pagure Logo
  • Log In

freeipa

Clone
Source Code
GIT
  • Source
  • Issues  982
  • Roadmap 
  • Stats
 Overview  Files  Commits  Branches  Forks  Releases

Commits 7421

Branch: ipa-4-0
ipa-1-0 ipa-1-1 ipa-1-2 ipa-2-0 ipa-2-1 ipa-2-2 ipa-3-0 ipa-3-1 ipa-3-2 ipa-3-3 ipa-4-0 ipa-4-1 ipa-4-2 ipa-4-3 ipa-4-4 ipa-4-5 ipa-4-6 ipa-4-6-CVE-2019-10195-and-CVE-2019-14867 ipa-4-6-CVE-2020-10747 ipa-4-7 ipa-4-7-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8 ipa-4-8-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8-CVE-2020-10747 ipa-4-9 master webui-cleanup
This branch contains 119 commits not in the main branch master
Revert "Make all ipatokenTOTP attributes mandatory"
Jan Cholasta • 6 years ago  
370a5b2
Fix zone find during forwardzone upgrade
Martin Basti • 6 years ago  
7c70bac
Fix: Upgrade forwardzones zones after adding newer replica
Martin Basti • 6 years ago  
c2932f9
Remove the removal of the ccache
Simo Sorce • 6 years ago  
30a0203
Use correct service name in cainstance.backup_config
Jan Cholasta • 6 years ago  
1ef2d08
Use asn1c helpers to encode/decode the getkeytab control
Simo Sorce • 6 years ago  
aa98831
Add asn1c generated code for keytab controls
Simo Sorce • 6 years ago  
598b547
Fix filtering of enctypes in server code.
Simo Sorce • 6 years ago  
55578e9
Fix: zonemgr must be unicode value
Martin Basti • 6 years ago  
ca6958c
Add UTC date to GIT snapshot version generation
Simo Sorce • 6 years ago  
09f8722
Upgrade: fix trusts objectclass violationi
Martin Basti • 6 years ago  
ae9e684
Fix upgrade referint plugin
Martin Basti • 6 years ago  
9a9eccb
Fix: DNS policy upgrade raises asertion error
Martin Basti • 6 years ago  
e5ec479
Become IPA 4.0.5
Petr Vobornik • 6 years ago  
65a0b58
Ensure that a password exists after OTP validation
Nathaniel McCallum • 6 years ago  
013e2ea
Deadlock in schema compat plugin (between automember_update_membership task and dse update)
Thierry bordaz (tbordaz) • 6 years ago  
a56a6af
Fix upgrade: do not use invalid ldap connection
Martin Basti • 6 years ago  
d6697b6
Become IPA 4.0.4
Petr Vobornik • 6 years ago  
c55f153
Do not check if port 8443 is available in step 2 of external CA install
Jan Cholasta • 6 years ago  
3cb982b
build: increase java stack size for all arches
Petr Vobornik • 6 years ago  
4ac55bf
Default to use TLSv1.0 and TLSv1.1 on the IPA server side
Alexander Bokovoy • 6 years ago  
c44bdeb
Configure IPA OTP Last Token plugin on upgrade
Nathaniel McCallum • 6 years ago  
3ba4b43
dns: fix privileges' memberof during dns install
Petr Vobornik • 6 years ago  
5c9aec3
Remove changetype attribute from update plugin
Martin Kosek • 6 years ago  
889bf4a
Fix typo causing certmonger is provided with wrong path to ipa-submit.
David Kupka • 6 years ago  
40f9678
Stop dogtag when updating its configuration in ipa-upgradeconfig.
David Kupka • 6 years ago  
320ea12
Ignore irrelevant subtrees in schema compat plugin
Ludwig Krispenz • 6 years ago  
86b5dce
Set IPA CA for freeipa certificates.
David Kupka • 6 years ago  
2e7f8da
Check that port 8443 is available when installing PKI.
David Kupka • 6 years ago  
b89c184
Support building RPMs for RHEL/CentOS 7.0
Jan Cholasta • 6 years ago  
018772e
Add RHEL platform module
Jan Cholasta • 6 years ago  
dd9c3c7
Split off generic Red Hat-like platform code from Fedora platform code
Jan Cholasta • 6 years ago  
7486827
Fix ipactl service ordering
Martin Basti • 6 years ago  
56a146a
Missing requires on python-dns in spec file
Gabe • 6 years ago  
f336bcb
Fix example usage in ipa man page.
