This patch wraps exception messages in _()
https://fedorahosted.org/freeipa/ticket/2267
--
PetrĀ³
From ef61ff93af13e46400e9bff22586b6f9e0d0a63a Mon Sep 17 00:00:00 2001
From: Petr Viktorin pvikt...@redhat.com
Date: Fri, 10 Feb 2012 05:27:24 -0500
Subject: [PATCH] Internationalize HBAC rule all
On Tue, 14 Feb 2012, Petr Viktorin wrote:
This patch wraps exception messages in _()
https://fedorahosted.org/freeipa/ticket/2267
ACK.
I was looking at hbactest and there are also some
non-internationalized messages returned. Maybe you could combine them
together with a slightly updated
On Tue, 2012-02-14 at 12:09 +0100, Martin Kosek wrote:
A new version of bind-dyndb-ldap has been released, sending fixed
patches with the following major changes:
- Since bind-dyndb-ldap supports only idnsForwarders global option at
this time, all other global options were removed from the
The following 2 patches are need to have a functioning kdc.
Without them building against krb5 1.10 produces a ipadb.so module that
fails to load due to missing symbols leaving kadmin.local and krb5kdc
without a database.
The reason this happens is that during development of this code MIT had
Without this function the audit counters (krbLastFailedAuth,
krbLastSuccessfulAuth, krbLoginFailedCount) are not updated causing a
regression.
This function updates the counters unconditionally upon
successful/failed authentication (only if pre-auth is used which is the
default in FreeIPA).
A
We were unconditionally searching the LDAP database to find the
principal on modification.
By using the stored entry_dn when available we avoid a costly round-trip
to the LDAP server just to save back some modified attributes.
This is an important performance improvement for the KDC given now we
On 02/14/2012 08:11 AM, Endi Sukma Dewata wrote:
On 2/9/2012 7:57 AM, Petr Vobornik wrote:
Address column in A, DNS records was extended by redirection
capabilities.
Redirection dialog is shown after a click on a value.
Dialog does following steps:
1) fetch all dns zones
2) find most
Due to an idiosyncrasy of kadmin, the right flag to indicate
krbLastPwdChange is changed is not set. The previous check ended up
always saving the data in all cases because the data was always present.
Restrict it to store a password change when there is actually new key
material.
This prevents
Simo Sorce wrote:
On Tue, 2012-02-14 at 12:09 +0100, Martin Kosek wrote:
A new version of bind-dyndb-ldap has been released, sending fixed
patches with the following major changes:
- Since bind-dyndb-ldap supports only idnsForwarders global option at
this time, all other global options were
On Tue, 2012-02-14 at 09:10 -0500, Rob Crittenden wrote:
Simo Sorce wrote:
On Tue, 2012-02-14 at 12:09 +0100, Martin Kosek wrote:
A new version of bind-dyndb-ldap has been released, sending fixed
patches with the following major changes:
- Since bind-dyndb-ldap supports only
On 02/14/2012 10:49 AM, Alexander Bokovoy wrote:
On Tue, 14 Feb 2012, Petr Viktorin wrote:
This patch wraps exception messages in _()
https://fedorahosted.org/freeipa/ticket/2267
ACK.
I was looking at hbactest and there are also some
non-internationalized messages returned. Maybe you could
On 2/9/2012 7:59 AM, Petr Vobornik wrote:
Problem:
Entity link (eg: to hosts in dns record or to dns record in host) is not
changing its state when linked record doesn't exist. The link can remain
wrongly enabled from previous state.
Fixed:
The link is disabled when target doesn't exist.
On 2/10/2012 11:35 AM, Petr Vobornik wrote:
In user group adder dialog, the Is this a POSIX group? was replaced
with POSIX group.
In host search facet, the Enrolled? was replaced with Enrolled.
https://fedorahosted.org/freeipa/ticket/2353
ACK. Pushed to master and ipa-2-2.
--
Endi S. Dewata
Simo Sorce wrote:
Without this function the audit counters (krbLastFailedAuth,
krbLastSuccessfulAuth, krbLoginFailedCount) are not updated causing a
regression.
This function updates the counters unconditionally upon
successful/failed authentication (only if pre-auth is used which is the
On 2/14/2012 8:01 AM, Petr Vobornik wrote:
1. After redirection the breadcrumb doesn't link to the correct zone.
Try this:
a) Open the details page of an A record.
b) Click the IP address (create the PTR record if necessary), it will
show the PTR record.
c) Click the reverse zone in the
On Tue, 14 Feb 2012, Petr Viktorin wrote:
On 02/14/2012 10:49 AM, Alexander Bokovoy wrote:
On Tue, 14 Feb 2012, Petr Viktorin wrote:
This patch wraps exception messages in _()
https://fedorahosted.org/freeipa/ticket/2267
ACK.
