[Freeipa-devel] [freeipa PR#649][comment] Session cookie storage and handling fixes

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/649 Title: #649: Session cookie storage and handling fixes tomaskrizek commented: """ @simo5 Please rebase for `ipa-4-5`. """ See the full comment at https://github.com/freeipa/freeipa/pull/649#issuecomment-289742723 -- Manage your subscription

[Freeipa-devel] [freeipa PR#649][+pushed] Session cookie storage and handling fixes

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/649 Title: #649: Session cookie storage and handling fixes Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#649][closed] Session cookie storage and handling fixes

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/649 Author: simo5 Title: #649: Session cookie storage and handling fixes Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/649/head:pr649 git checkout pr649 -- Manage

[Freeipa-devel] [freeipa PR#643][comment] [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/643 Title: #643: [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work pvomacka commented: """ ipa-4-5: * aa24ed88006925e6d7e44567b087364b0116db9c spec file: Bump requires to make Certificate Login in WebUI work master: *

[Freeipa-devel] [freeipa PR#623][comment] client install: do not assume /etc/krb5.conf.d exists

2017-03-28 Thread tiran
URL: https://github.com/freeipa/freeipa/pull/623 Title: #623: client install: do not assume /etc/krb5.conf.d exists tiran commented: """ The ipa-certauth plugin now starts to rely on the existence of ```/etc/krb5.conf.d```: ``` %config(noreplace) %{_sysconfdir}/krb5.conf.d/ipa-certauth ```

[Freeipa-devel] [freeipa PR#517][comment] Use Custodia 0.3.1 features

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features MartinBasti commented: """ Probably we should bump requires to custodia >= 0.3.1 """ See the full comment at https://github.com/freeipa/freeipa/pull/517#issuecomment-289737346 -- Manage your

[Freeipa-devel] [freeipa PR#640][comment] Remove pkinit options from master/replica on DL0

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/640 Title: #640: Remove pkinit options from master/replica on DL0 MartinBasti commented: """ With this PR applied I cannot use webUI with DL0 """ See the full comment at https://github.com/freeipa/freeipa/pull/640#issuecomment-289721101 -- Manage

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder MartinBasti commented: """ Yeah and I found where, it fails with #640 This PR can be pushed and ticket closed """ See the full comment at

[Freeipa-devel] [freeipa PR#662][opened] spec file: bump krb5-devel BuildRequires for certauth

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/662 Author: HonzaCholasta Title: #662: spec file: bump krb5-devel BuildRequires for certauth Action: opened PR body: """ Bump BuildRequires on krb5-devel to the version which introduces the certauth pluggable interface. This fixes RPM build

[Freeipa-devel] [freeipa PR#517][comment] Use Custodia 0.3.1 features

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features MartinBasti commented: """ Works for me, can be pushed when dependencies bumped """ See the full comment at https://github.com/freeipa/freeipa/pull/517#issuecomment-289739858 -- Manage your subscription

[Freeipa-devel] [freeipa PR#623][comment] client install: do not assume /etc/krb5.conf.d exists

2017-03-28 Thread tiran
URL: https://github.com/freeipa/freeipa/pull/623 Title: #623: client install: do not assume /etc/krb5.conf.d exists tiran commented: """ **Practicality beats purity** Let's define ```/etc/krb5.conf.d``` as part of our API and don't waste more time on shaving yet another yak. @tjaalton

[Freeipa-devel] [freeipa PR#643][+ack] [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/643 Title: #643: [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#517][+ack] Use Custodia 0.3.1 features

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#660][closed] rpcserver.login_x509: Actually return reply from __call__ method

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/660 Author: dkupka Title: #660: rpcserver.login_x509: Actually return reply from __call__ method Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/660/head:pr660 git

[Freeipa-devel] [freeipa PR#643][synchronized] [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/643 Author: dkupka Title: #643: [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa

[Freeipa-devel] [freeipa PR#649][comment] Session cookie storage and handling fixes