David Kupka • 6 years ago  
9b61454
Remove misleading authorization error message in cert-request with --add
Jan Cholasta • 6 years ago  
80da03a
sudo integration test: Remove the local user test
Petr Viktorin • 6 years ago  
98e0a4e
webui-ci: case-insensitive record check
Petr Vobornik • 6 years ago  
26116d4
test_forced_client_reenrollment: Don't check for host certificates
Petr Viktorin • 6 years ago  
d1be74e
Sudorule RunAsUser should work with external groups
Martin Kosek • 6 years ago  
d099f20
ipa-kdb: fix unit tests
Sumit Bose • 6 years ago  
cfa2f21
ipa-replica-prepare: Wait for the DNS entry to be resolvable
Petr Viktorin • 6 years ago  
1794237
test_permission_plugin: Check legacy permissions
Petr Viktorin • 6 years ago  
6f100c5
dnszone-remove-permission should raise error
Martin Basti • 6 years ago  
32b6eb5
Set the default attributes for RootDSE
Tomas Babej • 6 years ago  
e629763
Include the ipa command in client-only build
Jan Cholasta • 6 years ago  
22ce015
Include ipaplatform in client-only build
Jan Cholasta • 6 years ago  
df187a4
Allow RPM upgrade from ipa-* packages
Jan Cholasta • 6 years ago  
faba3f0
Fix certmonger code causing the ca_renewal_master update plugin to fail
Jan Cholasta • 6 years ago  
26188d7
Become IPA 4.0.3
Petr Viktorin • 6 years ago  
c436352
Allow deleting obsolete permissions; remove operational attribute permissions
Petr Viktorin • 6 years ago  
f47da6a
permission plugin: Auto-add operational atttributes to read permissions
Petr Viktorin • 6 years ago  
e3e0323
Update referential integrity config for DS 1.3.3
Petr Viktorin • 6 years ago  
c6baece
Update SSL ciphers configured in 389-ds-base
Ludwig Krispenz • 6 years ago  
93b9d02
Fix typo causing ipa-upgradeconfig to fail.
David Kupka • 6 years ago  
f30eac0
Update qrcode support for newer python-qrcode
Nathaniel McCallum • 6 years ago  
0f20014
Become IPA 4.0.2
Petr Viktorin • 6 years ago  
52cf28a
No longer generate a machine certificate on client installs
Rob Crittenden • 6 years ago  
2dd2fd7
Backup CS.cfg before modifying it
Jan Cholasta • 6 years ago  
8292b22
Fix: Add managed read permissions for compat tree and operational attrs
Petr Viktorin • 6 years ago  
b5870ed
webui: extract complex pkey on Add and Edit
Petr Vobornik • 6 years ago  
3e987f6
Allow user to force Kerberos realm during installation.
David Kupka • 6 years ago  
0e07731
Make CA-less ipa-server-install option --root-ca-file optional.
Jan Cholasta • 6 years ago  
7c690d7
Add new NSSDatabase method get_cert for getting certs from NSS databases.
Jan Cholasta • 6 years ago  
063cd77
Add managed read permissions for compat tree
Petr Viktorin • 6 years ago  
3e2c86a
Do not restart apache server when not necessary.
David Kupka • 6 years ago  
cabc9bf
Tests: DNS wildcard records
Martin Basti • 6 years ago  
3c6f83e
FIX DNS wildcard records (RFC4592)
Martin Basti • 6 years ago  
300a6a3
Use certmonger D-Bus API instead of messing with its files.
David Kupka • 6 years ago  
ff6e43c
Fix dnsrecord-mod raise error if last record attr is removed
Martin Basti • 6 years ago  
1dc9db4
ipa-client-install: Do not add already configured sources to nsswitch.conf entries
Tomas Babej • 6 years ago  
6bb6671
Normalize external CA cert before passing it to pkispawn
Jan Cholasta • 6 years ago  
b50528a
Add record(s) to /etc/host when IPA is configured as DNS server.
David Kupka • 6 years ago  
c1b680c
Ensure ipaUserAuthTypeClass when needed on user creation
Nathaniel McCallum • 6 years ago  
4200af9
permission plugin: Improve description of the target option
Petr Viktorin • 6 years ago  
77e9162
permission plugin: Make --target available in the CLI
Petr Viktorin • 6 years ago  
1044d09
freeipa.spec.in: Add python-backports-ssl_match_hostname to BuildRequires
Petr Viktorin • 6 years ago  
4adefc3
Pick new CA renewal master when deleting a replica.
Jan Cholasta • 6 years ago  
113b033
Add method for setting CA renewal master in LDAP to CAInstance.
Jan Cholasta • 6 years ago  
4abe79f
CLIENT: Explicitly require python-backports-ssl_match_hostname
Jakub Hrozek • 6 years ago  
aa5d86c
Allow changing CA renewal master in ipa-csreplica-manage.
