[Freeipa-devel] [freeipa PR#3912][opened] Show group-add/remove-member-manager failures

2019-11-18 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3912 Author: tiran Title: #3912: Show group-add/remove-member-manager failures Action: opened PR body: """ Commands like ipa group-add-member-manager now show permission errors on failed operations. Fixes: https://pagure.io/freeipa/issue/8122 Signe

[Freeipa-devel] [freeipa PR#3911][opened] Enable TLS 1.3 support

2019-11-18 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3911 Author: tiran Title: #3911: Enable TLS 1.3 support Action: opened PR body: """ urllib3 now supports post-handshake authentication with TLS 1.3. Enable TLS 1.3 support for Apache HTTPd. New builds of urllib3 are in freeipa-master COPR and in F3

[Freeipa-devel] [freeipa PR#3236][closed] Enable TLS 1.3 post handshake auth

2019-11-15 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3236 Author: tiran Title: #3236: Enable TLS 1.3 post handshake auth Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3236/head:pr3236 git checkout pr3236 __

[Freeipa-devel] [freeipa PR#3102][closed] Workaround for AJP to bind on IPv6 localhost

2019-11-15 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3102 Author: tiran Title: #3102: Workaround for AJP to bind on IPv6 localhost Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3102/head:pr3102 git checkout pr3102

[Freeipa-devel] [freeipa PR#3039][closed] Add temporary directory manager

2019-11-15 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3039 Author: tiran Title: #3039: Add temporary directory manager Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3039/head:pr3039 git checkout pr3039 _

[Freeipa-devel] [freeipa PR#3902][closed] [Backport][ipa-4-8] Test installation with (fake) userspace FIPS

2019-11-14 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3902 Author: tiran Title: #3902: [Backport][ipa-4-8] Test installation with (fake) userspace FIPS Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3902/head:pr3902 git

[Freeipa-devel] [freeipa PR#3902][opened] [Backport][ipa-4-8] Test installation with (fake) userspace FIPS

2019-11-14 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3902 Author: tiran Title: #3902: [Backport][ipa-4-8] Test installation with (fake) userspace FIPS Action: opened PR body: """ Manual backport of PR #3897 Based on userspace FIPS mode by Ondrej Moris. Userspace FIPS mode fakes a Kernel in FIPS enf

[Freeipa-devel] [freeipa PR#3897][closed] Test installation with (fake) userspace FIPS

2019-11-14 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3897 Author: tiran Title: #3897: Test installation with (fake) userspace FIPS Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3897/head:pr3897 git checkout pr3897

[Freeipa-devel] [freeipa PR#3898][closed] prci: bump template version and fix test_smb gating definition

2019-11-14 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3898 Author: f-trivino Title: #3898: prci: bump template version and fix test_smb gating definition Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3898/head:pr3898 gi

[Freeipa-devel] [freeipa PR#3897][opened] Test installation with (fake) userspace FIPS

2019-11-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3897 Author: tiran Title: #3897: Test installation with (fake) userspace FIPS Action: opened PR body: """ Based on userspace FIPS mode by Ondrej Moris. Userspace FIPS mode fakes a Kernel in FIPS enforcing mode. User space programs behave like the K

[Freeipa-devel] [freeipa PR#3891][closed] [Backport][ipa-4-7] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3891 Author: tiran Title: #3891: [Backport][ipa-4-7] Use default ssh host key algorithms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3891/head:pr3891 git checkout

[Freeipa-devel] [freeipa PR#3890][closed] [Backport][ipa-4-6] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3890 Author: tiran Title: #3890: [Backport][ipa-4-6] Use default ssh host key algorithms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3890/head:pr3890 git checkout

[Freeipa-devel] [freeipa PR#3889][closed] [Backport][ipa-4-8] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3889 Author: tiran Title: #3889: [Backport][ipa-4-8] Use default ssh host key algorithms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3889/head:pr3889 git checkout

