[Freeipa-devel] [freeipa PR#785][comment] otptoken-add-yubikey: When --digits not provided use default value

2017-05-16 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/785 Title: #785: otptoken-add-yubikey: When --digits not provided use default value stlaz commented: """ Works for me. """ See the full comment at https://github.com/freeipa/freeipa/pull/785#issuecomment-30170849

[Freeipa-devel] [freeipa PR#785][+ack] otptoken-add-yubikey: When --digits not provided use default value

2017-05-16 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/785 Title: #785: otptoken-add-yubikey: When --digits not provided use default value Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#716][comment] Fix minor typos

2017-05-15 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/716 Title: #716: Fix minor typos stlaz commented: """ I asked today at a meeting and the `ipaclient/remote_plugins/2_*/*.py` changes are fine. If you could possibly change the one small issue, we will finally be able tu push t

[Freeipa-devel] [freeipa PR#758][comment] install: fix CA-less PKINIT

2017-05-15 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/758 Title: #758: install: fix CA-less PKINIT stlaz commented: """ `kinit -n` still fails with my external CA setup. I found out the reason is that I have a self-sign certificate in the trust chain: ``` [36993] 1494834859.113259: PKIN

[Freeipa-devel] [freeipa PR#758][comment] install: fix CA-less PKINIT

2017-05-15 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/758 Title: #758: install: fix CA-less PKINIT stlaz commented: """ `kinit -n` still fails with my setup. I found out the reason is that I have a self-sign certificate in the trust chain: ``` [36993] 1494834859.113259: PKINIT client c

[Freeipa-devel] [freeipa PR#758][comment] install: fix CA-less PKINIT

2017-05-15 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/758 Title: #758: install: fix CA-less PKINIT stlaz commented: """ `kinit -n` still fails with my setup. I found out the reason is that I have a self-sign certificate in the trust chain: ``` [36993] 1494834859.113259: PKINIT client c

[Freeipa-devel] [freeipa PR#783][edited] Provide useful messages during cert validation

2017-05-15 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/783 Author: stlaz Title: #783: Provide useful messages during cert validation Action: edited Changed field: body Original value: """ When the certificate validation was replaced, some error messages were omitted (like "Peer's

[Freeipa-devel] [freeipa PR#783][edited] Provide useful messages during cert validation

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/783 Author: stlaz Title: #783: Provide useful messages during cert validation Action: edited Changed field: body Original value: """ When the certificate verification was replaced, some error messages were omitted (like "Peer's

[Freeipa-devel] [freeipa PR#783][edited] Provide useful messages during cert verification

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/783 Author: stlaz Title: #783: Provide useful messages during cert verification Action: edited Changed field: title Original value: """ Provide useful messages during cert verification """ -- Manage your subs

[Freeipa-devel] [freeipa PR#783][synchronized] Provide useful messages during cert verification

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/783 Author: stlaz Title: #783: Provide useful messages during cert verification Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/783/head:pr783 git checkout

[Freeipa-devel] [freeipa PR#783][synchronized] Provide useful messages during cert verification

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/783 Author: stlaz Title: #783: Provide useful messages during cert verification Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/783/head:pr783 git checkout

[Freeipa-devel] [freeipa PR#757][comment] ca, kra install: validate DM password

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/757 Title: #757: ca, kra install: validate DM password stlaz commented: """ You forgot an import in ipa-ca-install: ``` * Module ipa-ca-install install/tools/ipa-ca-install:37: [W0611(unused-import), ] Unused ScriptError

[Freeipa-devel] [freeipa PR#728][comment] ipa-cacert-manage: add --external-ca-type

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/728 Title: #728: ipa-cacert-manage: add --external-ca-type stlaz commented: """ LGTM """ See the full comment at https://github.com/freeipa/freeipa/pull/728#issuecomment-301043646 -- Manage your subscription for

[Freeipa-devel] [freeipa PR#783][opened] Provide useful messages during cert verification

2017-05-12 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/783 Author: stlaz Title: #783: Provide useful messages during cert verification Action: opened PR body: """ When the certificate verification was replaced, some error messages were omitted (like "Peer's certificate expired.

