Re: [Freeipa-devel] [PATCH] 0070 Ask for admin password in ipa-adtrust-install

2012-08-24 Thread Alexander Bokovoy
On Thu, 23 Aug 2012, Petr Viktorin wrote: On 08/17/2012 11:04 AM, Alexander Bokovoy wrote: Hi, The credentials of the admin user will be used to obtain Kerberos ticket before configuring cross-realm trusts support and afterwards, to ensure that the ticket contains MS-PAC information

Re: [Freeipa-devel] [PATCH] 1031 run cleanallruv task

2012-08-24 Thread Rob Crittenden
Martin Kosek wrote: On 07/05/2012 08:39 PM, Rob Crittenden wrote: Martin Kosek wrote: On 07/03/2012 04:41 PM, Rob Crittenden wrote: Deleting a replica can leave a replication vector (RUV) on the other servers. This can confuse things if the replica is re-added, and it also causes the server

[Freeipa-devel] [PATCH] 1046 add e-mail by default

2012-08-24 Thread Rob Crittenden
We weren't automatically creating the mail attribute despite having the default e-mail domain. This patch will add it to all new users. To disable creating this set the default e-mail domain to empty in ipa config. rob From 2b4fcb79bae22cd2cdd685178017290df9c99ca7 Mon Sep 17 00:00:00 2001

[Freeipa-devel] [PATCH] 1047 remove bogus complaint on no password history

2012-08-24 Thread Rob Crittenden
If the password policy is set to store no history (hostory=0) then whenever a password is set a bogus log entry is created on 389-ds reporting failed to generate new password history!? It fails to generate history because policy tells it not to. This patch will suppress the message. See the