Re: [Freeipa-devel] [PATCH] 0207, 0218-0219 Solving trust conflicts and external trust topology fixes

2016-08-18 Thread Martin Babinsky
On 08/18/2016 01:25 PM, Martin Babinsky wrote: On 08/17/2016 01:20 PM, Alexander Bokovoy wrote: On Wed, 17 Aug 2016, Martin Babinsky wrote: Hi Alexander, patch 207: LGTM, but I have a feeling that the patch should be linked to both #6021 and #6076 so that it is not lost during backports.

[Freeipa-devel] FreeIPA wiki - fighting the spammers

2016-08-18 Thread Martin Kosek
Hello everyone, As some of you noticed, we had lately an increasing number of spam attacks against FreeIPA.org wiki. Even though we did not accept user registration through the standard Mediawiki User Creation form (which is often misused by attacked) and only allow Fedora users logged in by

Re: [Freeipa-devel] [PATCH 0004] [Test] Test for caacl-add-service: incorrect error message when service does not exists

2016-08-18 Thread Martin Basti
On 18.08.2016 15:02, Tomas Krizek wrote: Hi, NACK. The issue is not that the error message contains the "no such entry" string. That is actually a valid part of the error message if the service indeed does not exist. The problem is that the error message contained only the first

Re: [Freeipa-devel] [PATCH 0004] [Test] Test for caacl-add-service: incorrect error message when service does not exists

2016-08-18 Thread Tomas Krizek
Hi, NACK. The issue is not that the error message contains the "no such entry" string. That is actually a valid part of the error message if the service indeed does not exist. The problem is that the error message contained only the first character of the service's name instead of the

Re: [Freeipa-devel] [PATCH 0562] Fix: container owner should be able to add vault

2016-08-18 Thread Tomas Krizek
I forgot about the oneliner rule, but for what it's worth - ACK. On 08/18/2016 01:04 PM, Martin Basti wrote: On 18.08.2016 12:04, Martin Basti wrote: https://fedorahosted.org/freeipa/ticket/6159 Patch attached. Pushed to master: 6b7d6417d403c983691c790c1e60cfe32bf1c420 Pushed under

[Freeipa-devel] [PATCH 0004] [Test] Test for caacl-add-service: incorrect error message when service does not exists

2016-08-18 Thread Ganna Kaihorodova
Hello! Test for caacl-add-service: incorrect error message when service does not exists https://fedorahosted.org/freeipa/ticket/6171 Best regards, Ganna Kaihorodova Associate Software Quality Engineer :From 837d85f0b3e8544a983e1ceeb770712807c0f0cf Mon Sep 17 00:00:00 2001 From: Ganna

Re: [Freeipa-devel] [PATCH] 0207, 0218-0219 Solving trust conflicts and external trust topology fixes

2016-08-18 Thread Martin Babinsky
On 08/17/2016 01:20 PM, Alexander Bokovoy wrote: On Wed, 17 Aug 2016, Martin Babinsky wrote: Hi Alexander, patch 207: LGTM, but I have a feeling that the patch should be linked to both #6021 and #6076 so that it is not lost during backports. patch 218: ipalib/errors.py: 1.) I'm not sure if

Re: [Freeipa-devel] [PATCH 0562] Fix: container owner should be able to add vault

2016-08-18 Thread Martin Basti
On 18.08.2016 12:04, Martin Basti wrote: https://fedorahosted.org/freeipa/ticket/6159 Patch attached. Pushed to master: 6b7d6417d403c983691c790c1e60cfe32bf1c420 Pushed under oneliner rule -- Manage your subscription for the Freeipa-devel mailing list:

Re: [Freeipa-devel] [PATCH 0112-7] Speeding up cli help

2016-08-18 Thread Jan Cholasta
On 18.8.2016 11:06, David Kupka wrote: On 17/08/16 14:17, Jan Cholasta wrote: On 17.8.2016 13:21, David Kupka wrote: On 08/08/16 13:26, Jan Cholasta wrote: On 4.8.2016 16:32, David Kupka wrote: On 03/08/16 16:33, Jan Cholasta wrote: On 3.8.2016 16:23, David Kupka wrote: On 21/07/16 10:12,

[Freeipa-devel] [PATCH 0562] Fix: container owner should be able to add vault

2016-08-18 Thread Martin Basti
https://fedorahosted.org/freeipa/ticket/6159 Patch attached. From 7277e6ac97bacb86ea8eb56125b8071165e2f777 Mon Sep 17 00:00:00 2001 From: Martin Basti Date: Thu, 18 Aug 2016 10:11:25 +0200 Subject: [PATCH] Fix: container owner should be able to add vault With recent change

Re: [Freeipa-devel] [PATCH 0112-7] Speeding up cli help

2016-08-18 Thread David Kupka
On 17/08/16 14:17, Jan Cholasta wrote: On 17.8.2016 13:21, David Kupka wrote: On 08/08/16 13:26, Jan Cholasta wrote: On 4.8.2016 16:32, David Kupka wrote: On 03/08/16 16:33, Jan Cholasta wrote: On 3.8.2016 16:23, David Kupka wrote: On 21/07/16 10:12, Jan Cholasta wrote: Hi, On 20.7.2016

Re: [Freeipa-devel] [PATCH 689] tests: fix test_ipalib.test_frontend.test_Object

2016-08-18 Thread Martin Basti
On 18.08.2016 10:56, Petr Spacek wrote: On 18.8.2016 10:08, Jan Cholasta wrote: SSIA Could you add one sentence or a link to a ticket which forced this change? When reading the patch, I have no way to say why the change is necessary - so it is impossible to verify correctness. (Sure, the

Re: [Freeipa-devel] [PATCH 689] tests: fix test_ipalib.test_frontend.test_Object

2016-08-18 Thread Petr Spacek
On 18.8.2016 10:08, Jan Cholasta wrote: > SSIA Could you add one sentence or a link to a ticket which forced this change? When reading the patch, I have no way to say why the change is necessary - so it is impossible to verify correctness. (Sure, the test will pass, but I have no way to

Re: [Freeipa-devel] pam_sss(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=ilt-gif-ipa01.ipa.preprod.local user=adu...@corp.addomain.com

2016-08-18 Thread Jakub Hrozek
On Thu, Aug 18, 2016 at 09:48:59AM +0200, rajat gupta wrote: > Thanks. > > When i am trying to accesses user with password i am getting below message > in logs. > > *Aug 18 09:38:17 ilt-gif-ipa02 [sssd[krb5_child[8505]]]: Cannot find KDC > for realm "ADDOMAON.COM "* > >

[Freeipa-devel] [PATCH 689] tests: fix test_ipalib.test_frontend.test_Object

2016-08-18 Thread Jan Cholasta
SSIA -- Jan Cholasta From c3f3ffd235b39fbdc61d8ae0b3f55eca97613499 Mon Sep 17 00:00:00 2001 From: Jan Cholasta Date: Thu, 18 Aug 2016 10:04:59 +0200 Subject: [PATCH] tests: fix test_ipalib.test_frontend.test_Object --- ipatests/test_ipalib/test_frontend.py | 12

Re: [Freeipa-devel] pam_sss(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=ilt-gif-ipa01.ipa.preprod.local user=adu...@corp.addomain.com

2016-08-18 Thread rajat gupta
Thanks. When i am trying to accesses user with password i am getting below message in logs. *Aug 18 09:38:17 ilt-gif-ipa02 [sssd[krb5_child[8505]]]: Cannot find KDC for realm "ADDOMAON.COM "* when i connect through ssh, it tries to contact the KDC for the realm