pagure Logo
  • Log In

freeipa

Clone
Source Code
GIT
  • Source
  • Issues  989
  • Roadmap 
  • Stats
 Overview  Files  Commits  Branches  Forks  Releases

Commits 3832

Branch: ipa-2-0
ipa-1-0 ipa-1-1 ipa-1-2 ipa-2-0 ipa-2-1 ipa-2-2 ipa-3-0 ipa-3-1 ipa-3-2 ipa-3-3 ipa-4-0 ipa-4-1 ipa-4-10 ipa-4-2 ipa-4-3 ipa-4-4 ipa-4-5 ipa-4-6 ipa-4-6-CVE-2019-10195-and-CVE-2019-14867 ipa-4-6-CVE-2020-10747 ipa-4-7 ipa-4-7-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8 ipa-4-8-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8-CVE-2020-10747 ipa-4-9 master webui-cleanup
This branch contains 174 commits not in the main branch master
Re-arrange CA configuration code to reduce the number of restarts.
Rob Crittenden • 11 years ago  
6f29ba9
Improve error message in ipactl
Martin Kosek • 11 years ago  
11f4593
Hide continue option from automountkey-del
Martin Kosek • 11 years ago  
63f7bc6
Don't set the password expiration to the current time
Simo Sorce • 11 years ago  
d290e8f
Clean up existing DN object usage
John Dennis • 11 years ago  
c94acc9
When setting a host password don't set krbPasswordExpiration.
Rob Crittenden • 11 years ago  
45cd332
Fix message in test case for checking minimum values
Rob Crittenden • 11 years ago  
81ea188
Make AVA, RDN & DN comparison case insensitive. No need for lowercase normalization.
John Dennis • 11 years ago  
1a6cb9f
Fix invalid issuer in unit tests
Martin Kosek • 11 years ago  
0dba747
Don't leave dangling map if adding an indirect map fails
Rob Crittenden • 11 years ago  
7d91b33
Fix external CA install.
Jan Cholasta • 11 years ago  
d466612
Fix automountkey commands summary
Martin Kosek • 11 years ago  
8f76745
Revert use of 'can be at least' to 'must be at least' in minvalue validator
Rob Crittenden • 11 years ago  
2ee6295
Add an arch-specific Requires on cyrus-sasl-gssapi
Rob Crittenden • 11 years ago  
99a18c3
Fix man page ipa-csreplica-manage
Martin Kosek • 11 years ago  
537822e
Fix ipa-compat-manage not working after recent ipa-nis-manage change.
Jan Cholasta • 11 years ago  
489b6a5
Autofill the default revocation reason
Rob Crittenden • 11 years ago  
6c49412
Hide the HBAC access type attribute now that deny is deprecated.
Rob Crittenden • 11 years ago  
e5bbc02
Remove wrong kpasswd sysconfig
Jakub Hrozek • 11 years ago  
ef18a45
Ticket 1485 - DN pairwise grouping
John Dennis • 11 years ago  
867dca9
Add missing automount summaries
Martin Kosek • 11 years ago  
c28ec5b
Add Alexander Bokovoy and Jan Cholasta to contributors file
Rob Crittenden • 11 years ago  
733dc83
Make ipa-client-install error messages more understandable and relevant.
Rob Crittenden • 11 years ago  
fb10776
Set a default minimum value for class Int, handle long values better.
Rob Crittenden • 11 years ago  
9839276
With the external user/group management fixed, correct the unit tests.
Rob Crittenden • 11 years ago  
06709a5
Correct sudo runasuser and runasgroup attributes in schema
Jr Aquino • 11 years ago  
104b1b8
Correct behavior for sudorunasgroup vs sudorunasuser
Jr Aquino • 11 years ago  
13ad211
Fix regression when calculating external groups.
Rob Crittenden • 11 years ago  
9cb9cd9
Fix sssd.conf to always have IPA certificate for the domain.
Alexander Bokovoy • 11 years ago  
6262280
Don't set krbLastPwdChange when setting a host OTP password.
Rob Crittenden • 11 years ago  
6fd15fe
A removed external host is shown in output when removing external hosts.
