pagure Logo
  • Log In

freeipa

Clone
Source Code
GIT
  • Source
  • Issues  1071
  • Roadmap 
  • Stats
 Overview  Files  Commits  Branches  Forks  Releases

Commits 12503

Branch: ipa-4-6-CVE-2023-5455
ipa-1-0 ipa-1-1 ipa-1-2 ipa-2-0 ipa-2-1 ipa-2-2 ipa-3-0 ipa-3-1 ipa-3-2 ipa-3-3 ipa-4-0 ipa-4-1 ipa-4-10 ipa-4-10-CVE-2023-5455 ipa-4-11 ipa-4-11-CVE-2023-5455 ipa-4-11-CVE-2024-2698-and-CVE-2024-3183 ipa-4-12 ipa-4-12-CVE-2024-11029 ipa-4-12-CVE-2024-2698-and-CVE-2024-3183 ipa-4-12-CVE-2025-4404 ipa-4-12-CVE-2025-7493 ipa-4-13 ipa-4-2 ipa-4-3 ipa-4-4 ipa-4-5 ipa-4-6 ipa-4-6-CVE-2019-10195-and-CVE-2019-14867 ipa-4-6-CVE-2020-10747 ipa-4-6-CVE-2023-5455 ipa-4-7 ipa-4-7-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8 ipa-4-8-CVE-2019-10195-and-CVE-2019-14867 ipa-4-8-CVE-2020-10747 ipa-4-9 ipa-4-9-CVE-2023-5455 master webui-cleanup
This branch contains 929 commits not in the main branch master
Become IPA 4.6.10
Antonio Torres • 2 years ago  
9c61767
Integration tests for verifying Referer header in the UI
Florence Blanc-Renaud • 2 years ago  
c86dcf4
Check the HTTP Referer header on all requests
Florence Blanc-Renaud • 2 years ago  
cc3a1db
Become FreeIPA 4.6.9
Alexander Bokovoy • 5 years ago  
4f1f875
Prevent local account takeover
Christian Heimes • 5 years ago  
316ac7c
Become FreeIPA 4.6.8
Alexander Bokovoy • 5 years ago  
a718e4a
Update list of contributors
Alexander Bokovoy • 5 years ago  
1c0749a
Allow rename of a host group
Alexander Bokovoy • 5 years ago  
4c0a2a1
Add 'api' and 'aci' targets to make
Alexander Bokovoy • 5 years ago  
7ce5e79
ipatests: Test if slew mode is not set while configuring ntpd
Mohammad Rizwan Yusuf • 5 years ago  
81b8597
Don't configure ntpd with -x
Rob Crittenden • 5 years ago  
2c14954
Test if schema-compat-entry-attribute is set
Mohammad Rizwan Yusuf • 5 years ago  
b739bc2
Test if schema-compat-entry-attribute is set
Mohammad Rizwan Yusuf • 5 years ago  
e6960b7
ipatests: fix group-add-member in test_sssd
Florence Blanc-Renaud • 5 years ago  
7b9cdfb
ipatests: fix KeyError in test_sssd
Florence Blanc-Renaud • 5 years ago  
bce5097
Test that pwpolicy only applied on Kerberos entries
Rob Crittenden • 5 years ago  
5a98670
Add ability to change a user password as the Directory Manager
Rob Crittenden • 5 years ago  
19e872e
Don't save password history on non-Kerberos accounts
Rob Crittenden • 5 years ago  
dc83394
ipa-pwd-extop: don't check password policy for non-Kerberos account set by DM or a passsync manager
Alexander Bokovoy • 5 years ago  
3d41453
ipa-pwd-extop: use SLAPI_BIND_TARGET_SDN
Alexander Bokovoy • 5 years ago  
d038fc7
ipatests: test sysaccount password change with a password policy applied
Alexander Bokovoy • 5 years ago  
41fc40a
ipatests: allow changing sysaccount passwords as cn=Directory Manager
Alexander Bokovoy • 5 years ago  
e4f3cd0
Fix indentation levels
Alexander Bokovoy • 5 years ago  
aaa79c8
WebUI: Fix notification area layout
Serhii Tsymbaliuk • 5 years ago  
6e62234
ipatests: remove test_ordering
Sergey Orlov • 5 years ago  
3a2244c
Web UI: Upgrade Bootstrap version 3.3.7 -> 3.4.1
Serhii Tsymbaliuk • 5 years ago  
927e339
ipatests: add test_trust suite to nightly runs
Sergey Orlov • 5 years ago  
d44374e
ipatests: add workaround for unfixed sssd bug in Fedora 27
Sergey Orlov • 5 years ago  
37e383a
ipatests: use less strict check for error message
Sergey Orlov • 5 years ago  
941c231
ipatests: provide AD admin password when trying to establish trust
Sergey Orlov • 5 years ago  
795a973
TestBasicADTrust.test_ipauser_authentication
Ganna Kaihorodova • 5 years ago  
2b6638b
Prevent adding IPA objects as external members of external groups
Alexander Bokovoy • 5 years ago  
c14e385
xmlrpc tests: add a test for idview-apply on a master
Florence Blanc-Renaud • 5 years ago  
e946b87
idviews: prevent applying to a master
Florence Blanc-Renaud • 5 years ago  
0d62f3d
Mark test to skip sssd-1.16.3 [sssd/issue/4073]
Anuja More • 5 years ago  
edbf8f7
ipatests: User and group with same name should not break reading AD user data.
Anuja More • 5 years ago  
4ca75cf
Mark xfail for tests using sssd-1.16.3
Anuja More • 5 years ago  
734121f
ipatests: Added test when 2FA prompting configurations is set.
Anuja More • 5 years ago  
b36c4a7
Add test case for OTP login
Christian Heimes • 5 years ago  
cabb7ab
ipatests: remove workaround for pylint error no-name-in-module
Sergey Orlov • 5 years ago  
46b9139
Secure AJP connector between Dogtag and Apache proxy
Alexander Bokovoy • 5 years ago  
901d0ec
Tighten permissions on PKI proxy configuration
Alexander Bokovoy • 5 years ago  
af2dca1
ipa-adtrust-install: remote command fails if ipa-server-trust-ad pkg missing
Florence Blanc-Renaud • 5 years ago  
79f9ba5
ipatests: add test for ipa-adtrust-install --add-agents
Florence Blanc-Renaud • 5 years ago  
796c86a
ipa-adtrust-install: run remote configuration for new agents
Florence Blanc-Renaud • 5 years ago  
f9fcd2c
Privilege: add a helper checking if a principal has a given privilege
Florence Blanc-Renaud • 5 years ago  
d051d2d
ipatests: temporary disable pylint check no-name-in-module
Sergey Orlov • 5 years ago  
044748b
ipatests: remove invalid parameter from sssd.conf
Sergey Orlov • 5 years ago  
551dabe
ipatests: use remote_sssd_config to modify sssd.conf
Sergey Orlov • 5 years ago  
aff397b
ipatests: replace utility for editing sssd.conf
Sergey Orlov • 5 years ago  
7f18f08
ipatests: update docstring to reflect changes in FileBackup.restore()
Sergey Orlov • 5 years ago  
e25b10e
ipatests: refactor FileBackup helper
Sergey Orlov • 5 years ago  
714b61f
ipatests: fix TestSubCAkeyReplication
Florence Blanc-Renaud • 5 years ago  
ed71305
Travis: Enable IPv6 support for Docker
Armando Neto • 5 years ago  
423a052
Mark xfail for sssd-version 1.16.3
Anuja More • 5 years ago  
0c828da
Cherry-picked only ldapmodify_dm()
Christian Heimes • 5 years ago  
48ecb92
ipatests: SSSD should fetch external groups without any limit.
Anuja More • 5 years ago  
fd74fcf
Added a test to check if ipa host-find --pkey-only does not return SSH public key
Sumedh Sidhaye • 5 years ago  
189fc03
Add sssd.py in nightly ipa-4-6.yaml
Anuja More • 5 years ago  
2e4e1b3
ipatests: Add test for ipa-extdom-extop plugin should allow @ in group name
Anuja More • 5 years ago  
a736449
Mark xfail for test_is_user_filtered
Anuja More • 5 years ago  
d3b740e
ipatests: filter_users should be applied correctly.
Anuja More • 5 years ago  
4b70132
install/updates: move external members past schema compat update
Alexander Bokovoy • 5 years ago  
a5a201f
ipatests: fix modify_sssd_conf()
Florence Blanc-Renaud • 5 years ago  
f605f21
Normalize test definations titles
Gaurav Talreja • 5 years ago  
636ea48
test: add non-reg test checking pkinit after server install
Florence Blanc-Renaud • 5 years ago  
18ed56a
pkinit setup: fix regression on master install
Florence Blanc-Renaud • 5 years ago  
50e8c5d
ipatests: add integration test for pkinit enable on replica
Florence Blanc-Renaud • 5 years ago  
95cbf70
pkinit enable: use local dogtag only if host has CA
Florence Blanc-Renaud • 5 years ago  
f7c4734
Do not renew externally-signed CA as self-signed
Fraser Tweedale • 5 years ago  
c30af44
ipatests: fix collection of tests from test_trust suite
Sergey Orlov • 5 years ago  
d12e4bd
Add convenient template for temp commits
Sergey Orlov • 5 years ago  
3d0ffe2
ipatests: add test_winsyncmigrate suite to nightly runs
Sergey Orlov • 5 years ago  
28df8ce
ipatests: fix compatibility with python2 (import ConfigParser)
Sergey Orlov • 5 years ago  
0ad66fc
ipatests: fix backup and restore
Florence Blanc-Renaud • 5 years ago  
4bd5da1
Allow an empty cookie in dogtag-ipa-ca-renew-agent-submit
Rob Crittenden • 5 years ago  
73d415b
Test: Test to check whether ssh from ipa client to ipa master is successful after adding ldap_deref_threshold=0 in sssd.conf
Sumedh Sidhaye • 5 years ago  
5d8936c
Test if ipactl starts services stopped by systemctl
Jayesh Garg • 5 years ago  
c1099f7
Test for ipa-ca-install on replica
Jayesh • 5 years ago  
c559e41
Add promote option to install_replica() method
Mohammad Rizwan Yusuf • 5 years ago  
0d91a78
ipa-cacert-manage man page: fix indentation
Florence Blanc-Renaud • 5 years ago  
3d8b16b
Mark xfail for test_sss_ssh_authorizedkeys()
Anuja More • 5 years ago  
3ddddad
ipatests: 'sss_ssh_authorizedkeys user' should return ssh key
Anuja More • 5 years ago  
0c45236
ipatests: add new utilities for file management
Sergey Orlov • 5 years ago  
ba4aaa7
ipatests: add utility functions related to using and managing user accounts
Sergey Orlov • 5 years ago  
ee3d998
adtrust.py: mention restarting sssd when adding trust agents
François Cami • 5 years ago  
5bc4218
trust upgrade: ensure that host is member of adtrust agents
Florence Blanc-Renaud • 6 years ago  
bb4ec6f
Tests for autounmembership feature
Kaleemullah Siddiqui • 6 years ago  
4a8316d
covscan: free ucs2-encoded password copy when generating NTLM hash
Alexander Bokovoy • 6 years ago  
830466c
covscan: free encryption types in case there is an error
Alexander Bokovoy • 6 years ago  
e8983f6
Become FreeIPA 4.6.7
Alexander Bokovoy • 6 years ago  
71c4dd1
CVE-2019-10195: Don't log passwords embedded in commands in calls using batch
Rob Crittenden • 6 years ago  
5913826
Make sure to have storage space for tag
Simo Sorce • 6 years ago  
cc45a39