I was looking at hbactest and there are also some
On 7.2.2012 20:25, Rob Crittenden wrote:
Rob Crittenden wrote:
Jan Cholasta wrote:
Dne 7.2.2012 09:27, Martin Kosek napsal(a):
On Mon, 2012-02-06 at 11:52 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
On Fri, 2012-02-03 at 16:58 -0500, Rob Crittenden wrote:
There is some validation that
On 14.2.2012 16:44, Jan Cholasta wrote:
On 7.2.2012 20:25, Rob Crittenden wrote:
Rob Crittenden wrote:
Jan Cholasta wrote:
Dne 7.2.2012 09:27, Martin Kosek napsal(a):
On Mon, 2012-02-06 at 11:52 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
On Fri, 2012-02-03 at 16:58 -0500, Rob
On 10.2.2012 16:42, Martin Kosek wrote:
On Tue, 2012-02-07 at 16:26 +0100, Martin Kosek wrote:
On Mon, 2012-02-06 at 15:56 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
On Mon, 2012-01-30 at 11:52 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
Adding reverse DNS record may be a time
On Tue, 2012-02-14 at 10:22 -0500, Rob Crittenden wrote:
Simo Sorce wrote:
Without this function the audit counters (krbLastFailedAuth,
krbLastSuccessfulAuth, krbLoginFailedCount) are not updated causing a
regression.
This function updates the counters unconditionally upon
On Tue, 2012-02-14 at 16:52 +0100, Jan Cholasta wrote:
On 10.2.2012 16:42, Martin Kosek wrote:
On Tue, 2012-02-07 at 16:26 +0100, Martin Kosek wrote:
On Mon, 2012-02-06 at 15:56 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
On Mon, 2012-01-30 at 11:52 -0500, Rob Crittenden wrote:
On 2/9/2012 8:32 AM, John Dennis wrote:
Currently when the UI is loaded for the first time it will execute an
ipa_init operation which consists of:
1. Loading I18 messages.
2. Getting user info (whoami).
3. Loading environment variables.
4. Checking whether DNS is enabled.
5. Loading objects
On Tue, 2012-02-14 at 17:37 +0200, Alexander Bokovoy wrote:
On Tue, 14 Feb 2012, Petr Viktorin wrote:
On 02/14/2012 10:49 AM, Alexander Bokovoy wrote:
On Tue, 14 Feb 2012, Petr Viktorin wrote:
This patch wraps exception messages in _()
https://fedorahosted.org/freeipa/ticket/2267
On Thu, 2012-02-09 at 18:18 +0100, Jan Cholasta wrote:
On 8.2.2012 16:35, Rob Crittenden wrote:
Jan Cholasta wrote:
Patch 62: need a failsafe to remove CCACHE_FILE in case something goes
wrong. I should note too that this won't work on platforms prior to
Python 2.6 (RHEL-5 is one). This
On Mon, 2012-02-13 at 11:43 -0500, Rob Crittenden wrote:
Remove quotes around a value in 30-s4u2proxy.update. The update was
failing to apply.
I also noticed that FQDN wasn't being set properly in all cases in
sub_dict. This should fix it.
rob
This patch did not apply for me. I guess
Simo Sorce wrote:
On Tue, 2012-02-14 at 10:22 -0500, Rob Crittenden wrote:
Simo Sorce wrote:
Without this function the audit counters (krbLastFailedAuth,
krbLastSuccessfulAuth, krbLoginFailedCount) are not updated causing a
regression.
This function updates the counters unconditionally upon
Martin Kosek wrote:
On Thu, 2012-02-09 at 18:18 +0100, Jan Cholasta wrote:
On 8.2.2012 16:35, Rob Crittenden wrote:
Jan Cholasta wrote:
Patch 62: need a failsafe to remove CCACHE_FILE in case something goes
wrong. I should note too that this won't work on platforms prior to
Python 2.6 (RHEL-5
Martin Kosek wrote:
On Mon, 2012-02-13 at 11:43 -0500, Rob Crittenden wrote:
Remove quotes around a value in 30-s4u2proxy.update. The update was
failing to apply.
I also noticed that FQDN wasn't being set properly in all cases in
sub_dict. This should fix it.
rob
This patch did not apply
Jan Cholasta wrote:
On 14.2.2012 16:44, Jan Cholasta wrote:
On 7.2.2012 20:25, Rob Crittenden wrote:
Rob Crittenden wrote:
Jan Cholasta wrote:
Dne 7.2.2012 09:27, Martin Kosek napsal(a):
On Mon, 2012-02-06 at 11:52 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
On Fri, 2012-02-03 at
On Tue, 2012-02-14 at 15:33 -0500, Rob Crittenden wrote:
Martin Kosek wrote:
On Thu, 2012-02-09 at 18:18 +0100, Jan Cholasta wrote:
On 8.2.2012 16:35, Rob Crittenden wrote:
Jan Cholasta wrote:
Patch 62: need a failsafe to remove CCACHE_FILE in case something goes
wrong. I should note
Rob Crittenden wrote:
The update files were missing for SELinuxUserMap support, this adds them.
Rebased patch
rob
freeipa-rcrit-944-2.selinux.patch
Description: application/mbox
___
Freeipa-devel mailing list
Freeipa-devel@redhat.com
Rob Crittenden wrote:
Rob Crittenden wrote:
The update files were missing for SELinuxUserMap support, this adds them.
Rebased patch
rob
Sorry, sent the wrong patch. Here is the right one.
rob
___
Freeipa-devel mailing list
On Tue, 2012-02-14 at 14:31 -0500, Rob Crittenden wrote:
Simo Sorce wrote:
On Tue, 2012-02-14 at 10:22 -0500, Rob Crittenden wrote:
Simo Sorce wrote:
Without this function the audit counters (krbLastFailedAuth,
krbLastSuccessfulAuth, krbLoginFailedCount) are not updated causing a
33 matches
Mail list logo