pagure Logo
  • Log In

freeipa

Clone
Source Code
GIT
  • Source
  • Issues  986
  • Roadmap 
  • Stats
 Overview  Files  Commits  Branches  Forks  Releases

Commits 4951

Branch: ipa-2-2
ipa-1-0 ipa-1-1 ipa-1-2 ipa-2-0 ipa-2-1 ipa-2-2 ipa-3-0 ipa-3-1 ipa-3-2 ipa-3-3 ipa-4-0 ipa-4-1 ipa-4-2 ipa-4-3 ipa-4-4 ipa-4-5 ipa-4-6 ipa-4-6-CVE-2019-10195-and-CVE-2019-14867 ipa-4-6-CVE-2020-10747 ipa-4-7 ipa-4-7-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8 ipa-4-8-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8-CVE-2020-10747 ipa-4-9 master webui-cleanup
This branch contains 872 commits not in the main branch master
Become IPA 2.2.2
Martin Kosek • 7 years ago  
2d54446
Pylint cleanup
Jan Cholasta • 7 years ago  
f380962
Use secure method to acquire IPA CA certificate
John Dennis • 7 years ago  
a654112
Do SSL CA verification and hostname validation.
Rob Crittenden • 7 years ago  
2be643e
Update plugin to upload CA certificate to LDAP
Alexander Bokovoy • 7 years ago  
47f9052
Upload CA cert in the directory on install
Simo Sorce • 7 years ago  
e1208a0
Filter suffix in replication management tools
Martin Kosek • 8 years ago  
18b873c
Run index task for new indexes
Martin Kosek • 8 years ago  
1addbc9
Become IPA 2.2.1
Martin Kosek • 8 years ago  
d479151
RPM spec fix for ffconfig.js and ffconfig_page.js
Petr Vobornik • 8 years ago  
735153b
Create Firefox extension on upgrade and replica-install
Petr Viktorin • 8 years ago  
41ff6aa
replica-install: Don't copy Firefox config extension files if they're not in the replica file
Petr Viktorin • 8 years ago  
8f59974
Add mime type to httpd ipa.conf for xpi extension
Petr Vobornik • 8 years ago  
53d29ac
Configuration pages changed to use new FF extension
Petr Vobornik • 8 years ago  
1429538
Build and installation of Kerberos authentication extension
Petr Vobornik • 8 years ago  
8849853
Kerberos authentication extension makefiles
Petr Vobornik • 8 years ago  
631a001
Kerberos authentication extension
Petr Vobornik • 8 years ago  
8c6699f
Fixed boot.ldif permission.
Endi Sukma Dewata • 8 years ago  
952ffe4
Fix jquery error when using '??' in a pkey
Petr Vobornik • 8 years ago  
08e3fbb
Add support for disabling KDC writes
Simo Sorce • 8 years ago  
97e3626
SSH configuration fixes.
Jan Cholasta • 8 years ago  
0b33b9f
Index the fqdn attribute.
Rob Crittenden • 8 years ago  
ce11a7c
Check for locked-out user before incrementing lastfail.
Rob Crittenden • 8 years ago  
608d297
Fix migration code password setting.
Simo Sorce • 8 years ago  
f883b25
Host page fixed to work with disabled DNS support
Petr Vobornik • 8 years ago  
2c362c9
Become IPA 2.2.0
Rob Crittenden • 8 years ago  
b16d434
Update hostname validator error messages in tests
Petr Viktorin • 8 years ago  
8fac996
Make ipa 2.2 client capable of joining an older server
Martin Kosek • 8 years ago  
1267d57
Set the "KerberosAuthentication" option in sshd_config to "no" instead of "yes".
Jan Cholasta • 8 years ago  
6321c5b
Improve error message in zonemgr validator
Martin Kosek • 8 years ago  
ed99c51
Revert "Validate attributes in permission-add"
Rob Crittenden • 8 years ago  
ee8ff3a
Revert "Search allowed attributes in superior objectclasses"
Rob Crittenden • 8 years ago  
fab98c7
Paging disable for password policies
Petr Vobornik • 8 years ago  
71f4b2b
Additional tests for pwpolicy
Petr Viktorin • 8 years ago  
a79b4ce
Sort password policies properly with --pkey-only
Martin Kosek • 8 years ago  
2271e0a
Update docs for user-status, always show disabled, time for each server.
Rob Crittenden • 8 years ago  
dbc7afc
Use mixed-case for Read DNS Entries permission
Rob Crittenden • 8 years ago  
38e7d06
Fix help of --hostname option in ipa-client-install
Martin Kosek • 8 years ago  
0457210
Fix name error in hbactest
John Dennis • 8 years ago  
1df88f0
Added permission field to delegation
Petr Vobornik • 8 years ago  
d27b55c
Fix internal error when renaming user with an empty string.
Jan Cholasta • 8 years ago  
2a27e0b
Do not fail migration because of duplicate groups
Martin Kosek • 8 years ago  
49f8695
Raise proper exception when LDAP limits are exceeded
Martin Kosek • 8 years ago  
4a48efe
don't append basedn to container if it is included
John Dennis • 8 years ago  
36eb254
User is notified that password needs to be reset in forms-based login
Petr Vobornik • 8 years ago  
bd84fb4
Return consistent expiration message for forms-based login
Rob Crittenden • 8 years ago  
d05a5c6
Fix empty external member processing
Ondrej Hamada • 8 years ago  
dc0132a
Fix DNS and permissions unit tests
Martin Kosek • 8 years ago  
b15807a
Remove the running state when uninstalling DS instances.
Rob Crittenden • 8 years ago  
d4350c0
Fix dnsrecord_add interactive mode
Martin Kosek • 8 years ago  
73b23bf
Return correct record name in DNS plugin
Martin Kosek • 8 years ago  
0df9c5b
Validate DN & RDN parameters for migrate command
John Dennis • 8 years ago  
46391e9
Document the 'nonempty' flag
Petr Viktorin • 8 years ago  
85d634c
Unable to rename permission object
Ondrej Hamada • 8 years ago  
04d0215
Pass make-test arguments through to Nose
Petr Viktorin • 8 years ago  
05f90cf
Remove pattern_errmsg from API.txt
Petr Viktorin • 8 years ago  
8241729
Fix expected error messages in tests
Petr Viktorin • 8 years ago  
94810d5
text unit test should validate using installed mo file
John Dennis • 8 years ago  
0ad60e5
Use indexed format specifiers in i18n strings
John Dennis • 8 years ago  
218b473
Configure certmonger to execute restart scripts on renewal.
Rob Crittenden • 8 years ago  
24cc8d4
Removal of memberofindirect_permissons from privileges
Petr Vobornik • 8 years ago  
6b07af6
Convert --setattr values for attributes marked no_update
Petr Viktorin • 8 years ago  
32fa7f7
Limit permission and selfservice names to alphanumerics, -, _, space
Petr Viktorin • 8 years ago  
0442713
Dereference pointer when comparing password history in qsort compare.
Rob Crittenden • 8 years ago  
a570cef
Removed mutex option from checkboxes
Petr Vobornik • 8 years ago  
3f1d0e6
DNS forward policy: checkboxes changed to radio buttons
Petr Vobornik • 8 years ago  
e4ab2ef
Added attrs field to permission for target=subtree
Petr Vobornik • 8 years ago  
49ed21d
Fixed: permission attrs table didn't update its available options on load
Petr Vobornik • 8 years ago  
d5ae74e
Reworked netgroup Web UI to allow setting user/host category
Petr Vobornik • 8 years ago  
7a9da0b
Fix installation when server hostname is not in a default domain
Martin Kosek • 8 years ago  
173f4ae
Check configured maximum user login length on user rename.
Jan Cholasta • 8 years ago  
9e2ee3e
Return consistent value when hostcat and usercat is all.
Rob Crittenden • 8 years ago  
d925eba
Confusing default user groups
Ondrej Hamada • 8 years ago  
d9c0b93
Add missing comma to list of services that cannot be disabled.
Rob Crittenden • 8 years ago  
06e4b4a
improve handling of ds instances during uninstall
John Dennis • 8 years ago  
ad678d1
Check whether the default user group is POSIX when adding new user with --noprivate.
Jan Cholasta • 8 years ago  
811faaf
Make revocation_reason required when revoking a certificate.
Rob Crittenden • 8 years ago  
66317ac
Configure SELinux for httpd during upgrades
Martin Kosek • 8 years ago  
56196b2
Defer conversion and validation until after --{add,del,set}attr are handled
Petr Viktorin • 8 years ago  
241955e
Add updated Output format for batch to API.txt
Rob Crittenden • 8 years ago  
774b880
Test the batch plugin
Petr Viktorin • 8 years ago  
0eb6adb
Fix little test errors
Petr Viktorin • 8 years ago  
e86bb99
Don't create private groups for migrated users, check for valid gidnumber
Rob Crittenden • 8 years ago  
b98342a
Forbid public access to DNS tree
Martin Kosek • 8 years ago  
cf8f2f8
Move test skipping to class setup
Petr Viktorin • 8 years ago  
57950b9
Handle updating replication agreements that lack nsDS5ReplicatedAttributeList
Rob Crittenden • 8 years ago  
5b895af
Fix failure count interval attribute name in query for password policy.
