Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-28 Thread Petr Viktorin
On 05/27/2014 05:13 PM, Simo Sorce wrote: On Tue, 2014-05-27 at 18:01 +0300, Alexander Bokovoy wrote: On Tue, 27 May 2014, Petr Viktorin wrote: On 05/26/2014 12:13 PM, Petr Viktorin wrote: [...] Thanks for the thorough review! Pushed to master: 63becae88c6c270b98f0432dc474b661b82f3119 Okay

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-27 Thread Simo Sorce
On Tue, 2014-05-27 at 18:01 +0300, Alexander Bokovoy wrote: > On Tue, 27 May 2014, Petr Viktorin wrote: > >On 05/26/2014 12:13 PM, Petr Viktorin wrote: > >[...] > >> > >>Thanks for the thorough review! > >>Pushed to master: 63becae88c6c270b98f0432dc474b661b82f3119 > > > > > >Okay guys, we have anot

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-27 Thread Alexander Bokovoy
On Tue, 27 May 2014, Petr Viktorin wrote: On 05/26/2014 12:13 PM, Petr Viktorin wrote: [...] Thanks for the thorough review! Pushed to master: 63becae88c6c270b98f0432dc474b661b82f3119 Okay guys, we have another issue: user-add (and the migration plugin) needs access to cn=UPG Definition,cn=

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-27 Thread Petr Viktorin
On 05/26/2014 12:13 PM, Petr Viktorin wrote: [...] Thanks for the thorough review! Pushed to master: 63becae88c6c270b98f0432dc474b661b82f3119 Okay guys, we have another issue: user-add (and the migration plugin) needs access to cn=UPG Definition,cn=Definitions,cn=Managed Entries,cn=etc,... t

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-26 Thread Petr Viktorin
On 05/26/2014 12:09 PM, Martin Kosek wrote: On 05/26/2014 12:04 PM, Petr Viktorin wrote: On 05/25/2014 09:29 PM, Martin Kosek wrote: On 05/23/2014 04:50 PM, Simo Sorce wrote: On Fri, 2014-05-23 at 10:59 +0200, Martin Kosek wrote: On 05/22/2014 04:20 PM, Petr Viktorin wrote: On 05/21/2014 12:

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-26 Thread Martin Kosek
On 05/26/2014 12:04 PM, Petr Viktorin wrote: > On 05/25/2014 09:29 PM, Martin Kosek wrote: >> On 05/23/2014 04:50 PM, Simo Sorce wrote: >>> On Fri, 2014-05-23 at 10:59 +0200, Martin Kosek wrote: On 05/22/2014 04:20 PM, Petr Viktorin wrote: > On 05/21/2014 12:14 PM, Simo Sorce wrote: >>

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-26 Thread Petr Viktorin
On 05/25/2014 09:29 PM, Martin Kosek wrote: On 05/23/2014 04:50 PM, Simo Sorce wrote: On Fri, 2014-05-23 at 10:59 +0200, Martin Kosek wrote: On 05/22/2014 04:20 PM, Petr Viktorin wrote: On 05/21/2014 12:14 PM, Simo Sorce wrote: On Wed, 2014-05-21 at 08:03 +0200, Martin Kosek wrote: On 05/16/

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-25 Thread Martin Kosek
On 05/23/2014 04:50 PM, Simo Sorce wrote: On Fri, 2014-05-23 at 10:59 +0200, Martin Kosek wrote: On 05/22/2014 04:20 PM, Petr Viktorin wrote: On 05/21/2014 12:14 PM, Simo Sorce wrote: On Wed, 2014-05-21 at 08:03 +0200, Martin Kosek wrote: On 05/16/2014 04:33 PM, Petr Viktorin wrote: On 05/16

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-23 Thread Simo Sorce
On Fri, 2014-05-23 at 10:59 +0200, Martin Kosek wrote: > On 05/22/2014 04:20 PM, Petr Viktorin wrote: > > On 05/21/2014 12:14 PM, Simo Sorce wrote: > >> On Wed, 2014-05-21 at 08:03 +0200, Martin Kosek wrote: > >>> On 05/16/2014 04:33 PM, Petr Viktorin wrote: > On 05/16/2014 01:54 PM, Martin Ko

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-23 Thread Martin Kosek
On 05/22/2014 04:20 PM, Petr Viktorin wrote: > On 05/21/2014 12:14 PM, Simo Sorce wrote: >> On Wed, 2014-05-21 at 08:03 +0200, Martin Kosek wrote: >>> On 05/16/2014 04:33 PM, Petr Viktorin wrote: On 05/16/2014 01:54 PM, Martin Kosek wrote: > On 04/29/2014 11:00 PM, Petr Viktorin wrote: >>>

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-22 Thread Petr Viktorin
On 05/21/2014 12:14 PM, Simo Sorce wrote: On Wed, 2014-05-21 at 08:03 +0200, Martin Kosek wrote: On 05/16/2014 04:33 PM, Petr Viktorin wrote: On 05/16/2014 01:54 PM, Martin Kosek wrote: On 04/29/2014 11:00 PM, Petr Viktorin wrote: Patch 0540 adds a bunch of managed read ACIs for user, as disc

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-21 Thread Simo Sorce
On Wed, 2014-05-21 at 08:03 +0200, Martin Kosek wrote: > On 05/16/2014 04:33 PM, Petr Viktorin wrote: > > On 05/16/2014 01:54 PM, Martin Kosek wrote: > >> On 04/29/2014 11:00 PM, Petr Viktorin wrote: > >>> Patch 0540 adds a bunch of managed read ACIs for user, as discussed > >>> previously > >>> [

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-20 Thread Martin Kosek
On 05/16/2014 04:33 PM, Petr Viktorin wrote: > On 05/16/2014 01:54 PM, Martin Kosek wrote: >> On 04/29/2014 11:00 PM, Petr Viktorin wrote: >>> Patch 0540 adds a bunch of managed read ACIs for user, as discussed >>> previously >>> [0]. >>> >>> Patch 0541 is some minor refactoring for the next part.

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-16 Thread Petr Viktorin
On 05/16/2014 01:54 PM, Martin Kosek wrote: On 04/29/2014 11:00 PM, Petr Viktorin wrote: Patch 0540 adds a bunch of managed read ACIs for user, as discussed previously [0]. Patch 0541 is some minor refactoring for the next part. Patch 0542 sets the read acces to addressbook attributes to anony

Re: [Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-05-16 Thread Martin Kosek
On 04/29/2014 11:00 PM, Petr Viktorin wrote: > Patch 0540 adds a bunch of managed read ACIs for user, as discussed previously > [0]. > > Patch 0541 is some minor refactoring for the next part. > > Patch 0542 sets the read acces to addressbook attributes to anonymous when > upgrading from pre-4.0.

[Freeipa-devel] [PATCHES] 0540-0542 Add managed read permissions to user

2014-04-29 Thread Petr Viktorin
Patch 0540 adds a bunch of managed read ACIs for user, as discussed previously [0]. Patch 0541 is some minor refactoring for the next part. Patch 0542 sets the read acces to addressbook attributes to anonymous when upgrading from pre-4.0. I first this by checking if the update is run from ipa-