pagure Logo
  • Log In

freeipa

Clone
Source Code
GIT
  • Source
  • Issues  1085
  • Roadmap 
  • Stats
 Overview  Files  Commits  Branches  Forks  Releases

Commits 15584

Branch: ipa-4-10-CVE-2023-5455
ipa-1-0 ipa-1-1 ipa-1-2 ipa-2-0 ipa-2-1 ipa-2-2 ipa-3-0 ipa-3-1 ipa-3-2 ipa-3-3 ipa-4-0 ipa-4-1 ipa-4-10 ipa-4-10-CVE-2023-5455 ipa-4-11 ipa-4-11-CVE-2023-5455 ipa-4-11-CVE-2024-2698-and-CVE-2024-3183 ipa-4-12 ipa-4-12-CVE-2024-11029 ipa-4-12-CVE-2024-2698-and-CVE-2024-3183 ipa-4-12-CVE-2025-4404 ipa-4-12-CVE-2025-7493 ipa-4-13 ipa-4-2 ipa-4-3 ipa-4-4 ipa-4-5 ipa-4-6 ipa-4-6-CVE-2019-10195-and-CVE-2019-14867 ipa-4-6-CVE-2020-10747 ipa-4-6-CVE-2023-5455 ipa-4-7 ipa-4-7-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8 ipa-4-8-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8-CVE-2020-10747 ipa-4-9 ipa-4-9-CVE-2023-5455 master webui-cleanup
This branch contains 304 commits not in the main branch master
Become IPA 4.10.3
Antonio Torres • 2 years ago  
74710a8
Integration tests for verifying Referer header in the UI
Rob Crittenden • 2 years ago  
48ec350
Check the HTTP Referer header on all requests
Rob Crittenden • 2 years ago  
363fd5d
Become IPA 4.10.2
Antonio Torres • 2 years ago  
2fd9cbb
Update list of contributors
Antonio Torres • 2 years ago  
03b92fb
Update translations to FreeIPA ipa-4-10 state
Antonio Torres • 2 years ago  
e3797ca
ipatest: remove xfail from test_smb
Florence Blanc-Renaud • 2 years ago  
283f546
Don't allow a group to be converted to POSIX and external
Rob Crittenden • 2 years ago  
58017ab
ipa-kdb: be compatible with krb5 1.19 when checking for server referral
Alexander Bokovoy • 2 years ago  
f2b821a
Replace usage of #!/usr/bin/env python3 with #!/usr/bin/python3
Rob Crittenden • 2 years ago  
325a131
ipalib/x509.py: Add signature_algorithm_parameters
Alexander Bokovoy • 2 years ago  
11ce2b2
ipa-kdb: skip verification of PAC full checksum
Alexander Bokovoy • 2 years ago  
1b55e9b
ipa-kdb: process out of realm server lookup during S4U
Alexander Bokovoy • 2 years ago  
bd8fcd6
ipa-kdb: postpone ticket checksum configuration
Alexander Bokovoy • 2 years ago  
fefa024
ipa-kdb: protect against context corruption
Alexander Bokovoy • 2 years ago  
803a447
ipa-kdb: hint KDC to use aes256-sha1 for forest trust TGT
Alexander Bokovoy • 2 years ago  
3d0decd
Filter out constrained delegation ACL from KDB entry
Julien Rische • 2 years ago  
7ea3b86
Tolerate absence of PAC ticket signature depending of server capabilities
Julien Rische • 2 years ago  
bbe545f
kdb: Use krb5_pac_full_sign_compat() when available
Julien Rische • 2 years ago  
630cda5
ACME tests: fix issue_and_expire_acme_cert method
Florence Blanc-Renaud • 2 years ago  
a6f485f
Mention in ipa-client-install that nscd is disabled
Rob Crittenden • 2 years ago  
abe71fe
Change fontawesome-fonts requires to match fontawesome 4.x
Jerry James • 2 years ago  
58173c0
user or group name: explain the supported format
Florence Blanc-Renaud • 2 years ago  
7830ab9
ipatests: wait for sssd-kcm to settle after date change
Mohammad Rizwan • 2 years ago  
edcdcf8
Return the <Message> value cert-find failures from the CA
Rob Crittenden • 2 years ago  
81a6b9a
azure tests: move to fedora 38
Florence Blanc-Renaud • 2 years ago  
627c110
ipatests: commands: Wait for the SSSD to become available
Michal Polovka • 2 years ago  
bc39443
Tests: test on f37 and f38
Florence Blanc-Renaud • 2 years ago  
12d1aaf
idview: improve performance of idview-show
Florence Blanc-Renaud • 2 years ago  
3a9a5bd
ipaplatform: add initial nixos support
s1341 • 2 years ago  
16a8106
spec file: force nodejs < 20 on fedora < 39
Florence Blanc-Renaud • 2 years ago  
d95c4cf
ipatests: add remove automember condition tests
mbhalodi • 2 years ago  
846c267
Nightly test: add +15min for test_ipahealthcheck
