0001-Do-not-check-if-port-8443-is-available-in-step-2-of-.patch
0002-Add-ipaSshPubkey-and-gidNumber-to-the-ACI-to-read-ID.patch
0003-Fix-dns-zonemgr-validation-regression.patch
0004-Handle-profile-changes-in-dogtag-ipa-ca-renew-agent.patch
0005-Do-not-wait-for-new-CA-certificate-to-appear-in-LDAP.patch
0006-Fail-if-certmonger-can-t-see-new-CA-certificate-in-L.patch
0007-Fix-possible-NULL-dereference-in-ipa-kdb.patch
0008-Fix-memory-leaks-in-ipa-extdom-extop.patch
0009-Fix-various-bugs-in-ipa-opt-counter-and-ipa-otp-last.patch
0010-Fix-memory-leak-in-ipa-pwd-extop.patch
0011-Fix-memory-leaks-in-ipa-join.patch
0012-Fix-various-bugs-in-ipap11helper.patch
0013-Deadlock-in-schema-compat-plugin-between-automember_.patch
0014-Stop-dirsrv-last-in-ipactl-stop.patch
0015-Fix-upgrade-do-not-use-invalid-ldap-connection.patch
0016-Ensure-that-a-password-exists-after-OTP-validation.patch
0017-ipa-restore-Don-t-crash-if-AD-trust-is-not-installed.patch
0018-ranges-prohibit-setting-rid-base-with-ipa-trust-ad-p.patch
0019-ldapupdater-set-baserid-to-0-for-ipa-ad-trust-posix-.patch
0020-idrange-include-raw-range-type-in-output.patch
0021-webui-prohibit-setting-rid-base-with-ipa-trust-ad-po.patch
0022-Fix-CA-certificate-backup-and-restore.patch
0023-Fix-DNS-installer-adds-invalid-zonemgr-email.patch
0024-ipaplatform-Use-the-dirsrv-service-not-target.patch
0025-Fix-DNS-policy-upgrade-raises-asertion-error.patch
0026-Fix-upgrade-referint-plugin.patch
0027-Upgrade-fix-trusts-objectclass-violationi.patch
0028-Produce-better-error-in-group-add-command.patch
0029-Search-using-proper-scope-when-connecting-CA-instanc.patch
0030-Fix-zonemgr-must-be-unicode-value.patch
0031-Fix-warning-message-should-not-contain-CLI-commands.patch
0032-Fix-wrong-expiration-date-on-renewed-IPA-CA-certific.patch
0033-Do-not-restore-SELinux-settings-that-were-not-backed.patch
0034-Improve-otptoken-help-messages.patch
0035-Ensure-users-exist-when-assigning-tokens-to-them.patch
0036-Enable-QR-code-display-by-default-in-otptoken-add.patch
0037-Show-warning-instead-of-error-if-CA-did-not-start.patch
0038-webui-fix-potential-XSS-vulnerabilities.patch
0039-Raise-right-exception-if-domain-name-is-not-valid.patch
0040-Restore-file-extended-attributes-and-SELinux-context.patch
0041-restore-clear-httpd-ccache-after-restore.patch
0042-Fix-user-group-ignore-attribute-in-migration-plugin.patch
0043-Fix-filtering-of-enctypes-in-server-code.patch
0044-Add-asn1c-generated-code-for-keytab-controls.patch
0045-Use-asn1c-helpers-to-encode-decode-the-getkeytab-con.patch
0046-Fix-read_ip_addresses-should-return-ipaddr-object.patch
0047-Use-correct-service-name-in-cainstance.backup_config.patch
0048-ipa-restore-Check-if-directory-is-provided-better-er.patch
0049-Stop-tracking-certificates-before-restoring-them-in-.patch
0050-Fix-detection-of-encoding-in-zonemgr-option.patch
0051-webui-use-domain-name-instead-of-domain-SID-in-idran.patch
0052-webui-normalize-idview-tab-labels.patch
0053-copy_schema_to_ca-Fallback-to-old-import-location-fo.patch
0054-Remove-redefinition-of-LOG-from-ipa-otp-lasttoken.patch
0055-Unload-P11_Helper-object-s-library-when-it-is-finali.patch
0056-Fix-Kerberos-error-handling-in-ipa-sam.patch
0057-Fix-unchecked-return-value-in-ipa-kdb.patch
0058-Fix-unchecked-return-values-in-ipa-winsync.patch
0059-Fix-unchecked-return-value-in-ipa-join.patch
0060-Fix-unchecked-return-value-in-krb5-common-utils.patch
0061-Fix-memory-leak-in-GetKeytabControl-asn1-code.patch
0062-AD-trust-improve-trust-validation.patch
0063-Add-TLS-1.2-to-the-protocol-list-in-mod_nss-config.patch
0064-webui-add-radius-fields-to-user-page.patch
0065-Fix-zonemgr-option-encoding-detection.patch
0066-Catch-USBError-during-YubiKey-location.patch
0067-Use-NSS-protocol-range-API-to-set-available-TLS-prot.patch
0068-Throw-zonemgr-error-message-before-installation-proc.patch
0069-certs-Fix-incorrect-flag-handling-in-load_cacert.patch
0070-Preliminary-refactoring-of-libotp-files.patch