ipatests: add check that ipa-adtrust-install generates sane smb.conf
Sergey Orlov • 6 years ago  
a8fbbb1
ipatests: fix test_ca_custom_sdn
Florence Blanc-Renaud • 6 years ago  
526c184
Do not run trust upgrade code if master lacks Samba bindings
Alexander Bokovoy • 6 years ago  
fa23f5a
Use default ssh host key algorithms
Christian Heimes • 6 years ago  
7cd1d56
smartcard: make the ipa-advise script compatible with authselect/authconfig
Florence Blanc-Renaud • 6 years ago  
7a19c0d
ipatests: add test to check that only TLS 1.2 is enabled in Apache
Sergey Orlov • 6 years ago  
4487fc4
ipatests: modify run_command to allow specify successful return codes
Sergey Orlov • 6 years ago  
aa0ecc9
Log stderr in run_command
Christian Heimes • 6 years ago  
c5ff328
ipatests: in DNS zone file add A record for name server
Sergey Orlov • 6 years ago  
cf61f74
ipatests: strip newline character when getting name of temp file
Sergey Orlov • 6 years ago  
99e8d80
Fix errors found by Pylint-2.4.3
Stanislav Levin • 6 years ago  
f0f8393
test_integration: add tests for custom CA subject DN
Fraser Tweedale • 6 years ago  
0a0e802
upgrade: fix ipakra people entry 'description' attribute
Fraser Tweedale • 6 years ago  
2fa8c69
krainstance: set correct issuer DN in uid=ipakra entry
Fraser Tweedale • 6 years ago  
946d96f
ipa-backup: fix python2 issue with os.mkdir
Florence Blanc-Renaud • 6 years ago  
1192126
ipa-server-certinstall manpage: add missing options
Florence Blanc-Renaud • 6 years ago  
ddc0046
Add test to nightly.yaml
Mohammad Rizwan Yusuf • 6 years ago  
9b3855e
Installation of replica against a specific server
Mohammad Rizwan Yusuf • 6 years ago  
f4dc0ee
Check file ownership and permission for dirsrv log instance
Mohammad Rizwan Yusuf • 6 years ago  
de0afea
ipatests: fix DNS forwarders setup for AD trust tests with non-root domains
Sergey Orlov • 6 years ago  
f803c2c
ipatests: fix test_replica_promotion.py::TestHiddenReplicaPromotion
Florence Blanc-Renaud • 6 years ago  
a5228a7
ipatests: add XMLRPC test for user-add when UPG plugin is disabled
Florence Blanc-Renaud • 6 years ago  
317c111
ipa user_add: do not check group if UPG is disabled
Florence Blanc-Renaud • 6 years ago  
0b574c1
Bump krb5 min version
Fraser Tweedale • 6 years ago  
e686949
CustodiaClient: fix IPASecStore config on ipa-4-7
Fraser Tweedale • 6 years ago  
c9d0ba0
CustodiaClient: use ldapi when ldap_uri not specified
Fraser Tweedale • 6 years ago  
1f45586
Fix CustodiaClient ccache handling
Christian Heimes • 6 years ago  
436214a
Handle missing LWCA certificate or chain
Fraser Tweedale • 6 years ago  
82a9fe7
Fixed errors newly exposed by pylint 2.4.0
Stanislav Levin • 6 years ago  
700a6c9
Fix NULL pointer dereference in maybe_require_preauth()
Robbie Harwood • 6 years ago  
95f50d7
Log INFO message when LDAP connection fails on startup
Robbie Harwood • 6 years ago  
f132def
replica install: enforce --server arg
Florence Blanc-Renaud • 6 years ago  
22e4eef
ipa-restore: Restore ownership and perms on 389-ds log directory
Rob Crittenden • 6 years ago  
8cd2052
Fix segfault in ipadb_parse_ldap_entry()
Robbie Harwood • 6 years ago  
ed0d756
Report if a certmonger CA is missing
Rob Crittenden • 6 years ago  
9eb7763
Extdom plugin should not return error (32)/'No such object'
Anuja More • 6 years ago  
17536af
Don't log host passwords when they are set/modified
Rob Crittenden • 6 years ago  
86529f5
Disable deprecated-lambda check in adtrust upgrade code
Rob Crittenden • 6 years ago  
582e7a3
adtrust: add default read_keys permission for TDO objects
Alexander Bokovoy • 6 years ago  
b764b38
add default access control when migrating trust objects
Alexander Bokovoy • 6 years ago  
5741e03
Add container environment check to replicainstall
Tibor Dudlák • 6 years ago  
a016ed7
Hidden Replica: Add a test for Automatic CRL configuration
ndehadra • 6 years ago  
ad3ddbb
Don't configure KEYRING ccache in containers
Christian Heimes • 6 years ago  
91e5405
extdom: add extdom protocol documentation
Tomas Halman • 6 years ago  
9a140cd
extdom: use sss_nss_*_timeout calls
Tomas Halman • 6 years ago  
0a1ad84
extdom: plugin doesn't use timeout in blocking call
Tomas Halman • 6 years ago  
20612db
extdom: plugin doesn't allow @ in group name
Tomas Halman • 6 years ago  
b182a96
check for single-label domains only during server install
Florence Blanc-Renaud • 6 years ago  
8ae6c1a
ipasam: use SID formatting calls to libsss_idmap
Alexander Bokovoy • 6 years ago  
95c91b5
Remove ZERO_STRUCT() call
Christian Heimes • 6 years ago  
910e563
ipa_sam: remove dependency to talloc_strackframe.h
Sumit Bose • 6 years ago  
fa0b273
Use unicode strings for Python 2 version
Alexander Bokovoy • 6 years ago  
37fa917
prci: Update box used in branch ipa-4-6
Armando Neto • 6 years ago  
b93258d
ipa-extdom-extop: test timed out getgrgid_r
Alexander Bokovoy • 6 years ago  
387ed98
extdom: unify error code handling especially LDAP_NO_SUCH_OBJECT
Sumit Bose • 6 years ago  
574a615
Don't return SSH keys with ipa host-find --pkey-only
Rob Crittenden • 6 years ago  
643a1d6
prci_definitions: add master_3client topology
François Cami • 6 years ago  
663163c
xmlrpc test: add test for preserved > stage user
Florence Blanc-Renaud • 6 years ago  
5ab31a9
user-stage: transfer all attributes from preserved to stage user
Florence Blanc-Renaud • 6 years ago  
6a9f1c8
Revert back to git snapshots
Alexander Bokovoy • 6 years ago  
ca00a83
Become FreeIPA 4.6.6
Alexander Bokovoy • 6 years ago  
207694c
translations: update from Zanata for IPA 4.6
Alexander Bokovoy • 6 years ago  
5d617a0
ipatests: add proper timeouts to nfs.py
François Cami • 6 years ago  
8334a87
ipa-client-automount: fix '--idmap-domain DNS' logic
François Cami • 6 years ago  
95f8f5d
ipatests: add tests for the new NFSv4 domain option of ipa-client-automount
François Cami • 6 years ago  
ce43340
ipa-client-automount: add knob to configure NFSv4 Domain (idmapd.conf)
François Cami • 6 years ago  
0ce21ac
certmaprule: add negative test for altSecurityIdentities
Alexander Bokovoy • 6 years ago  
0cc8ce2
certmap rules: altSecurityIdentities should only be used for trusted domains
Alexander Bokovoy • 6 years ago  
219fb1f
Create indexes for altSecurityIdentities and ipaCertmapData attributes
Alexander Bokovoy • 6 years ago  
dc81689
Add altSecurityIdentities attribute from MS-WSPP schema definition
Alexander Bokovoy • 6 years ago  
f8fccd5
Update the ciphers list
Florence Blanc-Renaud • 6 years ago  
91641ac
ipatests: new test for trust with partially unreachable AD topology
Sergey Orlov • 6 years ago  
e0da5f7
DL0 replica install: fix nsDS5ReplicaBindDN config
Florence Blanc-Renaud • 6 years ago  
30f3816
WebUI: Fix automount maps pagination
Serhii Tsymbaliuk • 6 years ago  
99926d9
Use only TLS 1.2 by default
Christian Heimes • 6 years ago  
a5b6f72
mod_nss: stop using NSSProtocols TLS 1.0 and 1.1
Florence Blanc-Renaud • 6 years ago  
3d6a2a2
ipatests: fix ipatests/test_xmlrpc/test_dns_plugin.py
Florence Blanc-Renaud • 6 years ago  
104247d
XMLRPC tests: add new test for ipa dsnrecord-mod $ZONE $RECORD --ttl
Florence Blanc-Renaud • 6 years ago  
de17f2a
dnsrecord-mod: allow to modify ttl without passing the record
Florence Blanc-Renaud • 6 years ago  
e7fa5f3
ipatests: POSIX attributes are no longer overwritten or missing
Anuja More • 6 years ago  
089b44c
tox: force pytest version to the 4.6.4
Armando Neto • 6 years ago  
9a4f9a4
trust-fetch-domains: make sure we use right KDC when --server is specified
Alexander Bokovoy • 6 years ago  
076cb69
adtrust upgrade: fix wrong primary principal name, part 2
Alexander Bokovoy • 6 years ago  
cb74ea9
WebUI: Fix 'user not found' traceback on user ID override details page
Serhii Tsymbaliuk • 6 years ago  
5c56bb4
adtrust upgrade: fix wrong primary principal name
Alexander Bokovoy • 6 years ago  
910e8b1
ipatests: add a test for stageuser-find with non-posix account
Florence Blanc-Renaud • 6 years ago  
174b3aa
stageuser-find: fix search with non-posix user
Florence Blanc-Renaud • 6 years ago  
2c81375
nfs.py: fix user creation
François Cami • 6 years ago  
868fb14
Hidden replica documentation: fix typo
François Cami • 6 years ago  
265f500
ipa-backup: better error message if ENOSPC
François Cami • 6 years ago  
e665675
ipatests: fix test_backup_and_restore.py::TestBackupAndRestore
Florence Blanc-Renaud • 6 years ago  
f27b274
Refactor tasks to include is_selinux_enabled()
Christian Heimes • 6 years ago  
9816b18
dn: sort AVAs when converting from x509.Name
Fraser Tweedale • 6 years ago  
9e3f471
When reading SSH pub key don't assume last character is newline
Rob Crittenden • 6 years ago  
f9e974c
Convert members into types in sudorule-*-option
Rob Crittenden • 6 years ago  
9d92dc1
ipatests: new tests for establishing one-way AD trust with shared secret
Sergey Orlov • 6 years ago  
2a773cb
ipa-cert-fix: fix spurious renewal master change
Fraser Tweedale • 6 years ago  
4c25a83
ipa-cert-fix: handle 'pki-server cert-fix' failure
Fraser Tweedale • 6 years ago  
1ee6bb2
ipatests: add integration test for ipa-replica-manage list
Florence Blanc-Renaud • 6 years ago  
82780e6
Bump template version
Armando Neto • 6 years ago  
782ee28
Test if ipactl restart restarts the pki-tomcatd
Mohammad Rizwan Yusuf • 6 years ago  
4076c79
dn: handle multi-valued RDNs in Name conversion
Fraser Tweedale • 6 years ago  
030ec9a
ipa-replica-manage: remove "last init status" if it's None.