Florence Blanc-Renaud • 2 years ago  
717228c
Change doc theme to 'book'
Alexander Bokovoy • 2 years ago  
1c43d91
ipatests: ipa-adtrust-install command test scenarios
Sudhir Menon • 2 years ago  
76c7882
Fix "no entry" condition when searching PAC info
Rafael Guterres Jeffman • 2 years ago  
8a7c068
ipasphinx: Correct import of progress_message for Sphinx 6.1.0+
Stanislav Levin • 2 years ago  
3d787c2
cert_find: fix call with --all
Florence Blanc-Renaud • 2 years ago  
918b6e0
Drop duplicate includedir from krb5.conf
Timo Aaltonen • 2 years ago  
bdb77a3
Use the OpenSSL certificate parser in cert-find
Rob Crittenden • 2 years ago  
50dd79d
Enforce sizelimit in cert-find
Rob Crittenden • 2 years ago  
e257667
ipatest: loginscreen: do not use hardcoded password
Michal Polovka • 2 years ago  
1f10aeb
spec: silence krb5 pkgconf errors in %krb5_base_version
Todd Zullinger • 2 years ago  
90d0f04
spec: verify upstream source signature
Todd Zullinger • 2 years ago  
3b64eaa
Speed up installer by restarting DS after DNA plugin
Christian Heimes • 2 years ago  
d63756e
ipatests: mark known failures for autoprivategroup
Florence Blanc-Renaud • 2 years ago  
e2b0843
ipatests: Test for sequence processing failures with server context
mbhalodi • 2 years ago  
304fd55
Extend API documentation
Antonio Torres • 2 years ago  
9c6b4f4
doc/designs/rbcd.md: document use of S-1-18-* SIDs
Alexander Bokovoy • 2 years ago  
cb18ca3
doc/designs/rbcd.md: add usage examples
Alexander Bokovoy • 2 years ago  
b63e6a2
RBCD: add basic test for RBCD handling
Alexander Bokovoy • 2 years ago  
7d68f4f
kdb: implement RBCD handling in KDB driver
Alexander Bokovoy • 2 years ago  
7ac6adf
IPA API changes to support RBCD
Alexander Bokovoy • 2 years ago  
5b6ad0e
doc: add design document for Kerberos constrained delegation
Alexander Bokovoy • 2 years ago  
18cd909
ipa-kdb: search S4U2Proxy ACLs in cn=s4u2proxy,cn=etc,$BASEDN subtree only
Alexander Bokovoy • 2 years ago  
7a7ba45
test_xmlrpc: adopt to automember plugin message changes in 389-ds
Alexander Bokovoy • 2 years ago  
52e6da9
Ignore empty modification error in case cifs/.. principal already added
Alexander Bokovoy • 2 years ago  
e750640
install: Fix missing dyndb keytab directive
Jarl Gullberg • 2 years ago  
1b38ab1
ipaplatform/debian: fix path to ldap.so
Jarl Gullberg • 2 years ago  
03180be
ipatests: add missing automember-cli tests
mbhalodi • 2 years ago  
6db9bbd
ipatests: fix test definition for test_trust
Florence Blanc-Renaud • 2 years ago  
def0726
fastlint: Correct concatenation of file lists
Stanislav Levin • 2 years ago  
5402627
doc: allow notes on Param API Reference pages
Antonio Torres • 2 years ago  
3eed25e
ipatests: increase timeout for test_trust
Florence Blanc-Renaud • 2 years ago  
ae014c6
ipalib/x509: Implement abstract method Certificate.verify_directly_issued_by
Alexander Bokovoy • 2 years ago  
e07ead9
ipaserver: deepcopy objectclasses list from IPA config
Antonio Torres • 2 years ago  
b1b7cbc
ipatests: Test that non admin user can search hbac rule.
Anuja More • 2 years ago  
051bbe3
Fix tox in Azure CI
Alexander Bokovoy • 2 years ago  
aacaafc
Use system-wide chromium for webui tests
Alexander Bokovoy • 2 years ago  
84f5f87
Don't fail if optional RPM macros file is missing
Alexander Bokovoy • 2 years ago  
b93f6b5
ipatests: Test MemberManager ACI to allow managers from a specified group after upgrade scenario
Erik Belko • 2 years ago  
e1f4f65
ipatests: Test ipa-advise is not failing with error.
Anuja More • 2 years ago  
983a651
ipatests: adapt for new automembership fixup behavior
Florence Blanc-Renaud • 2 years ago  
34d048e
external-idp: change idp server name to reference name
Thorsten Scherf • 2 years ago  
9323baf
Migrated to SPDX license.