Rob Crittenden • 8 years ago  
27ae10d
Improve automount indirect map error message
Martin Kosek • 8 years ago  
4db2830
Allow multi-line CSV parameters
Petr Viktorin • 8 years ago  
bc7111a
Inter-facet expiration
Petr Vobornik • 8 years ago  
471e06f
Facet expiration flag
Petr Vobornik • 8 years ago  
ebeb20e
Netgroup nisdomain and hosts validation
Ondrej Hamada • 8 years ago  
df0e73a
Tolerate UDP port failures in conncheck
Martin Kosek • 8 years ago  
f1f6b1d
Add CLI parsing tests
Petr Viktorin • 8 years ago  
1f3b058
Change parameters to use only default_from for dynamic default values.
Jan Cholasta • 8 years ago  
2e2d323
Fix the procedure for getting default values of command parameters.
Jan Cholasta • 8 years ago  
96e22a3
Add requires on python-krbV to client subpackage
Rob Crittenden • 8 years ago  
0344bc6
Fix dnsrecord-del interactive mode
Martin Kosek • 8 years ago  
19f8be6
Replace broken i18n shell test with Python test
John Dennis • 8 years ago  
4ef3d29
Fix uses of O=REALM instead of the configured certificate subject base.
Jan Cholasta • 8 years ago  
5babb36
Parse zone indices in IPv6 addresses in CheckedIPAddress.
Jan Cholasta • 8 years ago  
9783195
Improve user awareness about dnsconfig
Martin Kosek • 8 years ago  
78079b0
Amend permissions for new DNS attributes
Martin Kosek • 8 years ago  
a7a0c34
Use valid argument names in tests
Petr Viktorin • 8 years ago  
5aaa47d
Set nsslapd-minssf-exclude-rootdse to on so the DSE is always available.
Rob Crittenden • 8 years ago  
96311d0
Set minimum version of 389-ds-base to 1.2.10.4-2 to fix upgrade issue
Rob Crittenden • 8 years ago  
92961a6
Add missing BuildRequires
Petr Viktorin • 8 years ago  
097e962
Fix unit tests to work with new comma-support, validation requirements
Rob Crittenden • 8 years ago  
5fe3a6c
Typos in FreeIPA messages
Ondrej Hamada • 8 years ago  
638b872
Fix default SOA serial format
Martin Kosek • 8 years ago  
5fce48d
Avoid deleting DNS zone when a context is reused
Martin Kosek • 8 years ago  
b6e6092
Wait for child process to terminate after receiving SIGINT in ipautil.run.
Jan Cholasta • 8 years ago  
93312d1
When changing multiple booleans with setsebool, pass each of them separately.
Alexander Bokovoy • 8 years ago  
5e08fa6
Fix LDAP effective rights control with python-ldap 2.4.x
Martin Kosek • 8 years ago  
112c4b7
Normalize the primary key value to lowercase during migration.
Rob Crittenden • 8 years ago  
0b5c853
Fix attributes that contain DNs when migrating.
Rob Crittenden • 8 years ago  
4e0e0fd
Harden raw record processing in DNS plugin
Martin Kosek • 8 years ago  
968ca77
Fix memleak and silence Coverity defects
Simo Sorce • 8 years ago  
5ffa1c7
Fix precallback validators in DNS plugin
Martin Kosek • 8 years ago  
e770921
Search allowed attributes in superior objectclasses
Ondrej Hamada • 8 years ago  
f000640
Fix test failure testing rename with an invalid hostname.
Rob Crittenden • 8 years ago  
d6cb815
Only split CSV in the client, quote instead of escaping
Petr Viktorin • 8 years ago  
3738a61
No longer shell escape the DM password when calling pkisilent.
Rob Crittenden • 8 years ago  
ab71482
Added mac address to host page
Petr Vobornik • 8 years ago  
42fc4ae
DNS forwarder validator
Petr Vobornik • 8 years ago  
c09c21a
Add support of new options in dnsconfig
Petr Vobornik • 8 years ago  
0acc3e2
Add missing global options in dnsconfig
Martin Kosek • 8 years ago  
957fd7e
Allow port numbers for idnsForwarders
Martin Kosek • 8 years ago  
7ff3823
Use a consistent parameter name in errors, defaulting to cli_name.
Rob Crittenden • 8 years ago  
a533224
Fixed rpm build warning - extension.js listed twice
Petr Vobornik • 8 years ago  
0d003b3
Show_content on refresh success
Petr Vobornik • 8 years ago  
224e8c3
Content is no more overwritten by error message
Petr Vobornik • 8 years ago  
801dddf
Use nose tools to check for exceptions
Petr Viktorin • 8 years ago  
84522b3
Don't allow hosts and services of IPA masters to be disabled.
Rob Crittenden • 8 years ago  
133a0f0
Import the ipaserver plugins based on context, not env.in_server.
Rob Crittenden • 8 years ago  
4c8740f
Remove ipausers' gidnumber from tests
Petr Viktorin • 8 years ago  
109d50d
Add disovery domain if client domain is different from server domain
Lars Sjostrom • 8 years ago  
034f6d7
Configure a basic ldap.conf for OpenLDAP in /etc/openldap/ldap.conf
Rob Crittenden • 8 years ago  
ebdbad5
Better hbactest validation message
Petr Vobornik • 8 years ago  
6948138
Fixed evaluating checkbox dirty status
Petr Vobornik • 8 years ago  
049cc6c
Treat UPGs correctly in winsync replication
Martin Kosek • 8 years ago  
1691871
Add subject key identifier to the dogtag server cert profile.
Rob Crittenden • 8 years ago  
7c868c3
Certificate serial number in hex format - ui testing data
Petr Vobornik • 8 years ago  
62dc232
Display serial number as HEX (DECIMAL) when showing certificates.
Rob Crittenden • 8 years ago  
b7a7b4c
Don't crash when searching with empty relationship options
Petr Viktorin • 8 years ago  
ea4047e
Don't set dbdir in the connection until after the connection is created.
Rob Crittenden • 8 years ago  
e6d997a
Set SELinux boolean httpd_manage_ipa so ipa_memcached will work.
Rob Crittenden • 8 years ago  
faa9b47
Fixed checkbox value in table without pkey
Petr Vobornik • 8 years ago  
b2e10c2
Fixed mask validation in network_validator
Petr Vobornik • 8 years ago  
53beb6e
Fix ipa-replica-manage TLS connection error
Martin Kosek • 8 years ago  
eb309b7
Fix nsslapd-anonlimitsdn dn in cn=config
Rob Crittenden • 8 years ago  
54ab3e1
Fix migration plugin compat check
Martin Kosek • 8 years ago  
26b968c
Set minimum version of selinux-policy to pick up memcached fix
Rob Crittenden • 8 years ago  
b3afee3
Refresh resolvers after DNS install
Martin Kosek • 8 years ago  
453dbdc
Mark most config options as required
Petr Viktorin • 8 years ago  
a787c8d
Enforce that required attributes can't be set to None in CRUD Update
Petr Viktorin • 8 years ago  
c6e4372
Allow removing sudo commands with special characters from command groups
Petr Viktorin • 8 years ago  
f43aae3
More exception handlers in ipa-client-install
Ondrej Hamada • 8 years ago  
cada19d
Ignore case in yes/no prompts
Martin Kosek • 8 years ago  
bbe18a0
Fix NSS no_init in the NSSHTTPS class
Rob Crittenden • 8 years ago  
5fbeac0
Really Become IPA v2.2.0 RC 1 (2.1.90.rc1)
Rob Crittenden • 8 years ago  
cde4a19
Become IPA v2.2.0 RC 1 (2.1.90.rc1)
Rob Crittenden • 8 years ago  
a13a64d
Only warn if ipa-getkeytab doesn't get all requested enctypes.
Rob Crittenden • 8 years ago  
061301d
Do kinit in client before connecting to backend
Rob Crittenden • 8 years ago  
5b9fba7
Add --noac option to ipa-client-install man page
Rob Crittenden • 8 years ago  
d18ea5f
ipa-client-install not calling authconfig
Ondrej Hamada • 8 years ago  
924a6bd
Fix API.txt and VERSION to reflect new sudoOrder option.
Rob Crittenden • 8 years ago  
2f17d2d
Improve dnsrecord interactive help
Martin Kosek • 8 years ago  
104e976
Add help for new structured DNS framework
Martin Kosek • 8 years ago  
b6ef6af
Make hostnames adhere to new standards in hbactest plugin tests
Rob Crittenden • 8 years ago  
34e78f3
Fix encoding for setattr/addattr/delattr
Martin Kosek • 8 years ago  
bd0a6aa
Add support for sudoOrder
Rob Crittenden • 8 years ago  
eb8309d
Removed CSV creation from UI
Petr Vobornik • 8 years ago  
25fbebd
Configure SSH features of SSSD in ipa-client-install.