[Freeipa-devel] [freeipa PR#3891][opened] [Backport][ipa-4-7] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3891 Author: tiran Title: #3891: [Backport][ipa-4-7] Use default ssh host key algorithms Action: opened PR body: """ Manual backport of https://github.com/freeipa/freeipa/pull/3887 ipa-client-install no longer overrides SSH client settings for Host

[Freeipa-devel] [freeipa PR#3890][opened] [Backport][ipa-4-6] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3890 Author: tiran Title: #3890: [Backport][ipa-4-6] Use default ssh host key algorithms Action: opened PR body: """ Manual backport of PR https://github.com/freeipa/freeipa/pull/3887 ipa-client-install no longer overrides SSH client settings for H

[Freeipa-devel] [freeipa PR#3889][opened] [Backport][ipa-4-8] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3889 Author: tiran Title: #3889: [Backport][ipa-4-8] Use default ssh host key algorithms Action: opened PR body: """ This PR was opened automatically because PR #3887 was pushed to master and backport to ipa-4-8 is required. """ To pull the PR as

[Freeipa-devel] [freeipa PR#3887][closed] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3887 Author: tiran Title: #3887: Use default ssh host key algorithms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3887/head:pr3887 git checkout pr3887 _

[Freeipa-devel] [freeipa PR#3887][opened] Use default ssh host key algorithms

2019-11-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3887 Author: tiran Title: #3887: Use default ssh host key algorithms Action: opened PR body: """ ipa-client-install no longer overrides SSH client settings for HostKeyAlgorithms. It's no longer necessary to configure HostKeyAlgorithms. The setting w

[Freeipa-devel] [freeipa PR#3881][opened] [Backport][ipa-4-8] Add group membership manager

2019-11-11 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3881 Author: tiran Title: #3881: [Backport][ipa-4-8] Add group membership manager Action: opened PR body: """ Manual backport of PR #3863 """ To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfre

[Freeipa-devel] [freeipa PR#3863][closed] Add group membership management

2019-11-11 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3863 Author: tiran Title: #3863: Add group membership management Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3863/head:pr3863 git checkout pr3863 _

[Freeipa-devel] [freeipa PR#3863][opened] Add group membership management

2019-11-05 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3863 Author: tiran Title: #3863: Add group membership management Action: opened PR body: """ A group membership manager is a user or a group that can add members to a group or remove members from a group Signed-off-by: Christian Heimes """ To pul

[Freeipa-devel] [freeipa PR#3846][opened] Block camellia in krbenctypes update in FIPS

2019-11-04 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3846 Author: tiran Title: #3846: Block camellia in krbenctypes update in FIPS Action: opened PR body: """ Add FIPS conditional to updates to prevent updater from adding camellia encsalttypes. Fixes: https://pagure.io/freeipa/issue/8111 Signed-off-b

[Freeipa-devel] [freeipa PR#3769][closed] Don't install a preexec_fn by default

2019-10-10 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3769 Author: tiran Title: #3769: Don't install a preexec_fn by default Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3769/head:pr3769 git checkout pr3769 ___

[Freeipa-devel] [freeipa PR#3776][opened] [Backport][ipa-4-8] Don't install a preexec_fn by default

2019-10-10 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3776 Author: tiran Title: #3776: [Backport][ipa-4-8] Don't install a preexec_fn by default Action: opened PR body: """ This PR was opened automatically because PR #3769 was pushed to master and backport to ipa-4-8 is required. """ To pull the PR a

[Freeipa-devel] [freeipa PR#3769][opened] Don't install a preexec_fn by default

2019-10-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3769 Author: tiran Title: #3769: Don't install a preexec_fn by default Action: opened PR body: """ ipautil.run() now only installs a preexec_fn when it is actually needed. This addresses a compatibility issue with mod_wsgi subinterpreters under Pyth

[Freeipa-devel] [freeipa PR#3768][opened] Use AES for KRA archival

2019-10-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3768 Author: tiran Title: #3768: Use AES for KRA archival Action: opened PR body: """ Signed-off-by: Christian Heimes """ To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3768/head:

[Freeipa-devel] [freeipa PR#3741][opened] [Backport][ipa-4-8] Reduce check warnings