Rafael Guterres Jeffman • 2 years ago  
e350756
dns: Fix support for dnspython 1.1x
Stanislav Levin • 2 years ago  
b152e8c
Update 'Auth indicators' doc string
Carla Martinez • 2 years ago  
6a4d34f
Don't block when kinit_pkinit() fails
Christian Heimes • 2 years ago  
8803938
ipatests: increase timeout for test_acme
Florence Blanc-Renaud • 2 years ago  
0a8a392
ipatests: WebUI - ensure that ipa automember-rebuild prints a warning
mbhalodi • 2 years ago  
cd07413
ipatests: fix tests in TestACMEPrune
Mohammad Rizwan • 2 years ago  
e7c642b
doc: Update pruning design with implement enable/disable options
Rob Crittenden • 2 years ago  
fe13baa
PRCI: update test_trust.py for nightly pipelines.
Anuja More • 2 years ago  
2a2132c
ipatests: ensure that ipa automember-rebuild prints a warning
mbhalodi • 2 years ago  
88b9be2
doc: Use case examples for PR-CI checker tool
David Pascual • 2 years ago  
41c3217
tests: webui: Update vendored qunit
Stanislav Levin • 2 years ago  
9b8e8ed
AP: webui: List installed nodejs packages
Stanislav Levin • 2 years ago  
8fe8b26
tests: webui: Load qunit only once
Stanislav Levin • 2 years ago  
425cad6
tests: webui: Allow file access from files in tests
Stanislav Levin • 2 years ago  
450e78f
ipatests: tests for certificate pruning
Mohammad Rizwan • 2 years ago  
0f77b35
Add test for SSH with GSSAPI auth.
Anuja More • 2 years ago  
a6cb905
ipa-kdb: PAC consistency checker needs to handle child domains as well
Alexander Bokovoy • 2 years ago  
0206369
Wipe the ipa-ca DNS record when updating system records
Rob Crittenden • 2 years ago  
4e0ad96
Fix setting values of 0 in ACME pruning
Rob Crittenden • 2 years ago  
20ff7c1
API doc: add usage guides for groups, HBAC and sudo rules
Antonio Torres • 2 years ago  
649c35a
Check that CADogtagCertsConfigCheck can handle cert renewal
Chris Kelley • 2 years ago  
a786d3d
API doc: add note about ipa show-mappings to usage guide
Antonio Torres • 2 years ago  
a20acb6
tests: add wrapper around ACME RSNv3 test
Rob Crittenden • 2 years ago  
d24b699
ipatests: fix (prci_checker) duplicated check & error return code
David Pascual • 2 years ago  
1a965a3
automember-rebuild: add a notice about high CPU usage
Florence Blanc-Renaud • 2 years ago  
2857bc6
doc: add the --run command for manual job execution
Rob Crittenden • 2 years ago  
f10d1a0
ipa-acme-manage: add certificate/request pruning management
Rob Crittenden • 2 years ago  
9246a8a
tests: Configure DNSResolver as platform agnostic resolver
Stanislav Levin • 2 years ago  
d662b12
tests: Add new ipa-ca error messages to IPADNSSystemRecordsCheck
Rob Crittenden • 2 years ago  
6ca1196
tests: Add ipa_ca_name checking to DNS system records
Rob Crittenden • 2 years ago  
ff31b0c
spec: Drop no longer used build dependency on paste
Stanislav Levin • 2 years ago  
fb22c8e
ipatests: healthcheck: Handle missing fips-mode-setup
Stanislav Levin • 2 years ago  
1be3188
doc: Design for certificate pruning
Rob Crittenden • 2 years ago  
51b1c22
trust-add: handle missing msSFU30MaxGidNumber
Florence Blanc-Renaud • 2 years ago  
97fc368
Spec file: use %autosetup instead of %setup
Florence Blanc-Renaud • 3 years ago  
2a69d05
Spec file: unify with RHEL9 spec
Florence Blanc-Renaud • 3 years ago  
0e06786
API doc: validate generated reference
Antonio Torres • 3 years ago  
364116c
ipa tests: Add LANG before kinit command to fix issue with locale settings
Filip Dvorak • 3 years ago  
2520a7a
Installer: create RID base before domain object
Florence Blanc-Renaud • 3 years ago  
7d1a358
Tests: force key type in ACME tests
Florence Blanc-Renaud • 3 years ago  
0fa9585
server install: remove error log about missing bkup file
Florence Blanc-Renaud • 3 years ago  
894dca1
