f17082
From e8ef2c2f226704ce510525f07675107179124a95 Mon Sep 17 00:00:00 2001
f17082
From: Sumedh Sidhaye <ssidhaye@redhat.com>
f17082
Date: Feb 02 2023 06:53:56 +0000
f17082
Subject: With the commit #99a74d7, 389-ds changed the message returned in ipa-healthcheck.
f17082
f17082
f17082
Previously the message was:
f17082
f17082
"\n\nIn Directory Server, we offer one hash suitable for this "
f17082
"(PBKDF2_SHA256) and one hash\nfor \"legacy\" support (SSHA512)."
f17082
"\n\nYour configuration does not use these for password storage "
f17082
"or the root password storage\nscheme.\n"
f17082
f17082
but now the message is:
f17082
f17082
\n\nIn Directory Server, we offer one hash suitable for this "
f17082
"(PBKDF2-SHA512) and one hash\nfor \"legacy\" support (SSHA512)."
f17082
"\n\nYour configuration does not use these for password storage "
f17082
"or the root password storage\nscheme.\n"
f17082
f17082
PBKDF2_SHA256 has been replaced with PBKDF2-SHA512
f17082
f17082
Pagure: https://pagure.io/freeipa/issue/9238
f17082
f17082
Signed-off-by: Sumedh Sidhaye <ssidhaye@redhat.com>
f17082
Reviewed-By: Florence Blanc-Renaud <flo@redhat.com>
f17082
Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
f17082
Reviewed-By: Stanislav Levin <slev@altlinux.org>
f17082
Reviewed-By: Florence Blanc-Renaud <flo@redhat.com>
f17082
Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
f17082
Reviewed-By: Stanislav Levin <slev@altlinux.org>
f17082
f17082
---
f17082
f17082
diff --git a/ipatests/test_integration/test_ipahealthcheck.py b/ipatests/test_integration/test_ipahealthcheck.py
f17082
index 18a665e..60e8de9 100644
f17082
--- a/ipatests/test_integration/test_ipahealthcheck.py
f17082
+++ b/ipatests/test_integration/test_ipahealthcheck.py
f17082
@@ -1312,9 +1312,6 @@ class TestIpaHealthCheck(IntegrationTest):
f17082
         """
f17082
         error_msg = (
f17082
             "\n\nIn Directory Server, we offer one hash suitable for this "
f17082
-            "(PBKDF2_SHA256) and one hash\nfor \"legacy\" support (SSHA512)."
f17082
-            "\n\nYour configuration does not use these for password storage "
f17082
-            "or the root password storage\nscheme.\n"
f17082
         )
f17082
         returncode, data = run_healthcheck(
f17082
             self.master, "ipahealthcheck.ds.config", "ConfigCheck",
f17082
f17082
From 1bdd8147e7fa1032025dc6f6868e26f285744ee1 Mon Sep 17 00:00:00 2001
f17082
From: Florence Blanc-Renaud <flo@redhat.com>
f17082
Date: Jan 11 2023 11:56:30 +0000
f17082
Subject: ipatests: mark test_smb as xfail
f17082
f17082
f17082
Mark the test test_smb.py::TestSMB::test_smb_service_s4u2self as xfail.
f17082
f17082
Related: https://pagure.io/freeipa/issue/9124
f17082
Signed-off-by: Florence Blanc-Renaud <flo@redhat.com>
f17082
Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
f17082
f17082
---
f17082
f17082
diff --git a/ipatests/test_integration/test_smb.py b/ipatests/test_integration/test_smb.py
f17082
index eb3981b..30f8d59 100644
f17082
--- a/ipatests/test_integration/test_smb.py
f17082
+++ b/ipatests/test_integration/test_smb.py
f17082
@@ -349,6 +349,7 @@ class TestSMB(IntegrationTest):
f17082
     @pytest.mark.skipif(
f17082
         osinfo.id == 'fedora' and osinfo.version_number <= (31,),
f17082
         reason='Test requires krb 1.18')
f17082
+    @pytest.mark.xfail(reason="Pagure ticket 9124", strict=True)
f17082
     def test_smb_service_s4u2self(self):
f17082
         """Test S4U2Self operation by IPA service
f17082
            against both AD and IPA users
f17082