Log In
rpms
/
ipa
Clone
Source Code
GIT
Source
Pull Requests
0
Stats
Overview
Files
Commits
Branches
Forks
Releases
e3ffab
import ipa-4.1.0-18.el7
Authored and Committed by
centosrcm
9 years ago
raw
patch
tree
parent
200 files changed.
28278 lines added
.
6246 lines removed
.
.gitignore
file modified
+5
-2
.ipa.metadata
file modified
+5
-2
SOURCES/0001-Do-not-check-if-port-8443-is-available-in-step-2-of-.patch
file added
+54
SOURCES/0001-Guard-import-of-adtrustinstance-for-case-without-tru.patch
file removed
-41
SOURCES/0002-Add-ipaSshPubkey-and-gidNumber-to-the-ACI-to-read-ID.patch
file added
+42
SOURCES/0002-Server-does-not-detect-different-server-and-IPA-doma.patch
file removed
-61
SOURCES/0003-Allow-kernel-keyring-CCACHE-when-supported.patch
file removed
-120
SOURCES/0003-Fix-dns-zonemgr-validation-regression.patch
file added
+27
SOURCES/0004-Fix-regression-which-prevents-creating-a-winsync-agr.patch
file removed
-31
SOURCES/0004-Handle-profile-changes-in-dogtag-ipa-ca-renew-agent.patch
file added
+181
SOURCES/0005-Do-not-wait-for-new-CA-certificate-to-appear-in-LDAP.patch
file added
+170
SOURCES/0005-trusts-Do-not-pass-base-id-to-the-subdomain-ranges.patch
file removed
-40
SOURCES/0006-Fail-if-certmonger-can-t-see-new-CA-certificate-in-L.patch
file added
+101
SOURCES/0006-Map-NT_STATUS_INVALID_PARAMETER-to-most-likely-error.patch
file removed
-32
SOURCES/0007-Fix-possible-NULL-dereference-in-ipa-kdb.patch
file added
+34
SOURCES/0007-Remove-mod_ssl-port-workaround.patch
file removed
-98
SOURCES/0008-Fix-memory-leaks-in-ipa-extdom-extop.patch
file added
+57
SOURCES/0008-subdomains-Use-AD-admin-credentials-when-trust-is-be.patch
file removed
-147
SOURCES/0009-Fix-various-bugs-in-ipa-opt-counter-and-ipa-otp-last.patch
file added
+102
SOURCES/0009-trusts-Always-stop-and-disable-smb-service-on-uninst.patch
file removed
-47
SOURCES/0010-Fix-memory-leak-in-ipa-pwd-extop.patch
file added
+60
SOURCES/0010-Use-hardening-flags-for-ipa-optd.patch
file removed
-277
SOURCES/0011-Fix-memory-leaks-in-ipa-join.patch
file added
+107
SOURCES/0011-test_integration-Support-external-names-for-hosts.patch
file removed
-108
SOURCES/0012-Fix-various-bugs-in-ipap11helper.patch
file added
+108
SOURCES/0012-ipa-client-install-Always-pass-hostname-to-the-ipa-j.patch
file removed
-42
SOURCES/0013-Deadlock-in-schema-compat-plugin-between-automember_.patch
file added
+83
SOURCES/0013-trust-fix-get_dn-to-distinguish-creating-and-re-addi.patch
file removed
-43
SOURCES/0014-Stop-dirsrv-last-in-ipactl-stop.patch
file added
+47
SOURCES/0014-ipa-cldap-Cut-NetBIOS-name-after-15-characters.patch
file removed
-48
SOURCES/0015-Fix-upgrade-do-not-use-invalid-ldap-connection.patch
file added
+43
SOURCES/0015-Prevent-garbage-from-readline-on-standard-output-of-.patch
file removed
-29
SOURCES/0016-Ensure-that-a-password-exists-after-OTP-validation.patch
file added
+73
SOURCES/0017-PKI-service-restart-after-CA-renewal-failed.patch
file removed
-198
SOURCES/0017-ipa-restore-Don-t-crash-if-AD-trust-is-not-installed.patch
file added
+53
SOURCES/0018-hbactest-does-not-work-for-external-users.patch