2019-09-27 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3741 Author: tiran Title: #3741: [Backport][ipa-4-8] Reduce check warnings Action: opened PR body: """ This PR was opened automatically because PR #3722 was pushed to master and backport to ipa-4-8 is required. """ To pull the PR as Git branch: gi

[Freeipa-devel] [freeipa PR#3722][closed] Reduce check warnings

2019-09-27 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3722 Author: rjeffman Title: #3722: Reduce check warnings Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3722/head:pr3722 git checkout pr3722

[Freeipa-devel] [freeipa PR#3727][reopened] Fixed errors newly exposed by pylint 2.4.0

2019-09-25 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3727 Author: stanislavlevin Title: #3727: Fixed errors newly exposed by pylint 2.4.0 Action: reopened To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3727/head:pr3727 git checkout pr

[Freeipa-devel] [freeipa PR#3727][closed] Fixed errors newly exposed by pylint 2.4.0

2019-09-25 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3727 Author: stanislavlevin Title: #3727: Fixed errors newly exposed by pylint 2.4.0 Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3727/head:pr3727 git checkout pr37

[Freeipa-devel] [freeipa PR#3727][reopened] Fixed errors newly exposed by pylint 2.4.0

2019-09-24 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3727 Author: stanislavlevin Title: #3727: Fixed errors newly exposed by pylint 2.4.0 Action: reopened To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3727/head:pr3727 git checkout pr

[Freeipa-devel] [freeipa PR#3727][closed] Fixed errors newly exposed by pylint 2.4.0

2019-09-24 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3727 Author: stanislavlevin Title: #3727: Fixed errors newly exposed by pylint 2.4.0 Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3727/head:pr3727 git checkout pr37

[Freeipa-devel] [freeipa PR#3721][closed] Don't create log files from help scripts

2019-09-24 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3721 Author: tiran Title: #3721: Don't create log files from help scripts Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3721/head:pr3721 git checkout pr3721

[Freeipa-devel] [freeipa PR#3726][opened] [Backport][ipa-4-8] Don't create log files from help scripts

2019-09-24 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3726 Author: tiran Title: #3726: [Backport][ipa-4-8] Don't create log files from help scripts Action: opened PR body: """ This PR was opened automatically because PR #3721 was pushed to master and backport to ipa-4-8 is required. """ To pull the P

[Freeipa-devel] [freeipa PR#3721][opened] Don't create log files from help scripts

2019-09-23 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3721 Author: tiran Title: #3721: Don't create log files from help scripts Action: opened PR body: """ Helper scripts now use api.bootstrap(log=None) to avoid the creation of log files. Helper scripts are typically executed from daemons which perform

[Freeipa-devel] [freeipa PR#3618][opened] [Backport][ipa-4-8] config plugin: replace 'is 0' with '== 0'

2019-09-03 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3618 Author: tiran Title: #3618: [Backport][ipa-4-8] config plugin: replace 'is 0' with '== 0' Action: opened PR body: """ This PR was opened automatically because PR #3614 was pushed to master and backport to ipa-4-8 is required. """ To pull the

[Freeipa-devel] [freeipa PR#3614][closed] config plugin: replace 'is 0' with '== 0'

2019-09-03 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3614 Author: flo-renaud Title: #3614: config plugin: replace 'is 0' with '== 0' Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3614/head:pr3614 git checkout pr3614 __

[Freeipa-devel] [freeipa PR#3615][opened] Various pylint improvements

2019-09-03 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3615 Author: tiran Title: #3615: Various pylint improvements Action: opened PR body: """ # Enable literal-comparison linter again The literal comparison linter checks for "value is 0" or "value is ''". Related: https://pagure.io/freeipa/issue/8057

[Freeipa-devel] [freeipa PR#3601][opened] Replace %{_libdir} macro in BuildRequires

2019-08-30 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3601 Author: tiran Title: #3601: Replace %{_libdir} macro in BuildRequires Action: opened PR body: """ The %{_libdir} macro is architecture dependend and therefore does not correctly work across different platforms. In the past the SRPM was created