Florence Blanc-Renaud • 6 years ago  
9359979
NSSDatabase: fix get_trust_chain
Florence Blanc-Renaud • 6 years ago  
6740270
Switch nsslapd-unhashed-pw-switch to nolog
Thierry Bordaz • 6 years ago  
200fcbc
ipatests: CA renewal must refresh cn=CAcert
Florence Blanc-Renaud • 6 years ago  
c3e6abf
CA: set ipaconfigstring:compatCA in cn=DOMAIN IPA CA
Florence Blanc-Renaud • 6 years ago  
c442b95
ipatests: add integration test checking the files mode
Florence Blanc-Renaud • 6 years ago  
c7712c1
Fix expected file permissions for ghost files
Florence Blanc-Renaud • 6 years ago  
b7afb14
Forbid imports of ipaserver and install packages
Christian Heimes • 6 years ago  
8316136
Don't import ipaserver in conf.py
Christian Heimes • 6 years ago  
3be76d5
Replace imports from ipaserver
Christian Heimes • 6 years ago  
f4bb901
Delay import of SSSDConfig
Christian Heimes • 6 years ago  
0bb5dba
upgrade: adtrust - catch empty result when retrieving list of trusts
Alexander Bokovoy • 6 years ago  
aa8b1b9
Fix test_arbitrary_certificates for Web UI
Serhii Tsymbaliuk • 6 years ago  
36bf34c
Web UI tests: Get rid of *_cert_path and *_csr_path config variables
Serhii Tsymbaliuk • 6 years ago  
46338fd
Fix order of commands in test for removing topology segments
Petr Vobornik • 6 years ago  
fb229e9
ipatests: add nfs tests
François Cami • 6 years ago  
58637ba
ipatests: add a test for ipa-client-automount
François Cami • 6 years ago  
d7602f3
ipatests: fix replica uninstallation in test_integration/test_server_del.py
Sergey Orlov • 6 years ago  
ed91e8d
ipatests: make encoding to base64 compatible with python2
Sergey Orlov • 6 years ago  
71fea1d
ipatests: new tests for ipa-winsync-migrate utility
Sergey Orlov • 6 years ago  
783dc61
Consider configured servers as valid
Christian Heimes • 6 years ago  
2f9793c
ipactl restart: fix wrong logic when checking service list
Florence Blanc-Renaud • 6 years ago  
0a8ca73
ipa console: catch proper exception when history file can not be open
Sergey Orlov • 6 years ago  
0082ddf
ipatests: coerce tmpdir to string
Sergey Orlov • 6 years ago  
8b59475
Enforce SMBLoris attack protection in default Samba configuration
Alexander Bokovoy • 6 years ago  
06f10eb
Set idmap config for Samba to follow IPA ranges and use SSSD
Alexander Bokovoy • 6 years ago  
7214a31
tests: correctly place xfail for test_integration/test_installation.py
Florence Blanc-Renaud • 6 years ago  
632a876
Remove tests which install KRA on replica w/o KRA on master
Rob Crittenden • 6 years ago  
5a397ee
ipa-client-install: autodiscovery must refuse single-label domains
Florence Blanc-Renaud • 6 years ago  
39d2ae9
tests: fix test_user_permissions.py::TestInstallClientNoAdmin
Florence Blanc-Renaud • 6 years ago  
5ca8b4f
PRCI: add nightly definition for ipa-4-6 branch
Florence Blanc-Renaud • 6 years ago  
a0014db
Adapt cert-find performance workaround for users
Christian Heimes • 6 years ago  
b480a8a
Bypass D-BUS interface definition deficiences for trust-fetch-domains
Alexander Bokovoy • 6 years ago  
51fdbf2
net groupmap: force using empty config when mapping Guests
Alexander Bokovoy • 6 years ago  
e9f48f6
adtrust: define Guests mapping after creating cifs/ principal
Alexander Bokovoy • 6 years ago  
999b0dc
Fix uninstallation test, use different method to stop dirsrv
Rob Crittenden • 6 years ago  
19cbd37
ipatests: fix host name for ssh connection from controller to master
Sergey Orlov • 6 years ago  
58d11af
ipatests: fix ldap server url
Sergey Orlov • 6 years ago  
c0d0805
ipatests: refactor test_trust.py
Sergey Orlov • 6 years ago  
bb40cd8
ipatests: adapt test_trust.py for changes in multihost fixture
Sergey Orlov • 6 years ago  
1fa1003
ipatests: allow AD hosts to be placed in separate domain config objects
Sergey Orlov • 6 years ago  
1797516
ipatests: fix expectations of `ipa trust-find` output for trust with root domain
Sergey Orlov • 6 years ago  
a37d20b
ipatests: in test_trust.py fix parent class
Sergey Orlov • 6 years ago  
07a471d
ipatests: disable bind dns validation when preparing to establish AD trust
Sergey Orlov • 6 years ago  
e8460e4
ipatests: in test_trust.py fix prameters in invocation of tasks.configure_dns_for_trust
Sergey Orlov • 6 years ago  
fc9634d
Revert "Tests: Remove DNS configuration from trust tests"
Sergey Orlov • 6 years ago  
d1f7db8
oddjob: allow to pass options to trust-fetch-domains
Alexander Bokovoy • 6 years ago  
916d4f3
ipa-setup-kra: fix python2 parameter
Florence Blanc-Renaud • 6 years ago  
cf3e617
ipa-server-upgrade: fix add_systemd_user_hbac
Florence Blanc-Renaud • 6 years ago  
4c4d084
Show a notification that sssd needs restarting after idrange-mod
Oleg Kozlov • 6 years ago  
9284341
ipa-cert-fix: use customary exit statuses
Fraser Tweedale • 6 years ago  
e313149
ipa-cert-fix: add man page
Fraser Tweedale • 6 years ago  
d0b9507
Add ipa-cert-fix tool
Fraser Tweedale • 6 years ago  
a2f9a70
constants: add ca_renewal container
Fraser Tweedale • 6 years ago  
01a487e
cainstance: add function to determine ca_renewal nickname
Fraser Tweedale • 6 years ago  
4f42ba8
Extract ca_renewal cert update subroutine
Fraser Tweedale • 6 years ago  
0a54a4c
Don't fail if config-show does not return servers
Christian Heimes • 6 years ago  
a0f00e6
Add design draft
Christian Heimes • 6 years ago  
d1eb4c7
Test replica installation from hidden replica
Christian Heimes • 6 years ago  
e40d92f
Synchronize hidden state from IPA master role
Christian Heimes • 6 years ago  
d8d6799
Don't allow to hide last server for a role
Christian Heimes • 6 years ago  
bcf70c5
More test fixes
Christian Heimes • 6 years ago  
131c1ab
Improve config-show to show hidden servers
Christian Heimes • 6 years ago  
ed00466
Consider hidden servers as role provider
Christian Heimes • 6 years ago  
d12cca4
Implement server-state --state=enabled/hidden
Christian Heimes • 6 years ago  
da9f62d
Simplify and improve tests
Christian Heimes • 6 years ago  
7691162
ipatests: Exercise hidden replica feature
François Cami • 6 years ago  
016c47f
Add hidden replica feature
Christian Heimes • 6 years ago  
cb85342
Skip zone overlap check with auto-reverse
Justin Stephenson • 6 years ago  
ce7b22c
Extend CALessBase::installer_server to accept extra_args
Rob Crittenden • 6 years ago  
1c82d8c
Add sysadm_r to default SELinux user map order
François Cami • 6 years ago  
c742ff1
Add uniqueness constraint on CA ACL name
Fraser Tweedale • 6 years ago  
2b44212
RFE: ipa client should setup openldap for GSSAPI
amitkuma • 6 years ago  
d4f1406
upgrade: add trust upgrade to actual upgrade code
Alexander Bokovoy • 6 years ago  
9ce3a29
upgrade: upgrade existing trust agreements to new layout
Alexander Bokovoy • 6 years ago  
7476953
trusts: add support for one-way shared secret trust
Alexander Bokovoy • 6 years ago  
b2bac94
trust: allow trust agents to read POSIX identities of trust
Alexander Bokovoy • 6 years ago  
7a7ef33
Add design page for one-way trust to AD with shared secret
Alexander Bokovoy • 6 years ago  
b70e4d1
Support Samba 4.9
Alexander Bokovoy • 6 years ago  
076d894
Replace hard-coded paths with path constants
Christian Heimes • 6 years ago  
9a45361
Consolidate container_masters queries
Christian Heimes • 6 years ago  
ec94a68
Use api.env.container_masters
Christian Heimes • 6 years ago  
aba0fce
Unify and simplify LDAP service discovery
Christian Heimes • 6 years ago  
aa3f60b
replica install: acknowledge ca_host override
Christian Heimes • 6 years ago  
902606c
ipa-replica-manage: fix force-sync
Florence Blanc-Renaud • 6 years ago  
36628f6
domainlevel-get: fix various issues when running as non-admin
Alexander Bokovoy • 6 years ago  
4c123cd
Web UI (topology graph): Show FQDN for nodes if they have no common DNS zone
Serhii Tsymbaliuk • 6 years ago  
7b61dbf
Coverity: fix issue in ipa_extdom_extop.c
Florence Blanc-Renaud • 6 years ago  
ad2f5db
VERSION.m4: Set back to git snapshot
Rob Crittenden • 6 years ago  
e10957b
Become IPA 4.6.5
Rob Crittenden • 6 years ago  
e3ab298
Send only the path and not the full URI to httplib.request
Rob Crittenden • 6 years ago  
ca5f3ab
ipa server: prevent uninstallation if the server is CRL master
Florence Blanc-Renaud • 6 years ago  
52e259b
Test: add new tests for ipa-crlgen-manage
Florence Blanc-Renaud • 6 years ago  
8fa3e9b
CRL generation master: new utility to enable|disable
Florence Blanc-Renaud • 6 years ago  
af5abe0
ipa-extdom-exop: add instance counter and limit
Sumit Bose • 6 years ago  
3e45903
ipa-{server,replica}-install: add too-restritive mask detection
François Cami • 6 years ago  
c6e6a7a
ipatests: add too-restritive mask tests
François Cami • 6 years ago  
d37afbc
pylintrc: ignore R1720 no-else-raise errors
François Cami • 6 years ago  
0170fd8
cert-request: fix py2 unicode/str issues
Fraser Tweedale • 6 years ago  
cbb9729
cert-request: handle missing zone
Fraser Tweedale • 6 years ago  
94ecaaa
cert-request: more specific errors in IP address validation
Fraser Tweedale • 6 years ago  
1a78844
Add tests for cert-request IP address SAN support
Fraser Tweedale • 6 years ago  
0295908
cert-request: report all unmatched SAN IP addresses
Fraser Tweedale • 6 years ago  
6e5c2d9
cert-request: generalise _san_dnsname_ips for arbitrary cname depth
Fraser Tweedale • 6 years ago  
ed3ef20
cert-request: collect only qualified DNS names for IPAddress validation
Fraser Tweedale • 6 years ago  
42c69a0
cert-request: restrict IPAddress SAN to host/service principals
Fraser Tweedale • 6 years ago  
dd93dd1
Allow issuing certificates with IP addresses in subjectAltName
Ian Pilcher • 6 years ago  
5aa8b7a
Update template directory with new variables when upgrading ipa.conf.template
Alexander Bokovoy • 6 years ago  
0ad9702
Processing of server roles should ignore errors.EmptyResult
Alexander Bokovoy • 6 years ago  
56e55e0
Add tests for ipa-cacert-manage install
Rob Crittenden • 6 years ago  
5e51c31
Add support for multiple certificates/formats to ipa-cacert-manage
Rob Crittenden • 6 years ago  
6bea9b1
tests: fix failure in test_topology_TestTopologyOptions:test_add_remove_segment
Florence Blanc-Renaud • 6 years ago  
521435d
Fix "Configured size limit exceeded" warning on Web UI
Serhii Tsymbaliuk • 6 years ago  
26324f0
ipatests: add test for correct modlist when value encoding differs
Sergey Orlov • 6 years ago  
04d4f8b
Update mod_nss cipher list so there is overlap with a 4.x master
Rob Crittenden • 6 years ago  
515ee7f
Optimize cert remove case
Christian Heimes • 6 years ago  
9a0783f
Add workaround for slow host/service del
Christian Heimes • 6 years ago  
1e842f0
ipatests: add test for replica in forward zone
Florence Blanc-Renaud • 6 years ago  
2835dcb
replica installation: add master record only if in managed zone
Florence Blanc-Renaud • 6 years ago  
28f416c
Fix systemd-user HBAC rule
Christian Heimes • 6 years ago  
529a667
make sure IPA_CONFDIR is used to check that client is configured
Alexander Bokovoy • 6 years ago  
9f044d5
ipaserver/dcerpc: fix exclusion entry with a forest trust domain info returned
Alexander Bokovoy • 6 years ago  
d946d0d
Make conftest compatible with pytest 4.x
Christian Heimes • 6 years ago  
43548d2
Create systemd-user HBAC service and rule
Christian Heimes • 6 years ago  
3b99973
Add index on idnsName
Christian Heimes • 6 years ago  
a98ad61
Remove stale kdc requests info files when upgrading IPA server
Oleg Kozlov • 6 years ago  
ddf3395
replication: check remote ds version before editing attributes
Florence Blanc-Renaud • 6 years ago  
5639974
ipa-sidgen: make internal fetch_attr helper really internal
Alexander Bokovoy • 6 years ago  
b6cb09e
Create reindex task for ipaca DB
Christian Heimes • 6 years ago  
26d90cd
Add more LDAP indices
Christian Heimes • 6 years ago  
f29ab77
LDAPUpdate: Batch index tasks
Christian Heimes • 6 years ago  
55f18a8
Add index and container for RFC 2307 IP services
Christian Heimes • 6 years ago  
df606ff
Add integration tests for idviews
Christian Heimes • 7 years ago  
f1badca
Resolve user/group names in idoverride*-find
Christian Heimes • 7 years ago  
9229c83
Test error when yubikey hardware not present
Mohammad Rizwan Yusuf • 7 years ago  
9cf3570
PKINIT: fix ipa-pkinit-manage enable|disable
Florence Blanc-Renaud • 7 years ago  
7f653a0
ipatest: add test for ipa-pkinit-manage enable|disable
Florence Blanc-Renaud • 7 years ago  
c5b0874
ipatests: fix TestUpgrade::test_double_encoded_cacert
Florence Blanc-Renaud • 7 years ago  
caa0e42
certupdate: add commentary about certmonger behaviour
Fraser Tweedale • 7 years ago  
35e9f64
ipatests: add upgrade test for double-encoded cacert
Florence Blanc-Renaud • 7 years ago  
c567649
ipa upgrade: handle double-encoded certificates
Florence Blanc-Renaud • 7 years ago  
4e7838f
prci_definitions: update vagrant memory topology requirements
Francisco Trivino • 7 years ago  
32b0c87
ipatests: add xmlrpc test for user|host-find --certificate
Florence Blanc-Renaud • 7 years ago  
6539340
ipaldap.py: fix method creating a ldap filter for IPACertificate
Florence Blanc-Renaud • 7 years ago  
d9cbf8b
Fix useless-import-alias
Christian Heimes • 7 years ago  
33a94d0
Fix comparison-with-callable
Christian Heimes • 7 years ago  
2fd773d
Address consider-using-in
Christian Heimes • 7 years ago  
8185ebc
Ignore consider-using-enumerate for now
Christian Heimes • 7 years ago  
8753e2f
Ignore W504 code style like in travis config
Christian Heimes • 7 years ago  
42eae48
Silence comparison-with-itself in tests
Christian Heimes • 7 years ago  
2a5114f
Fix Module 'pytest' has no 'config' member
Christian Heimes • 7 years ago  
7b090ba
Address inconsistent-return-statements
Christian Heimes • 7 years ago  
2ecad90
Address pylint violations in lite-server
Christian Heimes • 7 years ago  
b7de732
Address misc pylint issues in CLI scripts
Christian Heimes • 7 years ago  
e959d14
pylint: also verify scripts
Christian Heimes • 7 years ago  
fa9affa
pylint: Fix duplicate-string-formatting-argument
Christian Heimes • 7 years ago  
905b402
pylint 2.2: Fix unnecessary pass statement
Christian Heimes • 7 years ago  
cb21a71
Add a "Find enabled services" ACI in 20-aci.update so that all users can find IPA servers and services. ACI suggested by Christian Heimes.
