Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-23 Thread Martin Kosek
On Thu, 2011-09-22 at 19:31 -0500, Endi Sukma Dewata wrote: On 9/22/2011 7:24 AM, Martin Kosek wrote: 2) Some DNS records may be pretty large. MX record data is small, but for example CERT records have an entire certificate stored in it. Wouldn't there be a problem if we place the large DNS

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-23 Thread Martin Kosek
On Thu, 2011-09-22 at 22:05 -0400, Adam Young wrote: On 09/22/2011 08:31 PM, Endi Sukma Dewata wrote: OPEN QUESTION: should we implement these new commands also for discrete DNS records types to be consistent? I mean for example A, , CNAME, PTR, ... They would look like ipa

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-23 Thread Jakub Hrozek
On Thu, Sep 22, 2011 at 09:59:01PM -0400, Dmitri Pal wrote: On 09/22/2011 03:37 AM, Jakub Hrozek wrote: On Thu, Sep 22, 2011 at 08:25:01AM +0200, Jan Cholasta wrote: On 21.9.2011 23:55, Dmitri Pal wrote: On 09/21/2011 10:27 AM, Adam Young wrote: On 09/20/2011 11:11 AM, Martin Kosek wrote:

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-23 Thread Adam Young
On 09/23/2011 02:02 AM, Martin Kosek wrote: On Thu, 2011-09-22 at 22:05 -0400, Adam Young wrote: On 09/22/2011 08:31 PM, Endi Sukma Dewata wrote: OPEN QUESTION: should we implement these new commands also for discrete DNS records types to be consistent? I mean for example A, , CNAME, PTR,

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-23 Thread Martin Kosek
On Fri, 2011-09-23 at 10:46 -0400, Adam Young wrote: On 09/23/2011 02:02 AM, Martin Kosek wrote: On Thu, 2011-09-22 at 22:05 -0400, Adam Young wrote: On 09/22/2011 08:31 PM, Endi Sukma Dewata wrote: OPEN QUESTION: should we implement these new commands also for discrete DNS records types

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-23 Thread Adam Young
On 09/23/2011 11:52 AM, Rob Crittenden wrote: Adam Young wrote: On 09/23/2011 02:02 AM, Martin Kosek wrote: On Thu, 2011-09-22 at 22:05 -0400, Adam Young wrote: On 09/22/2011 08:31 PM, Endi Sukma Dewata wrote: OPEN QUESTION: should we implement these new commands also for discrete DNS

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-23 Thread Martin Kosek
On Fri, 2011-09-23 at 13:17 -0400, Adam Young wrote: On 09/23/2011 11:52 AM, Rob Crittenden wrote: Adam Young wrote: On 09/23/2011 02:02 AM, Martin Kosek wrote: On Thu, 2011-09-22 at 22:05 -0400, Adam Young wrote: On 09/22/2011 08:31 PM, Endi Sukma Dewata wrote: OPEN QUESTION: should we

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-22 Thread Martin Kosek
On Wed, 2011-09-21 at 11:22 +0200, Martin Kosek wrote: On Tue, 2011-09-20 at 11:22 -0500, Endi Sukma Dewata wrote: On 9/20/2011 6:15 AM, Martin Kosek wrote: ACK. Proposal looks like it will work fairly easily with the UI. We'll have to make some chagnes due to the Add doing something

Re: [Freeipa-devel] Structured DNS record API proposal - summary

2011-09-22 Thread Endi Sukma Dewata
On 9/22/2011 7:24 AM, Martin Kosek wrote: 2) Some DNS records may be pretty large. MX record data is small, but for example CERT records have an entire certificate stored in it. Wouldn't there be a problem if we place the large DNS record in URL? This is how the DNS record list page could be

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-22 Thread Dmitri Pal
On 09/22/2011 03:37 AM, Jakub Hrozek wrote: On Thu, Sep 22, 2011 at 08:25:01AM +0200, Jan Cholasta wrote: On 21.9.2011 23:55, Dmitri Pal wrote: On 09/21/2011 10:27 AM, Adam Young wrote: On 09/20/2011 11:11 AM, Martin Kosek wrote: On Tue, 2011-09-20 at 10:02 -0400, Adam Young wrote: This

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-21 Thread Martin Kosek
On Wed, 2011-09-21 at 10:58 +0200, Adam Tkac wrote: On 09/16/2011 02:25 PM, Martin Kosek wrote: On Fri, 2011-09-16 at 08:12 -0400, Simo Sorce wrote: Whatever you do do not split this operation into a DEL+ADD, we want an atomic modify operation in any case. as you do not want to have a race

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-21 Thread yi zhang
On 09/21/2011 01:58 AM, Adam Tkac wrote: On 09/16/2011 02:25 PM, Martin Kosek wrote: On Fri, 2011-09-16 at 08:12 -0400, Simo Sorce wrote: Whatever you do do not split this operation into a DEL+ADD, we want an atomic modify operation in any case. as you do not want to have a race where named

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-20 Thread Endi Sukma Dewata
On 9/20/2011 6:15 AM, Martin Kosek wrote: ACK. Proposal looks like it will work fairly easily with the UI. We'll have to make some chagnes due to the Add doing something different based on the type, but that is the case anyway. Yes, I was thinking how can we integrate this new API to WebUI.

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-16 Thread Adam Tkac
On 09/16/2011 09:51 AM, Martin Kosek wrote: On Thu, 2011-09-15 at 10:26 +0200, Adam Tkac wrote: Your proposal seems fine for me. However I would recommend not to expose routines for managing DNSSEC related records because DNSSEC is currently not supported in the bind-dyndb-ldap. This doesn't

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-16 Thread Simo Sorce
On Fri, 2011-09-16 at 09:42 +0200, Martin Kosek wrote: On Thu, 2011-09-15 at 15:28 -0400, Adam Young wrote: On 09/14/2011 12:18 PM, Martin Kosek wrote: Attached in the txt file. If you have any comments or suggestions to this proposal, please let me know.

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-16 Thread Simo Sorce
On Fri, 2011-09-16 at 14:04 +0200, Martin Kosek wrote: On Fri, 2011-09-16 at 07:58 -0400, Simo Sorce wrote: On Fri, 2011-09-16 at 09:42 +0200, Martin Kosek wrote: On Thu, 2011-09-15 at 15:28 -0400, Adam Young wrote: On 09/14/2011 12:18 PM, Martin Kosek wrote: Attached in the txt

Re: [Freeipa-devel] Structured DNS record API proposal

2011-09-16 Thread Martin Kosek
On Fri, 2011-09-16 at 08:12 -0400, Simo Sorce wrote: On Fri, 2011-09-16 at 14:04 +0200, Martin Kosek wrote: ... How would that work? We are designing -add -show -mod commands for mutlivalued LDAP attribute values, we should have some reference what value we are modifying. Or did you mean