Jan Cholasta • 8 years ago  
154696b
Use reboot from /sbin
Petr Viktorin • 8 years ago  
edf08b2
Remove memberPrincipal for deleted replicas
Martin Kosek • 8 years ago  
5cc1e63
Add status command to retrieve user lockout status
Rob Crittenden • 8 years ago  
418cf11
Fix typos in ipa-replica-manage man page
Martin Kosek • 8 years ago  
0bcd66a
Improved usability of login dialog
Petr Vobornik • 8 years ago  
44aadf7
Forms based authentication UI
Petr Voborník • 8 years ago  
0dacc8b
Fix WSGI error handling
Rob Crittenden • 8 years ago  
c941ecf
Make hostnames adhere to new standards in HBAC tests
Rob Crittenden • 8 years ago  
c611d89
Fix ticket checks when using either s4u2proxy or a delegated krbtgt
Simo Sorce • 8 years ago  
079bbaa
Improve hostname verification in install tools
Martin Kosek • 8 years ago  
ae8876e
subclass HTTP_Status from plugable.Plugin, fix not_found tests
Rob Crittenden • 8 years ago  
9e3dabb
Migration warning when compat enabled
Ondrej Hamada • 8 years ago  
2313447
Only apply validation rules when adding and updating.
Rob Crittenden • 8 years ago  
83ab80c
Added logout button
Petr Voborník • 8 years ago  
8596711
Don't delete system users that are added during installation.
Rob Crittenden • 8 years ago  
ee337ec
Fixed content type check in login_password
Petr Vobornik • 8 years ago  
d5fbb87
Log a message when returning non-success HTTP result
John Dennis • 8 years ago  
2ba2aff
Improve FQDN handling in DNS and host plugins
Martin Kosek • 8 years ago  
3f50b0e
Improve hostname and domain name validation
Martin Kosek • 8 years ago  
3dac7a7
Improve dnsrecord-add interactive mode
Martin Kosek • 8 years ago  
8860569
Don't set migrated user's GID to that of default users group.
Rob Crittenden • 8 years ago  
9c448ae
Validate attributes in permission-add
Ondrej Hamada • 8 years ago  
a331f35
Warn that deleting replica is irreversible, try to detect reconnection.
Rob Crittenden • 8 years ago  
4e7e98f
Fix nested netgroups in NIS.
Rob Crittenden • 8 years ago  
f23d5c6
Add support defaultNamingContext and add --basedn to migrate-ds
Rob Crittenden • 8 years ago  
c9e0473
Fixed selection of single value in combobox
Petr Voborník • 8 years ago  
6e6f247
Fixed redirection in Add and edit in automember hostgroup.
Petr Voborník • 8 years ago  
d9f9271
Added unsupported_validator
Petr Voborník • 8 years ago  
d1c3706
Fixed DNS record add handling of 4304 error
Petr Voborník • 8 years ago  
67a606d
Making validators to return true result if empty
Petr Voborník • 8 years ago  
29e425f
Moved is_empty method from field to IPA object
Petr Voborník • 8 years ago  
e4564ab
Added attrs to permission when target is group or filter
Petr Voborník • 8 years ago  
0ec8b42
Multiple fields for one attribute
Petr Voborník • 8 years ago  
c34b1a3
New UI for DNS global configuration
Petr Voborník • 8 years ago  
335c4ff
Fixed displaying of A6 Record
Petr Voborník • 8 years ago  
c19b9ee
DNS UI: added A,AAAA create reverse options to adder dialog
Petr Voborník • 8 years ago  
e5f13ef
DNS Zone UI: added new attributes
Petr Voborník • 8 years ago  
7810720
New checkboxes option: Mutual exclusive
Petr Voborník • 8 years ago  
8512670
Static metadata update - new DNS options
Petr Voborník • 8 years ago  
d442f02
Use stricter semantics when checking IP address for DNS records
Petr Viktorin • 8 years ago  
a100b7b
Fix bad merge of not calling memberof task when re-initializing a replica
Rob Crittenden • 8 years ago  
7ff7c8e
ipa-kdb: fix delegation acl check
Simo Sorce • 8 years ago  
fd54775
Don't call memberof task when re-initializing a replica.
Rob Crittenden • 8 years ago  
b4514da
Improve dns error message
Martin Kosek • 8 years ago  
449c71c
Implement password based session login
John Dennis • 8 years ago  
135e208
Implement session activity timeout
John Dennis • 8 years ago  
dc8cca8
Tweak the session auth to reflect developer consensus.
John Dennis • 8 years ago  
49289bc
Limit allowed characters in a netgroup name to alpha, digit, -, _ and .
Rob Crittenden • 8 years ago  
85462d0
Make sure the nolog argument to ipautil.run is not a bare string
Petr Viktorin • 8 years ago  
0b8847e
Add SSHFP update policy for existing zones
Martin Kosek • 8 years ago  
e0dae21
Add client hostname requirements to man
Martin Kosek • 8 years ago  
cac915e
Don't run restorecon if SELinux is disabled or not present.
Rob Crittenden • 8 years ago  
61f7a66
Sanitize UDP checks in conncheck
Martin Kosek • 8 years ago  
d0320b9
Add reverse DNS record when forward is created
Martin Kosek • 8 years ago  
4265028
Make sure 389-ds is running when adding memcache service in upgrade.
Rob Crittenden • 8 years ago  
455c6d5
Remove unused kpasswd.keytab and ldappwd files if they exist.
Rob Crittenden • 8 years ago  
1d4aa20
Check for duplicate winsync agreement before trying to set one up.
Rob Crittenden • 8 years ago  
31bd87a
Fix managing winsync replication agreements with ipa-replica-manage
Rob Crittenden • 8 years ago  
fefbdce
Add Requires to ipa-client on oddjob-mkhomedir
Rob Crittenden • 8 years ago  
de4603e
Don't consider virtual attributes when validating custom objectclasses
Rob Crittenden • 8 years ago  
74bec83
Add gidnumber minvalue
Martin Kosek • 8 years ago  
60f81d1
Catch public exceptions when creating the LDAP context in WSGI.
Rob Crittenden • 8 years ago  
a9b33ff
Add API for PTR sync control
Martin Kosek • 8 years ago  
40063c0
Add DNS conditional forwarding
Martin Kosek • 8 years ago  
ec937dc
Query and transfer ACLs for DNS zones
Martin Kosek • 8 years ago  
c614d68
Global DNS options
Martin Kosek • 8 years ago  
4cf8192
Update schema for bind-dyndb-ldap
Martin Kosek • 8 years ago  
bd09e54
Don't allow IPA master hosts or important services be deleted.
Rob Crittenden • 8 years ago  
f7b28f9
Add Conflicts on mod_ssl because it interferes with mod_proxy and dogtag
Rob Crittenden • 8 years ago  
bc5c268
Don't check for schema uniqueness when comparing in ldapupdate.
Rob Crittenden • 8 years ago  
93d2666
Make sure memberof is in replication attribute exclusion list.
Rob Crittenden • 8 years ago  
2e9fed2
Add the -v option to sslget to provide more verbose errors
Rob Crittenden • 8 years ago  
9314ff2
Don't allow "Modify Group membership" permission to manage admins
Rob Crittenden • 8 years ago  
3961aa8
fix incorrect format specifier for
John Dennis • 8 years ago  
64dd82f
created Transifex resource for ipa-2-2,
John Dennis • 8 years ago  
da1c7e1
update po files after pulling from transifex master branch
John Dennis • 8 years ago  
7e41c85
[branch 2-2] update translation pot file and PY_EXPLICIT_FILES list
John Dennis • 8 years ago  
e725866
Added missing configuration options
Petr Voborník • 8 years ago  
7fe095c
Fixed problem when attributes_widget was displaying empty option
Petr Voborník • 8 years ago  
719fa90
policy: add function to check lockout policy
Simo Sorce • 8 years ago  
9fbe19a
Limit the change password permission so it can't change admin passwords
Rob Crittenden • 8 years ago  
6c222bd
Add common helper for interactive prompts
Petr Viktorin • 8 years ago  
5e74508
Add extra checking function to XMLRPC test framework
Petr Viktorin • 8 years ago  
38079ec
Make ipausers a non-posix group on new installs
Petr Viktorin • 8 years ago  
2334ef2
Ease zonemgr restrictions
Martin Kosek • 8 years ago  
fac121a
ipa-kdb: Fix ACL evaluator
Simo Sorce • 8 years ago  
cb3e0ae
Become IPA v2.2.0 alpha 2 (2.1.90.pre2)
Rob Crittenden • 8 years ago  
ca57c32
Set min for 389-ds-base to 1.2.10.1-1 to fix install segfault, schema replication.
Rob Crittenden • 8 years ago  
c28c763
Use FQDN in place of FQHN for consistency in sub_dict.
Rob Crittenden • 8 years ago  
84b377f
Configure ipa_memcached when a replica is installed.