ipatests: mark test_smb as xfail
Florence Blanc-Renaud • 3 years ago  
b5f2b0b
pylint: Replace deprecated cgi module
Stanislav Levin • 3 years ago  
2009889
pylint: Fix useless-object-inheritance
Stanislav Levin • 3 years ago  
bccd3c9
pylint: Fix unhashable-member
Stanislav Levin • 3 years ago  
bd7b5bf
pylint: Fix unnecessary-lambda-assignment
Stanislav Levin • 3 years ago  
dc8c8a7
pylint: Fix modified-iterating-list
Stanislav Levin • 3 years ago  
acc2daf
pylint: Fix used-before-assignment
Stanislav Levin • 3 years ago  
b123765
pylint: Replace deprecated pipes
Stanislav Levin • 3 years ago  
1261bbf
pylint: Fix cyclic-import
Stanislav Levin • 3 years ago  
c48c76e
pylint: Replace deprecated extension-pkg-whitelist
Stanislav Levin • 3 years ago  
68ab438
pylint: More allowed C extensions
Stanislav Levin • 3 years ago  
f982269
pylint: Lint in single process mode
Stanislav Levin • 3 years ago  
d673fda
pylint: disable deprecated-module message
Florence Blanc-Renaud • 3 years ago  
85037db
pylint: fix comparison-of-constants
Florence Blanc-Renaud • 3 years ago  
62e2d11
pylint: disable comparison-of-constants
Florence Blanc-Renaud • 3 years ago  
015e25a
pylint: fix consider-iterating-dictionary
Florence Blanc-Renaud • 3 years ago  
3d211b4
pylint: globally disable useless-object-inheritance
Florence Blanc-Renaud • 3 years ago  
4e99884
pylint: disable unhashable-member
Florence Blanc-Renaud • 3 years ago  
0711143
pylint: disable invalid-sequence-index
Florence Blanc-Renaud • 3 years ago  
a95e11d
pylint: fix deprecated-class SafeConfigParser
Florence Blanc-Renaud • 3 years ago  
433599f
pylint: fix duplicate-value
Florence Blanc-Renaud • 3 years ago  
b9ea3fc
pylint: fix implicit-str-concat
Florence Blanc-Renaud • 3 years ago  
71496be
pylint: disable missing-timeout message
Florence Blanc-Renaud • 3 years ago  
84c4792
pylint: globally disable unnecessary-lambda-assignment message
Florence Blanc-Renaud • 3 years ago  
2b97c8c
pylint: disable unnecessary-dunder-call message
Florence Blanc-Renaud • 3 years ago  
3336236
pylint: disable using-constant-test
Florence Blanc-Renaud • 3 years ago  
5434c12
pylint: remove arguments-renamed warnings
Florence Blanc-Renaud • 3 years ago  
22f182e
pylint: disable modified-iterating-list
Florence Blanc-Renaud • 3 years ago  
ac69ad4
pylint: replace deprecated distutils module
Florence Blanc-Renaud • 3 years ago  
328fb64
pylint: disable used-before-assignment
Florence Blanc-Renaud • 3 years ago  
081dd26
pylint: disable redefined-slots-in-subclass
Florence Blanc-Renaud • 3 years ago  
240b46d
pylint: remove useless suppression
Florence Blanc-Renaud • 3 years ago  
51e0f75
pylint: remove unneeded disable=unused-private-member
Florence Blanc-Renaud • 3 years ago  
fd21204
azure tests: move to fedora 37
Florence Blanc-Renaud • 3 years ago  
782873a
ipatests: update the xfail annotation for test_number_of_zones
Florence Blanc-Renaud • 3 years ago  
3049789
Spec file: bump krb5_kdb_version on rawhide
Florence Blanc-Renaud • 3 years ago  
2904b15
FIPS setup: fix typo filtering camellia encryption
Florence Blanc-Renaud • 3 years ago  
dfba6eb
cert utilities: MAC verification is incompatible with FIPS mode
Florence Blanc-Renaud • 3 years ago  
c853cfd
ipatests: update the fake fips mode expected message
Florence Blanc-Renaud • 3 years ago  
68f6574
Fixes: ipa-otpd@.service: deprecated syslog setting
Sudhir Menon • 3 years ago  
65a14a3
ipatests: xfail on all fedora for test_ipa_login_with_sso_user
Florence Blanc-Renaud • 3 years ago  
9599e97
Spec file: ipa-client depends on krb5-pkinit-openssl
Florence Blanc-Renaud • 3 years ago  
2d0a0cc
API doc: add basic user management guide
Antonio Torres • 3 years ago  
a10627b