[Freeipa-devel] [freeipa PR#3567][opened] Fix ca_initialize_hsm_state

2019-08-20 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3567 Author: tiran Title: #3567: Fix ca_initialize_hsm_state Action: opened PR body: """ Fixup for commit eb2313920e20bb4a74fc0abc52c496ccf2822dab. configparser's set() method does not convert boolean to string automatically. Use '"false"', which is

[Freeipa-devel] [freeipa PR#3555][closed] [Backport][ipa-4-8] Store HSM token and state

2019-08-19 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3555 Author: tiran Title: #3555: [Backport][ipa-4-8] Store HSM token and state Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3555/head:pr3555 git checkout pr3555 ___

[Freeipa-devel] [freeipa PR#2307][closed] Implement basic HSM support

2019-08-19 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/2307 Author: tiran Title: #2307: Implement basic HSM support Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/2307/head:pr2307 git checkout pr2307 _

[Freeipa-devel] [freeipa PR#3559][opened] Test HSM support with SoftHSM2

2019-08-19 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3559 Author: tiran Title: #3559: Test HSM support with SoftHSM2 Action: opened PR body: """ Test basic installation with SoftHSM2 as PKCS#11 provider for Dogtag. Related: https://pagure.io/freeipa/issue/5608 Signed-off-by: Christian Heimes """ To

[Freeipa-devel] [freeipa PR#3546][closed] Store HSM token and state

2019-08-19 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3546 Author: tiran Title: #3546: Store HSM token and state Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3546/head:pr3546 git checkout pr3546 ___

[Freeipa-devel] [freeipa PR#3555][opened] [Backport][ipa-4-8] Store HSM token and state

2019-08-19 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3555 Author: tiran Title: #3555: [Backport][ipa-4-8] Store HSM token and state Action: opened PR body: """ This PR was opened automatically because PR #3546 was pushed to master and backport to ipa-4-8 is required. """ To pull the PR as Git branch

[Freeipa-devel] [freeipa PR#3546][opened] Store HSM token and state

2019-08-16 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3546 Author: tiran Title: #3546: Store HSM token and state Action: opened PR body: """ The HSM state is stored in fstore, so that CA and KRA installer use the correct token names for internal certificates. The default token is "internal", meaning th

[Freeipa-devel] [freeipa PR#3545][closed] [Backport ipa-4-7] Restore SELinux context for p11-kit config overrides

2019-08-16 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3545 Author: abbra Title: #3545: [Backport ipa-4-7] Restore SELinux context for p11-kit config overrides Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3545/head:pr3

[Freeipa-devel] [freeipa PR#3536][opened] [Backport][ipa-4-8] Allow insecure binds for migration

2019-08-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3536 Author: tiran Title: #3536: [Backport][ipa-4-8] Allow insecure binds for migration Action: opened PR body: """ This PR was opened automatically because PR #3535 was pushed to master and backport to ipa-4-8 is required. """ To pull the PR as G

[Freeipa-devel] [freeipa PR#3535][closed] Allow insecure binds for migration

2019-08-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3535 Author: tiran Title: #3535: Allow insecure binds for migration Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3535/head:pr3535 git checkout pr3535 __

[Freeipa-devel] [freeipa PR#3535][opened] Allow insecure binds for migration

2019-08-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3535 Author: tiran Title: #3535: Allow insecure binds for migration Action: opened PR body: """ Commit 5be9341fbabaf7bcb396a2ce40f17e1ccfa54b77 disallowed simple bind over an insecure connection. Password logins were only allowed over LDAPS or LDAP+

[Freeipa-devel] [freeipa PR#3532][closed] [Backport][ipa-4-8] Don't move keys when key backup is disabled

2019-08-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3532 Author: tiran Title: #3532: [Backport][ipa-4-8] Don't move keys when key backup is disabled Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3532/head:pr3532 git c

[Freeipa-devel] [freeipa PR#3531][closed] Don't move keys when key backup is disabled