Jan Cholasta • 6 years ago  
8999300
ipaserver/dcerpc.py: Make sure trust is established only to forest root domain
Alexander Bokovoy • 6 years ago  
5383f28
ipaserver/dcerpc.py: be more open to what domains can be seen through the forest trust
Alexander Bokovoy • 6 years ago  
c0b438e
ipaserver/dcerpc.py: Avoid hitting issue with transitive trusts on Windows Server prior to 2012
Alexander Bokovoy • 6 years ago  
4bf0aa8
ipaserver/dcerpc.py: make PDC discovery more robust
Alexander Bokovoy • 6 years ago  
5681043
ipaserver/dcerpc.py: if search of a closest GC failed, try to find any GC
Alexander Bokovoy • 6 years ago  
0abaf4a
ipa trust-add command should be interactive
Gabe • 6 years ago  
b708001
Change BuildRequires for Java
Stephen Gallagher • 6 years ago  
52f7bb4
webui-ci: fix table widget add
Petr Vobornik • 6 years ago  
4582f48
webui: better error reporting
Petr Vobornik • 6 years ago  
d3a7fec
Convert external CA chain to PKCS#7 before passing it to pkispawn.
Jan Cholasta • 6 years ago  
7c03ef0
Tests: host tests with dns
Martin Basti • 6 years ago  
2fa1555
Allow to add host if AAAA record exists
Martin Basti • 6 years ago  
85b2c78
ipatests: test_trust: Add test to cover lookup of trusdomains
Tomas Babej • 6 years ago  
c9d4974
ipa-adtrust-install does not re-add member in adtrust agents group
Martin Kosek • 6 years ago  
24f7147
Add test for baseldap.entry_to_dict.
Jan Cholasta • 6 years ago  
c93fe68
webui-ci: fix reset password check
Petr Vobornik • 6 years ago  
834af35
test_ipagetkeytab: Fix assertion in negative test
Petr Viktorin • 6 years ago  
85493fa
Do not crash client basedn discovery when SSF not met
Martin Kosek • 6 years ago  
b104179
Verify otptoken timespan is valid
David Kupka • 6 years ago  
928c87f
test group: remove group from protected group.
David Kupka • 6 years ago  
19dd0c6
Fix group-remove-member crash when group is removed from a protected group
David Kupka • 6 years ago  
97565cf
Exclude attributelevelrights from --raw result processing in baseldap.
Jan Cholasta • 6 years ago  
2eee606
Check if /root/ipa.csr exists when installing server with external CA.
Jan Cholasta • 6 years ago  
28aed7b
FIX: named_enable_dnssec should verify if DNS is installed
Martin Basti • 6 years ago  
1f5ad2e
Fix DNS upgrade plugin should check if DNS container exists
Martin Basti • 6 years ago  
f5d6521
Update API.txt
Petr Viktorin • 6 years ago  
4baf153
ipalib: idrange: Make non-implemented range types fail the validation
Tomas Babej • 6 years ago  
fb89a77
webui: remove remaining action-button-disabled occurrences
Petr Vobornik • 6 years ago  
bf9c254
webui: replace action_buttons with action_widget
Petr Vobornik • 6 years ago  
9cbe6b1
webui: detach facet nodes
Petr Vobornik • 6 years ago  
ee61651
webui: internet explorer fixes
Petr Vobornik • 6 years ago  
f1b4dfc
webui: fix nested items creation in dropdown list
Petr Vobornik • 6 years ago  
4bdc7a4
webui: support wildcard attribute level rights
Petr Vobornik • 6 years ago  
8d46535
Become IPA 4.0.1
Martin Kosek • 6 years ago  
a33492d
baseldap: return 'none' attr level right as unicode string
Petr Vobornik • 6 years ago  
a356385
Add TOTP watermark support
Nathaniel McCallum • 6 years ago  
b7c0c93
Allow hashed passwords in DS
Martin Kosek • 6 years ago  
4782530
Fix ipa-getkeytab for pre-4.0 servers
Nathaniel McCallum • 6 years ago  
217aba7
Revert "Make all ipatokenTOTP attributes mandatory"
Jan Cholasta • 6 years ago  
370a5b2
Fix zone find during forwardzone upgrade
Martin Basti • 6 years ago  
7c70bac
Fix: Upgrade forwardzones zones after adding newer replica
Martin Basti • 6 years ago  
c2932f9
Remove the removal of the ccache
Simo Sorce • 6 years ago  
30a0203
Use correct service name in cainstance.backup_config
Jan Cholasta • 6 years ago  
1ef2d08
Use asn1c helpers to encode/decode the getkeytab control
Simo Sorce • 6 years ago  
aa98831
Add asn1c generated code for keytab controls
Simo Sorce • 6 years ago  
598b547
Fix filtering of enctypes in server code.