Rob Crittenden • 11 years ago  
011f1e3
Fix sudorule-remove-user
Martin Kosek • 11 years ago  
69cc34e
Don't delete NIS netgroup compat suffix on 'ipa-nis-manage disable'.
Jan Cholasta • 11 years ago  
fe3fd0e
35 remove escapes from the cvs parser in ipaserver/install/ldapupdate https://fedorahosted.org/freeipa/ticket/1472
Jr Aquino • 11 years ago  
6404a98
Change client enrollment principal prompt to hopefully be clearer.
Rob Crittenden • 11 years ago  
f074513
Rearrange logging for NSCD daemon.
Alexander Bokovoy • 11 years ago  
0e47812
Return correct "RunAs External Group" when removing members
Jr Aquino • 11 years ago  
42bf96d
Specify the package name when the replication plugin is missing.
Rob Crittenden • 11 years ago  
b04ceea
Update minimum required version of python-netaddr.
Jan Cholasta • 11 years ago  
177df09
Generate a database password by default in all cases.
Rob Crittenden • 11 years ago  
5fab457
Set the ipa-modrdn plugin precedence to 60 so it runs last
Rob Crittenden • 11 years ago  
c58b351
Set nickname of the RA to 'IPA RA' to avoid confusion with dogtag RA
Rob Crittenden • 11 years ago  
4fb4a85
Create tool to manage dogtag replication agreements
Rob Crittenden • 11 years ago  
268aad9
Use information from the certificate subject when setting the NSS nickname.
Rob Crittenden • 11 years ago  
a8bd9f8
Validate that the certificate subject base is in valid DN format.
Rob Crittenden • 11 years ago  
e6060ea
Improve long integer type validation
Martin Kosek • 11 years ago  
7b194f2
Fix typo in ipa-replica-prepare
Martin Kosek • 11 years ago  
6fe6779
Check IPA configuration in install tools
Martin Kosek • 11 years ago  
dacec46
Fix exit status of ipa-nis-manage enable.
Jan Cholasta • 11 years ago  
01eec29
Fix self-signed replica installation
Martin Kosek • 11 years ago  
6bf0e8d
Fix ipa-dns-install
Martin Kosek • 11 years ago  
d153d61
In sudo labels we should use RunAs and not Run As.
Rob Crittenden • 11 years ago  
6154c35
Reset failed login count to 0 when admin resets password.
Rob Crittenden • 11 years ago  
5cd7a92
Add pwd expiration notif (ipapwdexpadvnotify) to config plugin def attr list
Rob Crittenden • 11 years ago  
4ec260d
Remove redundant configuration values from krb5.conf.
Jan Cholasta • 11 years ago  
17c2238
memory leak in ipa_winsync_get_new_ds_user_dn_cb
Rich Megginson • 11 years ago  
d81e89f
modify user deleted in AD crashes winsync
Rich Megginson • 11 years ago  
4811186
winsync enables disabled users in AD
Rich Megginson • 11 years ago  
1d42820
Allow recursion by default
Martin Kosek • 11 years ago  
99669f5
Minor typos in the examples
Alexander Bokovoy • 11 years ago  
9b6e06b
Convert Bool to TRUE/FALSE when working with LDAP backend https://fedorahosted.org/freeipa/ticket/1259
Alexander Bokovoy • 11 years ago  
42613c4
oneliner correct typo in ipasudorunas_group
Jr Aquino • 11 years ago  
533c11e
Verify that the hostname is fully-qualified before accessing the service information in ipactl.
Jan Cholasta • 11 years ago  
5fc1226
Slight performance improvement by not doing some checking in production mode
Rob Crittenden • 11 years ago  
f086503
Make dogtag an optional (and default un-) installed component in a replica.
Rob Crittenden • 11 years ago  
3b039e0
Let the framework be able to override the hostname.