file removed
-43
SOURCES/0018-ranges-prohibit-setting-rid-base-with-ipa-trust-ad-p.patch
file added
+159
SOURCES/0019-Change-the-way-we-determine-if-the-host-has-a-passwo.patch
file removed
-72
SOURCES/0019-ldapupdater-set-baserid-to-0-for-ipa-ad-trust-posix-.patch
file added
+102
SOURCES/0020-idrange-include-raw-range-type-in-output.patch
file added
+29
SOURCES/0020-sudoOrder-missing-in-sudoers.patch
file removed
-27
SOURCES/0021-Add-missing-example-to-sudorule.patch
file removed
-45
SOURCES/0021-webui-prohibit-setting-rid-base-with-ipa-trust-ad-po.patch
file added
+153
SOURCES/0022-Fix-CA-certificate-backup-and-restore.patch
file added
+208
SOURCES/0022-Fix-ipa-client-automount-uninstall-when-fstore-is-em.patch
file removed
-27
SOURCES/0023-Fix-DNS-installer-adds-invalid-zonemgr-email.patch
file added
+43
SOURCES/0023-trust-fetch-domains-create-ranges-for-new-child-doma.patch
file removed
-346
SOURCES/0024-ipaplatform-Use-the-dirsrv-service-not-target.patch
file added
+37
SOURCES/0024-trustdomain-find-report-status-of-the-sub-domain.patch
file removed
-57
SOURCES/0025-CLDAP-do-not-prepend.patch
file removed
-31
SOURCES/0025-Fix-DNS-policy-upgrade-raises-asertion-error.patch
file added
+29
SOURCES/0026-Fix-upgrade-referint-plugin.patch
file added
+153
SOURCES/0026-ipaserver-install-installutils-clean-up-properly-aft.patch
file removed
-56
SOURCES/0027-Do-not-start-the-service-in-stopped_service-if-it-wa.patch
file removed
-28
SOURCES/0027-Upgrade-fix-trusts-objectclass-violationi.patch
file added
+63
SOURCES/0028-Harmonize-policy-discovery-to-kdb-driver.patch
file removed
-180
SOURCES/0028-Produce-better-error-in-group-add-command.patch
file added
+28
SOURCES/0029-Search-using-proper-scope-when-connecting-CA-instanc.patch
file added
+32
SOURCES/0029-Stop-adding-a-default-password-policy-reference.patch
file removed
-409
SOURCES/0030-Fix-zonemgr-must-be-unicode-value.patch
file added
+30
SOURCES/0030-Increase-service-startup-timeout-default.patch
file removed
-26
SOURCES/0031-Fix-warning-message-should-not-contain-CLI-commands.patch
file added
+73
SOURCES/0031-cli.print_attribute-Convert-values-to-strings.patch
file removed
-30
SOURCES/0032-Fix-wrong-expiration-date-on-renewed-IPA-CA-certific.patch
file added
+54
SOURCES/0032-group-show-resolve-external-members-of-the-groups.patch
file removed
-43
SOURCES/0033-Do-not-restore-SELinux-settings-that-were-not-backed.patch
file added
+43
SOURCES/0033-Remove-SID-resolve-call-from-Web-UI.patch
file removed
-87
SOURCES/0034-Improve-otptoken-help-messages.patch
file added
+121
SOURCES/0034-ipa-adtrust-install-configure-host-netbios-name-by-d.patch
file removed
-56
SOURCES/0035-Ensure-users-exist-when-assigning-tokens-to-them.patch
file added
+34
SOURCES/0035-Remove-missing-VERSION-warning-in-dnsrecord-mod.patch
file removed
-30
SOURCES/0036-Enable-QR-code-display-by-default-in-otptoken-add.patch
file added
+104
SOURCES/0036-Hide-trust-resolve-command.patch
file removed
-33
SOURCES/0037-Show-warning-instead-of-error-if-CA-did-not-start.patch
file added
+32
SOURCES/0037-Trust-domains-Web-UI.patch
file removed
-188
