Re: [Freeipa-devel] [PATCH 0074] Make token window sizes configurable

2014-10-28 Thread Nathaniel McCallum
On Thu, 2014-10-23 at 18:07 -0400, Nathaniel McCallum wrote: This patch gives the administrator variables to control the size of the authentication and synchronization windows for OTP tokens. https://fedorahosted.org/freeipa/ticket/4511 NOTE: There is one known issue with this patch which

[Freeipa-devel] [PATCH, slapi-nis] ID view-related patches to slapi-nis

2014-10-28 Thread Alexander Bokovoy
Hi, two patches to slapi-nis are attached: - make sure only DNs from the schema-compat trees are targeted for ID view replacement. This solves issue of https://bugzilla.redhat.com/show_bug.cgi?id=1157989 found by Sumit. - support ID overrides in the BIND callback. So far the only thing we

Re: [Freeipa-devel] [PATCH] 352 Fixed KRA backend.

2014-10-28 Thread Endi Sukma Dewata
Thanks for the review. New patch attached. On 10/23/2014 3:59 AM, Petr Viktorin wrote: In IPA we usually include the full ticket URL, not just the number. Fixed. The build fails with a lint message: * Module ipaserver.plugins.dogtag ipaserver/plugins/dogtag.py:1903:

Re: [Freeipa-devel] [PATCH] 354 Modififed NSSConnection not to shutdown existing database.

2014-10-28 Thread Endi Sukma Dewata
On 10/22/2014 9:15 AM, Endi Sukma Dewata wrote: The NSSConnection class has been modified not to shutdown the existing NSS database if the database is already opened to establish an SSL connection, or is already opened by another code that uses an NSS database without establishing an SSL

Re: [Freeipa-devel] [PATCH] 353 Added initial vault implementation.

2014-10-28 Thread Endi Sukma Dewata
On 10/22/2014 3:04 PM, Endi Sukma Dewata wrote: On 10/16/2014 4:12 PM, Endi Sukma Dewata wrote: On 10/15/2014 10:59 PM, Endi Sukma Dewata wrote: The NSSConnection class has to be modified not to shutdown existing database because some of the vault clients (e.g. vault-archive and

Re: [Freeipa-devel] [PATCH] 355 Added vault access control.

2014-10-28 Thread Endi Sukma Dewata
On 10/22/2014 3:04 PM, Endi Sukma Dewata wrote: New LDAP ACIs have been added to allow users to create their own private vault container, to allow owners to manage vaults and containers, and to allow members to use the vaults. New CLIs have been added to manage the owner and member list. For

Re: [Freeipa-devel] [PATCH] 356 Added command to retrieve vault transport certificate.

2014-10-28 Thread Endi Sukma Dewata
On 10/23/2014 6:18 AM, Jan Cholasta wrote: Hi, Dne 22.10.2014 v 22:06 Endi Sukma Dewata napsal(a): A new command has been added to retrieve the vault transport certificate and optionally save it into a file. The vault archive and retrieve command has been modified to retrieve the transport