Rob Crittenden • 11 years ago  
b5512cb
Update test_role_plugin test to include a comma in a privilege
John Dennis • 11 years ago  
2718d7b
Use DN class in get_primary_key_from_dn to return decoded value
John Dennis • 11 years ago  
d3658a3
Add backslash escape support for cvs reader
John Dennis • 11 years ago  
8e086fd
assert_deepequal supports callback for equality testing
John Dennis • 11 years ago  
c341d76
Module for DN objects plus unit test
John Dennis • 11 years ago  
c4c089f
Fix IPA install for secure umask
Martin Kosek • 11 years ago  
9ce56a6
Make data type of certificates more obvious/predictable internally.
Rob Crittenden • 11 years ago  
212f329
Do lazy LDAP schema retrieval in json handler.
Rob Crittenden • 11 years ago  
fd56476
On a master configure sssd to only talk to the local master.
Rob Crittenden • 11 years ago  
99181f6
DNS installation fails when domain and host domain mismatch
Martin Kosek • 11 years ago  
1ee55d4
Multi-process build problems
Martin Kosek • 11 years ago  
ae34880
Require an imported certificate's issuer to match our issuer.
Rob Crittenden • 11 years ago  
eb49bea
Fix doc for sudorule runasuser commands
Martin Kosek • 11 years ago  
4657a6e
Missing krbprincipalname when uid is not set
Martin Kosek • 11 years ago  
d7bed10
Return an error message when revocation reason 7 is used
Rob Crittenden • 11 years ago  
cae4de5
Add message output summary to sudorule del, mod and find.
Rob Crittenden • 11 years ago  
b1609b2
Don't let a JSON error get lost in cascading errors.
Rob Crittenden • 11 years ago  
06ec296
Display remaining external hosts when removing from sudorule
Jr Aquino • 11 years ago  
0705fa2
Fix indirect member calculation
Rob Crittenden • 11 years ago  
63ad914
Do better detection on status of CA DS instance when installing.
Rob Crittenden • 11 years ago  
e66aa07
Fix directory manager password validation in ipa-nis-manage.
Jan Cholasta • 11 years ago  
ce87568
Support initializing memberof during replication re-init using GSSAPI
Rob Crittenden • 11 years ago  
3dd3213
Remove root autobind search restriction, fix upgrade logging & error handling.
Rob Crittenden • 11 years ago  
3f9484c
Handle LDAP search references
Martin Kosek • 11 years ago  
864c4f0
IPA installation with --no-host-dns fails
Martin Kosek • 11 years ago  
73e04bd
Fix external CA installation
Rob Crittenden • 11 years ago  
bbbaf01
Fix support for nss-pam-ldapd
Martin Kosek • 11 years ago  
4edc8c6
Fix forward zone creation in ipa-replica-prepare
Martin Kosek • 11 years ago  
e224cdf
Localization fails for MaxArgumentError
Martin Kosek • 11 years ago  
1afb66d
Do a lazy retrieval of the LDAP schema rather than at module load.
Rob Crittenden • 12 years ago  
f8f69e9
Include the word 'member' with autogenerated optional member labels.
Rob Crittenden • 12 years ago  
6a2ba33
Add option to limit the attributes allowed in an entry.
Rob Crittenden • 12 years ago  
d8a96cc
Fix reverse zone creation in ipa-replica-prepare
Martin Kosek • 12 years ago  
1df0ca7
Fix migration to work between v2 servers and remove search/size limits.
Rob Crittenden • 12 years ago  
daad702
Document that deleting and re-adding a replica requires a dirsrv restart.
Rob Crittenden • 12 years ago  
d6c078e
Configure Managed Entries on replicas.
Rob Crittenden • 12 years ago  
8bd26a8
28 One Liner: Typo in host_nis_groups has been creating 2 CN's
Jr Aquino • 12 years ago  
58a970f
Enable 389-ds SSL host checking by defauilt
Rob Crittenden • 12 years ago  
55f1ffa
Properly configure nsswitch.conf when using the --no-sssd option.
Rob Crittenden • 12 years ago  
3aa3438
Test for forwarded Kerberos credentials cache in wsgi code.
Rob Crittenden • 12 years ago  
408f00f
KDC autodiscovery may fail when domain is not realm
Martin Kosek • 12 years ago  
4a4c545
Assume ipa help for plugins.