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/649 Title: #649: Session cookie storage and handling fixes tomaskrizek commented: """ master: * 9a6ac74eb4421b9ffa831dc6fed067d2ddc0618e Avoid growing FILE ccaches unnecessarily * fbbeb132bf37f8a03ef2f2184adb11796ab13d8b Handle failed

[Freeipa-devel] [freeipa PR#517][synchronized] Use Custodia 0.3.1 features

2017-03-28 Thread tiran
URL: https://github.com/freeipa/freeipa/pull/517 Author: tiran Title: #517: Use Custodia 0.3.1 features Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/517/head:pr517 git checkout pr517 From

[Freeipa-devel] [freeipa PR#643][+pushed] [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/643 Title: #643: [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to

[Freeipa-devel] [freeipa PR#643][closed] [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/643 Author: dkupka Title: #643: [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder stlaz commented: """ Works for me on DL0 as well, you might have had a broken installation. """ See the full comment at https://github.com/freeipa/freeipa/pull/656#issuecomment-289714596 --

[Freeipa-devel] [freeipa PR#655][comment] httpinstance.disable_system_trust: Don't fail if module 'Root Certs' …

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/655 Title: #655: httpinstance.disable_system_trust: Don't fail if module 'Root Certs' … stlaz commented: """ This fixes the mentioned issue. I did not test whether the actual disable works but I should hope so as I don't see how this could break

[Freeipa-devel] [freeipa PR#655][+ack] httpinstance.disable_system_trust: Don't fail if module 'Root Certs' …

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/655 Title: #655: httpinstance.disable_system_trust: Don't fail if module 'Root Certs' … Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#517][comment] Use Custodia 0.3.1 features

2017-03-28 Thread tiran
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features tiran commented: """ F25 scratch build https://koji.fedoraproject.org/koji/taskinfo?taskID=18643521 ``` $ fedpkg clone custodia $ cd custodia $ fedpkg switch-branch master $ fedpkg scratch-build --srpm

[Freeipa-devel] [freeipa PR#656][closed] Backup CA cert from kerberos folder

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/656 Author: stlaz Title: #656: Backup CA cert from kerberos folder Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/656/head:pr656 git checkout pr656 -- Manage your

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder tomaskrizek commented: """ master: * dc13703e75997e0c9539b326acb13458dae00202 Backup CA cert from kerberos folder ipa-4-5: * 9fdc27ba3594e921d21d664fc5728292e52ac350 Backup CA cert from kerberos

[Freeipa-devel] [freeipa PR#656][+pushed] Backup CA cert from kerberos folder

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#663][opened] Generate PIN for PKI to help Dogtag in FIPS

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/663 Author: stlaz Title: #663: Generate PIN for PKI to help Dogtag in FIPS Action: opened PR body: """ Dogtag is currently unable to generate a PIN it could use for an NSS database creation in FIPS. Generate it for them so that we don't fail.

[Freeipa-devel] [freeipa PR#661][comment] git-commit-template: update ticket url to use pagure.io instead of fe…

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/661 Title: #661: git-commit-template: update ticket url to use pagure.io instead of fe… tomaskrizek commented: """ master: * f17460a34ce452b46d431850aa565efd6c7b23ba git-commit-template: update ticket url to use pagure.io instead of

[Freeipa-devel] [freeipa PR#661][+pushed] git-commit-template: update ticket url to use pagure.io instead of fe…

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/661 Title: #661: git-commit-template: update ticket url to use pagure.io instead of fe… Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#660][comment] rpcserver.login_x509: Actually return reply from __call__ method

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/660 Title: #660: rpcserver.login_x509: Actually return reply from __call__ method pvomacka commented: """ ipa-4-5: * c80941e98bfd00c1c6e530aa4a592354adff8d90 rpcserver.login_x509: Actually return reply from __call__ method master: *

[Freeipa-devel] [freeipa PR#661][closed] git-commit-template: update ticket url to use pagure.io instead of fe…

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/661 Author: flo-renaud Title: #661: git-commit-template: update ticket url to use pagure.io instead of fe… Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa

[Freeipa-devel] [freeipa PR#660][+pushed] rpcserver.login_x509: Actually return reply from __call__ method

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/660 Title: #660: rpcserver.login_x509: Actually return reply from __call__ method Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#623][comment] client install: do not assume /etc/krb5.conf.d exists

2017-03-28 Thread lslebodn
URL: https://github.com/freeipa/freeipa/pull/623 Title: #623: client install: do not assume /etc/krb5.conf.d exists lslebodn commented: """ On (28/03/17 04:08), Christian Heimes wrote: >The ipa-certauth plugin now starts to rely on the existence of >```/etc/krb5.conf.d```: > >```

[Freeipa-devel] [freeipa PR#652][comment] dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/652 Title: #652: dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function HonzaCholasta commented: """ master: * e934da09d5e738c735f874931dd1b54d79b3150b dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function ipa-4-5: *

[Freeipa-devel] [freeipa PR#652][+pushed] dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/652 Title: #652: dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#652][closed] dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/652 Author: flo-renaud Title: #652: dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/652/head:pr652

[Freeipa-devel] [freeipa PR#652][+ack] dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/652 Title: #652: dogtag-ipa-ca-renew-agent-submit: fix the is_replicated() function Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder stlaz commented: """ Yes, it indeed works for me. """ See the full comment at https://github.com/freeipa/freeipa/pull/656#issuecomment-289683317 -- Manage your subscription for the Freeipa-devel

[Freeipa-devel] [freeipa PR#660][synchronized] rpcserver.login_x509: Actually return reply from __call__ method

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/660 Author: dkupka Title: #660: rpcserver.login_x509: Actually return reply from __call__ method Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/660/head:pr660

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder stlaz commented: """ That's weird, I think it worked for me, I will check once more. """ See the full comment at https://github.com/freeipa/freeipa/pull/656#issuecomment-289677935 -- Manage your

[Freeipa-devel] [freeipa PR#616][+ack] Simplify KRA transport cert cache

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/616 Title: #616: Simplify KRA transport cert cache Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#616][+pushed] Simplify KRA transport cert cache

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/616 Title: #616: Simplify KRA transport cert cache Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#643][comment] [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/643 Title: #643: [master, 4.5] spec file: Bump requires to make Certificate Login in WebUI work pvomacka commented: """ @dkupka I created a new ticket: https://pagure.io/freeipa/issue/6823 """ See the full comment at

[Freeipa-devel] [freeipa PR#640][comment] Remove pkinit options from master/replica on DL0

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/640 Title: #640: Remove pkinit options from master/replica on DL0 stlaz commented: """ Ah, right, replica does not have `domain_level` option  """ See the full comment at https://github.com/freeipa/freeipa/pull/640#issuecomment-289684664 --

[Freeipa-devel] [freeipa PR#660][+ack] rpcserver.login_x509: Actually return reply from __call__ method

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/660 Title: #660: rpcserver.login_x509: Actually return reply from __call__ method Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#661][comment] git-commit-template: update ticket url to use pagure.io instead of fe…

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/661 Title: #661: git-commit-template: update ticket url to use pagure.io instead of fe… stlaz commented: """ ACK, stopping the tests as the change does not have anything to do with our codebase. """ See the full comment at

[Freeipa-devel] [freeipa PR#661][+ack] git-commit-template: update ticket url to use pagure.io instead of fe…

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/661 Title: #661: git-commit-template: update ticket url to use pagure.io instead of fe… Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder MartinBasti commented: """ I tried with DL0: * it may be different bug with DL0 * backup/restore is broken only with DL0 """ See the full comment at

[Freeipa-devel] [freeipa PR#661][opened] git-commit-template: update ticket url to use pagure.io instead of fe…

2017-03-28 Thread flo-renaud
URL: https://github.com/freeipa/freeipa/pull/661 Author: flo-renaud Title: #661: git-commit-template: update ticket url to use pagure.io instead of fe… Action: opened PR body: """ …dorahosted.org After the migration to pagure.io, tickets are accessed through another URL. In order to use