SOURCES/0038-ipasam-delete-trusted-child-domains-before-removing-.patch
file removed
-87
SOURCES/0038-webui-fix-potential-XSS-vulnerabilities.patch
file added
+131
SOURCES/0039-CLDAP-generate-NetBIOS-name-like-ipa-adtrust-install.patch
file removed
-104
SOURCES/0039-Raise-right-exception-if-domain-name-is-not-valid.patch
file added
+46
SOURCES/0040-Fallback-to-global-policy-in-ipa-lockout-plugin.patch
file removed
-108
SOURCES/0040-Restore-file-extended-attributes-and-SELinux-context.patch
file added
+38
SOURCES/0041-Migration-does-not-add-users-to-default-group.patch
file removed
-59
SOURCES/0041-restore-clear-httpd-ccache-after-restore.patch
file added
+32
SOURCES/0042-Fix-user-group-ignore-attribute-in-migration-plugin.patch
file added
+45
SOURCES/0042-ipa-lockout-do-not-fail-when-default-realm-cannot-be.patch
file removed
-65
SOURCES/0043-Fix-filtering-of-enctypes-in-server-code.patch
file added
+98
SOURCES/0043-ipa-tool-Print-the-name-of-the-server-we-are-connect.patch
file removed
-72
SOURCES/0044-Add-asn1c-generated-code-for-keytab-controls.patch
file added
+13109
SOURCES/0044-Remove-sourcehostcategory-from-the-default-HBAC-rule.patch
file removed
-41
SOURCES/0045-DNS-classless-support-for-reverse-domains.patch
file removed
-229
SOURCES/0045-Use-asn1c-helpers-to-encode-decode-the-getkeytab-con.patch
file added
+813
SOURCES/0046-Fix-read_ip_addresses-should-return-ipaddr-object.patch
file added
+30
SOURCES/0046-Move-ipa-otpd-socket-directory.patch
file removed
-84
SOURCES/0047-Use-correct-service-name-in-cainstance.backup_config.patch
file added
+29
SOURCES/0047-bindinstance-make-sure-zone-manager-is-initialized-i.patch
file removed
-31
SOURCES/0048-ipa-restore-Check-if-directory-is-provided-better-er.patch
file added
+54
SOURCES/0048-trustdomain_find-make-sure-we-skip-short-entries-whe.patch
file removed
-32
SOURCES/0049-Stop-tracking-certificates-before-restoring-them-in-.patch
file added
+57
SOURCES/0049-ipa-kdb-in-case-of-delegation-use-original-client-s-.patch
file removed
-67
SOURCES/0050-Fix-detection-of-encoding-in-zonemgr-option.patch
file added
+40
SOURCES/0050-ipa-kdb-make-sure-we-don-t-produce-MS-PAC-in-case-of.patch
file removed
-42
SOURCES/0051-Too-big-font-in-input-fields.patch
file removed
-42
SOURCES/0051-webui-use-domain-name-instead-of-domain-SID-in-idran.patch
file added
+149
SOURCES/0052-trust-make-sure-we-always-discover-topology-of-the-f.patch
file removed
-75
SOURCES/0052-webui-normalize-idview-tab-labels.patch
file added
+48
SOURCES/0053-copy_schema_to_ca-Fallback-to-old-import-location-fo.patch
file added
+43
SOURCES/0053-ipaserver-dcerpc-catch-the-case-of-insuffient-permis.patch
file removed
-40
SOURCES/0054-Remove-redefinition-of-LOG-from-ipa-otp-lasttoken.patch
file added
+29
SOURCES/0054-fix-filtering-of-subdomain-based-trust-users.patch
file removed
-100
SOURCES/0055-Unload-P11_Helper-object-s-library-when-it-is-finali.patch
file added
+81
SOURCES/0055-ipa-kdb-do-not-fetch-client-principal-if-it-is-the-s.patch
file removed
-62
SOURCES/0056-Fix-Kerberos-error-handling-in-ipa-sam.patch
file added
+28
