[Freeipa-devel] [freeipa PR#862][synchronized] dnsserver.py: dnsserver-find no longer returns internal server error

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/862 Author: Tiboris Title: #862: dnsserver.py: dnsserver-find no longer returns internal server error Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa

[Freeipa-devel] [freeipa PR#862][opened] dnsserver.py: dnsserver-find no longer returns internal server error

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/862 Author: Tiboris Title: #862: dnsserver.py: dnsserver-find no longer returns internal server error Action: opened PR body: """ Invocation of the ipa dnsserver-find command failed with internal server error when there is no DNS server in

[Freeipa-devel] [freeipa PR#862][comment] dnsserver.py: dnsserver-find no longer returns internal server error

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/862 Title: #862: dnsserver.py: dnsserver-find no longer returns internal server error MartinBasti commented: """ LGTM """ See the full comment at https://github.com/freeipa/freeipa/pull/862#issuecomment-306849641

[Freeipa-devel] [freeipa PR#848][+ack] sssd.py: Deprecating no-sssd option.

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/848 Title: #848: sssd.py: Deprecating no-sssd option. Label: +ack ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#856][+py3] adtrustinstance: fix a bug + pep8, py3 fixes

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/856 Title: #856: adtrustinstance: fix a bug + pep8, py3 fixes Label: +py3 ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#842][+ack] Changed ownership of ldiffile to DS_USER

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/842 Title: #842: Changed ownership of ldiffile to DS_USER Label: +ack ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#846][synchronized] Travis: Add tox tests

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/846 Author: MartinBasti Title: #846: Travis: Add tox tests Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/846/head:pr846 git checkout pr846 From

[Freeipa-devel] [freeipa PR#854][comment] RFC: server-side smart card auth advise plugin

2017-06-07 Thread abbra via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/854 Title: #854: RFC: server-side smart card auth advise plugin abbra commented: """ Yes, I'm not asking you to implement these improvements as part of this PR. That's fine to be done in a separate effort. """ See the full comment at

[Freeipa-devel] [freeipa PR#853][comment] x509,certdb: handle certificates as bytes

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/853 Title: #853: x509,certdb: handle certificates as bytes stlaz commented: """ Added a potential fixup to the tests to see whether they'd pass. It's not supposed to be pushed since it either proves that this PR should be worked on more thoroughly.

[Freeipa-devel] [freeipa PR#857][edited] baseldap.py: Removes dns-server configuration from ldap

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/857 Author: Tiboris Title: #857: baseldap.py: Removes dns-server configuration from ldap Action: edited Changed field: body Original value: """ After invocation of the ipa server-del command there was still record in ldap if DNS was installed on

[Freeipa-devel] [freeipa PR#857][comment] baseldap.py: Removes dns-server configuration from ldap

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/857 Title: #857: baseldap.py: Removes dns-server configuration from ldap MartinBasti commented: """ NACK Please create a new method `_cleanup_server_dns_config` because this patch unrelated to DNS records but it is for DNS configuration per server.

[Freeipa-devel] [freeipa PR#857][synchronized] baseldap.py: Removes dns-server configuration from ldap

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/857 Author: Tiboris Title: #857: baseldap.py: Removes dns-server configuration from ldap Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/857/head:pr857 git

[Freeipa-devel] [freeipa PR#858][synchronized] Bumb version of python-gssapi

2017-06-07 Thread pvomacka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/858 Author: pvomacka Title: #858: Bumb version of python-gssapi Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/858/head:pr858 git checkout pr858 From

[Freeipa-devel] [freeipa PR#848][comment] sssd.py: Deprecating no-sssd option.