Rob Crittenden • 8 years ago  
849265d
Enable ipa_memcached when upgrading
Rob Crittenden • 8 years ago  
7cb549e
ipa-kdb: set krblastpwdchange only when keys have been effectively changed
Simo Sorce • 8 years ago  
c8cdb75
ipa-kdb: Avoid lookup on modify if possible
Simo Sorce • 8 years ago  
ebba5d9
Disable false pylint error in freeipa-systemd-upgrade
Rob Crittenden • 8 years ago  
e0d533e
Add S4U2Proxy delegation permissions on upgrades
Rob Crittenden • 8 years ago  
ba84130
Remove Apache ccache on upgrade.
Rob Crittenden • 8 years ago  
3357fa3
Correct update syntax in 30-s4u2proxy.update
Rob Crittenden • 8 years ago  
f6f7475
Update S4U2proxy delegation list when creating replicas
Rob Crittenden • 8 years ago  
e3d9302
Don't set delegation flag in client, we're using S4U2Proxy now
Rob Crittenden • 8 years ago  
abd3ae2
Stop and uninstall ipa_kpasswd on upgrade, fix dbmodules in krb5.conf
Rob Crittenden • 8 years ago  
1fb034b
Add update file for new schema in v2.2/3.0
Rob Crittenden • 8 years ago  
4a597ec
Add update files for SELinuxUserMap
Rob Crittenden • 8 years ago  
03de4df
Redirection to PTR records from A,AAAA records
Petr Voborník • 8 years ago  
578669d
UI support for ssh keys
Petr Voborník • 8 years ago  
05973d2
ipa-kdb: add AS auditing support
Simo Sorce • 8 years ago  
5a087e6
Don't use sets when calculating the modlist so order is preserved.
Rob Crittenden • 8 years ago  
9625bf4
Move the compat module from ipalib to ipapython.
Jan Cholasta • 8 years ago  
dc5c6b1
Add SSH service to platform-specific services.
Jan Cholasta • 8 years ago  
f2d3f91
Base64-decode unicode values in Bytes parameters.
Jan Cholasta • 8 years ago  
36eefa2
Configure ssh and sshd during ipa-client-install.
Jan Cholasta • 8 years ago  
4d51198
Update host SSH public keys on the server during client install.
Jan Cholasta • 8 years ago  
68d1613
Move the nsupdate functionality to separate function in ipa-client-install.
Jan Cholasta • 8 years ago  
a312521
Add API initialization to ipa-client-install.
Jan Cholasta • 8 years ago  
f2f4f57
Add support for SSH public keys to user and host objects.
Jan Cholasta • 8 years ago  
502eafb
Add LDAP ACIs for SSH public key schema.
Jan Cholasta • 8 years ago  
8539044
Add LDAP schema for SSH public keys.
Jan Cholasta • 8 years ago  
0708ea2
Internationalization for HBAC and ipalib.output
Petr Viktorin • 8 years ago  
f50c0e3
Removed question marks from field labels
Petr Voborník • 8 years ago  
83fe769
Fixed entity link disabling
Petr Vobornik • 8 years ago  
cbdbab3
Add Petr Viktorín to Contributors.txt
Martin Kosek • 8 years ago  
f93d95f
Clean up i18n strings
Petr Viktorin • 8 years ago  
a53dda6
Fixed ipa.js for sessions.
Endi S. Dewata • 8 years ago  
bf97b52
add session manager and cache krb auth
John Dennis • 8 years ago  
51a59dc
Add ipa_memcached service
John Dennis • 8 years ago  
a11d07e
Adopt to python-ldap 2.4.6 by removing unused references which are not available in python-ldap anymore
Alexander Bokovoy • 8 years ago  
3fa3860
Handle upgrade issues with systemd in Fedora 16 and above
Alexander Bokovoy • 8 years ago  
bcad489
Add management of inifiles to allow manipulation of systemd units
Alexander Bokovoy • 8 years ago  
9078efe
Honor default home directory and login shell in user_add
Petr Viktorin • 8 years ago  
4c04cfb
Make ipaconfigstring modifiable by users.
Rob Crittenden • 8 years ago  
52cf9d9
Memberof attribute control and update
Ondrej Hamada • 8 years ago  
93a1a38
Consolidate external member code into two functions in baseldap.py
Rob Crittenden • 8 years ago  
994ec02
ignore generated services file.
Adam Young • 8 years ago  
a228bf7
Remove delegation from browser config
Adam Young • 8 years ago  
b28cd0e
Remove unused options from ipa-managed-entries
Martin Kosek • 8 years ago  
d164d11
Fix/add options in ipa-managed-entries man page
Petr Viktorin • 8 years ago  
5dc92bd
Automember UI - Fixed I18n labels
Petr Voborník • 8 years ago  
c2caefd
Automember UI - default groups
Petr Voborník • 8 years ago  
6a44793
Become IPA v2.2.0 alpha 1 (2.1.90.pre1)
Rob Crittenden • 8 years ago  
5e950d1
Require minimum SSF 56, confidentially. Also ensure minssf <= maxssf.
Rob Crittenden • 8 years ago  
e1b20be
Switch --group and --membergroup in example for delegation
Petr Viktorin • 8 years ago  
079952f
Return proper DN in netgroup-add
Martin Kosek • 8 years ago  
ce8c474
Make submount automount maps work.
Rob Crittenden • 8 years ago  
b458c96
Add argument help to CLI
Martin Kosek • 8 years ago  
c080c65
Remove debug messages
Martin Kosek • 8 years ago  
1403307
Improve password change error message
Martin Kosek • 8 years ago  
55cd9e7
Fix raw format for ACI commands
Martin Kosek • 8 years ago  
68d78d3
Fix 'no-reverse' option description
Ondrej Hamada • 8 years ago  
21e6f8e
Improve migration help
Martin Kosek • 8 years ago  
d1cfe47
Improve dnszone-add error message
Martin Kosek • 8 years ago  
1abed1e
Add data field for A6 record
Martin Kosek • 8 years ago  
13c3867
Add SRV record target validator
Martin Kosek • 8 years ago  
4ae3a60
Fix NSEC record conversion
Martin Kosek • 8 years ago  
43c3fbc
Fix TXT record parsing
Martin Kosek • 8 years ago  
8f17a9f
Improve netgroup-add error messages
Martin Kosek • 8 years ago  
16d17f4
Automember UI
Petr Voborník • 8 years ago  
a79a27a
Navigation and redirection to various facets
Petr Voborník • 8 years ago  
81b220a
Show password expiration date.
Endi Sukma Dewata • 8 years ago  
afa1ab9
Use fixed font when displaying certificate.
Endi Sukma Dewata • 8 years ago  
d56c8d9
Hide Add/Delete buttons in self-service mode.
Endi Sukma Dewata • 8 years ago  
f0fcd06
Added icons for status column.
Endi Sukma Dewata • 8 years ago  
5b423e6
%ghost the UI files that we install/create on the fly
Rob Crittenden • 8 years ago  
50bc778
Fixed host managed-by adder dialog.
Endi Sukma Dewata • 8 years ago  
2b9db63
Added paging to DNS record search facet
Petr Voborník • 8 years ago  
30c52db
Modifying DNS UI to benefit from new DNS API
Petr Voborník • 8 years ago  
0021ce5
Added refresh button for UI
Petr Voborník • 8 years ago  
cb557e0
Check for the existence of a replication agreement before deleting it.
Rob Crittenden • 8 years ago  
bf29b44
Don't try to bind on TLS failure
Rob Crittenden • 8 years ago  
46a472e
Add missing managing hosts filtering options
Martin Kosek • 8 years ago  
6863b8f
Fix ldap2 combine_filters for ldap2.MATCH_NONE
Martin Kosek • 8 years ago  
71aa3d8
Add support for storing MAC address in host entries.
Rob Crittenden • 8 years ago  
d8314c5
Leave nsds5replicaupdateschedule parameter unset
Ondrej Hamada • 8 years ago  
099cb7d
Fix deletion of HBAC Rules when there are SELinux user maps defined
Rob Crittenden • 8 years ago  
b1a580e
Mark optional DNS record parts
Martin Kosek • 8 years ago  
3f90f3f
Fix selfservice-find crashes
Martin Kosek • 8 years ago  
739217e
Fix ipa-server-install for dual NICs
Martin Kosek • 8 years ago  
5a77f2d
localhost.localdomain clients refused to join
Ondrej Hamada • 8 years ago  
bf32ed8
Update and package ipa-upgradeconfig man page.
Rob Crittenden • 8 years ago  
66e59d5
Fixed inconsistent status labels.
Endi Sukma Dewata • 8 years ago  
59a3714
Show disabled entries in gray.
Endi Sukma Dewata • 8 years ago  
db4deb2
Enabled paging on automount keys.