0071-Move-authentication-configuration-cache-into-libotp.patch
0072-Enable-last-token-deletion-when-password-auth-type-i.patch
0073-add-hosts-and-hostgroup-options-to-allow-retrieve-ke.patch
0074-hosts-Display-assigned-ID-view-by-default-in-host-fi.patch
0075-Prefer-TCP-connections-to-UDP-in-krb5-clients.patch
0076-webui-fix-service-unprovisioning.patch
0077-webui-increase-duration-of-notification-messages.patch
0078-Fix-automatic-CA-cert-renewal-endless-loop-in-dogtag.patch
0079-Do-not-renew-the-IPA-CA-cert-by-serial-number-in-dog.patch
0080-Improve-validation-of-instance-and-backend-options-i.patch
0081-revert-removal-of-cn-attribute-from-idnsRecord.patch
0082-Check-subject-name-encoding-in-ipa-cacert-manage-ren.patch
0083-Refer-the-user-to-freeipa.org-when-something-goes-wr.patch
0084-Show-SSHFP-record-containing-space-in-fingerprint.patch
0085-Always-add-etc-hosts-record-when-DNS-is-being-config.patch
0086-Avoid-calling-ldap-functions-without-a-context.patch
0087-Remove-the-removal-of-the-ccache.patch
0088-Fix-Upgrade-forwardzones-zones-after-adding-newer-re.patch
0089-Fix-zone-find-during-forwardzone-upgrade.patch
0090-migrate-ds-fix-compat-plugin-check.patch
0091-rpcclient-use-json_encode_binary-for-verbose-output.patch
0092-Remove-ipanttrustauthincoming-ipanttrustauthoutgoing.patch
0093-Abort-backup-restoration-on-not-matching-host.patch
0094-Fix-ipa-restore-on-systems-without-IPA-installed.patch
0095-Remove-RUV-from-LDIF-files-before-using-them-in-ipa-.patch
0096-Fix-CA-certificate-renewal-syslog-alert.patch
0097-Do-not-crash-on-unknown-services-in-installutils.sto.patch
0098-Restart-dogtag-when-its-server-certificate-is-renewe.patch
0099-Make-certificate-renewal-process-synchronized.patch
0100-Fix-validation-of-ipa-restore-options.patch
0101-Allow-PassSync-user-to-locate-and-update-NT-users.patch
0102-Allow-Replication-Administrators-manipulate-Winsync-.patch
0103-Do-not-assume-certmonger-is-running-in-httpinstance.patch
0104-Replication-Administrators-cannot-remove-replication.patch
0105-Put-LDIF-files-to-their-original-location-in-ipa-res.patch
0106-Add-anonymous-read-ACI-for-DUA-profile.patch
0107-Revert-Make-all-ipatokenTOTP-attributes-mandatory.patch
0108-Create-correct-log-directories-during-full-restore-i.patch
0109-Do-not-crash-when-replica-is-unreachable-in-ipa-rest.patch
0110-idviews-Allow-setting-ssh-public-key-on-ipauseroverr.patch
0111-Fix-ipa-pwd-extop-global-configuration-caching.patch
0112-group-detach-does-not-add-correct-objectclasses.patch
0113-Always-return-absolute-idnsname-in-dnszone-commands.patch
0114-ipa-kdb-reject-principals-from-disabled-domains-as-a.patch
0115-ipalib-Make-sure-correct-attribute-name-is-reference.patch
0116-Restore-default.conf-and-use-it-to-build-API.patch
0117-Limit-deadlocks-between-DS-plugin-DNA-and-slapi-nis.patch
0118-Add-configure-check-for-cwrap-libraries.patch
0119-extdom-handle-ERANGE-return-code-for-getXXYYY_r-call.patch
0120-extdom-make-nss-buffer-configurable.patch
0121-extdom-return-LDAP_NO_SUCH_OBJECT-to-the-client.patch
0122-extdom-fix-memory-leak.patch
0123-certstore-Make-certificate-retrieval-more-robust.patch
0124-client-install-Do-not-crash-on-invalid-CA-certificat.patch
0125-client-Fix-ca_is_enabled-calls.patch
0126-upload_cacrt-Fix-empty-cACertificate-in-cn-CAcert.patch
1001-Hide-pkinit-functionality-from-production-version.patch
1002-Remove-pkinit-plugin.patch
1003-Remove-pkinit-references-from-tool-man-pages.patch
1004-Change-branding-to-IPA-and-Identity-Management.patch
1005-Remove-pylint-from-build-process.patch
1006-Remove-i18test-from-build-process.patch
1007-Do-not-build-tests.patch
1008-RCUE.patch
1009-Do-not-allow-installation-in-FIPS-mode.patch
1010-Disable-DNSSEC-support.patch
1011-Disable-TLS-1.2-in-nss.conf-until-mod_nss-supports-i.patch
1012-Expand-the-token-auth-sync-windows.patch
1013-extdom-fix-wrong-realloc-size.patch
1014-fix-Makefile.am-for-daemons.patch
ipa-centos-branding.patch