[Freeipa-devel] [freeipa PR#645][comment] Create temporaty directories at the begining of uninstall

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/645 Title: #645: Create temporaty directories at the begining of uninstall dkupka commented: """ master: * 3dcd3426310ccacdb1564ad7fe83358110a044f6 Create temporaty directories at the begining of uninstall ipa-4-5: *

[Freeipa-devel] [freeipa PR#645][+pushed] Create temporaty directories at the begining of uninstall

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/645 Title: #645: Create temporaty directories at the begining of uninstall Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#645][closed] Create temporaty directories at the begining of uninstall

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/645 Author: dkupka Title: #645: Create temporaty directories at the begining of uninstall Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/645/head:pr645 git checkout

[Freeipa-devel] [freeipa PR#656][comment] Backup CA cert from kerberos folder

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/656 Title: #656: Backup CA cert from kerberos folder stlaz commented: """ This seems like a pkinit-related issue, since pkinit is not finished (although released) and should be only avaialable on domain levels > 0, I don't think this should stop us

[Freeipa-devel] [freeipa PR#616][comment] Simplify KRA transport cert cache

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/616 Title: #616: Simplify KRA transport cert cache HonzaCholasta commented: """ master: * abefb64bea8ea1b8487ad87716e4a33d19dc Simplify KRA transport cert cache ipa-4-5: * 2723b5fa5edc75901c8fbaf110a37c87df0aec87 Simplify KRA transport cert

[Freeipa-devel] [freeipa PR#616][closed] Simplify KRA transport cert cache

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/616 Author: tiran Title: #616: Simplify KRA transport cert cache Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/616/head:pr616 git checkout pr616 -- Manage your

[Freeipa-devel] [freeipa PR#517][closed] Use Custodia 0.3.1 features

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/517 Author: tiran Title: #517: Use Custodia 0.3.1 features Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/517/head:pr517 git checkout pr517 -- Manage your

[Freeipa-devel] [freeipa PR#517][comment] Use Custodia 0.3.1 features

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features pvomacka commented: """ ipa-4-5: * 403263df7a3be61086c87c5577698cf32a912065 Use Custodia 0.3.1 features master: * f5bf5466eda0de2a211b4f2682e5c50b82577701 Use Custodia 0.3.1 features """ See the full

[Freeipa-devel] Issue with clients

2017-03-28 Thread Bradley Bishop
Hello, I am new to this community and have a FreeIPA server install that is trusted to AD using AD dns. I am having problems getting my clients to work properly. Everything seems to install properly the first time i try it but i get the following logs after that: (Tue Mar 28 02:34:28 2017)

[Freeipa-devel] [freeipa PR#649][comment] Session cookie storage and handling fixes

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/649 Title: #649: Session cookie storage and handling fixes MartinBasti commented: """ Yes please """ See the full comment at https://github.com/freeipa/freeipa/pull/649#issuecomment-289761754 -- Manage your subscription for the Freeipa-devel

[Freeipa-devel] [freeipa PR#644][+ack] extdom: improve certificate request

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/644 Title: #644: extdom: improve certificate request Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#662][+pushed] spec file: bump krb5-devel BuildRequires for certauth

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/662 Title: #662: spec file: bump krb5-devel BuildRequires for certauth Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#649][comment] Session cookie storage and handling fixes

2017-03-28 Thread simo5
URL: https://github.com/freeipa/freeipa/pull/649 Title: #649: Session cookie storage and handling fixes simo5 commented: """ Should I make a new PR for 4.5 ? """ See the full comment at https://github.com/freeipa/freeipa/pull/649#issuecomment-289761195 -- Manage your subscription for the

[Freeipa-devel] [freeipa PR#662][+ack] spec file: bump krb5-devel BuildRequires for certauth

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/662 Title: #662: spec file: bump krb5-devel BuildRequires for certauth Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#662][closed] spec file: bump krb5-devel BuildRequires for certauth

