sssd - System Security Services Daemon

Property Value
Distribution Debian 7 (Wheezy)
Repository Debian Main i386
Package name sssd
Package version 1.8.4
Package release 2
Package architecture i386
Package type deb
Installed size 8.01 KB
Download size 2.58 MB
Official Mirror
Provides a set of daemons to manage access to remote directories and
authentication mechanisms. It provides an NSS and PAM interface toward
the system and a pluggable backend system to connect to multiple different
account sources. It is also the basis to provide client auditing and policy
services for projects like FreeIPA.
This package provides the daemon.


Package Version Architecture Repository
sssd_1.11.7.3-3~bpo70+1_amd64.deb amd64 Debian Backports Main
sssd_1.11.7.3-3~bpo70+1_i386.deb i386 Debian Backports Main
sssd_1.8.4-2_amd64.deb 1.8.4 amd64 Debian Main
sssd - - -


Name Value
libc-ares2 >= 1.7.0
libc6 >= 2.4
libcollection2 -
libcomerr2 >= 1.01
libdbus-1-3 >= 1.1.1
libdhash1 -
libini-config2 -
libipa-hbac0 = 1.8.4-2
libk5crypto3 >= 1.6.dfsg.2
libkeyutils1 -
libkrb5-3 >= 1.9+dfsg~beta1
libldap-2.4-2 >= 2.4.7
libldb1 >= 0.9.21
libnl1 >= 1.1
libnspr4 >= 2:4.9-2~
libnspr4-0d >=
libnss3 >= 2:3.13.4-2~
libnss3-1d >= 3.12.0~1.9b1
libpam0g >=
libpcre3 >= 8.10
libpopt0 >= 1.14
libtalloc2 >= 2.0.4~git20101213
libtdb1 >= 1.2.7+git20101214
libtevent0 >= 0.9.9
libunistring0 -
multiarch-support -
python -
python-sss -


Type URL
Binary Package sssd_1.8.4-2_i386.deb
Source Package sssd

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install sssd deb package:
    # sudo apt-get install sssd




2013-02-27 - Timo Aaltonen <>
sssd (1.8.4-2) unstable; urgency=low
* fix-cve-2013-0219-1.diff, fix-cve-2013-0219-2.diff,
fix-cve-2013-0220.diff: Upstream commits from the stable tree to fix
recent CVE reports. (Closes: #698871)
2012-06-01 - Timo Aaltonen <>
sssd (1.8.4-1) unstable; urgency=low
* New upstream bugfix release 1.8.2.
- Several fixes to case-insensitive domain functions
- Fix for GSSAPI binds when the keytab contains unrelated
- Fixed several segfaults
- Workarounds added for LDAP servers with unreadable RootDSE
- SSH knownhostproxy will no longer enter an infinite loop
preventing login
- The provided SYSV init script now starts SSSD earlier at startup
and stops it later during shutdown
- Assorted minor fixes for issues discovered by static analysis
* New upstream bugfix release 1.8.3.
- Numerous manpage and translation updates
- LDAP: Handle situations where the RootDSE isn't available anonymously
- LDAP: Fix regression for users using non-standard LDAP attributes for
user information
* New upstream bugfix release 1.8.4. (LP: #981125, #985031)
- Fix a bug causing AD servers not to fail over properly when the KDC
on the primary server is down
- Fix an endianness bug on big-endian systems when looking up services
- Fix a segfault dealing with nested groups (LP: #981125)
- Make the nowait cache updates work for netgroups
- Fix a regression that broke domains with use_fully_qualified_names = True
(LP: #985031)
* control: Move the dependency of libsasl2-modules-gssapi-mit to
* control: sssd works with Heimdal gssapi modules too, add
libsasl2-modules-gssapi-mit as an option for the Recommends.
(LP: #966146)
* libpam-sss.pam-auth-update:
- Drop the dependency to 128, since pam_sss should always be below
pam_unix. (LP: #957486)
- Drop 'use_authtok' from the password stack, since it only works when
pam_cracklib is installed. This will allow password changes on the
default install.
* sssd.postrm: Try to remove /etc/sssd only if it exists.
(Closes: #666226)
* Add disabled by default Apparmor profile (LP: #933342)
- debian/ load the profile during pre-start
- add debian/apparmor-profile, install to /etc/apparmor.d
- debian/rules: use dh_apparmor to install profile before sssd is
- debian/control: sssd Suggests apparmor (>= 2.3)
- debian/control: Add dh-apparmor to build-depends
- debian/sssd.preinst: disable profile on clean install or upgrades
from earlier than when we shipped the profile
* rules: Mangle the date stamp on pam_sss.8 so that the compressed file is
identical across all archs. (Closes: #670019)
* control: Add build-depends on libnl-dev to enable Netlink support.
* control: Add build-depends on libkeyutil-dev to enable support for
kernel keyring manipulation.
* sssd.logrotate: Rotate logs weekly, keep four previous rotations.
(Closes: #672984)
* Delete an invisible control character from the pre-start
script. (LP: #1003845)

