- Issued:
- 2016-11-03
- Updated:
- 2016-11-03
RHBA-2016:2633 - Bug Fix Advisory
Synopsis
Red Hat Enterprise Linux Atomic SSSD Container Image Update
Type/Severity
Bug Fix Advisory
Topic
An updated Red Hat Enterprise Linux Atomic SSSD Container Image is now
available.
Description
The Red Hat Enterprise Linux Atomic SSSD Container Image provides the ipa-client and realmd tools for enrolling the host to an Identity Management (IdM/IPA) server or to connect it to an Active Directory domain. It allows you to run the System Security Services Daemon (SSSD) in a container to provide identity, authentication, and authorization services to the Atomic host.
For the full list of updated packages refer to the following Knowledgebase article: https://access.redhat.com/articles/2746611
All users who require the Red Hat Enterprise Linux Atomic SSSD container
are advised to install this updated container image.
Solution
The Red Hat Enterprise Linux container image provided by this update can be
downloaded from the Red Hat Container Registry at registry.access.redhat.com
using the "docker pull" command. Dockerfiles and scripts should be amended
either to refer to this new image specifically, or to the latest image
generally.
Affected Products
- Red Hat Enterprise Linux Server 7 x86_64
Fixes
- BZ - 1334368 - atomic uninstall rhel7/sssd doesn't remove the client from AD Domain
- BZ - 1346168 - Running atomic install rhel7/sssd realm join AD.EXAMPLE.COM fails with realm: Couldn't initialize kerberos: Included profile directory could not be read
- BZ - 1347758 - /etc/krb5.keytab directory being created when atomic run command is used
CVEs
(none)
References
(none)
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.