SOURCES/0056-ipa-replica-install-never-checks-for-7389-port.patch
file removed
-220
SOURCES/0057-Avoid-passing-non-terminated-string-to-is_master_hos.patch
file removed
-40
SOURCES/0057-Fix-unchecked-return-value-in-ipa-kdb.patch
file added
+28
SOURCES/0058-Fix-unchecked-return-values-in-ipa-winsync.patch
file added
+108
SOURCES/0058-ipa-sam-cache-gid-to-sid-and-uid-to-sid-requests-in-.patch
file removed
-303
SOURCES/0059-Fix-unchecked-return-value-in-ipa-join.patch
file added
+32
SOURCES/0059-ipaserver-dcerpc-make-sure-to-always-return-unicode-.patch
file removed
-33
SOURCES/0060-Fix-unchecked-return-value-in-krb5-common-utils.patch
file added
+30
SOURCES/0060-trust-do-not-fetch-subdomains-in-case-shared-secret-.patch
file removed
-44
SOURCES/0061-Fix-memory-leak-in-GetKeytabControl-asn1-code.patch
file added
+52
SOURCES/0061-Update-Dogtag-9-database-during-replica-installation.patch
file removed
-101
SOURCES/0062-AD-trust-improve-trust-validation.patch
file added
+75
SOURCES/0062-Prohibit-deletion-of-active-subdomain-range.patch
file removed
-54
SOURCES/0063-Add-TLS-1.2-to-the-protocol-list-in-mod_nss-config.patch
file added
+72
SOURCES/0063-extdom-do-not-return-results-from-the-wrong-domain.patch
file removed
-58
SOURCES/0064-Proxy-PKI-clone-ca-ee-ca-profileSubmit-URI.patch
file removed
-37
SOURCES/0064-webui-add-radius-fields-to-user-page.patch
file added
+39
SOURCES/0065-Fix-zonemgr-option-encoding-detection.patch
file added
+30
SOURCES/0065-Make-ipa-client-automount-backwards-compatible.patch
file removed
-39
SOURCES/0066-Catch-USBError-during-YubiKey-location.patch
file added
+40
SOURCES/0066-Convert-external-CA-chain-to-PKCS-7-before-passing-i.patch
file removed
-86
SOURCES/0067-Use-NSS-protocol-range-API-to-set-available-TLS-prot.patch
file added
+149
SOURCES/0067-ipaserver-dcerpc.py-if-search-of-a-closest-GC-failed.patch
file removed
-33
SOURCES/0068-Throw-zonemgr-error-message-before-installation-proc.patch
file added
+136
SOURCES/0068-ipaserver-dcerpc.py-make-PDC-discovery-more-robust.patch
file removed
-80
SOURCES/0069-certs-Fix-incorrect-flag-handling-in-load_cacert.patch
file added
+62
SOURCES/0069-ipaserver-dcerpc.py-be-more-open-to-what-domains-can.patch
file removed
-29
SOURCES/0070-Preliminary-refactoring-of-libotp-files.patch
file added
+2309
SOURCES/0070-ipaserver-dcerpc.py-Make-sure-trust-is-established-o.patch
file removed
-67
SOURCES/0071-Move-authentication-configuration-cache-into-libotp.patch
file added
+1207
SOURCES/0071-ipaserver-dcerpc.py-Avoid-hitting-issue-with-transit.patch
file removed
-54
SOURCES/0072-Enable-last-token-deletion-when-password-auth-type-i.patch
file added
+327
SOURCES/0073-add-hosts-and-hostgroup-options-to-allow-retrieve-ke.patch
file added
+878
SOURCES/0074-hosts-Display-assigned-ID-view-by-default-in-host-fi.patch
file added
+152
SOURCES/0075-Prefer-TCP-connections-to-UDP-in-krb5-clients.patch
file added
+61
SOURCES/0076-webui-fix-service-unprovisioning.patch
file added
+30
SOURCES/0077-webui-increase-duration-of-notification-messages.patch
file added
+30
SOURCES/0078-Fix-automatic-CA-cert-renewal-endless-loop-in-dogtag.patch
file added