2019-08-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3531 Author: tiran Title: #3531: Don't move keys when key backup is disabled Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3531/head:pr3531 git checkout pr3531 _

[Freeipa-devel] [freeipa PR#3532][opened] [Backport][ipa-4-8] Don't move keys when key backup is disabled

2019-08-13 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3532 Author: tiran Title: #3532: [Backport][ipa-4-8] Don't move keys when key backup is disabled Action: opened PR body: """ This PR was opened automatically because PR #3531 was pushed to master and backport to ipa-4-8 is required. """ To pull th

[Freeipa-devel] [freeipa PR#3531][opened] Don't move keys when key backup is disabled

2019-08-12 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3531 Author: tiran Title: #3531: Don't move keys when key backup is disabled Action: opened PR body: """ The CA_BACKUP_KEYS_P12 file is not enabled when pki_backup_keys is set to False. It's the case when FreeIPA is configured with HSM support. Rel

[Freeipa-devel] [freeipa PR#3515][closed] [Backport][ipa-4-8] Change RA agent certificate profile to caSubsystemCert

2019-08-08 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3515 Author: tiran Title: #3515: [Backport][ipa-4-8] Change RA agent certificate profile to caSubsystemCert Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3515/head:

[Freeipa-devel] [freeipa PR#3500][closed] Change RA agent certificate profile to caSubsystemCert

2019-08-08 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3500 Author: abbra Title: #3500: Change RA agent certificate profile to caSubsystemCert Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3500/head:pr3500 git checkout p

[Freeipa-devel] [freeipa PR#3515][opened] [Backport][ipa-4-8] Change RA agent certificate profile to caSubsystemCert

2019-08-08 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3515 Author: tiran Title: #3515: [Backport][ipa-4-8] Change RA agent certificate profile to caSubsystemCert Action: opened PR body: """ This PR was opened automatically because PR #3500 was pushed to master and backport to ipa-4-8 is required. """

[Freeipa-devel] [freeipa PR#3506][closed] [Backport][ipa-4-8] Test external CA with DNS name constraints

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3506 Author: tiran Title: #3506: [Backport][ipa-4-8] Test external CA with DNS name constraints Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3506/head:pr3506 git ch

[Freeipa-devel] [freeipa PR#3510][closed] [Backport][ipa-4-8] configure.ac: don't rely on bashisms

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3510 Author: tiran Title: #3510: [Backport][ipa-4-8] configure.ac: don't rely on bashisms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3510/head:pr3510 git checkout

[Freeipa-devel] [freeipa PR#3512][closed] [Backport][ipa-4-6] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3512 Author: tiran Title: #3512: [Backport][ipa-4-6] Don't return SSH keys with ipa host-find --pkey-only Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3512/head:pr

[Freeipa-devel] [freeipa PR#3513][closed] [Backport][ipa-4-8] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3513 Author: tiran Title: #3513: [Backport][ipa-4-8] Don't return SSH keys with ipa host-find --pkey-only Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3513/head:pr

[Freeipa-devel] [freeipa PR#3511][closed] [Backport][ipa-4-7] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3511 Author: tiran Title: #3511: [Backport][ipa-4-7] Don't return SSH keys with ipa host-find --pkey-only Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3511/head:pr

[Freeipa-devel] [freeipa PR#3512][opened] [Backport][ipa-4-6] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3512 Author: tiran Title: #3512: [Backport][ipa-4-6] Don't return SSH keys with ipa host-find --pkey-only Action: opened PR body: """ This PR was opened automatically because PR #3489 was pushed to master and backport to ipa-4-6 is required. """

[Freeipa-devel] [freeipa PR#3511][opened] [Backport][ipa-4-7] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3511 Author: tiran Title: #3511: [Backport][ipa-4-7] Don't return SSH keys with ipa host-find --pkey-only Action: opened PR body: """ This PR was opened automatically because PR #3489 was pushed to master and backport to ipa-4-7 is required. """

