Re: [Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-02-01 Thread Martin Kosek
On Mon, 2011-01-31 at 22:18 -0500, Rob Crittenden wrote: Rob Crittenden wrote: There are some permissions we can't display because they are stored outside of the basedn (such as the replication permissions). We are adding a new attribute to store extra information to make this clear, in

Re: [Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-02-01 Thread Martin Kosek
On Tue, 2011-02-01 at 09:07 -0500, Rob Crittenden wrote: Martin Kosek wrote: 2) In delegation.ldif: ipapermission object class is missing for removeentitlements and modifyentitlements (it has been added for addentitlements though) This was on purpose, I should have been clearer. Patch

Re: [Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-02-01 Thread Rob Crittenden
Martin Kosek wrote: On Tue, 2011-02-01 at 09:07 -0500, Rob Crittenden wrote: Martin Kosek wrote: 2) In delegation.ldif: ipapermission object class is missing for removeentitlements and modifyentitlements (it has been added for addentitlements though) This was on purpose, I should have been

Re: [Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-02-01 Thread Rob Crittenden
Rob Crittenden wrote: Martin Kosek wrote: On Tue, 2011-02-01 at 09:07 -0500, Rob Crittenden wrote: Martin Kosek wrote: 2) In delegation.ldif: ipapermission object class is missing for removeentitlements and modifyentitlements (it has been added for addentitlements though) This was on

Re: [Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-02-01 Thread Martin Kosek
On Tue, 2011-02-01 at 14:57 -0500, Rob Crittenden wrote: Rob Crittenden wrote: Martin Kosek wrote: On Tue, 2011-02-01 at 09:07 -0500, Rob Crittenden wrote: Martin Kosek wrote: 2) In delegation.ldif: ipapermission object class is missing for removeentitlements and modifyentitlements (it

Re: [Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-02-01 Thread Rob Crittenden
Martin Kosek wrote: On Tue, 2011-02-01 at 14:57 -0500, Rob Crittenden wrote: Rob Crittenden wrote: Martin Kosek wrote: On Tue, 2011-02-01 at 09:07 -0500, Rob Crittenden wrote: Martin Kosek wrote: 2) In delegation.ldif: ipapermission object class is missing for removeentitlements and

[Freeipa-devel] [PATCH] 697 Add new schema to store information about permissions.

2011-01-31 Thread Rob Crittenden
There are some permissions we can't display because they are stored outside of the basedn (such as the replication permissions). We are adding a new attribute to store extra information to make this clear, in this case READONLY. ticket 853 rob From 22fafd4e5a027c66fbf21879f52338cf4895f63f