+34
SOURCES/0079-Do-not-renew-the-IPA-CA-cert-by-serial-number-in-dog.patch
file added
+34
SOURCES/0080-Improve-validation-of-instance-and-backend-options-i.patch
file added
+169
SOURCES/0081-revert-removal-of-cn-attribute-from-idnsRecord.patch
file added
+31
SOURCES/0082-Check-subject-name-encoding-in-ipa-cacert-manage-ren.patch
file added
+51
SOURCES/0083-Refer-the-user-to-freeipa.org-when-something-goes-wr.patch
file added
+68
SOURCES/0084-Show-SSHFP-record-containing-space-in-fingerprint.patch
file added
+37
SOURCES/0085-Always-add-etc-hosts-record-when-DNS-is-being-config.patch
file added
+31
SOURCES/0086-Avoid-calling-ldap-functions-without-a-context.patch
file added
+61
SOURCES/0087-Remove-the-removal-of-the-ccache.patch
file added
+38
SOURCES/0088-Fix-Upgrade-forwardzones-zones-after-adding-newer-re.patch
file added
+145
SOURCES/0089-Fix-zone-find-during-forwardzone-upgrade.patch
file added
+36
SOURCES/0090-migrate-ds-fix-compat-plugin-check.patch
file added
+44
SOURCES/0091-rpcclient-use-json_encode_binary-for-verbose-output.patch
file added
+52
SOURCES/0092-Remove-ipanttrustauthincoming-ipanttrustauthoutgoing.patch
file added
+29
SOURCES/0093-Abort-backup-restoration-on-not-matching-host.patch
file added
+36
SOURCES/0094-Fix-ipa-restore-on-systems-without-IPA-installed.patch
file added
+34
SOURCES/0095-Remove-RUV-from-LDIF-files-before-using-them-in-ipa-.patch
file added
+76
SOURCES/0096-Fix-CA-certificate-renewal-syslog-alert.patch
file added
+28
SOURCES/0097-Do-not-crash-on-unknown-services-in-installutils.sto.patch
file added
+46
SOURCES/0098-Restart-dogtag-when-its-server-certificate-is-renewe.patch
file added
+65
SOURCES/0099-Make-certificate-renewal-process-synchronized.patch
file added
+581
SOURCES/0100-Fix-validation-of-ipa-restore-options.patch
file added
+313
SOURCES/0101-Allow-PassSync-user-to-locate-and-update-NT-users.patch
file added
+284
SOURCES/0102-Allow-Replication-Administrators-manipulate-Winsync-.patch
file added
+68
SOURCES/0103-Do-not-assume-certmonger-is-running-in-httpinstance.patch
file added
+81
SOURCES/0104-Replication-Administrators-cannot-remove-replication.patch
file added
+41
SOURCES/0105-Put-LDIF-files-to-their-original-location-in-ipa-res.patch
file added
+40
SOURCES/0106-Add-anonymous-read-ACI-for-DUA-profile.patch
file added
+62
SOURCES/0107-Revert-Make-all-ipatokenTOTP-attributes-mandatory.patch
file added
+34
SOURCES/0108-Create-correct-log-directories-during-full-restore-i.patch
file added
+57
SOURCES/0109-Do-not-crash-when-replica-is-unreachable-in-ipa-rest.patch
file added
+35
SOURCES/0110-idviews-Allow-setting-ssh-public-key-on-ipauseroverr.patch
file added
+36
SOURCES/0111-Fix-ipa-pwd-extop-global-configuration-caching.patch
file added
+39
SOURCES/0112-group-detach-does-not-add-correct-objectclasses.patch
file added
+25
SOURCES/1001-Hide-pkinit-functionality-from-production-version.patch
file modified
+88
-48
SOURCES/1002-Remove-pkinit-plugin.patch
file modified
+18
-14
SOURCES/1003-Remove-pkinit-references-from-tool-man-pages.patch
file modified
+57
-39
SOURCES/1004-Change-branding-to-IPA-and-Identity-Management.patch