[Freeipa-devel] [freeipa PR#3513][opened] [Backport][ipa-4-8] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3513 Author: tiran Title: #3513: [Backport][ipa-4-8] Don't return SSH keys with ipa host-find --pkey-only Action: opened PR body: """ This PR was opened automatically because PR #3489 was pushed to master and backport to ipa-4-8 is required. """

[Freeipa-devel] [freeipa PR#3489][closed] Don't return SSH keys with ipa host-find --pkey-only

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3489 Author: rcritten Title: #3489: Don't return SSH keys with ipa host-find --pkey-only Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3489/head:pr3489 git checkout

[Freeipa-devel] [freeipa PR#3510][opened] [Backport][ipa-4-8] configure.ac: don't rely on bashisms

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3510 Author: tiran Title: #3510: [Backport][ipa-4-8] configure.ac: don't rely on bashisms Action: opened PR body: """ This PR was opened automatically because PR #3485 was pushed to master and backport to ipa-4-8 is required. """ To pull the PR as

[Freeipa-devel] [freeipa PR#3485][closed] configure.ac: don't rely on bashisms

2019-08-07 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3485 Author: hermannch Title: #3485: configure.ac: don't rely on bashisms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3485/head:pr3485 git checkout pr3485

[Freeipa-devel] [freeipa PR#3504][closed] [Backport][ipa-4-8] Fix UnboundLocalError in ipa-replica-manage on errors

2019-08-06 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3504 Author: tiran Title: #3504: [Backport][ipa-4-8] Fix UnboundLocalError in ipa-replica-manage on errors Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3504/head:p

[Freeipa-devel] [freeipa PR#3503][closed] [Backport][ipa-4-7] Fix UnboundLocalError in ipa-replica-manage on errors

2019-08-06 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3503 Author: tiran Title: #3503: [Backport][ipa-4-7] Fix UnboundLocalError in ipa-replica-manage on errors Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3503/head:p

[Freeipa-devel] [freeipa PR#3506][opened] [Backport][ipa-4-8] Test external CA with DNS name constraints

2019-08-06 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3506 Author: tiran Title: #3506: [Backport][ipa-4-8] Test external CA with DNS name constraints Action: opened PR body: """ This PR was opened automatically because PR #3505 was pushed to master and backport to ipa-4-8 is required. """ To pull the

[Freeipa-devel] [freeipa PR#3505][closed] Test external CA with DNS name constraints

2019-08-06 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3505 Author: tiran Title: #3505: Test external CA with DNS name constraints Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3505/head:pr3505 git checkout pr3505 __

[Freeipa-devel] [freeipa PR#3505][opened] Test external CA with DNS name constraints

2019-08-06 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3505 Author: tiran Title: #3505: Test external CA with DNS name constraints Action: opened PR body: """ Verify that FreeIPA can be installed with an external CA that has a name constraints extension. Signed-off-by: Christian Heimes """ To pull th

[Freeipa-devel] [freeipa PR#3504][opened] [Backport][ipa-4-8] Fix UnboundLocalError in ipa-replica-manage on errors

2019-08-05 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3504 Author: tiran Title: #3504: [Backport][ipa-4-8] Fix UnboundLocalError in ipa-replica-manage on errors Action: opened PR body: """ This PR was opened automatically because PR #3501 was pushed to master and backport to ipa-4-8 is required. """

[Freeipa-devel] [freeipa PR#3503][opened] [Backport][ipa-4-7] Fix UnboundLocalError in ipa-replica-manage on errors

2019-08-05 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3503 Author: tiran Title: #3503: [Backport][ipa-4-7] Fix UnboundLocalError in ipa-replica-manage on errors Action: opened PR body: """ This PR was opened automatically because PR #3501 was pushed to master and backport to ipa-4-7 is required. """

[Freeipa-devel] [freeipa PR#3501][closed] Fix UnboundLocalError in ipa-replica-manage on errors

2019-08-05 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3501 Author: rcritten Title: #3501: Fix UnboundLocalError in ipa-replica-manage on errors Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3501/head:pr3501 git checkout