Jan Cholasta • 12 years ago  
a3953e4
Return copy of config from ipa_get_config()
Jr Aquino • 12 years ago  
6973585
Update min nvr for selinux-policy and pki-ca for F-15+
Rob Crittenden • 12 years ago  
5090667
Running ipa-replica-manage as non-root cause errors
Martin Kosek • 12 years ago  
958cce0
Improve service manipulation in client install
Martin Kosek • 12 years ago  
f22208c
Remove doc from API.txt
Martin Kosek • 12 years ago  
b819f91
Consolidate man pages and IPA tools help
Martin Kosek • 12 years ago  
9a3bf57
Limit passwd plugin to user container
Martin Kosek • 12 years ago  
064f0ab
Properly handle --no-reverse being passed on the CLI in interactive mode
Rob Crittenden • 12 years ago  
5d7606b
Let selinux-policy handle port 7390
Martin Kosek • 12 years ago  
47756ea
Fix regressions introduced by pylint false positive fixes.
Jan Cholasta • 12 years ago  
c200f04
Typos in freeIPA messages and man page
Yuri Chornoivan • 12 years ago  
e7ee0a3
Fix issues found by Coverity.
Jan Cholasta • 12 years ago  
9711f59
install-scripts: avoid using --list with chkconfig
Simo Sorce • 12 years ago  
9ee61ba
Update spec with missing BuildRequires for pylint check
Martin Kosek • 12 years ago  
63002e7
Several improvements of the lint script.
Jan Cholasta • 12 years ago  
8522388
Run lint during each build.
Jan Cholasta • 12 years ago  
8ff1a4b
Bad return values for ipa-rmkeytab command
Martin Kosek • 12 years ago  
2d09cc9
NS records not updated by replica
Martin Kosek • 12 years ago  
78d4653
Become IPA 2.0.1
Rob Crittenden • 12 years ago  
cb284ad
LDAP Updater may crash IPA installer
Martin Kosek • 12 years ago  
3400441
ipa-client-install uninstall does not work on IPA server
Martin Kosek • 12 years ago  
afff019
Forbid reinstallation in ipa-client-install
Martin Kosek • 12 years ago  
0a1dad2
pwpolicy-mod doesn't accept old attribute values
Martin Kosek • 12 years ago  
cac328f
Prevent uninstalling client on the IPA server
Martin Kosek • 12 years ago  
8a66b9c
Handle principal not found errors when converting replication a greements
Rob Crittenden • 12 years ago  
80f1e0a
Log temporary files in ipa-client-install
Martin Kosek • 12 years ago  
d615e45
Improve Directory Service open port checker
Martin Kosek • 12 years ago  
425e2fa
IPA replica is not started after the reboot
Martin Kosek • 12 years ago  
4b453d6
ipautil: Preserve environment unless explicitly overridden by caller.
Simo Sorce • 12 years ago  
3a3f7a7
Ensure that the zonemgr passed to the installer conforms to IA5String.
Rob Crittenden • 12 years ago  
e897679
Delete the sudoers entry when disabling Schema Compat
Jr Aquino • 12 years ago  
df5b7d1
Modify the default attributes shown in user-find to match the UI design.
Rob Crittenden • 12 years ago  
54b1205
Convert manager from userid to dn for storage and back for displaying.
Rob Crittenden • 12 years ago  
1262c7c
Optimize and dynamically verify group membership
Jr Aquino • 12 years ago  
e71c5ae
Wait for memberof task and DS to start before proceeding in installation.
Rob Crittenden • 12 years ago  
8c8934f
Fix uninitialized attributes.
Jan Cholasta • 12 years ago  
6f99917
Provide attributelevelrights for the aci components in permission_show.
Rob Crittenden • 12 years ago  
6be121e
Fix some minor issues uncovered by pylint.
Jan Cholasta • 12 years ago  
ad93123
Remove unused classes.
Jan Cholasta • 12 years ago  
177da3f
Always ask members in LDAP*ReverseMember commands.