file modified
+198
-84
SOURCES/1005-Remove-pylint-from-build-process.patch
file modified
+8
-8
SOURCES/1006-Remove-i18test-from-build-process.patch
file modified
+5
-5
SOURCES/1007-Do-not-build-tests.patch
SOURCES/0016-Do-not-build-tests.patch
file renamed
+8
-8
SOURCES/1007-Remove-ipa-backup-and-ipa-restore-functionality.patch
file removed
-40
SOURCES/1008-RCUE.patch
file added
+196
SOURCES/1009-Do-not-allow-installation-in-FIPS-mode.patch
file added
+80
SOURCES/1010-Disable-DNSSEC-support.patch
file added
+512
SOURCES/1011-Disable-TLS-1.2-in-nss.conf-until-mod_nss-supports-i.patch
file added
+59
SOURCES/1012-Expand-the-token-auth-sync-windows.patch
file added
+43
SOURCES/1013-ipa-kdb-reject-principals-from-disabled-domains-as-a.patch
file added
+27
SOURCES/ipa-centos-branding.patch
file removed
-12
SPECS/ipa.spec
file modified
+512
-190
import ipa-4.1.0-18.el7
.gitignore
file modified
+5
-2
.ipa.metadata
file modified
+5
-2
SOURCES/0001-Do-not-check-if-port-8443-is-available-in-step-2-of-.patch
file added
+54
SOURCES/0001-Guard-import-of-adtrustinstance-for-case-without-tru.patch
file removed
-41
SOURCES/0002-Add-ipaSshPubkey-and-gidNumber-to-the-ACI-to-read-ID.patch
file added
+42
SOURCES/0002-Server-does-not-detect-different-server-and-IPA-doma.patch
file removed
-61
SOURCES/0003-Allow-kernel-keyring-CCACHE-when-supported.patch
file removed
-120
SOURCES/0003-Fix-dns-zonemgr-validation-regression.patch
file added
+27
SOURCES/0004-Fix-regression-which-prevents-creating-a-winsync-agr.patch
file removed
-31
SOURCES/0004-Handle-profile-changes-in-dogtag-ipa-ca-renew-agent.patch
file added
+181
SOURCES/0005-Do-not-wait-for-new-CA-certificate-to-appear-in-LDAP.patch
file added
+170
SOURCES/0005-trusts-Do-not-pass-base-id-to-the-subdomain-ranges.patch
file removed
-40
SOURCES/0006-Fail-if-certmonger-can-t-see-new-CA-certificate-in-L.patch
file added
+101
SOURCES/0006-Map-NT_STATUS_INVALID_PARAMETER-to-most-likely-error.patch
file removed
-32
SOURCES/0007-Fix-possible-NULL-dereference-in-ipa-kdb.patch
file added
+34
SOURCES/0007-Remove-mod_ssl-port-workaround.patch
file removed
-98
SOURCES/0008-Fix-memory-leaks-in-ipa-extdom-extop.patch
file added
+57
SOURCES/0008-subdomains-Use-AD-admin-credentials-when-trust-is-be.patch
file removed
-147
SOURCES/0009-Fix-various-bugs-in-ipa-opt-counter-and-ipa-otp-last.patch
file added
+102
SOURCES/0009-trusts-Always-stop-and-disable-smb-service-on-uninst.patch
file removed
-47
SOURCES/0010-Fix-memory-leak-in-ipa-pwd-extop.patch
file added
+60
SOURCES/0010-Use-hardening-flags-for-ipa-optd.patch
file removed
-277
SOURCES/0011-Fix-memory-leaks-in-ipa-join.patch
file added
+107
SOURCES/0011-test_integration-Support-external-names-for-hosts.patch
file removed
-108
SOURCES/0012-Fix-various-bugs-in-ipap11helper.patch
file added
+108
SOURCES/0012-ipa-client-install-Always-pass-hostname-to-the-ipa-j.patch
file removed
-42
SOURCES/0013-Deadlock-in-schema-compat-plugin-between-automember_.patch
file added
+83
SOURCES/0013-trust-fix-get_dn-to-distinguish-creating-and-re-addi.patch
file removed
-43