Endi Sukma Dewata • 8 years ago  
c92309f
Improve host-add error message
Martin Kosek • 9 years ago  
64cf8a4
Replace float with Decimal
Martin Kosek • 9 years ago  
8c230f1
UI for SELinux user mapping
Petr Voborník • 9 years ago  
ea678b5
In sudo when the category is all do not allow members, and vice versa.
Rob Crittenden • 9 years ago  
4c48881
Use correct template variable for hosts, FQDN.
Rob Crittenden • 9 years ago  
bb854ce
Enabled paging on self-service permissions and delegations.
Endi Sukma Dewata • 9 years ago  
5febffb
Add missing --pkey-only option for selfservice and delegation
Martin Kosek • 9 years ago  
6642bc2
Add labels so HBAC and Sudo rules show under hosts/hostgroups.
Rob Crittenden • 9 years ago  
a351fbb
Fixed problem removing automount keys and DNS records.
Endi Sukma Dewata • 9 years ago  
c64fa33
Restore ACI when aci_mod fails
Martin Kosek • 9 years ago  
fcbff4b
slapi-plugins: use thread-safe ldap library
Simo Sorce • 9 years ago  
415e289
Added instructions to generate CSR.
Endi Sukma Dewata • 9 years ago  
5591cd5
Fix some typos in automember help and paramters.
Rob Crittenden • 9 years ago  
783f199
Allow hbactest to work with HBAC rules exceeding default IPA limits
Alexander Bokovoy • 9 years ago  
7eaf1dc
Fix replication setup
Simo Sorce • 9 years ago  
d20a11a
Let replicas install without DNS
Martin Kosek • 9 years ago  
4b7d430
Fix LDAP updates in ipa-replica-install
Martin Kosek • 9 years ago  
8413882
Prevent service restart failures in ipa-replica-install
Martin Kosek • 9 years ago  
61ad6e0
Fix LDAP add calls in replication module
Martin Kosek • 9 years ago  
6bb719b
Validate sudo RunAsUser/RunAsGroup arguments
Alexander Bokovoy • 9 years ago  
3d53218
Catch exception when trying to list missing managed entries definitions
Rob Crittenden • 9 years ago  
ac7ec79
Document the ping plugin.
Rob Crittenden • 9 years ago  
16abf2a
Fix maxvalue in DNS plugin
Martin Kosek • 9 years ago  
e640370
Disable MS-PAC handling in 2.2
Simo Sorce • 9 years ago  
d27bffe
Create per-type DNS API
Martin Kosek • 9 years ago  
5539577
Improve CLI output for complex commands
Martin Kosek • 9 years ago  
688f630
Fix Parameter csv parsing
Martin Kosek • 9 years ago  
bff9101
Refactor dnsrecord processing
Martin Kosek • 9 years ago  
f8881bb
ipa-kdb: Create PAC's KDC checksum with right key
Simo Sorce • 9 years ago  
e3ed1fd
ipa-kdb: Verify the correct checksum in PAC validation
Simo Sorce • 9 years ago  
e21505d
Configure s4u2proxy during installation.
Rob Crittenden • 9 years ago  
4f5fe04
Added IP address validator to Host and DNS record adder dialog
Petr Vobornik • 9 years ago  
f65773f
Added support for memberof attribute in permission
Petr Vobornik • 9 years ago  
9de3dfe
Load user data and policies in a single batch.
Endi Sukma Dewata • 9 years ago  
e379032
Added policies into user details page.
Endi Sukma Dewata • 9 years ago  
1ee47b7
Remove buffer log handling.
Rob Crittenden • 9 years ago  
d06acdb
update i18n pot file for branch ipa-2-2
Rob Crittenden • 9 years ago  
843d116
Remove ipa_get_random_salt() from ipapwd_encoding.c
Rob Crittenden • 9 years ago  
1dadd06
Remove include for errno.h that was specific to 2.1 branch
Rob Crittenden • 9 years ago  
39d0488
Fix typos in in 60basev3.ldif
Rob Crittenden • 9 years ago  
9a7955e
Set minimum version of 389-ds to 1.2.10-0.5.a5
Rob Crittenden • 9 years ago  
776b189
HBAC test optional sourcehost option
Ondrej Hamada • 9 years ago  
3dc5be6
Added account status into user search facet.
Endi Sukma Dewata • 9 years ago  
04d8e76
Display the value of memberOf ACIs in permission plugin.
Rob Crittenden • 9 years ago  
07afb33
Add DNS check to conncheck port probe
Martin Kosek • 9 years ago  
cc69834
Fixed IPv6 validation special case: single colon
Petr Vobornik • 9 years ago  
8f55d74
Added client-side validation of A and AAAA DNS records
Petr Vobornik • 9 years ago  
a7880fb
Added validation logic to multivalued text field
Petr Vobornik • 9 years ago  
d406d64
Added support of custom field validators
Petr Vobornik • 9 years ago  
aa11e83
Fix attempted write to attribute of read-only object.
Jan Cholasta • 9 years ago  
40a8ecf
Reload UI on server upgrade.
Endi Sukma Dewata • 9 years ago  
18fa8ba
Reload UI when the user changes.
Endi Sukma Dewata • 9 years ago  
64147cd
Parsing of IPv4 and IPv6 addresses
Petr Vobornik • 9 years ago  
b479cb8
Refactored entity object resolution.
Endi S. Dewata • 9 years ago  
81c35bd
Fixed labels in Sudo, HBAC rules
Petr Vobornik • 9 years ago  
e5d73a0
Better table column width computing
Petr Vobornik • 9 years ago  
661c7b5
Distinguishing of external values in association tables
Petr Vobornik • 9 years ago  
9aa224b
Fixed displaying of external records in rule association widgets
Petr Vobornik • 9 years ago  
69307f0
Added facet tabs coloring
Petr Vobornik • 9 years ago  
ad626b0
User-add random password support
Ondrej Hamada • 9 years ago  
ebae16a
Association facets are read only in self service
Petr Vobornik • 9 years ago  
1c9d04c
Fixed combobox search icon position.
Endi Sukma Dewata • 9 years ago  
ce62d6d
Fixed combobox icon position.
Endi Sukma Dewata • 9 years ago  
ef38c5d
Fixed unmatched checkbox name.
Endi Sukma Dewata • 9 years ago  
5348c07
Reordered facets in ACI
Petr Vobornik • 9 years ago  
982a8a3
Additional better displaying of long names
Petr Vobornik • 9 years ago  
46bd45a
Check through all LDAP servers in the domain during IPA discovery
Alexander Bokovoy • 9 years ago  
d048c3d
ipa-kdb: return properly when no PAC is available
Simo Sorce • 9 years ago  
cf1d223
Fix dependency for samba4-devel package
Alexander Bokovoy • 9 years ago  
cd55870
Fixed problem loading DNS records.
Endi Sukma Dewata • 9 years ago  
9bd613b
Added HBAC Test input validation.
Endi Sukma Dewata • 9 years ago  
5275e96
Fixed matched/unmatched checkboxes in HBAC Test
Endi Sukma Dewata • 9 years ago  
28da86e
Add SELinux user mapping framework.
Rob Crittenden • 9 years ago  
a479657
Better displaying of long names in tables and facet headers
Petr Vobornik • 9 years ago  
133b796
ipa-kdb: Add delgation access control support
Simo Sorce • 9 years ago  
8781eec
ipa-kdb: enhance deref searches
Simo Sorce • 9 years ago  
6ccc0f3
ipa-kdb: Fix copy and paste typo
Simo Sorce • 9 years ago  
671a6c5
Search facets show translated boolean values
Petr Vobornik • 9 years ago  
8528c27
Removed HBAC deny rule warning.
Endi S. Dewata • 9 years ago  
1f59165
Removed HBAC rule type.
Endi S. Dewata • 9 years ago  
7a2f6fe
Fixed I18n labels for HBAC Test
Endi Sukma Dewata • 9 years ago  
a2f2e48
Fixed CSS for HBAC Test
Endi Sukma Dewata • 9 years ago  
462c346
Added external fields for HBAC Test.
Endi Sukma Dewata • 9 years ago  
7e062f7
Fixed search filter in HBAC Test.
Endi Sukma Dewata • 9 years ago  
b44cf05
Fixed navigation buttons for HBAC Test.
Endi Sukma Dewata • 9 years ago  
0b88734
Ask for user confirmation in ipa-server-install
Martin Kosek • 9 years ago  
9b67594
Added HBAC Test page.
Endi Sukma Dewata • 9 years ago  
ed57476
Refactored facet.load().
Endi Sukma Dewata • 9 years ago  
5f82d14
Fixed entity metadata resolution.
Endi Sukma Dewata • 9 years ago  
0a73aa7
Added support for radio buttons in table widget.
Endi Sukma Dewata • 9 years ago  
1fdc181
Added commands into metadata.
Endi S. Dewata • 9 years ago  
8d1488c
Client install checks for nss_ldap
Ondrej Hamada • 9 years ago  
0698e54
Mark some attributes required to match the schema.