ipa-certupdate: Update client certs before KDC/HTTPd restart
Christian Heimes • 3 years ago  
8e7d1ac
webui tests: fix assertion in test_subid.py
Florence Blanc-Renaud • 3 years ago  
c411c2e
PRCI: update memory reqs for each topology
Florence Blanc-Renaud • 3 years ago  
aeb9cc9
updates: fix memberManager ACI to allow managers from a specified group
Alexander Bokovoy • 3 years ago  
42be04f
API reference: update dnszone_add generated doc
Florence Blanc-Renaud • 3 years ago  
660da9a
API reference: update vault doc
Florence Blanc-Renaud • 3 years ago  
42957f9
Back to git snapshots
Antonio Torres • 3 years ago  
657a7b2
Become IPA 4.10.1
Antonio Torres • 3 years ago  
e5819bc
Update translations to FreeIPA ipa-4-10 state
Antonio Torres • 3 years ago  
4baee5c
Generate CNAMEs for TXT+URI location krb records
Julien Rische • 3 years ago  
b0d9099
ipatests: update vagrant boxes
Florence Blanc-Renaud • 3 years ago  
f5fb8b0
ipatests: remove xfail for tests using sssctl domain-status
Florence Blanc-Renaud • 3 years ago  
9a95c51
spec file: bump sssd version
Florence Blanc-Renaud • 3 years ago  
eb25f89
Vault: fix interoperability issues with older RHEL systems
Francisco Trivino • 3 years ago  
ba96263
ipatests: re-enable dnssec tests
Florence Blanc-Renaud • 3 years ago  
9b1af71
Spec file: bump bind version on f37+
Florence Blanc-Renaud • 3 years ago  
1dfb5d5
doc: Design for HSM support
Rob Crittenden • 3 years ago  
2aa8ec1
Support tokens and optional password files when opening an NSS db
Rob Crittenden • 3 years ago  
1de3f6c
docs: add security section to idp
Pavel Březina • 3 years ago  
56d2872
Add basic API usage guide
Antonio Torres • 3 years ago  
4e490d2
doc: generate API Reference
Antonio Torres • 3 years ago  
5626976
Pass the curl write callback by name instead of address
Rob Crittenden • 3 years ago  
5631e47
Add PKINIT support to ipa-client-install
Christian Heimes • 3 years ago  
9d902d3
webui: Add name to 'Certificates' table
Carla Martinez • 3 years ago  
813df68
ipatests: Test newly added certificate lable
Mohammad Rizwan • 3 years ago  
580e62a
webui: Add label name to 'Certificates' section
Carla Martinez • 3 years ago  
54470c6
ipa-kdb: for delegation check, use different error codes before and after krb5 1.20
Alexander Bokovoy • 3 years ago  
465d5f5
ipatests: Add test for grace login limit
Erik Belko • 3 years ago  
a2a3d45
ipatests: test for root using admin password in webUI
Erik Belko • 3 years ago  
0085757
Explicitly use legacy ID generators by default
Endi S. Dewata • 3 years ago  
5808811
ipatests: xfail test_ipa_login_with_sso_user
Scott Poore • 3 years ago  
10604ea
ipa-kdb: fix comment to make sure we talk about krb5 1.20 or later
Alexander Bokovoy • 3 years ago  
d3c7a4f
ipa-kdb: fix PAC requester check
Alexander Bokovoy • 3 years ago  
88c1293
ipa-kdb: handle empty S4U proxy in allowed_to_delegate
Alexander Bokovoy • 3 years ago  
1d4db34
ipa-kdb: handle cross-realm TGT entries when generating PAC
Alexander Bokovoy • 3 years ago  
a5ca250
ipa-kdb: add krb5 1.20 support
Alexander Bokovoy • 3 years ago  
e9ae0e3
ipa-kdb: refactor MS-PAC processing to prepare for krb5 1.20
Alexander Bokovoy • 3 years ago  
f0c72dc
Spec file: bump the selinux-policy version
Florence Blanc-Renaud • 3 years ago  
4e201ec
ipatests: add keycloak user login to ipa test
Scott Poore • 3 years ago  
e197c74
webui tests: fix test_subid suite
Florence Blanc-Renaud • 3 years ago  
9936379
ipatests : Test query to AD specific attributes is successful.
Anuja More • 3 years ago  
db7cd79
Exclude installed policy module file from RPM verification
Nikola Knazekova • 3 years ago  
ad7bdd4
With the commit #99a74d7, 389-ds changed the message returned in ipa-healthcheck.