[Freeipa-devel] [freeipa PR#3465][opened] [Backport][ipa-4-8] test_xmlrpc: fix TestAutomemberFindOrphans.test_find_orphan_automembe…

2019-07-30 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3465 Author: tiran Title: #3465: [Backport][ipa-4-8] test_xmlrpc: fix TestAutomemberFindOrphans.test_find_orphan_automembe… Action: opened PR body: """ This PR was opened automatically because PR #3413 was pushed to master and backport to ipa-4-8

[Freeipa-devel] [freeipa PR#3413][closed] test_xmlrpc: fix TestAutomemberFindOrphans.test_find_orphan_automembe…

2019-07-30 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3413 Author: flo-renaud Title: #3413: test_xmlrpc: fix TestAutomemberFindOrphans.test_find_orphan_automembe… Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3413/head

[Freeipa-devel] [freeipa PR#3428][opened] Add PKCS#11 module name to p11helper errors

2019-07-22 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3428 Author: tiran Title: #3428: Add PKCS#11 module name to p11helper errors Action: opened PR body: """ The p11helper module now includes the name of the PKCS#11 shared library in error messages. Fixes: https://pagure.io/freeipa/issue/8015 Co-Auth

[Freeipa-devel] [freeipa PR#3367][closed] [Backport][ipa-4-8] Use nis-domainname.service on all RH platforms

2019-07-04 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3367 Author: flo-renaud Title: #3367: [Backport][ipa-4-8] Use nis-domainname.service on all RH platforms Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3367/head:pr3

[Freeipa-devel] [freeipa PR#3364][opened] Use nis-domainname.service on all RH platforms

2019-07-03 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3364 Author: tiran Title: #3364: Use nis-domainname.service on all RH platforms Action: opened PR body: """ RHEL 8 and Fedora >= 29 use "nis-domainname.service" as service name for domainname service. Remove special code in ipaplatform.rhel and for

[Freeipa-devel] [freeipa PR#3343][closed] Make dnf more robust and faster

2019-07-02 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3343 Author: fcami Title: #3343: Make dnf more robust and faster Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3343/head:pr3343 git checkout pr3343 _

[Freeipa-devel] [freeipa PR#3363][closed] prci: fix nightly_master test definitions

2019-07-02 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3363 Author: netoarmando Title: #3363: prci: fix nightly_master test definitions Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3363/head:pr3363 git checkout pr3363 _

[Freeipa-devel] [freeipa PR#3360][closed] Use system-wide crypto policy for TLS ciphers

2019-07-02 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3360 Author: tiran Title: #3360: Use system-wide crypto policy for TLS ciphers Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3360/head:pr3360 git checkout pr3360 ___

[Freeipa-devel] [freeipa PR#3360][opened] Use system-wide crypto policy for TLS ciphers

2019-07-02 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3360 Author: tiran Title: #3360: Use system-wide crypto policy for TLS ciphers Action: opened PR body: """ IPA now uses the system-wide crypto policy for TLS ciphers on RHEL. It's also now possible to keep the default policy by setting TLS_HIGH_CIPH

[Freeipa-devel] [freeipa PR#3350][closed] Use only TLS 1.2 by default

2019-07-01 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3350 Author: tiran Title: #3350: Use only TLS 1.2 by default Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3350/head:pr3350 git checkout pr3350 _

[Freeipa-devel] [freeipa PR#3355][opened] [Backport][ipa-4-7] Use only TLS 1.2 by default

2019-07-01 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3355 Author: tiran Title: #3355: [Backport][ipa-4-7] Use only TLS 1.2 by default Action: opened PR body: """ This PR was opened automatically because PR #3350 was pushed to master and backport to ipa-4-7 is required. """ To pull the PR as Git bran

[Freeipa-devel] [freeipa PR#3350][opened] Use only TLS 1.2 by default

2019-07-01 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3350 Author: tiran Title: #3350: Use only TLS 1.2 by default Action: opened PR body: """ TLS 1.3 is causing some trouble with client cert authentication. Conditional client cert authentication requires post-handshake authentication extension on TLS

