+6ihw{{m֯[{Nw7&_*V{{k?M NQ>Ds}&nS#ZxRG2r"a{43*=Us԰C#q$-=b) S*3O~/7Y gM%d=XQXX< kpVa4DdrR: ]xYj%5>on>? xG ,RLkA{[cա"dijd1W6Fso_zU"ǫs[MQBJ^궊Mn7vWwϤW][glbgyVJ[ymV_ESV|jwwի(+L8,uwk؏b6 b5"Hl,AHdJ,a ܹl1Vł(h$d 16$v;LulΊ\J#l.,.Hq%D UϘҪs)VY]$R~hB\pT!.;Uヒsq\7.Dp!R_*&Z5⨴zRSE IEQНbH$B@F@a׊5y+OIx=KrVDzhj٧qi\3HI3-@]cEkM攦mR߅AxaO T0xUpVU@™ҷ0 W4IO;e4$L,aqQ\rn6Ayڏ M°KG*fP vestf8I9?j{#d; @cLZ0OKy3![W[u . z!)6Wh}ɹөAǪa" },SՅ im7܆jF^R9>IzFSW RK,n|h$krM٣7w1OJNaEEWgP:Ope*Ɨ d~6T '/9L3{E0jtnkn;5ӲS\~^hɖkeu4C ke+ҖXT &̮3)^dzȧ1|#Jw 8tD oS2{'XD%fA]o5z){7̠ Pം\cE[8=QX/$2̮OvI= OIySow*{ED˄ɞr*[LSͮ>k. vV5z\)69ФRj^R~Sr +mwnXrz'$o/9 r!gP;)*⛣Њ~pO$,=tO# xlÓܩ_hj5,+? DQȨj)砾 K,l4+- ~LtYj密%9n!O9Dbf2!40T&xc|{<:(Χ%>ۚvV71!{zA|aЇ]45&'}"`}fp@j"E$:wK*!tLj6} !8bP];XH@Q97Oxlyћ66Up&ã7qg_\61^˔7o6vڣ䜛,}KOsbۺ-G/o4PT Ktbty2ն_ y>Ap}4`M](5޵*#J0dzJJ3ieaTM_, fZh.F""Pj2,E}Leʴa,)ՊK#O98 ϶sp"EzFr0FM1B= "{~aJe3l WUHyW]@>W4Ɖ(4+I4Drq.|*T XfwΠV8dCS }uFV+b#8e۟F.(>Em'Em7}sٸf{OƱC[8~k$OĨtCjk乆6q34i* f6(L*~ߜ9̕o$sd0Sv]K >?,q*j4˳?r[л9u^_N:s6%Yֽ)o1QdZa ` V$B>>lzG#7Y7K-JPmlY0Lܫ.)ZEp5Sޒd'lBДV %|HY>cшZCh){ ɣGU9P-JِC*xOiFsé Zh5Р)':_ , pdeNhzu~o9^H@%pZÔ MԼ&'oc f{iOL._MxR"N^{lO3/[l"ڡB=فE7=o@#$$r*&L|%)uQY'S#V3PCGRMk_c|jY3++r".XҶ!voz9P9i,?8#O6_ =J>@nR&[,o Aٔ`ܳxtN Bhr7 -8bʰ.1I\6III &IAxtԏIFy7E=_k k-&} ΐAg|Ip F,w]h ͇ GbՙlV QĜd~2σ+ E=vm?A 7&^]S%e>^hNO tkCc_!UvY_tw)1Ƙ@6앟GxCkm(1{'EZh4߷IvqiˈOafdCnKwݠ6gOW?/vB5vdFZ/ qIj|Ov'kNࠣ0݇x0e3fPd?oX \2w33߽&2iEJ3[F0^)|LxtLEmA[ftY("! ΖuDЇ-?:o=ntkJE[`L s>iH^; >5'z~Rhx[Yhf̕YiOk^xh:G=3:ynz bz)?:g|#y3)9;- uRfô!|YNp-|=mV;xb3GxGd?؈Cf}y.@tN6W#?XG`=hoo>$T_ ?KFH\=|4KxbqV<]_Mxs, ecH/df I#a`.]\dCf xw)nߋwr/m!)wGL͹~>K+=yw{[C?]=z~d~!} ]@Kv8 oNj,oxQtqakrCKe2~O%i4wC~#9z=Qe\?)!go=Ӄy0yB ;(ѯnżB^0w )= t0K^?2/ʦfy9qۦ~PKf?A"/?nR>+`m^ن=j}_F %\Nk_^i69:>tW_C/R5_ ï>ZRnǵUAf-t Ptfce.'inZ~||56&y1n~ŸPr GGσ]d[c3 r7]\_D=OtSy=\&pvMwFBެzRڲ,#`=W3X.z.?Ұ{=\C6}H6'okМA=UK`\- V@|}qO_xCk/ g夿׀Yu~v7Y׻8hm)'}hEr*,87t$+7(i!m٫ÎҶ|U@N H y.*=1}r5(k".ȳ퍲/TGϏ.#vl#:l/+|賭{)ߎ4,:q*)W?b| ڔq{FC ϰ./\CeFJ.e`zK;Eѓ;]X$sM*p/m/bNG`NȮQō:h/wPQ~M rgWjW X]en`/f Ϟg4__W̾:[f&lQ3f;*цzZ>Q9!)@ʗLhpۓ:D2}o< JOiaS-Ov:y(- ;6}?lJ%v::$ 1MTAZ?ʩ}k=PLaoW/B !>Sl뿑 }YTn?l0)[}[x\qǤNjl_᝛Kxc[F}W[8Z#4@zo{y?Aٞ2j37gC';ypNzEw{q89ƟЧPʐh</ >!CyV,ջ6|3$nW'Zڞ-y(p&ߣ-d9:jYxx}n0F\,-~n[h7 ?U1oGnvS3ץJ81_vU:?xy驼ztnZG۷_\iBY$Vw>#3zo`YNa~6nR le2熞jžo4PvǷvou}Z S V~Sk.G.\ll[;Fў NƗF݃&XnJgg6 p6ґ_mǭfwCG^Oˏ;-Tִe+:OU1,?hڢ1{b}o9"<c62W?}l=셍w%D@k׆Gl[`ط0r 0JԩOd|4L׃d'ėrgh FAp}stUi/IxO|W^eVF|=Mmyak1Rbf6oa¸ ~Bhg'^wWgO;QؿD5[uUWhݮ2{Gl.386SȬt5%}ԑXl]ژ~cg.g1~:LgG<Ɠ623i!Ѥi2k?$Q9_!Bz:jw&RE >X˪Ȟab9Y:zH M~ i'M