SOURCES/0014-Stop-dirsrv-last-in-ipactl-stop.patch
file added
+47
SOURCES/0014-ipa-cldap-Cut-NetBIOS-name-after-15-characters.patch
file removed
-48
SOURCES/0015-Fix-upgrade-do-not-use-invalid-ldap-connection.patch
file added
+43
SOURCES/0015-Prevent-garbage-from-readline-on-standard-output-of-.patch
file removed
-29
SOURCES/0016-Ensure-that-a-password-exists-after-OTP-validation.patch
file added
+73
SOURCES/0017-PKI-service-restart-after-CA-renewal-failed.patch
file removed
-198
SOURCES/0017-ipa-restore-Don-t-crash-if-AD-trust-is-not-installed.patch
file added
+53
SOURCES/0018-hbactest-does-not-work-for-external-users.patch
file removed
-43
SOURCES/0018-ranges-prohibit-setting-rid-base-with-ipa-trust-ad-p.patch
file added
+159
SOURCES/0019-Change-the-way-we-determine-if-the-host-has-a-passwo.patch
file removed
-72
SOURCES/0019-ldapupdater-set-baserid-to-0-for-ipa-ad-trust-posix-.patch
file added
+102
SOURCES/0020-idrange-include-raw-range-type-in-output.patch
file added
+29
SOURCES/0020-sudoOrder-missing-in-sudoers.patch
file removed
-27
SOURCES/0021-Add-missing-example-to-sudorule.patch
file removed
-45
SOURCES/0021-webui-prohibit-setting-rid-base-with-ipa-trust-ad-po.patch
file added
+153
SOURCES/0022-Fix-CA-certificate-backup-and-restore.patch
file added
+208
SOURCES/0022-Fix-ipa-client-automount-uninstall-when-fstore-is-em.patch
file removed
-27
SOURCES/0023-Fix-DNS-installer-adds-invalid-zonemgr-email.patch
file added
+43
SOURCES/0023-trust-fetch-domains-create-ranges-for-new-child-doma.patch
file removed
-346
SOURCES/0024-ipaplatform-Use-the-dirsrv-service-not-target.patch
file added
+37
SOURCES/0024-trustdomain-find-report-status-of-the-sub-domain.patch
file removed
-57
SOURCES/0025-CLDAP-do-not-prepend.patch
file removed
-31
SOURCES/0025-Fix-DNS-policy-upgrade-raises-asertion-error.patch
file added
+29
SOURCES/0026-Fix-upgrade-referint-plugin.patch
file added
+153
SOURCES/0026-ipaserver-install-installutils-clean-up-properly-aft.patch
file removed
-56
SOURCES/0027-Do-not-start-the-service-in-stopped_service-if-it-wa.patch
file removed
-28
SOURCES/0027-Upgrade-fix-trusts-objectclass-violationi.patch
file added
+63
SOURCES/0028-Harmonize-policy-discovery-to-kdb-driver.patch
file removed
-180
SOURCES/0028-Produce-better-error-in-group-add-command.patch
file added
+28
SOURCES/0029-Search-using-proper-scope-when-connecting-CA-instanc.patch
file added
+32
SOURCES/0029-Stop-adding-a-default-password-policy-reference.patch
file removed
-409
SOURCES/0030-Fix-zonemgr-must-be-unicode-value.patch
file added
+30
SOURCES/0030-Increase-service-startup-timeout-default.patch
file removed
-26
SOURCES/0031-Fix-warning-message-should-not-contain-CLI-commands.patch
file added
+73
SOURCES/0031-cli.print_attribute-Convert-values-to-strings.patch
file removed
-30
SOURCES/0032-Fix-wrong-expiration-date-on-renewed-IPA-CA-certific.patch
file added
+54
SOURCES/0032-group-show-resolve-external-members-of-the-groups.patch
file removed
-43
SOURCES/0033-Do-not-restore-SELinux-settings-that-were-not-backed.patch
file added
+43
SOURCES/0033-Remove-SID-resolve-call-from-Web-UI.patch
file removed
-87