Rob Crittenden • 9 years ago  
f20ea07
Removed usage of bitwise assignment operators in logical operations
Petr Vobornik • 9 years ago  
a4d7fd0
Fixed unit tests after widget refactoring
Petr Vobornik • 9 years ago  
357345d
Modifying automount to work with new concept
Petr Vobornik • 9 years ago  
d2551c8
Changing definition of basic fields in section from factory to type
Petr Vobornik • 9 years ago  
8e2219b
Code cleanup of HBAC, Sudo rules
Petr Vobornik • 9 years ago  
9fd96c8
Modifying groups to work with new concept
Petr Vobornik • 9 years ago  
56c2eb2
Modifying ACI to work with new concept
Petr Vobornik • 9 years ago  
3a53865
Separation of writable update from field load method
Petr Vobornik • 9 years ago  
4d20134
Modifying services to work with new concept
Petr Vobornik • 9 years ago  
10e4a96
Modifying dns to work with new concept
Petr Vobornik • 9 years ago  
2c87642
Modifying hosts to work with new concept
Petr Vobornik • 9 years ago  
13fc8d8
Modifying users to work with new concept
Petr Vobornik • 9 years ago  
a32a394
Added possibility to define facet/dialog specific policies
Petr Vobornik • 9 years ago  
1cc0b6e
Removing sections as special type of object
Petr Vobornik • 9 years ago  
f5e16fe
Builders and collections for fields and widgets
Petr Vobornik • 9 years ago  
e63d994
Improved fields dirty status detection logic
Petr Vobornik • 9 years ago  
8204eed
Splitting basic widgets into visual widgets and fields
Petr Vobornik • 9 years ago  
f13df43
Splitting widget into widget and field
Petr Vobornik • 9 years ago  
2bb6dec
Added cross browser support of Array.indexOf method
Petr Vobornik • 9 years ago  
107e55b
Sort password policy by priority
Ondrej Hamada • 9 years ago  
6c9c959
ipa-kdb: fix memleaks in ipa_kdb_mspac.c
Simo Sorce • 9 years ago  
9bc28c5
ipa-kdb: Remove unused CFLAGS/LIBS from Makefiles
Simo Sorce • 9 years ago  
2fc1668
Fix config migration option
Martin Kosek • 9 years ago  
96f58b1
Restore default log level in server to INFO
John Dennis • 9 years ago  
0706dc0
Fix make-lint crash under certain circumstances.
Jan Cholasta • 9 years ago  
7557f3d
Parse comma-separated lists of values in all parameter types. This can be enabled for a specific parameter by setting the "csv" option to True.
Jan Cholasta • 9 years ago  
59fc243
ipa-kdb: fix free() of uninitialized var
Simo Sorce • 9 years ago  
cd6ac5b
Change default DNS zone manager to hostmaster
Martin Kosek • 9 years ago  
250afd8
Improve zonemgr validator and normalizer
Martin Kosek • 9 years ago  
d96368b
spec: We do not need krb5-server-ldap anymore
Simo Sorce • 9 years ago  
54dab91
ipa-kdb: Support re-signing PAC with different checksum
Simo Sorce • 9 years ago  
677e977
ticket #1870 - subclass SimpleLDAPObject
John Dennis • 9 years ago  
21a1414
Ticket #1879 - IPAdmin undefined anonymous parameter lists
John Dennis • 9 years ago  
9e0f4de
Add --delattr option to complement --setattr/--addattr
Martin Kosek • 9 years ago  
d223a74
Make ipa-server-install clean after itself
Martin Kosek • 9 years ago  
9e3799d
Fix coverity issues in client CLI tools
Martin Kosek • 9 years ago  
740e0b9
Fix some issues introduced when rebasing update patch
Rob Crittenden • 9 years ago  
9630ab2
Add plugin framework to LDAP updates.
Rob Crittenden • 9 years ago  
84b2fbe
ticket 2022 - modify codebase to utilize IPALogManager, obsoletes logging
John Dennis • 9 years ago  
6b6283f
ticket 2022 - Add log manager module
John Dennis • 9 years ago  
c87edaa
Don't leak passwords through kdb5_ldap_util command line arguments.
Jan Cholasta • 9 years ago  
8df56c8
Finalize plugin initialization on demand.
Jan Cholasta • 9 years ago  
8d0b3e5
Rename included snippets to avoid problems with pylint
Alexander Bokovoy • 9 years ago  
1183a98
Small fix to the guide CSS: enable vertical scroll bar
Alexander Bokovoy • 9 years ago  
2644d99
Add "Extending FreeIPA" developer guide
Alexander Bokovoy • 9 years ago  
94fed02
Fixed entity definition in test cases.
Endi Sukma Dewata • 9 years ago  
e18e851
Add missing copyright header
Simo Sorce • 9 years ago  
d85ea34
Amend #2038 fix
Simo Sorce • 9 years ago  
652a403
Modify random salt creation for interoperability
Simo Sorce • 9 years ago  
4713c09
Create directories for client install
Alexander Bokovoy • 9 years ago  
1580444
Clarify usage of --posix argument in group plugin.
Rob Crittenden • 9 years ago  
d656118
Add configure check for libintl.h
Alexander Bokovoy • 9 years ago  
c6d9750
Check for Python.h during build of py_default_encoding extension
Alexander Bokovoy • 9 years ago  
05bc7cb
Don't check for 389-instances.
Rob Crittenden • 9 years ago  
c7b01b9
Remove redundant information from API.txt
Martin Kosek • 9 years ago  
c601809
Fix LDAP object parameter encoding
Martin Kosek • 9 years ago  
aa7c31d
Replication: Adjust replica installation to omit processing memberof computations
JR Aquino • 9 years ago  
7351780
Removed develop.js.
Endi S. Dewata • 9 years ago  
e2a4dd7
Refactored permission target section.
Endi S. Dewata • 9 years ago  
d58181a
Fix API.txt
Martin Kosek • 9 years ago  
244e589
Hosts file not updated when IP is passed as option
Martin Kosek • 9 years ago  
8d0ac19
Polish ipa config help
Martin Kosek • 9 years ago  
20a74b5
Add Ondrej Hamada to Contributors.txt
Rob Crittenden • 9 years ago  
0bf2f54
Fix copy/paste error in parameter description.
Rob Crittenden • 9 years ago  
01699d7
Improve DNS record data validation
Martin Kosek • 9 years ago  
826b183
Added paging on search facet.
Endi S. Dewata • 9 years ago  
101ad7f
Updated sample data.
Endi S. Dewata • 9 years ago  
f8bd5ae
Remove calls to has_managed_entries()
Rob Crittenden • 9 years ago  
5ba6b32
Misleading Keytab field
Ondrej Hamada • 9 years ago  
ab3ba22
Fix DNS zone --allow-dynupdate option behavior
Martin Kosek • 9 years ago  
59b4583
Allow custom server backend encoding
Martin Kosek • 9 years ago  
d5aee78
MS-PAC: Add support for verifying PAC in TGS requests
Simo Sorce • 9 years ago  
ae4bb39
Add support for generating PAC for AS requests for user principals
Simo Sorce • 9 years ago  
a2d34a1
Fix CID 11027: Wrong sizeof argument
Simo Sorce • 9 years ago  
331461f
Fix CID 11026: Resource leak
Simo Sorce • 9 years ago  
475417f
Fix CID 11025: Resource leak
Simo Sorce • 9 years ago  
7fa1ce3
Fix CID 11024: Resource leak
Simo Sorce • 9 years ago  
5043369
Fix CID 11023: Resource leak
Simo Sorce • 9 years ago  
82d1fc1
Fix CID 11022: Resource leak
Simo Sorce • 9 years ago  
4abcbda
Fix CID 11021: Resource leak
Simo Sorce • 9 years ago  
f7bb1b8
Fix CID 11020: Resource leak
Simo Sorce • 9 years ago  
aa3e7d0
Fix CID 11019: Resource leak
Simo Sorce • 9 years ago  
82266c0
Fix CID 10745: Unchecked return value
Simo Sorce • 9 years ago  
24a9cb6
Fix CID 10743: Unchecked return value
Simo Sorce • 9 years ago  
0ef4ead
Fix CID 10742: Unchecked return value
Simo Sorce • 9 years ago  
0a1da0d
Fixed problem changing page in association facet.
Endi S. Dewata • 9 years ago  
cf83ffa
Extending facet's mechanism of gathering changes
Petr Vobornik • 9 years ago  
b143751
Added extensible UI framework.
Endi S. Dewata • 9 years ago  
4171f3c
Moved facet code into facet.js.
Endi S. Dewata • 9 years ago  
8070387
Fixed blank krbtpolicy and config pages.
Endi S. Dewata • 9 years ago  
954b062
Field for DNS SOA class changed to combobox with options
Petr Vobornik • 9 years ago  
01b56dc
ipa-kdb: Fix memory leak
Simo Sorce • 9 years ago  
4f7b4c1
Page is cleared before it is visible
Petr Vobornik • 9 years ago  
7813945
Add priority to pwpolicy list
Adam Young • 9 years ago  
30eebb3
Added password field in user adder dialog.