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/662 Author: HonzaCholasta Title: #662: spec file: bump krb5-devel BuildRequires for certauth Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/662/head:pr662 git

[Freeipa-devel] [freeipa PR#662][comment] spec file: bump krb5-devel BuildRequires for certauth

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/662 Title: #662: spec file: bump krb5-devel BuildRequires for certauth HonzaCholasta commented: """ master: * 2dda1acf44dc96e660e81baadee9c3a54bf05eb0 spec file: bump krb5-devel BuildRequires for certauth ipa-4-5: *

[Freeipa-devel] [freeipa PR#517][+pushed] Use Custodia 0.3.1 features

2017-03-28 Thread pvomacka
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA: http://www.freeipa.org/page/Contribute/Code

[Freeipa-devel] [freeipa PR#664][opened] Backport of client session storage patches

2017-03-28 Thread simo5
URL: https://github.com/freeipa/freeipa/pull/664 Author: simo5 Title: #664: Backport of client session storage patches Action: opened PR body: """ """ To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/664/head:pr664 git

[Freeipa-devel] [freeipa PR#662][comment] spec file: bump krb5-devel BuildRequires for certauth

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/662 Title: #662: spec file: bump krb5-devel BuildRequires for certauth dkupka commented: """ Works for me. """ See the full comment at https://github.com/freeipa/freeipa/pull/662#issuecomment-289772910 -- Manage your subscription for the

[Freeipa-devel] [freeipa PR#623][synchronized] client install: do not assume /etc/krb5.conf.d exists

2017-03-28 Thread HonzaCholasta
URL: https://github.com/freeipa/freeipa/pull/623 Author: HonzaCholasta Title: #623: client install: do not assume /etc/krb5.conf.d exists Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/623/head:pr623 git

[Freeipa-devel] [freeipa PR#644][comment] extdom: improve certificate request

2017-03-28 Thread dkupka
URL: https://github.com/freeipa/freeipa/pull/644 Title: #644: extdom: improve certificate request dkupka commented: """ Works for me. """ See the full comment at https://github.com/freeipa/freeipa/pull/644#issuecomment-289764835 -- Manage your subscription for the Freeipa-devel mailing list:

[Freeipa-devel] [freeipa PR#517][comment] Use Custodia 0.3.1 features

2017-03-28 Thread tiran
URL: https://github.com/freeipa/freeipa/pull/517 Title: #517: Use Custodia 0.3.1 features tiran commented: """ Custodia 0.3.1 also fixes https://github.com/latchset/custodia/issues/135 (KEM requests with whitespace in key name fail). The bug has been reported by @adelton as

[Freeipa-devel] [freeipa PR#664][closed] Backport of client session storage patches

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/664 Author: simo5 Title: #664: Backport of client session storage patches Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/664/head:pr664 git checkout pr664 -- Manage

[Freeipa-devel] [freeipa PR#666][opened] Fix anonymous principal handling in replica install

2017-03-28 Thread martbab
URL: https://github.com/freeipa/freeipa/pull/666 Author: martbab Title: #666: Fix anonymous principal handling in replica install Action: opened PR body: """ This PR should unblock replica install against <4.5 masters if `--no-pkinit` option is given. Be aware of the non-working WebUI after

[Freeipa-devel] [freeipa PR#664][comment] Backport of client session storage patches

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/664 Title: #664: Backport of client session storage patches tomaskrizek commented: """ ipa-4-5: * f1d731a79c384c7406c52232ff291644137e100b Python 3: Fix session storage * ba828a53a4736ed326d95e30856daba2c060439c Avoid growing FILE ccaches

[Freeipa-devel] [freeipa PR#664][comment] Backport of client session storage patches

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/664 Title: #664: Backport of client session storage patches tomaskrizek commented: """ Thanks for the rebase! """ See the full comment at https://github.com/freeipa/freeipa/pull/664#issuecomment-289795319 -- Manage your subscription for the

[Freeipa-devel] [freeipa PR#664][+ack] Backport of client session storage patches

