Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-19 Thread Rob Crittenden
Pavel Zuna wrote: Fix #798 Pavel I don't think this is the right fix. IIRC the idea was that pre-created hosts with a password (either provided or random) would not have a principal. The principal would be added once the host is enrolled. This will fix the plugin as far as adding

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-19 Thread Dmitri Pal
Rob Crittenden wrote: Pavel Zuna wrote: Fix #798 Pavel I don't think this is the right fix. IIRC the idea was that pre-created hosts with a password (either provided or random) would not have a principal. The principal would be added once the host is enrolled. I though that enrollment

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-19 Thread Simo Sorce
On Wed, 19 Jan 2011 15:12:03 -0500 Rob Crittenden rcrit...@redhat.com wrote: Pavel Zuna wrote: Fix #798 Pavel I don't think this is the right fix. IIRC the idea was that pre-created hosts with a password (either provided or random) would not have a principal. The principal would

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-19 Thread Simo Sorce
On Wed, 19 Jan 2011 15:22:22 -0500 Dmitri Pal d...@redhat.com wrote: I though that enrollment is based only on presence of the keytab. By keytab I guess you mean the krbPrincipalKey attribute. The presence of that attribute is unknown to all users except cn=Directory Manager and uid=kdc, so no

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-19 Thread Rob Crittenden
Simo Sorce wrote: On Wed, 19 Jan 2011 15:22:22 -0500 Dmitri Pald...@redhat.com wrote: I though that enrollment is based only on presence of the keytab. By keytab I guess you mean the krbPrincipalKey attribute. The presence of that attribute is unknown to all users except cn=Directory

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-19 Thread Dmitri Pal
Rob Crittenden wrote: Simo Sorce wrote: On Wed, 19 Jan 2011 15:22:22 -0500 Dmitri Pald...@redhat.com wrote: I though that enrollment is based only on presence of the keytab. By keytab I guess you mean the krbPrincipalKey attribute. The presence of that attribute is unknown to all users

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-18 Thread Jakub Hrozek
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 01/18/2011 06:27 PM, Pavel Zuna wrote: Fix #798 Pavel Ack (again, fast ack because I tested off-list before sending) -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.11 (GNU/Linux) Comment: Using GnuPG with Fedora -

Re: [Freeipa-devel] [PATCH] Fix password/random logic in host plugin.

2011-01-18 Thread Adam Young
On 01/18/2011 12:32 PM, Jakub Hrozek wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 01/18/2011 06:27 PM, Pavel Zuna wrote: Fix #798 Pavel Ack (again, fast ack because I tested off-list before sending) -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.11 (GNU/Linux) Comment: Using