[Freeipa-devel] [freeipa PR#774][synchronized] Deprecate pkinit-anonymous command

2017-05-10 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/774 Author: stlaz Title: #774: Deprecate pkinit-anonymous command Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/774/head:pr774 git checkout pr774 From

[Freeipa-devel] [freeipa PR#774][synchronized] Deprecate pkinit-anonymous command

2017-05-10 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/774 Author: stlaz Title: #774: Deprecate pkinit-anonymous command Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/774/head:pr774 git checkout pr774 From

[Freeipa-devel] [freeipa PR#761][comment] Fixing adding authenticator indicators to host

2017-05-10 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/761 Title: #761: Fixing adding authenticator indicators to host stlaz commented: """ Yes, that seems to have fixed that. Please do squash them now, I guess we can ACK this ;) """ See the full comment at https://githu

[Freeipa-devel] [freeipa PR#774][opened] Deprecate pkinit-anonymous command

2017-05-10 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/774 Author: stlaz Title: #774: Deprecate pkinit-anonymous command Action: opened PR body: """ Ever since from v4.5, FreeIPA expects at least some kind of anonymous PKINIT to work. Deprecate the command which is capable of turning t

[Freeipa-devel] [freeipa PR#770][+ack] cert-show: writable files does not mean dirs

2017-05-10 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/770 Title: #770: cert-show: writable files does not mean dirs Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#771][synchronized] cert-show: check if certificate_out is in options

2017-05-10 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/771 Author: stlaz Title: #771: cert-show: check if certificate_out is in options Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/771/head:pr771 git checkout

[Freeipa-devel] [freeipa PR#771][opened] cert-show: check if certificate_out is in options

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/771 Author: stlaz Title: #771: cert-show: check if certificate_out is in options Action: opened PR body: """ If --certificate-out was specified on the command line, it will appear among the options. If it was empty, it will be None,

[Freeipa-devel] [freeipa PR#770][opened] cert-show: writable files does not mean dirs

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/770 Author: stlaz Title: #770: cert-show: writable files does not mean dirs Action: opened PR body: """ ipalib.util.check_writable_file didn't check whether the argument is an actual file which is now fixed. https://pagure.io/fre

[Freeipa-devel] [freeipa PR#760][comment] [4.4] Run ipa-custodia under Python 2

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/760 Title: #760: [4.4] Run ipa-custodia under Python 2 stlaz commented: """ Alright, thanks. ACK. """ See the full comment at https://github.com/freeipa/freeipa/pull/760#issuecomment-300146298 -- Manage your subs

[Freeipa-devel] [freeipa PR#760][+ack] [4.4] Run ipa-custodia under Python 2

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/760 Title: #760: [4.4] Run ipa-custodia under Python 2 Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#760][comment] [4.4] Run ipa-custodia under Python 2

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/760 Title: #760: [4.4] Run ipa-custodia under Python 2 stlaz commented: """ Works for me. However, I do not see the reason to do `custodia > 0.2`, please, either provide some or remove it. """ See the full comme

[Freeipa-devel] [freeipa PR#764][comment] Basic uninstaller for the CA

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/764 Title: #764: Basic uninstaller for the CA stlaz commented: """ @pvoborni @rcritten @martbab This discussion at this PR makes no sense. Clearly we can see that the impact is much higher and should be discussed on designated ch

[Freeipa-devel] [freeipa PR#758][comment] install: fix CA-less PKINIT

2017-05-09 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/758 Title: #758: install: fix CA-less PKINIT stlaz commented: """ External CA (rebased on current master to be able to install): ``` $ kinit -n kinit: Invalid certificate while getting initial credentials $ /usr/bin/kinit -n -c /var/

[Freeipa-devel] [freeipa PR#763][edited] Dogtag fail

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/763 Author: stlaz Title: #763: Dogtag fail Action: edited Changed field: title Original value: """ Dogtag fail """ -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/lis

[Freeipa-devel] [freeipa PR#763][opened] Dogtag fail

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/763 Author: stlaz Title: #763: Dogtag fail Action: opened PR body: """ **Make CA/KRA fail when they don't start** Since all the services throw exceptions when we're unable to start/restart them, CA/KRA should not be an exceptio