François Cami • 7 years ago  
212215c
Add a shared-vault-retrieve test
François Cami • 7 years ago  
e0207fa
ipatests: fix test_replica_uninstall_deletes_ruvs
Florence Blanc-Renaud • 7 years ago  
1f19439
ipatests: add test for ipa-replica-install options
Florence Blanc-Renaud • 7 years ago  
d53faf8
ipa-replica-install: password and admin-password options mutually exclusive
Florence Blanc-Renaud • 7 years ago  
2aed47c
ipa-kdb: reduce LDAP operations timeout to 30 seconds
Alexander Bokovoy • 7 years ago  
e0921b4
Fix pytest deprecation warning
Christian Heimes • 7 years ago  
c9a4716
ipatests: add integration test for "Read radius servers" perm
Florence Blanc-Renaud • 7 years ago  
97133bb
radiusproxy: add permission for reading radius proxy servers
Florence Blanc-Renaud • 7 years ago  
3f56ae4
tests: add xmlrpc test for ipa user-add --radius-username
Florence Blanc-Renaud • 7 years ago  
d6043c7
ipa user-add: add optional objectclass for radius-username
Florence Blanc-Renaud • 7 years ago  
d5eabd5
Copy-paste error in permssions plugin, CID 323649
Christian Heimes • 7 years ago  
3bcee52
Allow ipaapi user to access SSSD's info pipe
Christian Heimes • 7 years ago  
43bb1d2
rpc: always read response
Fraser Tweedale • 7 years ago  
a877dbe
ipaldap: avoid invalid modlist when attribute encoding differs
Fraser Tweedale • 7 years ago  
3cf2490
ipapwd_pre_mod: NULL ptr deref
Christian Heimes • 7 years ago  
f5f52e3
ipadb_mspac_get_trusted_domains: NULL ptr deref
Christian Heimes • 7 years ago  
55c86da
has_krbprincipalkey: avoid double free
Christian Heimes • 7 years ago  
1c24577
ipatest: add functional test for ipa-backup
Florence Blanc-Renaud • 7 years ago  
21639d7
ipa-backup: restart services before compressing the backup
Florence Blanc-Renaud • 7 years ago  
3973f8a
Don't abuse strncpy() length limitation
Christian Heimes • 7 years ago  
3e8a942
Fix ipadb_multires resource handling
Christian Heimes • 7 years ago  
8f36951
ipa-replica-install --setup-adtrust: check for package ipa-server-trust-ad
Florence Blanc-Renaud • 7 years ago  
0c2bdcb
Fix ressource leak in daemons/ipa-slapi-plugins/ipa-cldap/ipa_cldap_netlogon.c ipa_cldap_netlogon
Thomas Woerner • 7 years ago  
9756d4f
Fix ressource leak in client/config.c get_config_entry
Thomas Woerner • 7 years ago  
416c9c5
ipa-advise: update url of cacerdir_rehash tool
Petr Vobornik • 7 years ago  
9af6bb5
Adapt backport to ipa-4-6 branch
Florence Blanc-Renaud • 7 years ago  
2ba908d
Bump requires 389-ds-base
Florence Blanc-Renaud • 7 years ago  
18fa0d7
Fixing tests on TestReplicaManageDel
Felipe Barreto • 7 years ago  
885da73
Bump requires for pki
Florence Blanc-Renaud • 7 years ago  
1183cbb
Enable LDAP debug output in client to display TLS errors in join
Rob Crittenden • 7 years ago  
7cf7a74
Find orphan automember rules
Thomas Woerner • 7 years ago  
890b8aa
Fix writing certificate chain to file
Fraser Tweedale • 7 years ago  
b94e1d1
ipa-advise: fix script for smart card preparation
Florence Blanc-Renaud • 7 years ago  
6e2bd18
Change Web UI tests setup flow
Serhii Tsymbaliuk • 7 years ago  
be8437c
Fix UI_driver.has_class exception. Handle situation when element has no class attribute
Serhii Tsymbaliuk • 7 years ago  
5a439f8
Increase some timeouts in Web UI tests
Serhii Tsymbaliuk • 7 years ago  
8b1bc39
Remove unnecessary session clearing in some Web UI tests
Serhii Tsymbaliuk • 7 years ago  
a586c68
Add cookies clearing for all Web UI tests
Serhii Tsymbaliuk • 7 years ago  
eca4326
Generate CSR for test_host::test_certificates (Web UI test)
Serhii Tsymbaliuk • 7 years ago  
98ed740
Add SAN extension for CSR generation in test_cert (Web UI tests)
Serhii Tsymbaliuk • 7 years ago  
425dc7a
Fix unpermitted user session in test_selfservice (Web UI test)
Serhii Tsymbaliuk • 7 years ago  
337ffc3
Fix test_user::test_login_without_username (Web UI test)
Serhii Tsymbaliuk • 7 years ago  
f20ee9e
Use random realmdomains in test_webui/test_realmdomains.py
Serhii Tsymbaliuk • 7 years ago  
c790309
Fix test_realmdomains::test_add_single_labeled_domain (Web UI test)
Serhii Tsymbaliuk • 7 years ago  
d54ffce
Increase request timeout for WebUI tests
Serhii Tsymbaliuk • 7 years ago  
a653e79
Use random IPs and domains in test_webui/test_host.py
Serhii Tsymbaliuk • 7 years ago  
035f7dd
Fix hardcoded CSR in test_webui/test_cert.py
Serhii Tsymbaliuk • 7 years ago  
4cd190c
bump ci-ipa-4-6-f27 PRCI template
Michal Reznik • 7 years ago  
817931a
add strip_cert_header() to tasks.py
Michal Reznik • 7 years ago  
d67eeb8
tests: sssd_ssh fd leaks when user cert converted into SSH key
Michal Reznik • 7 years ago  
c24137e
Test: scenario replica install/uninstall should restore nss.conf
Florence Blanc-Renaud • 7 years ago  
1f1b63f
ipa-replica-install: properly use the file store
Florence Blanc-Renaud • 7 years ago  
61661ba
Fix certificate type error when exporting to file
Armando Neto • 7 years ago  
d73e201
Tests: test successful PKINIT install on replica
Florence Blanc-Renaud • 7 years ago  
2a2fd08
ipa-replica-install: fix pkinit setup
Florence Blanc-Renaud • 7 years ago  
e02041d
tests: add test for server install with --no-dnssec-validation
Florence Blanc-Renaud • 7 years ago  
98212c1
ipa-server-install: do not perform forwarder validation with --no-dnssec-validation
Florence Blanc-Renaud • 7 years ago  
d388bcf
ui_tests: fix test_config::test_size_limits
Armando Neto • 7 years ago  
2977535
Add cmocka unit tests for ipa otpd queue code
Robbie Harwood • 7 years ago  
d0b23ec
Clear next field when returnining list elements in queue.c
Robbie Harwood • 7 years ago  
b0b37d4
Prevent installation with single label domains
Aleksei Slaikovskii • 7 years ago  
020dc37
Test if WSGI worker process count is set to 4
Mohammad Rizwan Yusuf • 7 years ago  
6760ac9
Test for ipa-replica-install fails with PIN error for CA-less env.
Anuja More • 7 years ago  
1a80ecc
Fix ipa-replica-install when key not protected by PIN
Florence Blanc-Renaud • 7 years ago  
25e4b67
Do not set ca_host when --setup-ca is used
Tibor Dudlák • 7 years ago  
c4481d7
ipautil.run: add test for runas parameter
Florence Blanc-Renaud • 7 years ago  
306f34a
uninstall -v: remove Tracebacks
Florence Blanc-Renaud • 7 years ago  
6b8b9b2
DS replication settings: fix regression with <3.3 master
Florence Blanc-Renaud • 7 years ago  
2563f6f
Disable message about log in ipa-backup if IPA is not configured
Rob Crittenden • 7 years ago  
9182917
Test: test ipa-* commands when IPA is not configured
Florence Blanc-Renaud • 7 years ago  
95af5dc
ipa commands: print 'IPA is not configured' when ipa is not setup
Florence Blanc-Renaud • 7 years ago  
af2ee7a
test: client uninstall fails when installed using non-existing hostname
Michal Reznik • 7 years ago  
711f7e6
Check if user permssions and umask 0022 is set when executing ipa-restore
Mohammad Rizwan Yusuf • 7 years ago  
6833242
Add assert to check output of upgrade
Tibor Dudlák • 7 years ago  
46feb67
Re-open the ldif file to prevent error message
Tibor Dudlák • 7 years ago  
6df65a1
ipasam: do not use RC4 in FIPS mode
Alexander Bokovoy • 7 years ago  
0a89f64
Move fips_enabled to a common library to share across different plugins
Alexander Bokovoy • 7 years ago  
2ede8e6
ipa_tests: test ssh keys login
Michal Reznik • 7 years ago  
adf70a6
Tests: add integration test for password changes by dir mgr
Florence Blanc-Renaud • 7 years ago  
eb8a57f
PRCI: extend timeouts
Florence Blanc-Renaud • 7 years ago  
7e3c60b
ipaserver/plugins/cert.py: Added reason to raise of errors.NotFound
Thomas Woerner • 7 years ago  
70aae62
In IPA 4.4 when updating userpassword with ldapmodify does not update krbPasswordExpiration nor krbLastPwdChange
Thierry Bordaz • 7 years ago  
fb3553f
Allow anonymous access to parentID attribute
Alexander Bokovoy • 7 years ago  
f6a651d
Do not check deleted files with `make fastlint`
Tibor Dudlák • 7 years ago  
235f5b7
Rename pytest_plugins to ipatests.pytest_ipa
Christian Heimes • 7 years ago  
6000ecc
Add check for occuring traceback during uninstallation ipa master
Ganna Kaihorodova • 7 years ago  
8eacc7d
Fix KRA replica installation from CA master
Christian Heimes • 7 years ago  
b9beda3
Fix regression: Handle unicode where str is expected
Armando Neto • 7 years ago  
0791b10
Disable Pylint 2.0 violations
Armando Neto • 7 years ago  
46344dd
Fix Pylint 2.0 violations
Armando Neto • 7 years ago  
a49e933
Add pylint ignore to magic config.Env attributes
Christian Heimes • 7 years ago  
51ce233
Teach pylint how our api works
Christian Heimes • 7 years ago  
3269162
Handle races in replica config
Christian Heimes • 7 years ago  
2394463
Fix ipa console filename
Christian Heimes • 7 years ago  
7af4528
Create helper function to upload to temp file
Christian Heimes • 7 years ago  
cfba669
Add tab completion and history to ipa console
Christian Heimes • 7 years ago  
a1a87f9
Fix pylint 2.0 conditional-related violations
Armando Neto • 7 years ago  
fee6fa5
pylint 2.0: node.path is a list
Christian Heimes • 7 years ago  
1895714
Fix pylint 2.0 return-related violations
Armando Neto • 7 years ago  
e565809
Fix DNSSEC install regression
Christian Heimes • 7 years ago  
87466d1
Tune DS replication settings
Christian Heimes • 7 years ago  
6ba653c
Wait for client certificates
Christian Heimes • 7 years ago  
bde0b51
Auto-retry failed certmonger requests
Christian Heimes • 7 years ago  
ab8a739
Fix race condition in get_locations_records()
Christian Heimes • 7 years ago  
3679e6a
replicainstall: DS SSL replica install pick right certmonger host
Rob Crittenden • 7 years ago  
f5aa209
Fix CA topology warning
Christian Heimes • 7 years ago  
a5de02b
ipa client uninstall: clean the state store when restoring hostname
Florence Blanc-Renaud • 7 years ago  
8151b69
Delay enabling services until end of installer
Christian Heimes • 7 years ago  
8fd206f
Only create DNS SRV records for ready server
Christian Heimes • 7 years ago  
ce88908
Query for server role IPA master
Christian Heimes • 7 years ago  
e70c922
Import ABCs from collections.abc
Christian Heimes • 7 years ago  
e2347fa
ipa-server-install: fix zonemgr argument validator
Armando Neto • 7 years ago  
226d91e
ipa-client-install: Update how comments are added by ipachangeconf
Armando Neto • 7 years ago  
009d6bf
Test for improved Custodia key distribution
Nikhil Dehadrai • 7 years ago  
59f31f5
Catch ACIError instead of invalid credentials
Christian Heimes • 7 years ago  
d0dd00f
Rename test class for testing simple commands, add test
Rob Crittenden • 7 years ago  
6652eb0
Test for ipa-client-install should not use hardcoded admin principal
Anuja More • 7 years ago  
9b34098
Fix permission of public files in upgrader
Christian Heimes • 7 years ago  
8164fba
Make /etc/httpd/alias world readable & executable
Christian Heimes • 7 years ago  
b76b50d
Always make ipa.p11-kit world-readable
Christian Heimes • 7 years ago  
9576e3c
Ensure that public cert and CA bundle are readable
Christian Heimes • 7 years ago  
fc63ad8
Prevent the creation on users and groups with numeric characters only
Armando Neto • 7 years ago  
fe608f0
ipaserver/dcerpc.py: handle indirect topology conflicts
Alexander Bokovoy • 7 years ago  
693ce94
Use freeipa/ci-ipa-4-6-f27 for PR-CI
Christian Heimes • 7 years ago  
b1df5fe
Require python-ldap with fix for ref counting bug
Christian Heimes • 7 years ago  
5bc650a
Add test case for allow-create-keytab
Christian Heimes • 7 years ago  
13567ef
Check if issuer DN is updated after self-signed > external-ca
Mohammad Rizwan Yusuf • 7 years ago  
39350af
Use 4 WSGI workers on 64bit systems
Christian Heimes • 7 years ago  
f98b6e1
Fix replication races in Dogtag admin code
Christian Heimes • 7 years ago  
763951c
Use common replication wait timeout of 5min
Christian Heimes • 7 years ago  
3988988
Improve and fix timeout bug in wait_for_entry()
Christian Heimes • 7 years ago  
7357637
ipaserver config plugin: Increase search records minimum limit
Armando Neto • 7 years ago  
59e0c02
Always set ca_host when installing replica
Christian Heimes • 7 years ago  
14519c2
ui_tests: extend test_config.py suite
Michal Reznik • 7 years ago  
2e75eb4
Extended UI test for Certificates
Mohammad Rizwan Yusuf • 7 years ago  
365e052
Increase WSGI process count to 5 on 64bit
Christian Heimes • 7 years ago  
db8e0e6
Sort and shuffle SRV record by priority and weight
Christian Heimes • 7 years ago  
5a83e31
Replace some test case adjectives
Rob Crittenden • 7 years ago  
ebb2fc3
Use replace instead of add to set new default ipaSELinuxUserMapOrder
Rob Crittenden • 7 years ago  
be729c7
zanata: update translations for ipa-4-6
Rob Crittenden • 7 years ago  
45dabca
ui_tests: fixes for issues with sending key and focus on element
Michal Reznik • 7 years ago  
762006c
Test coverage for multiservers for radius proxy
Kaleemullah Siddiqui • 7 years ago  
8cff4fe
Extended UI test for selfservice permission.