Rob Crittenden • 12 years ago  
2d2442a
The default groups we create should have ipaUniqueId set
Rob Crittenden • 12 years ago  
65f2b7a
Sort entries returned by *-find by the primary key (if any).
Rob Crittenden • 12 years ago  
5b58045
Fix lint false positives.
Jan Cholasta • 12 years ago  
c132c8b
Add lint script for static code analysis.
Jan Cholasta • 12 years ago  
87986ae
Fix double definition of output_for_cli.
Jan Cholasta • 12 years ago  
316bb6d
Fix uninitialized variables.
Jan Cholasta • 12 years ago  
b92b8b8
Suppress --on-master from ipa-client-install command-line and man page.
Rob Crittenden • 12 years ago  
1b886a7
Fix traceback in ipa-nis-manage.
Rob Crittenden • 12 years ago  
906cd7c
Improve DNS PTR record validation
Martin Kosek • 12 years ago  
cdaa9c2
Password policy commands do not include cospriority
Martin Kosek • 12 years ago  
c303ac7
Add memberHost and memberUser to default indexes
Jr Aquino • 12 years ago  
c829b33
Fix typo in ipa-server-install.
Jan Cholasta • 12 years ago  
b5b7436
postalCode should be a string not an integer.
Rob Crittenden • 12 years ago  
c4fb150
Fix ORDERING in some attributetypes and remove other unnecessary elements.
Rob Crittenden • 12 years ago  
5ac6592
Change default gecos from uid to first and last name.
Rob Crittenden • 12 years ago  
aa55b3a
Add note about ipa-dns-install to ipa-server-install man page.
Jan Cholasta • 12 years ago  
90f5d87
Cache the value of get_ipa_config() in the request context.
Rob Crittenden • 12 years ago  
caab2aa
Escape LDAP characters in member and memberof searches
Jr Aquino • 12 years ago  
87277ce
Fixed undefined label in permission adder dialog box.
Endi S. Dewata • 12 years ago  
d32a277
Make retrieval of the CA during DNS discovery non-fatal.
Rob Crittenden • 12 years ago  
9e19e9c
Allow a client to enroll using principal when the host has a OTP
Rob Crittenden • 12 years ago  
accf31d
Replica installation fails for self-signed server
Martin Kosek • 12 years ago  
6079f7d
Inconsistent error message for duplicate user
Martin Kosek • 12 years ago  
67a2902
Fix wording of error message.
Jan Cholasta • 12 years ago  
d4ad682
Fix gidnumber option of user-add command.
Pavel Zuna • 12 years ago  
eba4c92
Fix resource leaks.
Simo Sorce • 12 years ago  
30ebf54
Re-arrange CA configuration code to reduce the number of restarts.
Rob Crittenden • 11 years ago  
6f29ba9
Improve error message in ipactl
Martin Kosek • 11 years ago  
11f4593
Hide continue option from automountkey-del
Martin Kosek • 11 years ago  
63f7bc6
Don't set the password expiration to the current time
Simo Sorce • 11 years ago  
d290e8f
Clean up existing DN object usage
John Dennis • 11 years ago  
c94acc9
When setting a host password don't set krbPasswordExpiration.
Rob Crittenden • 11 years ago  
45cd332
Fix message in test case for checking minimum values
Rob Crittenden • 11 years ago  
81ea188
Make AVA, RDN & DN comparison case insensitive. No need for lowercase normalization.
John Dennis • 11 years ago  
1a6cb9f
Fix invalid issuer in unit tests
Martin Kosek • 11 years ago  
0dba747
Don't leave dangling map if adding an indirect map fails
Rob Crittenden • 11 years ago  
7d91b33
Fix external CA install.
Jan Cholasta • 11 years ago  
d466612
Fix automountkey commands summary
Martin Kosek • 11 years ago  
8f76745
Revert use of 'can be at least' to 'must be at least' in minvalue validator
Rob Crittenden • 11 years ago  
2ee6295
Add an arch-specific Requires on cyrus-sasl-gssapi
Rob Crittenden • 11 years ago  
99a18c3
Fix man page ipa-csreplica-manage
Martin Kosek • 11 years ago  
537822e
Fix ipa-compat-manage not working after recent ipa-nis-manage change.
