[Freeipa-devel] [freeipa PR#897][opened] install: replica: Show message about key synchronization

2017-06-27 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/897 Author: dkupka Title: #897: install: replica: Show message about key synchronization Action: opened PR body: """ https://pagure.io/freeipa/issue/6940 """ To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa

[Freeipa-devel] [freeipa PR#875][comment] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Title: #875: Fix ip address checks dkupka commented: """ @MartinBasti please rebase for ipa-4-5 """ See the full comment at https://github.com/freeipa/freeipa/pull/875#issuecomment-309698530 ___

[Freeipa-devel] [freeipa PR#875][closed] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Author: MartinBasti Title: #875: Fix ip address checks Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/875/head:pr875 git checkout pr875

[Freeipa-devel] [freeipa PR#875][-pushed] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Title: #875: Fix ip address checks Label: -pushed ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to freeipa-devel-le...@lists.fedorahosted.org

[Freeipa-devel] [freeipa PR#875][comment] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Title: #875: Fix ip address checks dkupka commented: """ master: * 82ad586f6cbf6e707add3c866ed4e37ade69b045 Fix local IP address validation * cb48a49c80f4a11d2d16511e0f1366867320f153 ipa-dns-install: remove check for local ip address *

[Freeipa-devel] [freeipa PR#875][+pushed] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Title: #875: Fix ip address checks Label: +pushed ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to freeipa-devel-le...@lists.fedorahosted.org

[Freeipa-devel] [freeipa PR#875][+ack] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Title: #875: Fix ip address checks Label: +ack ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to freeipa-devel-le...@lists.fedorahosted.org

[Freeipa-devel] [freeipa PR#875][comment] Fix ip address checks

2017-06-20 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/875 Title: #875: Fix ip address checks dkupka commented: """ Changes look good to me. But it uncovers another unwanted behaviour: With --setup-dns the installer adds IP and FQDN into /etc/hosts. This results in all traffic from local system towards

[Freeipa-devel] [freeipa PR#873][synchronized] kra: promote: Get ticket before attempting to get KRA keys with custodia

2017-06-15 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/873 Author: dkupka Title: #873: kra: promote: Get ticket before attempting to get KRA keys with custodia Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa

[Freeipa-devel] [freeipa PR#841][+ack] ipa-kdb: use canonical principal in certauth plugin

2017-06-07 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin Label: +ack ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#841][comment] ipa-kdb: use canonical principal in certauth plugin

2017-06-07 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin dkupka commented: """ Works for me. """ See the full comment at https://github.com/freeipa/freeipa/pull/841#issuecomment-306743729 ___

[Freeipa-devel] [freeipa PR#823][comment] ipa-kdb: reload certificate mapping rules periodically

2017-06-01 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/823 Title: #823: ipa-kdb: reload certificate mapping rules periodically dkupka commented: """ @sumit-bose You're right but then there's ~6 hours gap where no reload happened. I would expect that there would be one attempt to reload every 5 minutes.

[Freeipa-devel] [freeipa PR#823][comment] ipa-kdb: reload certificate mapping rules periodically

2017-06-01 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/823 Title: #823: ipa-kdb: reload certificate mapping rules periodically dkupka commented: """ @sumit-bose Yes, I added rule that should allow the user to kinit with certificate. I tried and it worked. Then I modified the rule so it no longer