Mohammad Rizwan Yusuf • 7 years ago  
0bc787f
VERSION.m4: Set back to git snapshot
Rob Crittenden • 7 years ago  
a212e7c
Become IPA 4.6.4
Rob Crittenden • 7 years ago  
477d92a
Suppress missing cn=schema compat on installation
Rob Crittenden • 7 years ago  
466c2f0
Revert "Fixing TestBackupAndRestore::test_full_backup_and_restore_with_removed_users"
Aleksei Slaikovskii • 7 years ago  
6d554a5
Uninstall fix for named-pkcs11
Aleksei Slaikovskii • 7 years ago  
438c5f2
Use one Custodia peer to retrieve all secrets
Christian Heimes • 7 years ago  
a3d3890
Adding xfail to failing tests
Felipe Barreto • 7 years ago  
d8ad644
Disable Schema Compat plugin during server upgrade
Rob Crittenden • 7 years ago  
36e95d2
Add tests for ipa-restore with DM password validation check
Rob Crittenden • 7 years ago  
f8b6e8c
Validate the Directory Manager password before starting restore
Rob Crittenden • 7 years ago  
e045b0a
Test for 7526
Florence Blanc-Renaud • 7 years ago  
a9e9d50
ipa-server-install: publish complete cert chain in /usr/share/ipa/html/ca.crt
Florence Blanc-Renaud • 7 years ago  
06b5511
Fix elements not being removed in otpd_queue_pop_msgid()
Robbie Harwood • 7 years ago  
a417b81
Adding WebUI Host test cases
Pavel Picka • 7 years ago  
e116844
Test to check second replica installation after master restore
Mohammad Rizwan Yusuf • 7 years ago  
31bf419
group-del: add a warning to logs when password policy could not be removed
Alexander Bokovoy • 7 years ago  
164d907
Don't try to set Kerberos extradata when there is no principal
Rob Crittenden • 7 years ago  
92595cc
Travis: ignore 'line break after binary operator'
Stanislav Laznicka • 7 years ago  
4685cbb
ipa vault-archive overwrites an existing value without warning
amitkumar50 • 7 years ago  
9864ea2
Fix test_server_del::TestLastServices
Petr Vobornik • 7 years ago  
7f1803f
server-del do not return early if CA renewal master cannot be changed
Petr Vobornik • 7 years ago  
e7bb2d7
Radius proxy multiservers fix
Aleksei Slaikovskii • 7 years ago  
875dfc4
ui_tests: add click_undo_button() func
Michal Reznik • 7 years ago  
ef2b2c0
ui_tests: extend test_selinuxusermap.py suite
Michal Reznik • 7 years ago  
eaa9daa
Extend WebUI test_krbpolicy suite with the following test cases: test_verifying_button (verify button's action in various scenarios) test_negative_value (verify invalid values) test_verifying_measurement_unit
Varun Mylaraiah • 7 years ago  
a94227b
webui:tests: Add tests for realmd domains
Petr ÄŒech • 7 years ago  
ab4af82
Require mod_nss 1.0.14-7 to fix reverse proxy in mod_nss
Rob Crittenden • 7 years ago  
dca61eb
pylint3: workaround false positives reported for W1662
Alexander Bokovoy • 7 years ago  
4aafc96
ui_tests: improve "field_validation" method
Michal Reznik • 7 years ago  
ee24972
ui_tests: checkbox click fix
Michal Reznik • 7 years ago  
0d0dd08
Allow user administrator to change user homedir
Stanislav Laznicka • 7 years ago  
3a101ef
Revert "Validate the Directory Manager password"
Christian Heimes • 7 years ago  
3da2124
Validate the Directory Manager password before starting restore
Rob Crittenden • 7 years ago  
2a8822b
Load certificate files as binary data
Christian Heimes • 7 years ago  
6f7ef53
Add absolute_import future imports
Stanislav Laznicka • 7 years ago  
3a8a1e6
Travis: test IPA 4.6 on F27
Stanislav Laznicka • 7 years ago  
a2a7304
Log service start/stop/restart message
Rob Crittenden • 7 years ago  
c500dbc
idoverrideuser-add: allow adding ssh key in web ui
Alexander Bokovoy • 7 years ago  
85993af
Update project metadata in ipasetup.py.in
Rob Crittenden • 7 years ago  
50aa6b6
Redirect CRL requests to the http port, not the https port
Rob Crittenden • 7 years ago  
cec801d
WebUI tests: Extend netgroup tests with more scenarios
Varun Mylaraiah • 7 years ago  
2109ee2
ui_tests: introduce new test_misc cases file
Michal Reznik • 7 years ago  
34ecd80
ui_driver: extension and modifications related to test_user
Michal Reznik • 7 years ago  
5c9714e
ui_tests: extend test_user suite
Michal Reznik • 7 years ago  
17442dc
Use single Custodia instance in installers
Christian Heimes • 7 years ago  
a0cdeb6
Fixing TestBackupAndRestore::test_full_backup_and_restore_with_removed_users
Felipe Barreto • 7 years ago  
9b217ef
Adding GSSPROXY_CONF to be backed up on ipa-backup
Felipe Barreto • 7 years ago  
2cd8398
csrgen: fix when attribute shortname is lower case
Fraser Tweedale • 7 years ago  
ea5a3da
csrgen: drive-by docstring
Fraser Tweedale • 7 years ago  
9727ffd
csrgen: support initialising OpenSSL adaptor with key object
Fraser Tweedale • 7 years ago  
76a7c15
py3: fix csrgen error handling
Fraser Tweedale • 7 years ago  
7b8837c
Fix trust tests for Posix Support
Ganna Kaihorodova • 7 years ago  
8f3ef70
Allow dot as a valid character in an selinux identity name
Rob Crittenden • 7 years ago  
810348f
webui: refresh complex pages after modification
Petr Vobornik • 7 years ago  
a1bebde
Fixed improper clean-up in test_host::test_kerberos_flags added closing the notification in kerberos flags
Varun Mylaraiah • 7 years ago  
9a6bcb5
WebUI tests: Extend user group tests with more scenarios
Varun Mylaraiah • 7 years ago  
1ecdfcc
certprofile: add tests for config profileId scenarios
Fraser Tweedale • 7 years ago  
5fb3475
certprofile: reject config with multiple profileIds
Fraser Tweedale • 7 years ago  
1a6acd5
ACL: Allow hosts to remove services they manage
Alexander Bokovoy • 7 years ago  
93f0a23
install: configure dogtag status request timeout
Fraser Tweedale • 7 years ago  
4fc0e78
replication: support error messages from 389-ds 1.3.5 or later
Alexander Bokovoy • 7 years ago  
1f9320b
upgrade: treat duplicate entry when updating as not an error
Alexander Bokovoy • 7 years ago  
0925349
Fix upgrade (update_replica_config) in single master mode
Fraser Tweedale • 7 years ago  
34078ca
Add nsds5ReplicaReleaseTimeout to replica config
Christian Heimes • 7 years ago  
0f7acc3
replica-install: pass --ip-address to client install
Stanislav Laznicka • 7 years ago  
4353de0
Provide ldap_uri in Custodia uninstaller
Christian Heimes • 7 years ago  
5e80d7a
Defer import of ipaclient.csrgen
Christian Heimes • 7 years ago  
4d5a110
Break out of teardown in test_replica_promotion.py if no config
Rob Crittenden • 7 years ago  
e100c46
Fix in IPA's multihost fixture
Ganna Kaihorodova • 7 years ago  
f3382cd
Require more recent glibc on F27
Christian Heimes • 7 years ago  
f642cfc
test_web_ui: extend ui_driver methods
Michal Reznik • 7 years ago  
0bd1a0a
test_webui: add user life-cycles tests
Michal Reznik • 7 years ago  
d946c3d
webui tests: fix test_host:test_crud failure
Petr Vobornik • 7 years ago  
ce274f7
webui:tests: close big notifications in realm domains tests
Petr Vobornik • 7 years ago  
0535960
webui:tests: realm domain add with DNS check
Petr Vobornik • 7 years ago  
96f62fc
webui:tests: move DNS test data to separate file
Petr Vobornik • 7 years ago  
16f410e
WebUI Hostgroups tests cases added
Pavel Picka • 7 years ago  
f54e590
ACI: grant access to admins group instead of admin user
Florence Blanc-Renaud • 7 years ago  
35f6a1a
ui_tests: run ipa-get/rmkeytab command on UI host
Michal Reznik • 7 years ago  
27213ad
ui_tests: select_combobox() fixes
Michal Reznik • 7 years ago  
44e62ac
ui_tests: test cancel and delete without button
Michal Reznik • 7 years ago  
7f0e9fa
ui_tests: make associations cancelable
Michal Reznik • 7 years ago  
f345f36
ui_tests: add function to run cmd on UI host
Michal Reznik • 7 years ago  
cab29d5
ui_tests: add funcs to add/remove users public SSH key
Michal Reznik • 7 years ago  
e36dedd
ui_tests: add assert_field_required()
Michal Reznik • 7 years ago  
7091942
ui_tests: add assert_notification()
Michal Reznik • 7 years ago  
71f0b5b
ui_tests: add more test cases
Michal Reznik • 7 years ago  
d6e7693
ui_tests: add more test cases to test_certification
Michal Reznik • 7 years ago  
991d2cb
ui_tests: add_service() support func in test_service
Michal Reznik • 7 years ago  
6f52f88
ui_tests: add_host() support func in test_service
Michal Reznik • 7 years ago  
aff7b39
ui_tests: change get_http_pkey() function
Michal Reznik • 7 years ago  
e817709
replica-install: warn when there is only one CA in topology
Fraser Tweedale • 7 years ago  
9d4fe17
Remove py35 env from tox testing
Stanislav Laznicka • 7 years ago  
a7ebf48
upgrade: Run configuration upgrade under empty ccache collection
Alexander Bokovoy • 7 years ago  
7645dc2
ipa-replica-install: make sure that certmonger picks the right master
Florence Blanc-Renaud • 7 years ago  
75d8ba8
More cleanup after uninstall
Christian Heimes • 7 years ago  
16b785a
Remove the Continuous installer class, it is unused
Rob Crittenden • 7 years ago  
68f1744
Return a value if exceptions are raised in server uninstall
Rob Crittenden • 7 years ago  
b446e45
Pylint 1.8.3 fixes
Christian Heimes • 7 years ago  
11946c6
Relax message check in test_create_host_with_ip
Christian Heimes • 7 years ago  
b6f6e85
Error message while adding idrange with untrusted domain
amitkuma • 7 years ago  
725d081
Log errors from NSS during FIPS OTP key import
Robbie Harwood • 7 years ago  
63c2d2a
Fixing cleanup process in test_caless
Felipe Barreto • 7 years ago  
333f14c
test_caless: adjust try/except to capture also IOError
Michal Reznik • 7 years ago  
bd6deb2
ipa_tests: test signing request with subca on replica
Michal Reznik • 7 years ago  
458eafe
ipa-server-install: handle error when calling kdb5_util create
Florence Blanc-Renaud • 7 years ago  
ab6ba13
Revert "Don't allow OTP or RADIUS in FIPS mode"
Nathaniel McCallum • 7 years ago  
1df9767
Increase the default token key size
Nathaniel McCallum • 7 years ago  
6d4ce79
Fix OTP validation in FIPS mode
Nathaniel McCallum • 7 years ago  
acb59fc
Overide trust methods for integration tests
Ganna Kaihorodova • 7 years ago  
67a3231
vault: fix vault-retrieve to a file
Stanislav Laznicka • 7 years ago  
a147233
Don't try to backup CS.cfg during upgrade if CA is not configured
Rob Crittenden • 7 years ago  
f24a3ae
ipa host-add: do not raise exception when reverse record not added
Florence Blanc-Renaud • 7 years ago  
3022f5c
Don't return None on mismatched interactive passwords
Rob Crittenden • 7 years ago  
57ab38f
test_caless: test PKINIT install and anchor update
Michal Reznik • 7 years ago  
4c7c0e7
Updated the TestExternalCA with the functions introduced for the steps of external CA installation.
