On Fri, 2011-09-16 at 17:24 -0400, Rob Crittenden wrote:
JR Aquino wrote:
On Sep 14, 2011, at 1:39 PM, Rob Crittenden wrote:
Suppress managed netgroups as indirect members of hosts. This enhances a
previous patch that I did for hostgroups.
rob
Works as advertised:
ACK
On 16.9.2011 21:16, Rob Crittenden wrote:
Prompt for the current password when changing your own password using
ipa passwd.
I had to jump through several hoops with this:
- Added a new sortorder option so the Current password is prompted first
IMO something like before='password' would be
https://fedorahosted.org/freeipa/ticket/1804
--
Jan Cholasta
From b85259f0e2850226fcb4ca7cc113c2ddaf224bec Mon Sep 17 00:00:00 2001
From: Jan Cholasta jchol...@redhat.com
Date: Mon, 19 Sep 2011 11:41:31 +0200
Subject: [PATCH] Fix client install on IPv6 machines.
ticket 1804
---
On 09/16/2011 10:25 AM, Alexander Bokovoy wrote:
On Fri, 16 Sep 2011, JR Aquino wrote:
On Sep 16, 2011, at 4:41 AM, Alexander Bokovoy aboko...@redhat.com wrote:
Can't we have a shortcut that allows to specify only name of the
managed entry and we will expand it to full DN? Current approach is
Jan Cholasta wrote:
On 16.9.2011 21:16, Rob Crittenden wrote:
Prompt for the current password when changing your own password using
ipa passwd.
I had to jump through several hoops with this:
- Added a new sortorder option so the Current password is prompted first
IMO something like
Changing passwords would not properly set expiration date with the new
ipa-kdb code.
Patches fixes this.
Simo.
--
Simo Sorce * Red Hat, Inc * New York
From 35d94f9f9f354b8c47f4ba48c0a8b37e72b58a81 Mon Sep 17 00:00:00 2001
From: Simo Sorce sso...@redhat.com
Date: Sat, 17 Sep 2011 15:08:06 -0400
Hi,
while testing the creation of trust objects I found a typo in the ACI
allowing to read the NT hash and realized that an ACI was missing to
allow the samba user to add and modify the trust objects. The attached
patch should fix it.
bye,
Sumit
From 6f5adfcd4e4f176230abd48bd8aa8847a2add20a Mon
Hi,
this patch updates the samba LDAP schema to the latest version
available. I think the next change to this file will be removing it
because Simo is working on new objectclasses for IPA which will replace
the ones from the samba schema. But for the time being the samba's IPA
passdb backend
On Mon, 2011-09-19 at 11:52 +0200, Jan Cholasta wrote:
https://fedorahosted.org/freeipa/ticket/1804
ACK. Works fine. Now I was able to enroll client to host in an IPv6-only
environment.
Pushed to master, ipa-2-1.
Martin
___
Freeipa-devel mailing
httplib makes a copy of the nss file descriptor but doesn't close it
when the response code != 200 so we need to close it ourselves.
rob
From 20cc6f5bbb77e6f905cb4607e8d95f092e886d81 Mon Sep 17 00:00:00 2001
From: Rob Crittenden rcrit...@redhat.com
Date: Mon, 19 Sep 2011 17:26:36 -0400
Subject:
Today I found another regression in the kpasswd password change path.
I filed ticket #1820
Legacy password hashes were not generated due to an issue with the list
of attributes being searched in ipadb_get_principal(), objectclass was
missing.
This patch fixes it.
Simo.
--
Simo Sorce * Red
On Mon, 19 Sep 2011, Rob Crittenden wrote:
According to the SELinux devs the return value from restorecon does
not necessarily reflect success/failure and recommended ignoring it.
This does that.
ACK. I was about to submit similar but stuck with systemd port and
forgot it. :)
--
/ Alexander
The IPA.association_adder_dialog has been modified to use an exclusion
list to hide entries that are already enrolled.
The IPA.adder_dialog has been modified to store the columns directly
in the available selected tables.
Ticket #1797
--
Endi S. Dewata
From
We're having significant reproducible problems with rhel 5.7 + FreeIPA master...
I'm not sure if it is localized to us or even which side is responsible for the
error...
Has anyone had success with rhel 5.7's repo included FreeIPA client joining a
fedora based FreeIPA server?
We are
14 matches
Mail list logo