Sumedh Sidhaye • 3 years ago  
5477a07
fix: Handle /proc/1/sched missing error
Viacheslav Sychov • 3 years ago  
7aa8457
ipaclient: do not set TLS CA options in ldap.conf anymore
Alexander Bokovoy • 3 years ago  
93b0e6a
ipa-kdb: do not fail if certmap rule cannot be added
Sumit Bose • 3 years ago  
ae445f7
ipapython: Support openldap 2.6
Stanislav Levin • 3 years ago  
51c31e0
extdom: avoid sss_nss_getorigby*() calls when get*_r_wrapper() returns object from a wrong domain (performance optimization)
Alexey Tikhonov • 3 years ago  
1360c8b
extdom: make sure result doesn't miss domain part
Alexey Tikhonov • 3 years ago  
4685f9d
extdom: internal functions should be static
Alexey Tikhonov • 3 years ago  
113cb8d
ipatests: mark xfail tests using dnssec
Florence Blanc-Renaud • 3 years ago  
3d093c6
ipatests: mark xfail tests using sssctl domain-status
Florence Blanc-Renaud • 3 years ago  
40b9c6f
Tests: test on f37 and f36
Florence Blanc-Renaud • 3 years ago  
a6485d6
Remove empty translation for 'si' which breaks linter
Alexander Bokovoy • 3 years ago  
41ba166
Translated using Weblate (Korean)
김인수 • 3 years ago  
d5ea8d6
Translated using Weblate (Korean)
김인수 • 3 years ago  
4ea9b5e
Translated using Weblate (Korean)
김인수 • 3 years ago  
9d1541f
Added translation using Weblate (Korean)
김인수 • 3 years ago  
f420c19
Translated using Weblate (Georgian)
Temuri Doghonadze • 3 years ago  
3379aa0
Translated using Weblate (Georgian)
Temuri Doghonadze • 3 years ago  
054bd14
Translated using Weblate (Georgian)
Temuri Doghonadze • 3 years ago  
a1e66f5
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
d4b9203
Translated using Weblate (Ukrainian)
Yuri Chornoivan • 3 years ago  
6846b95
Update translation files
Weblate • 3 years ago  
357dd55
Added translation using Weblate (Georgian)
Temuri Doghonadze • 3 years ago  
a30db20
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
242a0da
Translated using Weblate (Ukrainian)
Yuri Chornoivan • 3 years ago  
867a38a
Update translation files
Weblate • 3 years ago  
c8c4e93
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
98e8098
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
2b0c9d9
Translated using Weblate (Finnish)
Ricky Tigg • 3 years ago  
67c54ce
Translated using Weblate (Polish)
Piotr Drąg • 3 years ago  
31f7860
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
dbe49df
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
0caffa3
Translated using Weblate (Indonesian)
Andika Triwidada • 3 years ago  
3885bd6
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
63fceac
Translated using Weblate (Ukrainian)
Yuri Chornoivan • 3 years ago  
6de25a0
Update translation files
Weblate • 3 years ago  
921fdd2
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
606ce6d
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
10a5119
Translated using Weblate (Finnish)
Ricky Tigg • 3 years ago  
86f828a
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
1c1187b
Translated using Weblate (Polish)
Piotr Drąg • 3 years ago  
f9419bd
Translated using Weblate (Finnish)
Ricky Tigg • 3 years ago  
4b10b6d
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
a1c0031
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
bcc5819
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
3452c6f
Translated using Weblate (Ukrainian)
Yuri Chornoivan • 3 years ago  
63d332f
Translated using Weblate (Ukrainian)
Yuri Chornoivan • 3 years ago  
d6d7c5d
Translated using Weblate (Ukrainian)
Yuri Chornoivan • 3 years ago  
a21bf7f
Update translation files
Weblate • 3 years ago  
3500d05
Translated using Weblate (Finnish)
Jan Kuparinen • 3 years ago  
a420226
Update translation files
Weblate • 3 years ago  
d0b3360
ipa man page: format the EXAMPLES section
Florence Blanc-Renaud • 3 years ago  
1546c0b
Update API and VERSION
Carla Martinez • 3 years ago  
48b9cc3
webui: Set 'SOA serial' field as read-only
Carla Martinez • 3 years ago  
9b274bc
ipatest: Remove warning message for 'idnssoaserial'
Carla Martinez • 3 years ago  
3d34673
Set 'idnssoaserial' to deprecated
Carla Martinez • 3 years ago  
242ed2e
Move client certificate request after krb5.conf is created
Rob Crittenden • 3 years ago  
f3c861b
ipatests: add negative test for otptoken-sync
Florence Blanc-Renaud • 3 years ago  
d9f33b7
ipa otptoken-sync: return error when sync fails