Mohammad Rizwan Yusuf • 7 years ago  
522c681
When the dirsrv service, which gets started during the first ipa-server-install --external-ca phase, is not running when the second phase is run with --external-cert-file options, the ipa-server-install command fail.
Mohammad Rizwan Yusuf • 7 years ago  
1a3fc3b
Remove special characters in host_add random OTP generation
John L • 7 years ago  
511fa05
fastcheck: do not test context in pycodestyle
Petr Vobornik • 7 years ago  
2326c41
freeipa-server no longer supports i686 arch on F28
Christian Heimes • 7 years ago  
cfecc52
WebUI Tests: changing the ActionsChains.move_to_element to a new approach
Felipe Barreto • 7 years ago  
d1eb7bc
WebUI Tests: fixing test_user.py::test_test_noprivate_posix
Felipe Barreto • 7 years ago  
d8ffd80
WebUI Tests: Changing how the initial load process is done
Felipe Barreto • 7 years ago  
8ce814d
WebUI Tests: fixing test_range test case
Felipe Barreto • 7 years ago  
5fb9c4f
WebUI Tests: changing how the login screen is detected
Felipe Barreto • 7 years ago  
6865e6e
WebUI Tests: refactoring login method to be more readable
Felipe Barreto • 7 years ago  
9490884
WebUI Tests: fixing test_navigation
Felipe Barreto • 7 years ago  
19fb8b9
WebUI Tests: fixing test_group
Felipe Barreto • 7 years ago  
c5e2dee
WebUI Tests: fixing test_hbac
Felipe Barreto • 7 years ago  
a4e7a20
Unified ldap_initialize() function
Christian Heimes • 7 years ago  
cfda8bb
389-ds OTP lasttoken plugin: Add unit test
Florence Blanc-Renaud • 7 years ago  
a47ddde
User must not be able to delete his last active otp token
Florence Blanc-Renaud • 7 years ago  
55d5f91
Fix multiple uninstallation of server
Christian Heimes • 7 years ago  
8ceeb88
Fix i18n test for Chinese translation
Christian Heimes • 7 years ago  
0203404
Run API and ACI under Python 2 and 3
Christian Heimes • 7 years ago  
487fd2d
Generate same API.txt under Python 2 and 3
Christian Heimes • 7 years ago  
7c7b5bb
tests: move CA related modules to pytest_plugins
Michal Reznik • 7 years ago  
e2188fd
test_external_ca: selfsigned->ext_ca->selfsigned
Michal Reznik • 7 years ago  
1ed2708
test_tasks: add sign_ca_and_transport() function
Michal Reznik • 7 years ago  
42bca4e
paths: add IPA_CACERT_MANAGE and IPA_CERTUPDATE constants
Michal Reznik • 7 years ago  
564123e
Before the fix, when ipa-backup was called for the first time, the LDAP database exported to /var/lib/dirsrv/slapd-<instance>/ldif/<instance>-userRoot.ldif. db2ldif is called for this and it runs under root, hence files were owned by root.
Mohammad Rizwan Yusuf • 7 years ago  
9b92e8f
test_renewal_master: add ipa csreplica-manage test
Michal Reznik • 7 years ago  
8b43665
test_help: test "help" command without cache
Michal Reznik • 7 years ago  
225186d
test_x509: test very long OID
Michal Reznik • 7 years ago  
a264cf7
ipa host-add --ip-address: properly handle NoNameservers
Florence Blanc-Renaud • 7 years ago  
023fe42
Enable and start oddjobd after ipa-restore if it's not running.
Aleksei Slaikovskii • 7 years ago  
d150e75
ldap2: fix implementation of can_add
Fraser Tweedale • 7 years ago  
dee3255
ipaldap: allow GetEffectiveRights on individual operations
Fraser Tweedale • 7 years ago  
ac9efdc
Check if replication agreement exist before enable/disable it
Felipe Barreto • 7 years ago  
0e2c854
Replace wsgi package conflict with config file
Christian Heimes • 7 years ago  
3336051
ipa-kdb: update trust information in all workers
Sumit Bose • 7 years ago  
5973f09
Restart named-pkcs11 after KRA installation
Christian Heimes • 7 years ago  
4f12c7d
Update existing 389-DS cn=RSA,cn=encryption config
Christian Heimes • 7 years ago  
1f942ef
Update IPA CA issuer DN upon renewal
Fraser Tweedale • 7 years ago  
69681c5
Fix detection of KRA installation so upgrades can succeed
Rob Crittenden • 7 years ago  
1513da3
Bump python-ldap version to fix syncrepl bug
Christian Heimes • 7 years ago  
3777324
ipa-kdb: use magic value to check if ipadb is used
Sumit Bose • 7 years ago  
ebb89eb
Bump SELinux policy for DNSSEC
Christian Heimes • 7 years ago  
48564ad
ipa-server-upgrade now checks custodia server keys
Christian Heimes • 7 years ago  
b216655
ipa_tests: test subca key replication
Michal Reznik • 7 years ago  
a454cba
DNSSEC code cleanup
Christian Heimes • 7 years ago  
1afdd51
DNSSEC: Reformat lines to address PEP8 violations
Christian Heimes • 7 years ago  
349fa4a
Decode ODS commands
Christian Heimes • 7 years ago  
7021b8c
Run DNSSEC under Python 3
Christian Heimes • 7 years ago  
c478639
More DNSSEC house keeping
Christian Heimes • 7 years ago  
bc0ad3e
py3 dnssec: convert hexlify to str
Tomas Krizek • 7 years ago  
ac2b6a4
py3: bindmgr: fix bytes issues
Tomas Krizek • 7 years ago  
cf2d239
py3: bindmgr: fix iteration over bytes
Martin Basti • 7 years ago  
329178b
py3: ipa-dnskeysyncd: fix bytes issues
Martin Basti • 7 years ago  
6ba2f1e
ipa-advise for smartcards updated
amitkuma • 7 years ago  
8595e34
Make IntegrationTest fail if an error happened during uninstall
Felipe Barreto • 7 years ago  
cd2c721
IntegrationTests now collects logs from all test methods
Felipe Barreto • 7 years ago  
d37b2fe
Fix replica_promotion-domlevel0 test failures
Alexander Koksharov • 7 years ago  
0d7bd81
cert-request: avoid internal error when cert malformed
Fraser Tweedale • 7 years ago  
85165f6
Improve warning message for malformed certificates
Fraser Tweedale • 7 years ago  
fb9b3f4
Move Requires: pythonX-sssdconfig into conditional
Rob Crittenden • 7 years ago  
3c44310
IANA reserved IP address can not be used as a forwarder. This test checks if ipa server installation throws an error when 0.0.0.0 is specified as forwarder IP address.
Mohammad Rizwan Yusuf • 7 years ago  
fe5d037
Fixing translation problems
Aleksei Slaikovskii • 7 years ago  
924e97c
preventing ldap principal to be deleted
Alexander Koksharov • 7 years ago  
86c0c64
VERSION.m4: Set back to git snapshot
Rob Crittenden • 7 years ago  
028de27
Become IPA 4.6.3
Rob Crittenden • 7 years ago  
17b6449
Remove unused PyOpenSSL from spec file
Christian Heimes • 7 years ago  
a3bff8a
Fixing vault-add-member to be compatible with py3
Felipe Barreto • 7 years ago  
cf6aeae
Give ODS socket a bit of time
Christian Heimes • 7 years ago  
57a8693
Require dbus-python on F27
Christian Heimes • 7 years ago  
0c73c3b
Lower python-ldap requirement for F27
Christian Heimes • 7 years ago  
b05e983
Custom ca-subject logging
amitkuma • 7 years ago  
f8ebd6e
Fix pylint error in ipapython/dn.py
Christian Heimes • 7 years ago  
ec60db3
Checks if Dir Server is installed and running before IPA installation
Felipe Barreto • 7 years ago  
b2bafe8
Fixing test_backup_and_restore assert to do not rely on the order
Felipe Barreto • 7 years ago  
262f980
replica_prepare: Remove the correct NSS DB files
Stanislav Laznicka • 7 years ago  
e7dcba0
Documenting kinit_lifetime in /etc/ipa/default.conf
amitkuma • 7 years ago  
af03853
Sort external schema files
Christian Heimes • 7 years ago  
23b1ae6
10-config.update: remove nsslapd-sasl-max-buffer-size override as https://pagure.io/389-ds-base/issue/47457 was fixed directly in 389 Directory Server.
