On Wed, 2015-09-23 at 08:35 +0200, Jan Cholasta wrote:
> What I mean is that installing a replica using an already existing 
> replica file should be prevented at level 1 as well:
> 
> root@ipa1# ipa-server-install --domain-level=0
> root@ipa1# ipa-replica-prepare ipa2.example.com
> root@ipa1# ipa domainlevel-set 1
> 
> root@ipa2# ipa-replica-install replica-info-ipa2.example.com.gpg
> ERROR: Can't install replica from a replica file at domain level > 0

Ok I rebased the patchset with a modification to assume promotion if no
file was provided, and then raise appropriate RuntimeErrors if
conditions about the domain level are not met.

This change also prevents installing with a replica file if domain level
is currently at 1.

They are in the usual custodia-review branch.

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York

-- 
Manage your subscription for the Freeipa-devel mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-devel
Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

Reply via email to