Jan Cholasta • 11 years ago  
489b6a5
Autofill the default revocation reason
Rob Crittenden • 11 years ago  
6c49412
Hide the HBAC access type attribute now that deny is deprecated.
Rob Crittenden • 11 years ago  
e5bbc02
Remove wrong kpasswd sysconfig
Jakub Hrozek • 11 years ago  
ef18a45
Ticket 1485 - DN pairwise grouping
John Dennis • 11 years ago  
867dca9
Add missing automount summaries
Martin Kosek • 11 years ago  
c28ec5b
Add Alexander Bokovoy and Jan Cholasta to contributors file
Rob Crittenden • 11 years ago  
733dc83
Make ipa-client-install error messages more understandable and relevant.
Rob Crittenden • 11 years ago  
fb10776
Set a default minimum value for class Int, handle long values better.
Rob Crittenden • 11 years ago  
9839276
With the external user/group management fixed, correct the unit tests.
Rob Crittenden • 11 years ago  
06709a5
Correct sudo runasuser and runasgroup attributes in schema
Jr Aquino • 11 years ago  
104b1b8
Correct behavior for sudorunasgroup vs sudorunasuser
Jr Aquino • 11 years ago  
13ad211
Fix regression when calculating external groups.
Rob Crittenden • 11 years ago  
9cb9cd9
Fix sssd.conf to always have IPA certificate for the domain.
Alexander Bokovoy • 11 years ago  
6262280
Don't set krbLastPwdChange when setting a host OTP password.
Rob Crittenden • 11 years ago  
6fd15fe
A removed external host is shown in output when removing external hosts.
Rob Crittenden • 11 years ago  
011f1e3
Fix sudorule-remove-user
Martin Kosek • 11 years ago  
69cc34e
Don't delete NIS netgroup compat suffix on 'ipa-nis-manage disable'.
Jan Cholasta • 11 years ago  
fe3fd0e
35 remove escapes from the cvs parser in ipaserver/install/ldapupdate https://fedorahosted.org/freeipa/ticket/1472
Jr Aquino • 11 years ago  
6404a98
Change client enrollment principal prompt to hopefully be clearer.
Rob Crittenden • 11 years ago  
f074513
Rearrange logging for NSCD daemon.
Alexander Bokovoy • 11 years ago  
0e47812
Return correct "RunAs External Group" when removing members
Jr Aquino • 11 years ago  
42bf96d
Specify the package name when the replication plugin is missing.
Rob Crittenden • 11 years ago  
b04ceea
Update minimum required version of python-netaddr.
Jan Cholasta • 11 years ago  
177df09
Generate a database password by default in all cases.
Rob Crittenden • 11 years ago  
5fab457
Set the ipa-modrdn plugin precedence to 60 so it runs last
Rob Crittenden • 11 years ago  
c58b351
Set nickname of the RA to 'IPA RA' to avoid confusion with dogtag RA
Rob Crittenden • 11 years ago  
4fb4a85
Create tool to manage dogtag replication agreements
Rob Crittenden • 11 years ago  
268aad9
Use information from the certificate subject when setting the NSS nickname.
Rob Crittenden • 11 years ago  
a8bd9f8
Validate that the certificate subject base is in valid DN format.
Rob Crittenden • 11 years ago  
e6060ea
Improve long integer type validation
Martin Kosek • 11 years ago  
7b194f2
Fix typo in ipa-replica-prepare
Martin Kosek • 11 years ago  
6fe6779
Check IPA configuration in install tools
Martin Kosek • 11 years ago  
dacec46
Fix exit status of ipa-nis-manage enable.
Jan Cholasta • 11 years ago  
01eec29
Fix self-signed replica installation
Martin Kosek • 11 years ago  
6bf0e8d
Fix ipa-dns-install
Martin Kosek • 11 years ago  
d153d61
  • « Newer
  • page 1 of 77
  • » Older
Powered by Pagure 5.13.3
Documentation • File an Issue • About • SSH Hostkey/Fingerprint
© Red Hat, Inc. and others.