[Freeipa-devel] [freeipa PR#753][+ack] Check CA status: add HTTP timeout

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/753 Title: #753: Check CA status: add HTTP timeout Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#716][comment] Fix minor typos

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/716 Title: #716: Fix minor typos stlaz commented: """ Except for the one change I pointed out, this is all OK with me. The only thing I am not sure is whether we can go changing the doc texts in `ipaclient/remote_plugins/

[Freeipa-devel] [freeipa PR#762][opened] fix managed-entries printing IPA not installed

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/762 Author: stlaz Title: #762: fix managed-entries printing IPA not installed Action: opened PR body: """ ipa-managed-entries would print "IPA is not configured on this system." even though this is not true if run as

[Freeipa-devel] [freeipa PR#726][comment] Add check for directory name

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/726 Title: #726: Add check for directory name stlaz commented: """ Obviously we can't push this until the tests pass. """ See the full comment at https://github.com/freeipa/freeipa/pull/726#issuecomment-29911200

[Freeipa-devel] [freeipa PR#757][comment] ca, kra install: validate DM password

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/757 Title: #757: ca, kra install: validate DM password stlaz commented: """ There will be no more sys.exits. This patchset shall not be ACKed until all have been removed. """ See the full comment at https://githu

[Freeipa-devel] [freeipa PR#761][comment] Fixing adding authenticator indicators to host

2017-05-04 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/761 Title: #761: Fixing adding authenticator indicators to host stlaz commented: """ ``` * Module ipaserver.plugins.host ipaserver/plugins/host.py:887: [C0303(trailing-whitespace), ] Trailing whitespace) ```

[Freeipa-devel] [freeipa PR#679][+ack] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ Removing the ACK to retest on 4.4.4 with Fedora custodia version. """ See the full comment at https://github.com/freeipa/freeipa/pull/679#iss

[Freeipa-devel] [freeipa PR#679][-ack] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys Label: -ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#679][+ack] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ Will do, ACKing this in the meantime. """ See the full comment at https://github.com/freeipa/freeipa/pull/679#issuecomment-29891368

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ It seems that replica install fails even without this patch so it's OK to go with it? """ See the full comment at https://github.com/freeipa

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ Not sure, I will try that. """ See the full comment at https://github.com/freeipa/freeipa/pull/679#issuecomment-298890816 -- Manage your subs

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ I was able to do it two times in a row with the same master, I can try to reinstall both the master and replica if you want. What do you mean "unclean&q

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ I was able to do it two times in a row with the same master, I can try to reinstall both the master and replica if you want. What do you mean "unclean&q

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ Seems to work fine against current master, but fails with ``` Configuring ipa-custodia [1/4]: Generating ipa-custodia config file [2/4]: Generating ipa-cus

[Freeipa-devel] [freeipa PR#754][+ack] ipa-server-install with external CA: fix pkinit cert issuance

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/754 Title: #754: ipa-server-install with external CA: fix pkinit cert issuance Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#754][comment] ipa-server-install with external CA: fix pkinit cert issuance

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/754 Title: #754: ipa-server-install with external CA: fix pkinit cert issuance stlaz commented: """ LGTM, will test it. """ See the full comment at https://github.com/freeipa/freeipa/pull/754#issuecomment-29885393

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ Seems to work fine against current master, but fails with ``` Configuring ipa-custodia [1/4]: Generating ipa-custodia config file [2/4]: Generating ipa-cus

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-03 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ @simo5 will check, sorry for not replying yesterday, I was no more at my machine. """ See the full comment at https://github.com/freeipa

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ Still fails. """ See the full comment at https://github.com/freeipa/freeipa/pull/679#issuecomment-298681896 -- Manage your subscription for

[Freeipa-devel] [freeipa PR#741][comment] 6.9 -> 7.4 migration fixes

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Title: #741: 6.9 -> 7.4 migration fixes stlaz commented: """ Turns out I forgot to reorder the CA installation steps a bit. """ See the full comment at https://github.com/freeipa/freeipa/pull/741#issue