Endi S. Dewata • 9 years ago  
270e4ba
Fixed inconsistent details facet validation.
Endi S. Dewata • 9 years ago  
29bd893
Create pkey-only option for find commands
Martin Kosek • 9 years ago  
ef6414f
Fixed inconsistent image names.
Endi S. Dewata • 9 years ago  
6dae0a1
Refactored validation code.
Endi S. Dewata • 9 years ago  
941a2fb
Merged widget's metadata and param_info.
Endi S. Dewata • 9 years ago  
efd3af3
Fixed "enroll" labels.
Endi S. Dewata • 9 years ago  
8372497
Fixed problem clearing validation error on checkboxes.
Endi S. Dewata • 9 years ago  
4fec2bd
Fixed host Enrolled column.
Endi S. Dewata • 9 years ago  
24c3d17
Add --zonemgr/--admin-mail validator
Martin Kosek • 9 years ago  
a4b1b82
Minor visual enhancement of required indicator
Petr Vobornik • 9 years ago  
7de551b
Fixed inconsistent required/optional attributes.
Endi S. Dewata • 9 years ago  
27b3875
remove enrolled column
Adam Young • 9 years ago  
cac7404
Fixing infinite loop in UI navigation unit test.
Petr Vobornik • 9 years ago  
e6e8f9f
Fixed dependency problem in UI test.
Endi S. Dewata • 9 years ago  
d7b5075
Fixed: Duplicate CSS definitions
Petr Vobornik • 9 years ago  
a4765e7
Circular entity dependency
Petr Vobornik • 9 years ago  
1c4774d
ipa-kdb: Fix legacy password hashes generation
Simo Sorce • 9 years ago  
7faa539
Added selectable labels for radio buttons.
Endi S. Dewata • 9 years ago  
aad81f8
Added confirmation when adding multiple entries.
Endi S. Dewata • 9 years ago  
a0fcb9b
Use editable combobox for service type.
Endi S. Dewata • 9 years ago  
aa62d2e
Replaced description text fields with text areas.
Endi S. Dewata • 9 years ago  
6bb86e7
Updated DNS zone details page.
Endi S. Dewata • 9 years ago  
3b2157f
ipa-kdb: Fix expiration time calculation
Simo Sorce • 9 years ago  
bea0a93
include <stdint.h> for uintptr_t
Marko Myllynen • 9 years ago  
d49a6c8
conncheck: Additional check to verify the admin password is ok
Simo Sorce • 9 years ago  
47aee6e
ipa-kdb: Properly set password expiration time.
Simo Sorce • 9 years ago  
8e828ab
install: We do not need a kpasswd keytab anymore
Simo Sorce • 9 years ago  
8ecfff8
install: We do not need a ldap password anymore
Simo Sorce • 9 years ago  
4458611
v3-schema: Add new ipaExternalGroup objectclass
Simo Sorce • 9 years ago  
c5dba36
schema: Split ipadns definitions from basev2 ones
Simo Sorce • 9 years ago  
b2fe809
daemons: Remove ipa_kpasswd
Simo Sorce • 9 years ago  
3a39f74
install: Use proper case for boolean values
Simo Sorce • 9 years ago  
e0b92e4
ipa-kdb: Be flexible
Simo Sorce • 9 years ago  
7538b83
install: Remove uid=kdc user
Simo Sorce • 9 years ago  
179b191
ipa-kdb: Change install to use the new ipa-kdb kdc backend
Simo Sorce • 9 years ago  
6bcec15
ipa-pwd-extop: Allow kadmin to set krb keys
Simo Sorce • 9 years ago  
7bd3a49
ipa-kdb: add password policy support
Simo Sorce • 9 years ago  
92ef6f9
ipa-pwd-extop: Use common password policy code
Simo Sorce • 9 years ago  
83e90a9
util: add password policy manipulation functions
Simo Sorce • 9 years ago  
28a89f1
ipa-kdb: implement change_pwd function
Simo Sorce • 9 years ago  
9e2555f
ipa-kdb: implement function to retrieve password policies
Simo Sorce • 9 years ago  
0bf6d31
ipa-kdb: Get/Store Master Key directly from LDAP
Simo Sorce • 9 years ago  
4fdc415
ipa-kdb: add functions to change principals
Simo Sorce • 9 years ago  
eb90054
ipa-kdb: add function to iterate over principals
Simo Sorce • 9 years ago  
d1723f6
ipa-kdb: add functions to delete principals
Simo Sorce • 9 years ago  
d87f035
ipa-kdb: add function to free principals
Simo Sorce • 9 years ago  
5acceb5
ipa-kdb: functions to get principal
Simo Sorce • 9 years ago  
94a60ec
ipa-kdb: add common utility ldap wrapper functions
Simo Sorce • 9 years ago  
2bb2c7a
ipa-kdb: implement get_time function
Simo Sorce • 9 years ago  
79ae322
ipa-kdb: initialize module functions
Simo Sorce • 9 years ago  
21312c7
ipa-kdb: add exports file
Simo Sorce • 9 years ago  
9883e49
ipa-kdb: Initial plugin skeleton
Simo Sorce • 9 years ago  
80b5d34
ipa-pwd-extop: make encsalt parsing function common
Simo Sorce • 9 years ago  
17d79fe
ipa-pwd-extop: Move encoding in common too
Simo Sorce • 9 years ago  
c25e60a
ipa-pwd-extop: Move encryption of keys in common
Simo Sorce • 9 years ago  
8d25937
ipa-pwd-extop: Use common krb5 structs from kdb.h
Simo Sorce • 9 years ago  
4b2d84d
ipa-pwd-extop: re-indent code using old style
Simo Sorce • 9 years ago  
5c08cc4
ipa-pwd-extop: Use the proper mkvno number in keys
Simo Sorce • 9 years ago  
01c4a15
ipa-pwd-extop: do not append mkvno to krbExtraData
Simo Sorce • 9 years ago  
76634a5
ipa-pwd-extop: Remove unused variables and code to set them
Simo Sorce • 9 years ago  
02e10f1
krbinstance: use helper function to get realm suffix
Simo Sorce • 9 years ago  
0a9f5cd
ipa-pwd_extop: use endian.h instead of nih function
Simo Sorce • 9 years ago  
ddf4447
Fix build warnings
Simo Sorce • 9 years ago  
9a864c7
Become IPA 2.1.90
Simo Sorce • 9 years ago  
3b3accc
Move ONLY_CLIENT in spec so services.py always gets generated in %install
Rob Crittenden • 9 years ago  
4ef3d7b
Fix two typos in role help.
Rob Crittenden • 9 years ago  
1be9f48
update i18n pot file for branch ipa-2-1
John Dennis • 9 years ago  
9423363
Make sure that install tools log
Martin Kosek • 9 years ago  
575f32f
Re-enable web password migration on Fedora 16 after SE Linux policy restrictions
Alexander Bokovoy • 9 years ago  
d214ba7
Fix some pylint issues found in F-16
Rob Crittenden • 9 years ago  
d27b23d
Remove old RPMROOT contents before it is used for rpmbuild
John Dennis • 9 years ago  
bd4fddf
Add connection failure recovery to IPAdmin
Martin Kosek • 9 years ago  
859d28c
Reorder privileges so that memberof for permissions are generated properly.
Rob Crittenden • 9 years ago  
6d98417
Use absolute paths when trying to find certmonger request id.
Rob Crittenden • 9 years ago  
d39df23
ticket 2172 - If "make rpms" fails so will the next make
John Dennis • 9 years ago  
12f8c0e
Become IPA 2.1.4
Rob Crittenden • 9 years ago  
fc37d98
Remove extraneous trailing single quote in nis.uldif
Rob Crittenden • 9 years ago  
1f6c69d
Require an HTTP Referer header in the server. Send one in ipa tools.
Rob Crittenden • 9 years ago  
9f10fb2
ipa_kpasswd: Update selinux policies for ldap and urandom
Evgeny Sinelnikov • 9 years ago  
89d9ad4
Make ipa-server-install clean after itself
Martin Kosek • 9 years ago  
455ce3c
Enable automember for upgraded servers
Martin Kosek • 9 years ago  
9905532
Client install root privileges check
Ondrej Hamada • 9 years ago  
9eb703f
Let PublicError accept Gettext objects
Martin Kosek • 9 years ago  
57841aa
Fix ipa-managed-entries bind procedure
Martin Kosek • 9 years ago  
d301007
Don't allow default objectclass list to be empty.
Rob Crittenden • 9 years ago  
452eaf5
Added current password field.
Endi S. Dewata • 9 years ago  
c6d1996
Modify random salt creation for interoperability
Simo Sorce • 9 years ago  
afece97
Fix ipa-replica-conncheck port labels
Martin Kosek • 9 years ago  
76c1452
Fix ipa-server-install answer cache
Martin Kosek • 9 years ago  
c960e0a
Fix nis netgroup config entry so users appear in netgroup triple.