François Cami • 7 years ago  
2212fb5
Idviews: fix objectclass violation on idview-add
Florence Blanc-Renaud • 7 years ago  
6c89b26
Fixing test_testconfig with proper asserts
Felipe Barreto • 7 years ago  
3a82e70
test_backup_and_restore.py AssertionError fix
Aleksei Slaikovskii • 7 years ago  
70da37a
LGTM: unnecessary else in for loop
Christian Heimes • 7 years ago  
7047d6c
LGTM: Use explicit string concatenation
Christian Heimes • 7 years ago  
8296ada
LGTM: raise handle_not_found()
Christian Heimes • 7 years ago  
1472597
LGTM: Fix multiple use before assignment
Christian Heimes • 7 years ago  
22a8aba
LGTM: Remove redundant assignment
Christian Heimes • 7 years ago  
62f8f02
LGTM: Fix exception in permission_del
Christian Heimes • 7 years ago  
4608637
LGTM: Membership test with a non-container
Christian Heimes • 7 years ago  
16eb0a9
LGTM: Name unused variable in loop
Christian Heimes • 7 years ago  
298fb68
LGTM: Use of exit() or quit()
Christian Heimes • 7 years ago  
c7fb8a1
LGTM: Silence unmatchable dollar
Christian Heimes • 7 years ago  
128a127
Make fastlint even faster
Christian Heimes • 7 years ago  
b7f1b12
ipa-kdb: support KDB DAL version 7.0
Robbie Harwood • 7 years ago  
1dc74f0
test_cert_plugin: check if SAN is added with default profile
Michal Reznik • 7 years ago  
7a796fb
WebUI: make keytab tables on service and host pages writable
Pavel Vomacka • 7 years ago  
b9dc569
Support sqlite NSSDB
Christian Heimes • 7 years ago  
485b3f3
NSSDB: use preferred convert command
Christian Heimes • 7 years ago  
fcc0a58
Include ipa_krb5.h without util prefix
Christian Heimes • 7 years ago  
714c9e0
Custodia uninstall: Don't fail when LDAP is down
Christian Heimes • 7 years ago  
7a20cd9
Require python-ldap 3.0.0b2
Christian Heimes • 7 years ago  
66efeb8
Fix pylint warnings inconsistent-return-statements
Christian Heimes • 7 years ago  
843a59a
prci: bump ci-master-f27 template to 1.0.2
Tomas Krizek • 7 years ago  
889bb73
Enable ephemeral KRA requests
Rob Crittenden • 7 years ago  
29c37e3
Make the path to CS.cfg a class variable
Rob Crittenden • 7 years ago  
d7b1531
ensuring 389-ds plugins are enabled after install
Alexander Koksharov • 7 years ago  
33ec9e3
Travis: Add workaround for missing IPv6 support
Christian Heimes • 7 years ago  
383a9ac
Don't use admin cert during KRA installation
Fraser Tweedale • 7 years ago  
ca571cf
Add safe DirectiveSetter context manager
Christian Heimes • 7 years ago  
342a141
Add tests for installutils.set_directive
Fraser Tweedale • 7 years ago  
808b143
installutils: refactor set_directive
Fraser Tweedale • 7 years ago  
241b83d
pep8: reduce line lengths in CAInstance.__enable_crl_publish
Fraser Tweedale • 7 years ago  
7a29a5d
Prevent set_directive from clobbering other keys
Fraser Tweedale • 7 years ago  
fd316b9
VERSION.m4: Set back to git snapshot
Tibor Dudlák • 7 years ago  
03ac2c1
Become IPA 4.6.2
Tibor Dudlák • 7 years ago  
f570356
Update Contributors.txt
Tibor Dudlák • 7 years ago  
808187a
Update zanata translations
Tibor Dudlák • 7 years ago  
ffa6fa9
Run server upgrade in ipactl start/restart
Rob Crittenden • 7 years ago  
b2d3b56
Update IPA_GIT_BRANCH to ipa-4-6
Christian Heimes • 7 years ago  
219ee2f
Add make targets for fast linting and testing
Christian Heimes • 7 years ago  
f1fcbe6
Add marker needs_ipaapi and option to skip tests
Christian Heimes • 7 years ago  
cc389e9
Add python_requires to Python package metadata
Christian Heimes • 7 years ago  
e88e2b0
ipa_certupdate: avoid classmethod and staticmethod
Fraser Tweedale • 7 years ago  
5eab20e
Run certupdate after promoting to CA-ful deployment
Fraser Tweedale • 7 years ago  
cd4d9cc
ipa-ca-install: run certupdate as initial step
Fraser Tweedale • 7 years ago  
75a3ede
CertUpdate: make it easy to invoke from other programs
Fraser Tweedale • 7 years ago  
75e4cf1
ipatest: replica install with existing entry on master
Mohammad Rizwan Yusuf • 7 years ago  
05acc9c
ipaserver/plugins/trust.py: pep8 compliance
Alexander Bokovoy • 8 years ago  
31c2b1d
trust: detect and error out when non-AD trust with IPA domain name exists
Alexander Bokovoy • 8 years ago  
c34c1da
ipaserver/plugins/trust.py; fix some indenting issues
Alexander Bokovoy • 8 years ago  
0ea2e7e
If the cafile is not present or readable then raise an exception
Rob Crittenden • 8 years ago  
6273ec6
Add test to ensure that properties are being set in rpcclient
Rob Crittenden • 8 years ago  
cd0066a
Use the CA chain file from the RPC context
Rob Crittenden • 8 years ago  
806b76b
renew_ra_cert: fix update of IPA RA user entry
Fraser Tweedale • 8 years ago  
9d5e3d1
Remove Custodia keys on uninstall
Christian Heimes • 8 years ago  
fef419b
Use correct version of Python in RPM scripts
Fraser Tweedale • 8 years ago  
74ec1f9
Re-enable some KRA installation tests
Fraser Tweedale • 8 years ago  
17b4fa7
Improve help message for ipa trust-add --range-type
Florence Blanc-Renaud • 8 years ago  
131ac7c
Update to python-ldap 3.0.0
Christian Heimes • 8 years ago  
e8536f5
test_batch_plugin: fix py2/3 failing assertion
Michal Reznik • 8 years ago  
72ff10b
tests: Mark failing tests as failing
Petr ÄŒech • 8 years ago  
e8a3c0e
Update builddep command to install Python 3 and tox deps
Christian Heimes • 8 years ago  
8c2cad6
ipa-extdom-extop: refactor nsswitch operations
Alexander Bokovoy • 8 years ago  
d1dd794
test_dns_plugin: cope with missing IPv6 in Travis
Alexander Bokovoy • 8 years ago  
c380e42
travis-ci: collect logs from cmocka tests
Alexander Bokovoy • 8 years ago  
993eb74
ipa-kdb: override krb5.conf when testing KDC code in cmocka
Alexander Bokovoy • 8 years ago  
abcbb45
Add workaround for pytest 3.3.0 bug
Christian Heimes • 8 years ago  
4c92b6d
Fix ca less IPA install on fips mode
Florence Blanc-Renaud • 8 years ago  
ba25408
Fix dict iteration bug in dnsrecord_show
Christian Heimes • 8 years ago  
a090225
Reproducer for bug in structured dnsrecord_show
Christian Heimes • 8 years ago  
4de5bf3
Use Python 3 on Travis
Christian Heimes • 8 years ago  
dcb1f9d
prci: define testing topologies
Tomas Krizek • 8 years ago  
2ab056a
ipa-restore: Set umask to 0022 while restoring
Aleksei Slaikovskii • 8 years ago  
74fcdef
test_vault: increase WAIT_AFTER_ARCHIVE
Michal Reznik • 8 years ago  
2b8f612
Prevent installation of Py2 and Py3 mod_wsgi
Christian Heimes • 8 years ago  
66e38e9
libotp: add libraries after objects
Christian Heimes • 8 years ago  
40c9838
Require UTF-8 fs encoding
Christian Heimes • 8 years ago  
1ea1fdd
prci: start testing PRs on fedora 27
Tomas Krizek • 8 years ago  
ed460f1
Run tox tests for PyPI packages on Travis
Christian Heimes • 8 years ago  
29d0c21
Py3: Fix vault tests
Christian Heimes • 8 years ago  
7b446f0
View plugin/command help in pager
Aleksei Slaikovskii • 8 years ago  
36ccc8f
WebUI: make Domain Resolution Order writable
Pavel Vomacka • 8 years ago  
94a6459
Use namespace-aware meta importer for ipaplatform
Christian Heimes • 8 years ago  
dbc9c01
adtrust: filter out subdomains when defining our topology to AD
Alexander Bokovoy • 8 years ago  
1490e9c
Test script for ipa-custodia
Christian Heimes • 8 years ago  
4ffe484
test_caless: fix http.p12 is not valid
Michal Reznik • 8 years ago  
d94ffdb
test_caless: fix TypeError on domain_level compare
Michal Reznik • 8 years ago  
3cd3f22
Trivial typo fix.
Abhijeet Kasurde • 8 years ago  
62ada12
Remove ignore_import_errors
Christian Heimes • 8 years ago  
bb5b8b1
Backup ipa-custodia conf and keys
Christian Heimes • 8 years ago  
a926a00
py3 spec: remove python2 dependencies from server-trust-ad
Tomas Krizek • 8 years ago  
aaf2621
py3 spec: remove python2 dependencies from freeipa-server
Tomas Krizek • 8 years ago  
d4f47d1
py3 spec: use proper python2 package names
Tomas Krizek • 8 years ago  
b03d515
ipatests: fix circular import for collect_logs
Tomas Krizek • 8 years ago  
768e18b
manpage: ipa-replica-conncheck - fix minor typo
Michal Reznik • 8 years ago  
ec15394
Py3: fix fetching of tar files
Christian Heimes • 8 years ago  
5de813b
Fix ipa-restore (python2)
Florence Blanc-Renaud • 8 years ago  
71c54ef
Fix cert-find for CA-less installations
Rob Crittenden • 8 years ago  
bbb781a
ipatests: Fix interactive prompt in ca_less tests
Abhijeet Kasurde • 8 years ago  
467c065
Warning the user when using a loopback IP as forwarder
Felipe Barreto • 8 years ago  
29e1f26
Removing replica-s4u2proxy.ldif since it's not used anymore
Felipe Barreto • 8 years ago  
bff8cb6
test_forced_client: decode get_file_contents() result
Michal Reznik • 8 years ago  
0cdf5ff
test_external_dns: add missing test cases
Michal Reznik • 8 years ago  
c113956
Fix log capture when running pytests_multihosts commands
Felipe Barreto • 8 years ago  
d9737c0
Don't allow OTP or RADIUS in FIPS mode
Stanislav Laznicka • 8 years ago  
61e7c41
389-ds-base crashed as part of ipa-server-intall in ipa-uuid
Thierry Bordaz • 8 years ago  
cb6ac16
ipa-getkeytab man page: add more details about the -r option
Florence Blanc-Renaud • 8 years ago  
e76ab3e
caless tests: decode cert bytes in debug log
Stanislav Laznicka • 8 years ago  
59a5b24
caless tests: make debug log of certificates sensible
Stanislav Laznicka • 8 years ago  
fa23cdc
Add indexing to improve host-find performance
Stanislav Laznicka • 8 years ago  
b5735dd
Add the sub operation for fqdn index config
Stanislav Laznicka • 8 years ago  
47f426a
test_caless: open CA cert in binary mode
Michal Reznik • 8 years ago  
f2a1766
ipatests: collect logs for external_ca test suite
Tomas Krizek • 8 years ago  
3b0ede6
prci: add external_ca test
Tomas Krizek • 8 years ago  
efcbe1b
Py3: fix ipa-replica-conncheck
Florence Blanc-Renaud • 8 years ago  
50fb9b6
Remove caJarSigningCert profile and related code
Fraser Tweedale • 8 years ago  
ea11654
CertDB: remove unused method issue_signing_cert
Fraser Tweedale • 8 years ago  
6441185
Remove XPI and JAR MIME types from httpd config
Fraser Tweedale • 8 years ago  
3e62dd1
Remove mention of firefox plugin after CA-less install
Fraser Tweedale • 8 years ago  
a9b1686
Add a notice to restart ipa services after certs are installed
Aleksei Slaikovskii • 8 years ago  
9175b9c
x509: remove subject_base() function
Stanislav Laznicka • 8 years ago  
e2bcf42
x509: remove the strip_header() function
Stanislav Laznicka • 8 years ago  
ffc1624
ipa-ca-install: mention REPLICA_FILE as optional in help
Rishabh Dave • 8 years ago  
411f5be
Add debug option to ipa-replica-manage and remove references to api_env var.
Thorsten Scherf • 8 years ago  
40fc147
Fix ipa-replica-conncheck when called with --principal
Florence Blanc-Renaud • 8 years ago  
cd09db2
Fix TypeError while ipa-restore is restoring a backup
Aleksei Slaikovskii • 8 years ago  
8fc40ae
py3: pass raw entries to LDIFWriter
Stanislav Laznicka • 8 years ago  
5a2b428
ipatests: use python3 if built with python3
Stanislav Laznicka • 8 years ago  
9baa3f6
PRCI: use a new template for py3 testing
Stanislav Laznicka • 8 years ago  
c166792
ldap: limit the retro changelog to dns subtree
Tomas Krizek • 8 years ago  
68a7e47
Checks if replica-s4u2proxy.ldif should be applied
Felipe Barreto • 8 years ago  
b3dfc13
csrgen_ffi: cast the DN value to unsigned char *
Stanislav Laznicka • 8 years ago  
3ea9a0d
Remove pkcs10 module contents
Stanislav Laznicka • 8 years ago  
c73a180
Add tests for CertificateSigningRequest
Stanislav Laznicka • 8 years ago  
eb657e0
parameters: introduce CertificateSigningRequest
Stanislav Laznicka • 8 years ago  
4fe5314
parameters: relax type checks
Stanislav Laznicka • 8 years ago  
db19ecc
csrgen: update docstring for py3
Stanislav Laznicka • 8 years ago  
72536fd
csrgen: accept public key info as Bytes
Stanislav Laznicka • 8 years ago  
8495683
csrgen_ffi: pass bytes where "char *" is required
Stanislav Laznicka • 8 years ago  
f860d0f
py3: fix ipa cert-request --database ...