[Freeipa-devel] [freeipa PR#741][synchronized] 6.9 -> 7.4 migration fixes

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: 6.9 -> 7.4 migration fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/741/head:pr741 git checkout pr741 F

[Freeipa-devel] [freeipa PR#741][comment] 6.9 -> 7.4 migration fixes

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Title: #741: 6.9 -> 7.4 migration fixes stlaz commented: """ This was supposed to be fixed by the patch and worked for me, it seems that I may need to investigate it further. """ See the full comment at https:

[Freeipa-devel] [freeipa PR#741][synchronized] 6.9 -> 7.4 migration fixes

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: 6.9 -> 7.4 migration fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/741/head:pr741 git checkout pr741 F

[Freeipa-devel] [freeipa PR#741][synchronized] 6.9 -> 7.4 migration fixes

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: 6.9 -> 7.4 migration fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/741/head:pr741 git checkout pr741 F

[Freeipa-devel] [freeipa PR#679][comment] Make sure remote hosts have our keys

2017-05-02 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/679 Title: #679: Make sure remote hosts have our keys stlaz commented: """ I was expecting some action about my previous comment: > Fails with > 2017-04-12T14:16:14Z DEBUG The ipa-replica-install command failed, > exceptio

[Freeipa-devel] [freeipa PR#733][synchronized] [4.5] Fix CA/server cert validation in FIPS

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/733 Author: stlaz Title: #733: [4.5] Fix CA/server cert validation in FIPS Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/733/head:pr733 git checkout pr733

[Freeipa-devel] [freeipa PR#741][comment] 6.9 -> 7.4 migration fixes

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Title: #741: 6.9 -> 7.4 migration fixes stlaz commented: """ For the record - the tests are passing on my machine, etwas stimmt hier nicht. """ See the full comment at https://github.com/freeipa/freeip

[Freeipa-devel] [freeipa PR#747][+ack] vault: piped input for ipa vault-add fails

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/747 Title: #747: vault: piped input for ipa vault-add fails Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#747][comment] vault: piped input for ipa vault-add fails

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/747 Title: #747: vault: piped input for ipa vault-add fails stlaz commented: """ Thank you for the brief action taken. Re-adding the ACK label. """ See the full comment at https://github.com/freeipa/freeipa/p

[Freeipa-devel] [freeipa PR#747][comment] vault: piped input for ipa vault-add fails

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/747 Title: #747: vault: piped input for ipa vault-add fails stlaz commented: """ @Akasurde: Don't add ACK label when the PR is not OK! @flo-renaud: You will need to specify a ticket for this PR. """ See the full

[Freeipa-devel] [freeipa PR#747][-ack] vault: piped input for ipa vault-add fails

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/747 Title: #747: vault: piped input for ipa vault-add fails Label: -ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#741][synchronized] 6.9 -> 7.4 migration fixes

2017-04-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: 6.9 -> 7.4 migration fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/741/head:pr741 git checkout pr741 F

[Freeipa-devel] [freeipa PR#740][+ack] [4.5]Hide PKI Client database password in log file

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/740 Title: #740: [4.5]Hide PKI Client database password in log file Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#741][synchronized] 6.9 -> 7.4 migration fixes

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: 6.9 -> 7.4 migration fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/741/head:pr741 git checkout pr741 F

[Freeipa-devel] [freeipa PR#741][opened] Migration

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: Migration Action: opened PR body: """ **Allow rewriting of cached properties** Cached property should not be treated anyway special from a normal property. If we need to rewrite/remove it, we shoul

[Freeipa-devel] [freeipa PR#741][edited] Migration

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/741 Author: stlaz Title: #741: Migration Action: edited Changed field: title Original value: """ Migration """ -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/lis

[Freeipa-devel] [freeipa PR#733][comment] [4.5] Fix CA/server cert validation in FIPS

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/733 Title: #733: [4.5] Fix CA/server cert validation in FIPS stlaz commented: """ Made a quickfix according to @tiran, the ACK can stay. Thanks, I was being paranoid. """ See the full comment at https://githu