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/848 Title: #848: sssd.py: Deprecating no-sssd option. Tiboris commented: """ Done. """ See the full comment at https://github.com/freeipa/freeipa/pull/848#issuecomment-306729907 ___ FreeIPA-devel mailing

[Freeipa-devel] [freeipa PR#855][synchronized] Prevent issues with older clients

2017-06-07 Thread simo5 via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Author: simo5 Title: #855: Prevent issues with older clients Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/855/head:pr855 git checkout pr855 From

[Freeipa-devel] [freeipa PR#853][synchronized] x509,certdb: handle certificates as bytes

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/853 Author: stlaz Title: #853: x509,certdb: handle certificates as bytes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/853/head:pr853 git checkout pr853 From

[Freeipa-devel] [freeipa PR#855][+prioritized] Prevent issues with older clients

2017-06-07 Thread pvoborni via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients Label: +prioritized ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#857][edited] baseldap.py: Removes dns-server configuration from ldap

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/857 Author: Tiboris Title: #857: baseldap.py: Removes dns-server configuration from ldap Action: edited Changed field: body Original value: """ After invocation of the ipa server-del `` command there was still record in ldap if DNS was installed

[Freeipa-devel] [freeipa PR#855][comment] Prevent issues with older clients

2017-06-07 Thread simo5 via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients simo5 commented: """ Change to used the correct bug number: https://pagure.io/freeipa/issue/7001 """ See the full comment at https://github.com/freeipa/freeipa/pull/855#issuecomment-306741024

[Freeipa-devel] [freeipa PR#857][synchronized] baseldap.py: Removes dns-server configuration from ldap

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/857 Author: Tiboris Title: #857: baseldap.py: Removes dns-server configuration from ldap Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/857/head:pr857 git

[Freeipa-devel] [freeipa PR#858][edited] Bump version of python-gssapi

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/858 Author: pvomacka Title: #858: Bump version of python-gssapi Action: edited Changed field: title Original value: """ Bumb version of python-gssapi """ ___ FreeIPA-devel mailing list --

[Freeipa-devel] [freeipa PR#855][comment] Prevent issues with older clients

2017-06-07 Thread pvoborni via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients pvoborni commented: """ @MartinBasti is the correct way how to solve this pylint issue to extend pylint_plugins.py? snippet. of similar vars: ```python fake_api_env = {'env': [ 'host',

[Freeipa-devel] [freeipa PR#855][comment] Prevent issues with older clients

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients MartinBasti commented: """ @pvoborni yes, this is the way how to handle false positive missing members in pylint """ See the full comment at

[Freeipa-devel] [freeipa PR#856][comment] adtrustinstance: fix a bug + pep8, py3 fixes

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/856 Title: #856: adtrustinstance: fix a bug + pep8, py3 fixes stlaz commented: """ This PR now depends on https://github.com/freeipa/freeipa/pull/860. """ See the full comment at https://github.com/freeipa/freeipa/pull/856#issuecomment-306752314

[Freeipa-devel] [freeipa PR#860][opened] adtrustinstance: fix ID range comparison

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/860 Author: stlaz Title: #860: adtrustinstance: fix ID range comparison Action: opened PR body: """ The ID range comparison was comparing numbers to a string or possibly to `None` and was tailored in such a way that the check would always pass

[Freeipa-devel] [freeipa PR#856][synchronized] adtrustinstance: fix a bug + pep8, py3 fixes

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/856 Author: stlaz Title: #856: adtrustinstance: fix a bug + pep8, py3 fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/856/head:pr856 git checkout pr856

[Freeipa-devel] [freeipa PR#855][comment] Prevent issues with older clients

2017-06-07 Thread abbra via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients abbra commented: """ Looks like pylint is unhappy with such definitions. For most of other options from default.conf we have them explicitly set in `Env._bootstrap()`. """ See the full comment at

[Freeipa-devel] [freeipa PR#841][+ack] ipa-kdb: use canonical principal in certauth plugin

2017-06-07 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin Label: +ack ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#841][comment] ipa-kdb: use canonical principal in certauth plugin

2017-06-07 Thread dkupka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin dkupka commented: """ Works for me. """ See the full comment at https://github.com/freeipa/freeipa/pull/841#issuecomment-306743729 ___

[Freeipa-devel] [freeipa PR#859][comment] Add CommonNameToSANDefault to default cert profile