Florence Blanc-Renaud • 3 years ago  
221768f
Defer creating the final krb5.conf on clients
Rob Crittenden • 3 years ago  
3cbf2b2
ipatests: add prci definitions for test_sso jobs
Scott Poore • 3 years ago  
db1d051
ipatests: add Keycloak Bridge test
Scott Poore • 3 years ago  
ac77698
webui: Show 'Sudo order' column
Carla Martinez • 3 years ago  
54b8161
ipa-cacert-manage prune: remove all expired certs
Florence Blanc-Renaud • 3 years ago  
c5bcaab
Fix upper bound of password policy grace limit
Rob Crittenden • 3 years ago  
3c4386c
x509: Replace removed register_interface with subclassing
Stanislav Levin • 3 years ago  
a7beaa0
Set pkeys in test_selinuxusermap.py::test_misc::delete_record
Carla Martinez • 3 years ago  
ea792e1
fix canonicalization issue in Web UI
Alexander Bokovoy • 3 years ago  
a0928fe
Fix ipa-ccache-sweeper activation timer and clean up service file
Jesse Sandberg • 3 years ago  
f6a661b
ipa-otpd: initialize local pointers and handle gcc 10
Alexander Bokovoy • 3 years ago  
9441d7e
Remove pki_restart_configured_instance
Endi S. Dewata • 3 years ago  
79f7655
ipatests: Rename create_quarkus to create_keycloak
Scott Poore • 3 years ago  
a0a104a
Set default on group pwpolicy with no grace limit in upgrade
Rob Crittenden • 3 years ago  
de6f074
Set default gracelimit on group password policies to -1
Rob Crittenden • 3 years ago  
45e6d49
doc: Update LDAP grace period design with default values
Rob Crittenden • 3 years ago  
1aa3952
gitignore: add install/oddjob/org.freeipa.server.config-enable-sid
Florence Blanc-Renaud • 3 years ago  
458dceb
ipatests: Fix expected object classes
Florence Blanc-Renaud • 3 years ago  
b6520be
DNSResolver: Fix use of nameservers with ports
Thomas Woerner • 3 years ago  
6c5530c
upgrades: Don't restart the CA on ACME and profile schema change
Rob Crittenden • 3 years ago  
459b81b
check_repl_update: in progress is a boolean
Florence Blanc-Renaud • 3 years ago  
2003eb6
Additional tests for RSN v3
Sumedh Sidhaye • 3 years ago  
bfe074e
webui: Allow grace login limit
Carla Martinez • 3 years ago  
7a1e1d9
ipatests: ipa-client-install --subid adds entry in nsswitch.conf
Sudhir Menon • 3 years ago  
a39af6b
azure tests: disable TestInstallDNSSECFirst
Florence Blanc-Renaud • 3 years ago  
eb9f606
ipatest: fix prci checker target masked return code & add pylint
David Pascual • 3 years ago  
51f1321
ipatests: WebUI: do not allow subid range deletion
Sudhir Menon • 3 years ago  
38e5bcf
Disabling gracelimit does not prevent LDAP binds
Rob Crittenden • 3 years ago  
1bb4ff9
ipatests: healthcheck: test if system is FIPS enabled
Erik • 3 years ago  
c55185d
ap: Constrain supported docutils
Stanislav Levin • 3 years ago  
e5f7356
ap: Rearrange overloaded jobs
Stanislav Levin • 3 years ago  
8ff0c1a
ap: Disable azure's security daemon
Stanislav Levin • 3 years ago  
acd1d12
ap: Raise dbus timeout
Stanislav Levin • 3 years ago  
260d637
Warn for permissions with read/write/search/compare and no attrs
Rob Crittenden • 3 years ago  
499f717
ipatests: Checker script for prci definitions
David Pascual • 3 years ago  
3d82797
Nightly tests: fix template for nightly_ipa-4-10_latest.yaml
Florence Blanc-Renaud • 3 years ago  
4499c73
webui: Do not allow empty pagination size
Armando Neto • 3 years ago  
02d3fb8
Only calculate LDAP password grace when the password is expired
Rob Crittenden • 3 years ago  
33cd62e
Added a check while removing 'cert_dir'. The teardown method is called even if all the tests are skipped since the required PKI version is not present. The teardown is trying to remove a non-existent directory.
Sumedh Sidhaye • 3 years ago  
aca9750
install: suggest --skip-mem-check when mem check fails
Fraser Tweedale • 3 years ago  
cebfb87
man: add --skip-mem-check to man pages
Fraser Tweedale • 3 years ago  
e7bee5b
ipatests: add nightly definitions for ipa-4-10 branch
Florence Blanc-Renaud • 3 years ago  
6c6a43c
Back to git snapshots
Antonio Torres • 3 years ago  
c9d9fb3
Become IPA 4.10.0
Antonio Torres • 3 years ago  
082ec00
Become IPA 4.10.3
Antonio Torres • 2 years ago  
74710a8
Integration tests for verifying Referer header in the UI
Rob Crittenden • 2 years ago  
48ec350
Check the HTTP Referer header on all requests
Rob Crittenden • 2 years ago  
363fd5d
Become IPA 4.10.2
Antonio Torres • 2 years ago  
2fd9cbb