[Freeipa-devel] [freeipa PR#3319][closed] [Backport][ipa-4-7] adtrust upgrade: fix wrong primary principal name

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3319 Author: tiran Title: #3319: [Backport][ipa-4-7] adtrust upgrade: fix wrong primary principal name Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3319/head:pr331

[Freeipa-devel] [freeipa PR#3318][closed] [Backport][ipa-4-6] adtrust upgrade: fix wrong primary principal name

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3318 Author: tiran Title: #3318: [Backport][ipa-4-6] adtrust upgrade: fix wrong primary principal name Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3318/head:pr331

[Freeipa-devel] [freeipa PR#3320][opened] [Backport][ipa-4-7] ipa-client-automount: fix '--idmap-domain DNS' logic

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3320 Author: tiran Title: #3320: [Backport][ipa-4-7] ipa-client-automount: fix '--idmap-domain DNS' logic Action: opened PR body: """ This PR was opened automatically because PR #3300 was pushed to master and backport to ipa-4-7 is required. """

[Freeipa-devel] [freeipa PR#3300][closed] ipa-client-automount: fix '--idmap-domain DNS' logic

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3300 Author: fcami Title: #3300: ipa-client-automount: fix '--idmap-domain DNS' logic Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3300/head:pr3300 git checkout pr3

[Freeipa-devel] [freeipa PR#3318][opened] [Backport][ipa-4-6] adtrust upgrade: fix wrong primary principal name

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3318 Author: tiran Title: #3318: [Backport][ipa-4-6] adtrust upgrade: fix wrong primary principal name Action: opened PR body: """ This PR was opened automatically because PR #3312 was pushed to master and backport to ipa-4-6 is required. """ To

[Freeipa-devel] [freeipa PR#3312][closed] adtrust upgrade: fix wrong primary principal name

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3312 Author: abbra Title: #3312: adtrust upgrade: fix wrong primary principal name Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3312/head:pr3312 git checkout pr3312

[Freeipa-devel] [freeipa PR#3319][opened] [Backport][ipa-4-7] adtrust upgrade: fix wrong primary principal name

2019-06-26 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3319 Author: tiran Title: #3319: [Backport][ipa-4-7] adtrust upgrade: fix wrong primary principal name Action: opened PR body: """ This PR was opened automatically because PR #3312 was pushed to master and backport to ipa-4-7 is required. """ To

[Freeipa-devel] [freeipa PR#3305][closed] [Backport][ipa-4-7] Replace PYTHONSHEBANG with valid shebang

2019-06-25 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3305 Author: tiran Title: #3305: [Backport][ipa-4-7] Replace PYTHONSHEBANG with valid shebang Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3305/head:pr3305 git chec

[Freeipa-devel] [freeipa PR#3306][closed] [Backport][ipa-4-7] Increase default debug level of certmonger

2019-06-25 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3306 Author: tiran Title: #3306: [Backport][ipa-4-7] Increase default debug level of certmonger Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3306/head:pr3306 git ch

[Freeipa-devel] [freeipa PR#3309][closed] [Backport][ipa-4-7] Log the raised message when DNS check_zone_overlap fails

2019-06-25 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3309 Author: tiran Title: #3309: [Backport][ipa-4-7] Log the raised message when DNS check_zone_overlap fails Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3309/hea

[Freeipa-devel] [freeipa PR#3297][closed] Log the raised message when DNS check_zone_overlap fails

2019-06-24 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3297 Author: rcritten Title: #3297: Log the raised message when DNS check_zone_overlap fails Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/3297/head:pr3297 git check

[Freeipa-devel] [freeipa PR#3309][opened] [Backport][ipa-4-7] Log the raised message when DNS check_zone_overlap fails

2019-06-24 Thread tiran via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/3309 Author: tiran Title: #3309: [Backport][ipa-4-7] Log the raised message when DNS check_zone_overlap fails Action: opened PR body: """ This PR was opened automatically because PR #3297 was pushed to master and backport to ipa-4-7 is required. "

<    1   2   3   4   5   6   7   8   9   10   >