Rob Crittenden • 9 years ago  
c10db54
Fix ipa-managed-entries password option long form
Martin Kosek • 9 years ago  
e366ae1
Quote multiple workers option
Alexander Bokovoy • 9 years ago  
7a5ff3b
Update spec file to F-16
Alexander Bokovoy • 9 years ago  
fb7276f
Spin for connection success also when socket is not (yet) available
Alexander Bokovoy • 9 years ago  
5451328
Add support for systemd environments and use it to support Fedora 16
Alexander Bokovoy • 9 years ago  
95d6a22
Fix problems in help system
Rob Crittenden • 9 years ago  
7bde6a7
Ticket 1201 - Unable to Download Certificate with Browser
John Dennis • 9 years ago  
9b7639a
hbactest fails while you have svcgroup in hbacrule
Alexander Bokovoy • 9 years ago  
28692ef
Fix client krb5 domain mapping and DNS
Martin Kosek • 9 years ago  
a2d0ca2
Become IPA 2.1.3
Rob Crittenden • 9 years ago  
c4ca29c
Fixed: Unable to add external user for RunAs User for Sudo rules
Petr Vobornik • 9 years ago  
f3a5d48
Improve hostgroup/netgroup collision checks
Martin Kosek • 9 years ago  
5a3268f
Fix typo in invalid PTR record error message
Rob Crittenden • 9 years ago  
e365bc5
If our domain is already configured in sssd.conf start with a new config.
Rob Crittenden • 9 years ago  
3506dc8
Update all LDAP configuration files that we can.
Rob Crittenden • 9 years ago  
1104a88
Use set class instead of dictview class as set is wider supported
Alexander Bokovoy • 9 years ago  
cc0e30a
Handle an empty value in a name/value pair in config_replace_variables()
Rob Crittenden • 9 years ago  
c75b177
Set min nvr of 389-ds-base to 1.2.10-0.4.a4 for limits fixes (740942, 742324)
Rob Crittenden • 9 years ago  
0ead8b4
Fix ipa-client-install -U option alignment
Martin Kosek • 9 years ago  
b73ac20
Document --preserve-sssd option of ipa-client-install
Alexander Bokovoy • 9 years ago  
440f96a
Add explicit instructions to ipa-replica-manage for winsync replication
Rob Crittenden • 9 years ago  
2427d3b
Save the value of hostname even if it doesn't appear in /etc/sysconfig/network
Rob Crittenden • 9 years ago  
16fc9f8
Check /etc/hosts file in ipa-server-install
Martin Kosek • 9 years ago  
58918c4
Hostname used by IPA must be a system hostname
Martin Kosek • 9 years ago  
b8eafa4
Check hostname resolution sanity
Martin Kosek • 9 years ago  
93feb52
Fix dynamic display of UI tabs based on rights
Adam Young • 9 years ago  
edd334c
Work around limits not being updatable in 389-ds.
Rob Crittenden • 9 years ago  
411c303
updates: Change default limits on ldap searches
Simo Sorce • 9 years ago  
36c63ee
Fix has_upg() to work with relocated managed entries configuration.
Rob Crittenden • 9 years ago  
c0e647a
Refactor authconfig use in ipa-client-install
Alexander Bokovoy • 9 years ago  
7501b17
Make IPv4 address parsing more strict
Martin Kosek • 9 years ago  
c876461
Optimize member/memberof searches in LDAP
Martin Kosek • 9 years ago  
5aa6e99
ipa-client-install hangs if the discovered server is unresponsive
Martin Kosek • 9 years ago  
7227ffe
Improve handling of GIDs when migrating groups
Martin Kosek • 9 years ago  
3608f85
Ticket 1718 - Fix Spanish po translation file
John Dennis • 9 years ago  
c4ef542
Remove more redundant configuration values from krb5.conf.
Jan Cholasta • 9 years ago  
a065cfb
Don't leak passwords through kdb5_ldap_util command line arguments.
Jan Cholasta • 9 years ago  
7a5d906
Make ipa-join work against an LDAP server that disallows anon binds
Rob Crittenden • 9 years ago  
32dbf7f
Write KRB5REALM to /etc/sysconfig/krb5kdc and make use of common backup_config_and_replace_variables() tool
Alexander Bokovoy • 9 years ago  
818009d
Refactor backup_and_replace_hostname() into a flexible config modification tool
Alexander Bokovoy • 9 years ago  
b17dfe4
Fix upgrades of selfsign server
Rob Crittenden • 9 years ago  
c2ae286
Disallow deletion of global password policy.
Jan Cholasta • 9 years ago  
1e56498
Added missing fields to password policy page
Petr Vobornik • 9 years ago  
07b87aa
Include indirect membership and canonicalize hosts during HBAC rules testing
Alexander Bokovoy • 9 years ago  
caaacc9
Force kerberos realm to be a string
Alexander Bokovoy • 9 years ago  
d487571
Fix dnszone-add name_from_ip server validation
Martin Kosek • 9 years ago  
dc39e95
Fix i18n in config plugin
Martin Kosek • 9 years ago  
c23b381
Improve default user/group object class validation
Martin Kosek • 9 years ago  
3881766
Increase number of 'getent passwd attempts' to 10
Alexander Bokovoy • 9 years ago  
9189373
Fix DNS permissions and membership in privileges
Rob Crittenden • 9 years ago  
9386f15
Become IPA 2.1.2
Rob Crittenden • 9 years ago  
e6e95b5
Force the upgrade of pki-setup when upgrading the RPMS
Adam Young • 9 years ago  
8cfddc3
Execute pki proxy setup when server is upgraded if needed
Adam Young • 9 years ago  
f30924d
Make mod_nss renegotiation configuration a public function
Adam Young • 9 years ago  
8dd24ba
Split Web UI initialization to several smaller calls
Petr Vobornik • 9 years ago  
48f3069
Split Web UI initialization to several smaller calls #2
Petr Vobornik • 9 years ago  
30b2d4e
split metadata call
Adam Young • 9 years ago  
f7812fa
When calculating indirect membership don't test nesting on users and hosts.
Rob Crittenden • 9 years ago  
c5384f2
Make sure ipa-client-install returns correct error code
Martin Kosek • 9 years ago  
e2182d6
Fixed links to images in config and migration pages
Petr Vobornik • 9 years ago  
c8f9f8d
Prevent collisions of hostgroup and netgroup
Martin Kosek • 9 years ago  
92dbd68
Before kinit, try to sync time with the NTP servers of the domain we are joining
Alexander Bokovoy • 9 years ago  
60bacc2
Disables gid field if not posix group in group adder dialog
Petr Vobornik • 9 years ago  
6f38cc4
Improve ipa-replica-prepare DNS check
Martin Kosek • 9 years ago  
526a399
replica-prepare: anonymous binds may be disallowed
Simo Sorce • 9 years ago  
6dcd1d8
Install tools crash when password prompt is interrupted
Martin Kosek • 9 years ago  
4521230
- note that PKCS#12 files also contain private keys, and that the "pkinit" options refer to the KDC's credentials
Nalin Dahyabhai • 9 years ago  
5de9780
Work around pkisilent bugs.
Jan Cholasta • 9 years ago  
428d8c4
ipa-pwd-extop: allow password change on all connections with SSF>1
Sumit Bose • 9 years ago  
5bc8323
Fix 'referenced before assignment' warning
Alexander Bokovoy • 9 years ago  
92ee5ee
Setup and restore ntp configuration on the client side properly
Alexander Bokovoy • 9 years ago  
12ac2bd
Add a function for formatting network locations of the form host:port for use in URLs.
Jan Cholasta • 9 years ago  
087251c
list users from nested groups, too
Nalin Dahyabhai • 9 years ago  
49de0c0
Configure pam_krb5 on the client only if sssd is not configured
Alexander Bokovoy • 9 years ago  
39a64a5
Migration: don't assume there is only one naming context, add logging.
Rob Crittenden • 9 years ago  
bc83472
Unroll StrEnum values when displaying help
Alexander Bokovoy • 9 years ago  
8f5d806
Require current password when using passwd to change your own password.
Rob Crittenden • 9 years ago  
844d4ff
Be more clear about selfsign option
Martin Kosek • 9 years ago  
6515340
Disable sudo options Delete button if nothing selected.
Endi S. Dewata • 9 years ago  
a013597
I18n clean-up.
Endi S. Dewata • 9 years ago  
af8350c
migrate process cannot handle multivalued pkey attribute
Martin Kosek • 9 years ago  
46c16ed
Fixed missing default shell field.
Endi S. Dewata • 9 years ago  
aaa7c05
ipa-client assumes a single namingcontext
Martin Kosek • 9 years ago  
848d37c
ipa-client-install: Fix joining when LDAP access is restricted
Simo Sorce • 9 years ago  
8fb70fd
Fix HBAC tests hostnames
Martin Kosek • 9 years ago  
f9e277b
Fix LDAPCreate search failure
Martin Kosek • 9 years ago  
7c884f1
Fixed: Some widgets do not have space for validation error message
Petr Vobornik • 9 years ago