Update list of contributors
Antonio Torres • 2 years ago  
03b92fb
Update translations to FreeIPA ipa-4-10 state
Antonio Torres • 2 years ago  
e3797ca
ipatest: remove xfail from test_smb
Florence Blanc-Renaud • 2 years ago  
283f546
Don't allow a group to be converted to POSIX and external
Rob Crittenden • 2 years ago  
58017ab
ipa-kdb: be compatible with krb5 1.19 when checking for server referral
Alexander Bokovoy • 2 years ago  
f2b821a
Replace usage of #!/usr/bin/env python3 with #!/usr/bin/python3
Rob Crittenden • 2 years ago  
325a131
ipalib/x509.py: Add signature_algorithm_parameters
Alexander Bokovoy • 2 years ago  
11ce2b2
ipa-kdb: skip verification of PAC full checksum
Alexander Bokovoy • 2 years ago  
1b55e9b
ipa-kdb: process out of realm server lookup during S4U
Alexander Bokovoy • 2 years ago  
bd8fcd6
ipa-kdb: postpone ticket checksum configuration
Alexander Bokovoy • 2 years ago  
fefa024
ipa-kdb: protect against context corruption
Alexander Bokovoy • 2 years ago  
803a447
ipa-kdb: hint KDC to use aes256-sha1 for forest trust TGT
Alexander Bokovoy • 2 years ago  
3d0decd
Filter out constrained delegation ACL from KDB entry
Julien Rische • 2 years ago  
7ea3b86
Tolerate absence of PAC ticket signature depending of server capabilities
Julien Rische • 2 years ago  
bbe545f
kdb: Use krb5_pac_full_sign_compat() when available
Julien Rische • 2 years ago  
630cda5
ACME tests: fix issue_and_expire_acme_cert method
Florence Blanc-Renaud • 2 years ago  
a6f485f
Mention in ipa-client-install that nscd is disabled
Rob Crittenden • 2 years ago  
abe71fe
Change fontawesome-fonts requires to match fontawesome 4.x
Jerry James • 2 years ago  
58173c0
user or group name: explain the supported format
Florence Blanc-Renaud • 2 years ago  
7830ab9
ipatests: wait for sssd-kcm to settle after date change
Mohammad Rizwan • 2 years ago  
edcdcf8
Return the <Message> value cert-find failures from the CA
Rob Crittenden • 2 years ago  
81a6b9a
azure tests: move to fedora 38
Florence Blanc-Renaud • 2 years ago  
627c110
ipatests: commands: Wait for the SSSD to become available
Michal Polovka • 2 years ago  
bc39443
Tests: test on f37 and f38
Florence Blanc-Renaud • 2 years ago  
12d1aaf
idview: improve performance of idview-show
Florence Blanc-Renaud • 2 years ago  
3a9a5bd
ipaplatform: add initial nixos support
s1341 • 2 years ago  
16a8106
spec file: force nodejs < 20 on fedora < 39
Florence Blanc-Renaud • 2 years ago  
d95c4cf
ipatests: add remove automember condition tests
mbhalodi • 2 years ago  
846c267
Nightly test: add +15min for test_ipahealthcheck
Florence Blanc-Renaud • 2 years ago  
717228c
Change doc theme to 'book'
Alexander Bokovoy • 2 years ago  
1c43d91
ipatests: ipa-adtrust-install command test scenarios
Sudhir Menon • 2 years ago  
76c7882
Fix "no entry" condition when searching PAC info
Rafael Guterres Jeffman • 2 years ago  
8a7c068
ipasphinx: Correct import of progress_message for Sphinx 6.1.0+
Stanislav Levin • 2 years ago  
3d787c2
cert_find: fix call with --all
Florence Blanc-Renaud • 2 years ago  
918b6e0
Drop duplicate includedir from krb5.conf
Timo Aaltonen • 2 years ago  
bdb77a3
Use the OpenSSL certificate parser in cert-find
Rob Crittenden • 2 years ago  
50dd79d
Enforce sizelimit in cert-find
Rob Crittenden • 2 years ago  
e257667
ipatest: loginscreen: do not use hardcoded password
Michal Polovka • 2 years ago  
1f10aeb
spec: silence krb5 pkgconf errors in %krb5_base_version
Todd Zullinger • 2 years ago  
90d0f04
spec: verify upstream source signature
Todd Zullinger • 2 years ago  
3b64eaa
Speed up installer by restarting DS after DNA plugin
Christian Heimes • 2 years ago  
d63756e
ipatests: mark known failures for autoprivategroup
Florence Blanc-Renaud • 2 years ago  
e2b0843
ipatests: Test for sequence processing failures with server context
mbhalodi • 2 years ago  
304fd55
Extend API documentation
Antonio Torres • 2 years ago  
9c6b4f4
doc/designs/rbcd.md: document use of S-1-18-* SIDs
Alexander Bokovoy • 2 years ago  
cb18ca3
doc/designs/rbcd.md: add usage examples
Alexander Bokovoy • 2 years ago  
b63e6a2
RBCD: add basic test for RBCD handling
Alexander Bokovoy • 2 years ago  
7d68f4f
  • « Newer
  • page 1 of 312
  • » Older
Powered by Pagure 5.14.1
Documentation • File an Issue • About • SSH Hostkey/Fingerprint
© Red Hat, Inc. and others.