Florence Blanc-Renaud • 8 years ago  
d00a2c7
travis: pep8 changes to pycodestyle
Stanislav Laznicka • 8 years ago  
ba1064e
spec: bump 389-ds-base to 1.3.7.6-1
Tomas Krizek • 8 years ago  
fb13179
ipatests: set default 389-ds log level to 0
Tomas Krizek • 8 years ago  
e9d058f
Fixing tox and pylint errors
Felipe Barreto • 8 years ago  
90aa4d6
ipa-replica-manage: implicitly ignore initial time skew in force-sync
Alexander Bokovoy • 8 years ago  
a3b0af3
ds: ignore time skew during initial replication step
Alexander Bokovoy • 8 years ago  
eaacfed
Increase dbus client timeouts during CA install
John Morris • 8 years ago  
7881d6d
Use os.path.isfile() and isdir()
Christian Heimes • 8 years ago  
f044643
ipaclient.plugins.dns: Cast DNS name to unicode
Aleksei Slaikovskii • 8 years ago  
9dc4ddf
ipatests: Fix on logs collection
Petr ÄŒech • 8 years ago  
085ec3e
ipa-cacert-manage renew: switch from ext-signed CA to self-signed
Florence Blanc-Renaud • 8 years ago  
b1eee11
tests: correct usage of hostname in logger in tasks
Abhijeet Kasurde • 8 years ago  
4116812
p11-kit: add serial number in DER format
Stanislav Laznicka • 8 years ago  
0763079
Block PyOpenSSL to prevent SELinux execmem in wsgi
Christian Heimes • 8 years ago  
52dd5e1
Use 389-ds provided method for file limits tuning
Rob Crittenden • 8 years ago  
669e84b
Fixing param-{find,show} and output-{find,show} commands
Felipe Barreto • 8 years ago  
68178a4
schema: Fix internal error in param-{find,show} with nonexistent object
David Kupka • 8 years ago  
41de9cc
ipa-server-upgrade: do not add untracked certs to the request list
Florence Blanc-Renaud • 8 years ago  
ef6aa67
ipa-server-upgrade: fix the logic for tracking certs
Florence Blanc-Renaud • 8 years ago  
b70e1f5
kra-install: better warning message
Alexander Koksharov • 8 years ago  
ca09c18
Less confusing message for PKINIT configuration during install
Aleksei Slaikovskii • 8 years ago  
f8e6c99
tests: Add LDAP URI to ldappasswd explicitly
David Kupka • 8 years ago  
f0f38d5
ipa-kdb: reinit trusted domain data for enterprise principals
Sumit Bose • 8 years ago  
f7da701
tests: add host zone with overlap
Michal Reznik • 8 years ago  
c6bedd7
travis: make tests fail if pep8 does not pass
Stanislav Laznicka • 8 years ago  
39239fe
tests_py3: decode get_file_contents() result
Michal Reznik • 8 years ago  
1bee023
Remove the `message` attribute from exceptions
Stanislav Laznicka • 8 years ago  
9b34869
Collect group membership without a size limit
Rob Crittenden • 8 years ago  
b516ad8
test_caless: add caless to external CA test
Michal Reznik • 8 years ago  
5d95498
ipa-cacert-manage: avoid some duplicate string definitions
Fraser Tweedale • 8 years ago  
78d0122
ipa-cacert-manage: handle alternative tracking request CA name
Fraser Tweedale • 8 years ago  
d07563b
Add tests for external CA profile specifiers
Fraser Tweedale • 8 years ago  
05be839
ipa-cacert-manage: support MS V2 template extension
Fraser Tweedale • 8 years ago  
562f114
certmonger: add support for MS V2 template
Fraser Tweedale • 8 years ago  
9d8c2fc
certmonger: refactor 'resubmit_request' and 'modify'
Fraser Tweedale • 8 years ago  
9774af3
ipa-ca-install: add --external-ca-profile option
Fraser Tweedale • 8 years ago  
0054cfb
install: allow specifying external CA template
Fraser Tweedale • 8 years ago  
f612678
Remove duplicate references to external CA type
Fraser Tweedale • 8 years ago  
6de5432
cli: simplify parsing of arbitrary types
Fraser Tweedale • 8 years ago  
61303c7
test_external_ca: switch to python-cryptography
Michal Reznik • 8 years ago  
353a491
prci: update F26 template
Tomas Krizek • 8 years ago  
d7d952d
py3: fix pkcs7 file processing
Fraser Tweedale • 8 years ago  
3f21e70
4.6 set back to git snapshot
Tomas Krizek • 8 years ago  
9de5b35
Become IPA 4.6.1
Tomas Krizek • 8 years ago  
152881e
Update contributors
Tomas Krizek • 8 years ago  
7a99a53
Update translations
Tomas Krizek • 8 years ago  
65cc71c
browser config: cleanup after removal of Firefox extension
Petr Vobornik • 8 years ago  
0e8e94a
Make sure upgrade also checks for IPv6 stack
Alexander Bokovoy • 8 years ago  
f05afa4
Don't write p11-kit EKU extension object if no EKU
Stanislav Laznicka • 8 years ago  
7da5187
Add exec to /var/lib/ipa/sysrestore for install status inquiries
Rob Crittenden • 8 years ago  
1b64224
spec: bump python-pyasn1 to 0.3.2-2
Tomas Krizek • 8 years ago  
f982a8a
Fix ipa-server-upgrade with server cert tracking
Florence Blanc-Renaud • 8 years ago  
726a8b2
Use TLS for the cert-find operation
Rob Crittenden • 8 years ago  
52a18de
OTP import: support hash names with HMAC- prefix
Alexander Bokovoy • 8 years ago  
68c079d
pylint: fix missing module
Stanislav Laznicka • 8 years ago  
1ff9450
Python3: Fix winsync replication agreement
Florence Blanc-Renaud • 8 years ago  
3dea5b5
travis: run the same tests in python2/3
Stanislav Laznicka • 8 years ago  
b3d07e5
py3: set samba dependencies
Martin Basti • 8 years ago  
4b4fb99
certmap testing: fix wrong cert construction
Stanislav Laznicka • 8 years ago  
5c21a8d
ldap2: don't use decode() on str instance
Stanislav Laznicka • 8 years ago  
3b255b2
dsinstance: Restore context after changing dse.ldif
Alexander Bokovoy • 8 years ago  
715e786
ipa-pki-retrieve-key: ensure we do not crash
Fraser Tweedale • 8 years ago  
f9074dc
client: fix retrieving certs from HTTP
Stanislav Laznicka • 8 years ago  
ba43865
Changing idoverrideuser-* to treat objectClass case insensitively
Felipe Volpone • 8 years ago  
a5e8f52
uninstall: remove deprecation warning
Stanislav Laznicka • 8 years ago  
f57ab91
ldif: handle attribute names as strings
Stanislav Laznicka • 8 years ago  
1bb28b8
issue_server_cert: avoid application of str to bytes
Fraser Tweedale • 8 years ago  
a5a1bb1
pkinit: fix sorting dictionaries
Stanislav Laznicka • 8 years ago  
ecee99c
pkinit: don't fail when no pkinit servers found
Stanislav Laznicka • 8 years ago  
a0bbe68
Fixing how sssd.conf is updated when promoting a client to replica
Felipe Volpone • 8 years ago  
dc6ae8f
prci: use f26 template for master
Tomas Krizek • 8 years ago  
659f9d1
travis: remove "fast" from "makecache fast"
Stanislav Laznicka • 8 years ago  
4f4b0ef
Change Travis CI container to FreeIPA-owned
Stanislav Laznicka • 8 years ago  
79d9bdc
Change the requirements for pylint in wheel
Stanislav Laznicka • 8 years ago  
0449a4c
rpcserver: don't call xmlserver.Command
Stanislav Laznicka • 8 years ago  
dfeadfe
secrets: disable relative-imports for custodia
Stanislav Laznicka • 8 years ago  
388bc94
pylint: disable __hash__ for some classes
Stanislav Laznicka • 8 years ago  
2952af4
install.util: disable no-value-for-parameter
Stanislav Laznicka • 8 years ago  
e67cdb0
pylint: make unsupported-assignment-operation check local
Stanislav Laznicka • 8 years ago  
9cf1f1d
sudocmd: fix unsupported assignment
Stanislav Laznicka • 8 years ago  
568926f
pylint: Iterate through dictionaries
Stanislav Laznicka • 8 years ago  
06f3aad
parameters: convert Decimal.precision to int
Stanislav Laznicka • 8 years ago  
25d8229
dcerpc: disable unbalanced-tuple-unpacking
Stanislav Laznicka • 8 years ago  
f80af62
dcerpc: refactor assess_dcerpc_exception
Stanislav Laznicka • 8 years ago  
0b8207d
pylint: fix no-member in schema plugin
Stanislav Laznicka • 8 years ago  
7c64aca
csrgen: fix incorrect codec for pyasn BitString
Stanislav Laznicka • 8 years ago  
47352fb
pylint: fix not-context-manager false positives
Stanislav Laznicka • 8 years ago  
ce148ed
Travis: archive logs of py3 jobs
Stanislav Laznicka • 8 years ago  
0565600
travis: temporary workaround for Travis CI
Stanislav Laznicka • 8 years ago  
c8db796
WebUI: Fix calling undefined method during reset passwords
Pavel Vomacka • 8 years ago  
44b012c
WebUI: remove unused parameter from get_whoami_command
Pavel Vomacka • 8 years ago  
47c7a19
Fix ipa config-mod --ca-renewal-master
Florence Blanc-Renaud • 8 years ago  
5f79504
Adds whoami DS plugin in case that plugin is missing
Pavel Vomacka • 8 years ago  
59ef33d
VERSION: set back to git snapshot
Tomas Krizek • 8 years ago  
404ce01
Become IPA 4.6.0
Tomas Krizek • 8 years ago  
59e4bc2
Contributors.txt: update
Tomas Krizek • 8 years ago  
8aabe9d
zanata: update translations for ipa-4-6
Tomas Krizek • 8 years ago  
062ee46
zanata: set project version to ipa-4-6
Tomas Krizek • 8 years ago  
7ca68e4
Become IPA 4.6.10
Antonio Torres • 2 years ago  
9c61767
Integration tests for verifying Referer header in the UI
Florence Blanc-Renaud • 2 years ago  
c86dcf4
Check the HTTP Referer header on all requests
Florence Blanc-Renaud • 2 years ago  
cc3a1db
Become FreeIPA 4.6.9
Alexander Bokovoy • 5 years ago  
4f1f875
Prevent local account takeover
Christian Heimes • 5 years ago  
316ac7c
Become FreeIPA 4.6.8
Alexander Bokovoy • 5 years ago  
a718e4a
Update list of contributors
Alexander Bokovoy • 5 years ago  
1c0749a
Allow rename of a host group
Alexander Bokovoy • 5 years ago  
4c0a2a1
Add 'api' and 'aci' targets to make
Alexander Bokovoy • 5 years ago  
7ce5e79
ipatests: Test if slew mode is not set while configuring ntpd
Mohammad Rizwan Yusuf • 5 years ago  
81b8597
Don't configure ntpd with -x
Rob Crittenden • 5 years ago  
2c14954
Test if schema-compat-entry-attribute is set
Mohammad Rizwan Yusuf • 5 years ago  
b739bc2
Test if schema-compat-entry-attribute is set
Mohammad Rizwan Yusuf • 5 years ago  
e6960b7
ipatests: fix group-add-member in test_sssd
Florence Blanc-Renaud • 5 years ago  
7b9cdfb
ipatests: fix KeyError in test_sssd
Florence Blanc-Renaud • 5 years ago  
bce5097
Test that pwpolicy only applied on Kerberos entries
Rob Crittenden • 5 years ago  
5a98670
Add ability to change a user password as the Directory Manager
Rob Crittenden • 5 years ago  
19e872e
Don't save password history on non-Kerberos accounts
Rob Crittenden • 5 years ago  
dc83394
ipa-pwd-extop: don't check password policy for non-Kerberos account set by DM or a passsync manager
Alexander Bokovoy • 5 years ago  
3d41453
ipa-pwd-extop: use SLAPI_BIND_TARGET_SDN
Alexander Bokovoy • 5 years ago  
d038fc7
ipatests: test sysaccount password change with a password policy applied
Alexander Bokovoy • 5 years ago  
41fc40a
ipatests: allow changing sysaccount passwords as cn=Directory Manager
Alexander Bokovoy • 5 years ago  
e4f3cd0
Fix indentation levels
Alexander Bokovoy • 5 years ago  
aaa79c8
WebUI: Fix notification area layout
Serhii Tsymbaliuk • 5 years ago  
6e62234
ipatests: remove test_ordering
Sergey Orlov • 5 years ago  
3a2244c
Web UI: Upgrade Bootstrap version 3.3.7 -> 3.4.1
Serhii Tsymbaliuk • 5 years ago  
927e339
ipatests: add test_trust suite to nightly runs
Sergey Orlov • 5 years ago  
d44374e
ipatests: add workaround for unfixed sssd bug in Fedora 27
Sergey Orlov • 5 years ago  
37e383a
ipatests: use less strict check for error message
Sergey Orlov • 5 years ago  
941c231
ipatests: provide AD admin password when trying to establish trust
Sergey Orlov • 5 years ago  
795a973
TestBasicADTrust.test_ipauser_authentication
Ganna Kaihorodova • 5 years ago  
2b6638b
Prevent adding IPA objects as external members of external groups
Alexander Bokovoy • 5 years ago  
c14e385
xmlrpc tests: add a test for idview-apply on a master
Florence Blanc-Renaud • 5 years ago  
e946b87
idviews: prevent applying to a master
Florence Blanc-Renaud • 5 years ago  
0d62f3d
Mark test to skip sssd-1.16.3 [sssd/issue/4073]
Anuja More • 5 years ago  
edbf8f7
ipatests: User and group with same name should not break reading AD user data.
Anuja More • 5 years ago  
4ca75cf
Mark xfail for tests using sssd-1.16.3
Anuja More • 5 years ago  
734121f
ipatests: Added test when 2FA prompting configurations is set.
Anuja More • 5 years ago  
b36c4a7
Add test case for OTP login
Christian Heimes • 5 years ago  
cabb7ab
ipatests: remove workaround for pylint error no-name-in-module
Sergey Orlov • 5 years ago  
46b9139
Secure AJP connector between Dogtag and Apache proxy
Alexander Bokovoy • 5 years ago  
901d0ec
Tighten permissions on PKI proxy configuration
Alexander Bokovoy • 5 years ago  
af2dca1
ipa-adtrust-install: remote command fails if ipa-server-trust-ad pkg missing
Florence Blanc-Renaud • 5 years ago  
79f9ba5
ipatests: add test for ipa-adtrust-install --add-agents
Florence Blanc-Renaud • 5 years ago  
796c86a
ipa-adtrust-install: run remote configuration for new agents
Florence Blanc-Renaud • 5 years ago  
f9fcd2c
Privilege: add a helper checking if a principal has a given privilege
Florence Blanc-Renaud • 5 years ago  
d051d2d
ipatests: temporary disable pylint check no-name-in-module
Sergey Orlov • 5 years ago  
044748b
ipatests: remove invalid parameter from sssd.conf
Sergey Orlov • 5 years ago  
551dabe
ipatests: use remote_sssd_config to modify sssd.conf
Sergey Orlov • 5 years ago  
aff397b
ipatests: replace utility for editing sssd.conf
Sergey Orlov • 5 years ago  
7f18f08
ipatests: update docstring to reflect changes in FileBackup.restore()
Sergey Orlov • 5 years ago  
e25b10e
  • « Newer
  • page 1 of 251
  • » Older
Powered by Pagure 5.14.1
Documentation • File an Issue • About • SSH Hostkey/Fingerprint
© Red Hat, Inc. and others.