[Freeipa-devel] [freeipa PR#733][synchronized] [4.5] Fix CA/server cert validation in FIPS

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/733 Author: stlaz Title: #733: [4.5] Fix CA/server cert validation in FIPS Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/733/head:pr733 git checkout pr733

[Freeipa-devel] [freeipa PR#739][+ack] [4.5] spec file: bump krb5 Requires for certauth fixes

2017-04-27 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/739 Title: #739: [4.5] spec file: bump krb5 Requires for certauth fixes Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#733][opened] [4.5] Fix CA/server cert validation in FIPS

2017-04-26 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/733 Author: stlaz Title: #733: [4.5] Fix CA/server cert validation in FIPS Action: opened PR body: """ In FIPS, the NSS library needs to be passed passwords to perform certificate validation. Should we not have passed it and th

[Freeipa-devel] [freeipa PR#714][comment] fix minor typo in ipa-adtrust-install.1

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/714 Title: #714: fix minor typo in ipa-adtrust-install.1 stlaz commented: """ Thanks, now this is ready to be pushed :) """ See the full comment at https://github.com/freeipa/freeipa/pull/714#issuecomment-29692034

[Freeipa-devel] [freeipa PR#714][+ack] fix minor typo in ipa-adtrust-install.1

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/714 Title: #714: fix minor typo in ipa-adtrust-install.1 Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#714][comment] fix minor typo in ipa-adtrust-install.1

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/714 Title: #714: fix minor typo in ipa-adtrust-install.1 stlaz commented: """ Ah, I did not notice you made a second commit for this. Please, squash them. """ See the full comment at https://github.com/freeipa

[Freeipa-devel] [freeipa PR#714][-ack] fix minor typo in ipa-adtrust-install.1

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/714 Title: #714: fix minor typo in ipa-adtrust-install.1 Label: -ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#716][comment] Fix minor typos

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/716 Title: #716: Fix minor typos stlaz commented: """ Please, see what `git rebase -i master` will do for you, along with `git commit --amend --author="Author Name <em...@address.com>"`. """ See t

[Freeipa-devel] [freeipa PR#716][comment] Fix minor typos

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/716 Title: #716: Fix minor typos stlaz commented: """ Please, see what `git rebase -i master` will do for you, along with `git commit --amend --author="Author Name <em...@address.com>"`. **edit:** I see a lot of confu

[Freeipa-devel] [freeipa PR#716][comment] Fix minor typos

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/716 Title: #716: Fix minor typos stlaz commented: """ Please, see what `git rebase -i master` will do for you. """ See the full comment at https://github.com/freeipa/freeipa/pull/716#issuecomment-29653138

[Freeipa-devel] [freeipa PR#716][comment] Fix minor typos

2017-04-24 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/716 Title: #716: Fix minor typos stlaz commented: """ Please, see what `git rebase -i master` will do for you. """ See the full comment at https://github.com/freeipa/freeipa/pull/716#issuecomment-29653138

[Freeipa-devel] [freeipa PR#714][comment] fix minor typo in ipa-adtrust-install.1

2017-04-23 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/714 Title: #714: fix minor typo in ipa-adtrust-install.1 stlaz commented: """ Thanks, ACK. """ See the full comment at https://github.com/freeipa/freeipa/pull/714#issuecomment-296531049 -- Manage your subscription

[Freeipa-devel] [freeipa PR#714][+ack] fix minor typo in ipa-adtrust-install.1

2017-04-23 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/714 Title: #714: fix minor typo in ipa-adtrust-install.1 Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#711][synchronized] Compat-plugin related fixes

2017-04-21 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/711 Author: stlaz Title: #711: Compat-plugin related fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/711/head:pr711 git checkout pr711 From

[Freeipa-devel] [freeipa PR#711][comment] Compat-plugin related fixes

2017-04-21 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/711 Title: #711: Compat-plugin related fixes stlaz commented: """ The latest patchset fixes also problems with ipa-compat-manage which would behave differently for root/other-users (check the commit message), and updates the li

[Freeipa-devel] [freeipa PR#711][edited] Compat-plugin related fixes

2017-04-21 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/711 Author: stlaz Title: #711: Compat-plugin related fixes Action: edited Changed field: title Original value: """ Move the compat plugin setup at the end of install """ -- Manage your subscription for the Fre