2017-06-07 Thread frasertweedale via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/859 Title: #859: Add CommonNameToSANDefault to default cert profile frasertweedale commented: """ COPR with 10.4 builds: https://copr.fedorainfracloud.org/coprs/mharmsen/Dogtag-10.4.0/packages/ pki-core 10.4 builds should be added to the

[Freeipa-devel] [freeipa PR#859][synchronized] Add CommonNameToSANDefault to default cert profile

2017-06-07 Thread frasertweedale via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/859 Author: frasertweedale Title: #859: Add CommonNameToSANDefault to default cert profile Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/859/head:pr859 git

[Freeipa-devel] [freeipa PR#857][synchronized] baseldap.py: Removes dns-server configuration from ldap

2017-06-07 Thread Tiboris via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/857 Author: Tiboris Title: #857: baseldap.py: Removes dns-server configuration from ldap Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/857/head:pr857 git

[Freeipa-devel] [freeipa PR#859][opened] Add CommonNameToSANDefault to default cert profile

2017-06-07 Thread frasertweedale via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/859 Author: frasertweedale Title: #859: Add CommonNameToSANDefault to default cert profile Action: opened PR body: """ The CommonNameToSANDefault component was added to Dogtag 10.4. When a profile is configured to use it, this profile copies the

[Freeipa-devel] [freeipa PR#856][edited] adtrustinstance: pep8, py3 fixes

2017-06-07 Thread stlaz via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/856 Author: stlaz Title: #856: adtrustinstance: pep8, py3 fixes Action: edited Changed field: title Original value: """ adtrustinstance: fix a bug + pep8, py3 fixes """ ___ FreeIPA-devel mailing list --

[Freeipa-devel] [freeipa PR#859][comment] Add CommonNameToSANDefault to default cert profile

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/859 Title: #859: Add CommonNameToSANDefault to default cert profile MartinBasti commented: """ How are upgrades of cert profile handled? (if they are needed) """ See the full comment at

[Freeipa-devel] [freeipa PR#859][comment] Add CommonNameToSANDefault to default cert profile

2017-06-07 Thread frasertweedale via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/859 Title: #859: Add CommonNameToSANDefault to default cert profile frasertweedale commented: """ Latest pki 10.4 builds are in this COPR: https://copr.fedorainfracloud.org/coprs/g/pki/10.4/packages/ """ See the full comment at

[Freeipa-devel] add Dogtag 10.4 builds to FreeIPA COPRs

2017-06-07 Thread Fraser Tweedale via FreeIPA-devel
My PR https://github.com/freeipa/freeipa/pull/859 bumps the pki-core dependency to >= 10.4. This patch is intended for master and 4.5 branches. Could someone with the needed permissions please add pki-core 10.4 builds for f25 and f26 to the @freeipa/freeipa-master and @freeipa/freeipa-4.5 COPRs?

[Freeipa-devel] [freeipa PR#854][comment] RFC: server-side smart card auth advise plugin

2017-06-07 Thread martbab via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/854 Title: #854: RFC: server-side smart card auth advise plugin martbab commented: """ @flo thanks for your input, I will rework the PR tomorrow. """ See the full comment at https://github.com/freeipa/freeipa/pull/854#issuecomment-306811993

[Freeipa-devel] [freeipa PR#855][+ack] Prevent issues with older clients

2017-06-07 Thread pvomacka via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients Label: +ack ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#855][+pushed] Prevent issues with older clients

2017-06-07 Thread MartinBasti via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/855 Title: #855: Prevent issues with older clients Label: +pushed ___ FreeIPA-devel mailing list -- freeipa-devel@lists.fedorahosted.org To unsubscribe send an email to

[Freeipa-devel] [freeipa PR#854][comment] RFC: server-side smart card auth advise plugin

2017-06-07 Thread flo-renaud via FreeIPA-devel
URL: https://github.com/freeipa/freeipa/pull/854 Title: #854: RFC: server-side smart card auth advise plugin flo-renaud commented: """ Hi @martbab thank you for the patch. Works great! We could also enhance the script: - check that it is run by the root user - to enable NSSOCP, the regex does