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/664 Title: #664: Backport of client session storage patches Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#663][+ack] Generate PIN for PKI to help Dogtag in FIPS

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/663 Title: #663: Generate PIN for PKI to help Dogtag in FIPS Label: +ack -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#663][+pushed] Generate PIN for PKI to help Dogtag in FIPS

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/663 Title: #663: Generate PIN for PKI to help Dogtag in FIPS Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#663][comment] Generate PIN for PKI to help Dogtag in FIPS

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/663 Title: #663: Generate PIN for PKI to help Dogtag in FIPS tomaskrizek commented: """ ipa-4-5: * 39eac72faef5f44c9fb2cad943ad58d23fe60cf3 Generate PIN for PKI to help Dogtag in FIPS master: * e204d030fc4154800acb0b2b312188e72dd80f80 Generate PIN

[Freeipa-devel] [freeipa PR#663][closed] Generate PIN for PKI to help Dogtag in FIPS

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/663 Author: stlaz Title: #663: Generate PIN for PKI to help Dogtag in FIPS Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/663/head:pr663 git checkout pr663 --

[Freeipa-devel] [freeipa PR#490][comment] certdb: use certutil and match_hostname for cert verification

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/490 Title: #490: certdb: use certutil and match_hostname for cert verification stlaz commented: """ I tried to use the wonderful github tool to resolve conflicts to make this more review-friendly but I guess it kind of missed the magic, it's ready

[Freeipa-devel] [freeipa PR#490][synchronized] certdb: use certutil and match_hostname for cert verification

2017-03-28 Thread stlaz
URL: https://github.com/freeipa/freeipa/pull/490 Author: HonzaCholasta Title: #490: certdb: use certutil and match_hostname for cert verification Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa

[Freeipa-devel] [freeipa PR#665][opened] Allow erasing ipaDomainResolutionOrder attribute

2017-03-28 Thread fidencio
URL: https://github.com/freeipa/freeipa/pull/665 Author: fidencio Title: #665: Allow erasing ipaDomainResolutionOrder attribute Action: opened PR body: """ Currently when trying to erase the ipaDomainResolutionOrder attribute we hit an internal error as the split() method is called on a None

[Freeipa-devel] [freeipa PR#665][synchronized] Allow erasing ipaDomainResolutionOrder attribute

2017-03-28 Thread fidencio
URL: https://github.com/freeipa/freeipa/pull/665 Author: fidencio Title: #665: Allow erasing ipaDomainResolutionOrder attribute Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/665/head:pr665 git checkout

[Freeipa-devel] [freeipa PR#664][+pushed] Backport of client session storage patches

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/664 Title: #664: Backport of client session storage patches Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#655][closed] httpinstance.disable_system_trust: Don't fail if module 'Root Certs' …

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/655 Author: dkupka Title: #655: httpinstance.disable_system_trust: Don't fail if module 'Root Certs' … Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/655/head:pr655

[Freeipa-devel] [freeipa PR#655][+pushed] httpinstance.disable_system_trust: Don't fail if module 'Root Certs' …

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/655 Title: #655: httpinstance.disable_system_trust: Don't fail if module 'Root Certs' … Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#655][comment] httpinstance.disable_system_trust: Don't fail if module 'Root Certs' …

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/655 Title: #655: httpinstance.disable_system_trust: Don't fail if module 'Root Certs' … tomaskrizek commented: """ ipa-4-5: * 2a499551ca5ddf2596cc19a77f47c34e9f5c10c5 httpinstance.disable_system_trust: Don't fail if module 'Root Certs' is not

[Freeipa-devel] [freeipa PR#658][synchronized] Hide PKI Client database password in log file

2017-03-28 Thread Akasurde
URL: https://github.com/freeipa/freeipa/pull/658 Author: Akasurde Title: #658: Hide PKI Client database password in log file Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/658/head:pr658 git checkout

[Freeipa-devel] [freeipa PR#631][synchronized] Upgrade: configure PKINIT after adding anonymous principal