[Freeipa-devel] [freeipa PR#711][synchronized] Move the compat plugin setup at the end of install

2017-04-21 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/711 Author: stlaz Title: #711: Move the compat plugin setup at the end of install Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/711/head:pr711 git checkout

[Freeipa-devel] [freeipa PR#722][opened] Fix server upgrade

2017-04-20 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/722 Author: stlaz Title: #722: Fix server upgrade Action: opened PR body: """ OpenSSL can't cope with empty files, add a newline after each password https://pagure.io/freeipa/issue/6878 """ To pull the PR as Git br

[Freeipa-devel] [freeipa PR#715][closed] use correct option name

2017-04-20 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/715 Author: realsobek Title: #715: use correct option name Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/715/head:pr715 git checkout pr715 -- Manage your

[Freeipa-devel] [freeipa PR#715][+rejected] use correct option name

2017-04-20 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/715 Title: #715: use correct option name Label: +rejected -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#715][comment] use correct option name

2017-04-20 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/715 Title: #715: use correct option name stlaz commented: """ Since the changes here are part of https://github.com/freeipa/freeipa/pull/716, I am going to close this PR. """ See the full comment at https://githu

[Freeipa-devel] [freeipa PR#718][+ack] configure: fix AC_CHECK_LIB usage

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/718 Title: #718: configure: fix AC_CHECK_LIB usage Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#718][comment] configure: fix AC_CHECK_LIB usage

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/718 Title: #718: configure: fix AC_CHECK_LIB usage stlaz commented: """ This patch seems to have fixed the problem, ACK. """ See the full comment at https://github.com/freeipa/freeipa/pull/718#issuecomment-29527697

[Freeipa-devel] [freeipa PR#721][synchronized] Fix RA cert import during DL0 replication

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/721 Author: stlaz Title: #721: Fix RA cert import during DL0 replication Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/721/head:pr721 git checkout pr721 From

[Freeipa-devel] [freeipa PR#721][comment] Fix RA cert import during DL0 replication

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/721 Title: #721: Fix RA cert import during DL0 replication stlaz commented: """ Silly me  """ See the full comment at https://github.com/freeipa/freeipa/pull/721#issuecomment-295238665 -- Manage your subscription

[Freeipa-devel] [freeipa PR#719][synchronized] External CA fixes

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/719 Author: stlaz Title: #719: External CA fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/719/head:pr719 git checkout pr719 From

[Freeipa-devel] [freeipa PR#677][comment] cert: defer cert-find result post-processing

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/677 Title: #677: cert: defer cert-find result post-processing stlaz commented: """ We may need these changes in 4.5 and 4.4, too since `cert-find` is rather broken there, too. """ See the full comment at https://githu

[Freeipa-devel] [freeipa PR#677][+ack] cert: defer cert-find result post-processing

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/677 Title: #677: cert: defer cert-find result post-processing Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#721][opened] Fix RA cert import during DL0 replication

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/721 Author: stlaz Title: #721: Fix RA cert import during DL0 replication Action: opened PR body: """ Previous versions of FreeIPA add password to the ra.p12 file contained in the password-protected tarball. This was forgotten abou

[Freeipa-devel] [freeipa PR#719][synchronized] External CA fixes

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/719 Author: stlaz Title: #719: External CA fixes Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/719/head:pr719 git checkout pr719 From

[Freeipa-devel] [freeipa PR#719][edited] External CA fixes

2017-04-19 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/719 Author: stlaz Title: #719: External CA fixes Action: edited Changed field: body Original value: """ External CA installation would have failed for 2 reasons: - Trying to perform Kerberos install twice (for some reason our QA for

[Freeipa-devel] [freeipa PR#719][opened] External CA fixes

2017-04-18 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/719 Author: stlaz Title: #719: External CA fixes Action: opened PR body: """ External CA installation would have failed for 2 reasons: - Trying to perform Kerberos install twice (for some reason our QA forgot to tell us that) - R

  1   2   3   4   5   6   7   >