Simo Sorce • 6 years ago  
55578e9
Fix: zonemgr must be unicode value
Martin Basti • 6 years ago  
ca6958c
Add UTC date to GIT snapshot version generation
Simo Sorce • 6 years ago  
09f8722
Upgrade: fix trusts objectclass violationi
Martin Basti • 6 years ago  
ae9e684
Fix upgrade referint plugin
Martin Basti • 6 years ago  
9a9eccb
Fix: DNS policy upgrade raises asertion error
Martin Basti • 6 years ago  
e5ec479
Become IPA 4.0.5
Petr Vobornik • 6 years ago  
65a0b58
Ensure that a password exists after OTP validation
Nathaniel McCallum • 6 years ago  
013e2ea
Deadlock in schema compat plugin (between automember_update_membership task and dse update)
Thierry bordaz (tbordaz) • 6 years ago  
a56a6af
Fix upgrade: do not use invalid ldap connection
Martin Basti • 6 years ago  
d6697b6
Become IPA 4.0.4
Petr Vobornik • 6 years ago  
c55f153
Do not check if port 8443 is available in step 2 of external CA install
Jan Cholasta • 6 years ago  
3cb982b
build: increase java stack size for all arches
Petr Vobornik • 6 years ago  
4ac55bf
Default to use TLSv1.0 and TLSv1.1 on the IPA server side
Alexander Bokovoy • 6 years ago  
c44bdeb
Configure IPA OTP Last Token plugin on upgrade
Nathaniel McCallum • 6 years ago  
3ba4b43
dns: fix privileges' memberof during dns install
Petr Vobornik • 6 years ago  
5c9aec3
Remove changetype attribute from update plugin
Martin Kosek • 6 years ago  
889bf4a
Fix typo causing certmonger is provided with wrong path to ipa-submit.
David Kupka • 6 years ago  
40f9678
Stop dogtag when updating its configuration in ipa-upgradeconfig.
David Kupka • 6 years ago  
320ea12
Ignore irrelevant subtrees in schema compat plugin
Ludwig Krispenz • 6 years ago  
86b5dce
Set IPA CA for freeipa certificates.
David Kupka • 6 years ago  
2e7f8da
Check that port 8443 is available when installing PKI.
David Kupka • 6 years ago  
b89c184
Support building RPMs for RHEL/CentOS 7.0
Jan Cholasta • 6 years ago  
018772e
Add RHEL platform module
Jan Cholasta • 6 years ago  
dd9c3c7
Split off generic Red Hat-like platform code from Fedora platform code
Jan Cholasta • 6 years ago  
7486827
Fix ipactl service ordering
Martin Basti • 6 years ago  
56a146a
Missing requires on python-dns in spec file
Gabe • 6 years ago  
f336bcb
Fix example usage in ipa man page.
David Kupka • 6 years ago  
9b61454
Remove misleading authorization error message in cert-request with --add
Jan Cholasta • 6 years ago  
80da03a
sudo integration test: Remove the local user test
Petr Viktorin • 6 years ago  
98e0a4e
webui-ci: case-insensitive record check
Petr Vobornik • 6 years ago  
26116d4
test_forced_client_reenrollment: Don't check for host certificates
Petr Viktorin • 6 years ago  
d1be74e
Sudorule RunAsUser should work with external groups
Martin Kosek • 6 years ago  
d099f20
ipa-kdb: fix unit tests
Sumit Bose • 6 years ago  
cfa2f21
ipa-replica-prepare: Wait for the DNS entry to be resolvable
Petr Viktorin • 6 years ago  
1794237
test_permission_plugin: Check legacy permissions
Petr Viktorin • 6 years ago  
6f100c5
dnszone-remove-permission should raise error
Martin Basti • 6 years ago  
32b6eb5
Set the default attributes for RootDSE
Tomas Babej • 6 years ago  
e629763
Include the ipa command in client-only build
Jan Cholasta • 6 years ago  
22ce015
Include ipaplatform in client-only build
Jan Cholasta • 6 years ago  
df187a4
Allow RPM upgrade from ipa-* packages
Jan Cholasta • 6 years ago  
faba3f0
Fix certmonger code causing the ca_renewal_master update plugin to fail
Jan Cholasta • 6 years ago  
26188d7
Become IPA 4.0.3
Petr Viktorin • 6 years ago  
c436352
Allow deleting obsolete permissions; remove operational attribute permissions
Petr Viktorin • 6 years ago  
f47da6a
  • « Newer
  • page 1 of 149
  • » Older
Powered by Pagure 5.12.1
Documentation • File an Issue • About • SSH Hostkey/Fingerprint
© Red Hat, Inc. and others.