2017-03-28 Thread martbab
URL: https://github.com/freeipa/freeipa/pull/631 Author: martbab Title: #631: Upgrade: configure PKINIT after adding anonymous principal Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/631/head:pr631 git

[Freeipa-devel] [freeipa PR#667][opened] idrange-mod: properly handle empty --dom-name option

2017-03-28 Thread flo-renaud
URL: https://github.com/freeipa/freeipa/pull/667 Author: flo-renaud Title: #667: idrange-mod: properly handle empty --dom-name option Action: opened PR body: """ When idrange-mod is called with --dom-name=, the CLI exits with ipa: ERROR: an internal error has occurred This happens because the

[Freeipa-devel] [freeipa PR#644][synchronized] extdom: improve certificate request

2017-03-28 Thread sumit-bose
URL: https://github.com/freeipa/freeipa/pull/644 Author: sumit-bose Title: #644: extdom: improve certificate request Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/644/head:pr644 git checkout pr644 From

[Freeipa-devel] [freeipa PR#623][comment] client install: do not assume /etc/krb5.conf.d exists

2017-03-28 Thread frozencemetery
URL: https://github.com/freeipa/freeipa/pull/623 Title: #623: client install: do not assume /etc/krb5.conf.d exists frozencemetery commented: """ (Note: a standard directory in distributions that freeipa could use would be provided by the krb5 maintainer, not the freeipa maintainer.) """ See

[Freeipa-devel] [freeipa PR#644][closed] extdom: improve certificate request

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/644 Author: sumit-bose Title: #644: extdom: improve certificate request Action: closed To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/644/head:pr644 git checkout pr644 -- Manage

[Freeipa-devel] [freeipa PR#644][+pushed] extdom: improve certificate request

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/644 Title: #644: extdom: improve certificate request Label: +pushed -- Manage your subscription for the Freeipa-devel mailing list: https://www.redhat.com/mailman/listinfo/freeipa-devel Contribute to FreeIPA:

[Freeipa-devel] [freeipa PR#665][comment] Allow erasing ipaDomainResolutionOrder attribute

2017-03-28 Thread MartinBasti
URL: https://github.com/freeipa/freeipa/pull/665 Title: #665: Allow erasing ipaDomainResolutionOrder attribute MartinBasti commented: """ LGTM """ See the full comment at https://github.com/freeipa/freeipa/pull/665#issuecomment-289817220 -- Manage your subscription for the Freeipa-devel

[Freeipa-devel] [freeipa PR#490][comment] certdb: use certutil and match_hostname for cert verification

2017-03-28 Thread tiran
URL: https://github.com/freeipa/freeipa/pull/490 Title: #490: certdb: use certutil and match_hostname for cert verification tiran commented: """ github magic is bad magic :/ It still shows up as 'conflicting' for me. I'll try to find time to review the issue tomorrow, Thursday latest. """ See

[Freeipa-devel] [freeipa PR#644][comment] extdom: improve certificate request

2017-03-28 Thread tomaskrizek
URL: https://github.com/freeipa/freeipa/pull/644 Title: #644: extdom: improve certificate request tomaskrizek commented: """ master: * ee455f163d756a6b71db8e999365139cad46c6ad extdom: do reverse search for domain separator * 8960398a57f69c124ec3105289dc355baa0d5b09 extdom: improve cert

[Freeipa-devel] [freeipa PR#621][synchronized] Add --force-password-reset to user_mod in user.py

2017-03-28 Thread redhatrises
URL: https://github.com/freeipa/freeipa/pull/621 Author: redhatrises Title: #621: Add --force-password-reset to user_mod in user.py Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/621/head:pr621 git

[Freeipa-devel] [freeipa PR#665][synchronized] Allow erasing ipaDomainResolutionOrder attribute

2017-03-28 Thread fidencio
URL: https://github.com/freeipa/freeipa/pull/665 Author: fidencio Title: #665: Allow erasing ipaDomainResolutionOrder attribute Action: synchronized To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/665/head:pr665 git checkout

  1   2   >