SOURCES/0034-Improve-otptoken-help-messages.patch
file added
+121
SOURCES/0034-ipa-adtrust-install-configure-host-netbios-name-by-d.patch
file removed
-56
SOURCES/0035-Ensure-users-exist-when-assigning-tokens-to-them.patch
file added
+34
SOURCES/0035-Remove-missing-VERSION-warning-in-dnsrecord-mod.patch
file removed
-30
SOURCES/0036-Enable-QR-code-display-by-default-in-otptoken-add.patch
file added
+104
SOURCES/0036-Hide-trust-resolve-command.patch
file removed
-33
SOURCES/0037-Show-warning-instead-of-error-if-CA-did-not-start.patch
file added
+32
SOURCES/0037-Trust-domains-Web-UI.patch
file removed
-188
SOURCES/0038-ipasam-delete-trusted-child-domains-before-removing-.patch
file removed
-87
SOURCES/0038-webui-fix-potential-XSS-vulnerabilities.patch
file added
+131
SOURCES/0039-CLDAP-generate-NetBIOS-name-like-ipa-adtrust-install.patch
file removed
-104
SOURCES/0039-Raise-right-exception-if-domain-name-is-not-valid.patch
file added
+46
SOURCES/0040-Fallback-to-global-policy-in-ipa-lockout-plugin.patch
file removed
-108
SOURCES/0040-Restore-file-extended-attributes-and-SELinux-context.patch
file added
+38
SOURCES/0041-Migration-does-not-add-users-to-default-group.patch
file removed
-59
SOURCES/0041-restore-clear-httpd-ccache-after-restore.patch
file added
+32
SOURCES/0042-Fix-user-group-ignore-attribute-in-migration-plugin.patch
file added
+45
SOURCES/0042-ipa-lockout-do-not-fail-when-default-realm-cannot-be.patch
file removed
-65
SOURCES/0043-Fix-filtering-of-enctypes-in-server-code.patch
file added
+98
SOURCES/0043-ipa-tool-Print-the-name-of-the-server-we-are-connect.patch
file removed
-72
SOURCES/0044-Add-asn1c-generated-code-for-keytab-controls.patch
file added
+13109
SOURCES/0044-Remove-sourcehostcategory-from-the-default-HBAC-rule.patch
file removed
-41
SOURCES/0045-DNS-classless-support-for-reverse-domains.patch
file removed
-229
SOURCES/0045-Use-asn1c-helpers-to-encode-decode-the-getkeytab-con.patch
file added
+813
SOURCES/0046-Fix-read_ip_addresses-should-return-ipaddr-object.patch
file added
+30
SOURCES/0046-Move-ipa-otpd-socket-directory.patch
file removed
-84
SOURCES/0047-Use-correct-service-name-in-cainstance.backup_config.patch
file added
+29
SOURCES/0047-bindinstance-make-sure-zone-manager-is-initialized-i.patch
file removed
-31
SOURCES/0048-ipa-restore-Check-if-directory-is-provided-better-er.patch
file added
+54
SOURCES/0048-trustdomain_find-make-sure-we-skip-short-entries-whe.patch
file removed
-32
SOURCES/0049-Stop-tracking-certificates-before-restoring-them-in-.patch
file added
+57
SOURCES/0049-ipa-kdb-in-case-of-delegation-use-original-client-s-.patch
file removed
-67
SOURCES/0050-Fix-detection-of-encoding-in-zonemgr-option.patch
file added
+40
SOURCES/0050-ipa-kdb-make-sure-we-don-t-produce-MS-PAC-in-case-of.patch
file removed
-42
SOURCES/0051-Too-big-font-in-input-fields.patch
file removed
-42
SOURCES/0051-webui-use-domain-name-instead-of-domain-SID-in-idran.patch
file added
+149
SOURCES/0052-trust-make-sure-we-always-discover-topology-of-the-f.patch
file removed
-75
SOURCES/0052-webui-normalize-idview-tab-labels.patch
file added
+48
SOURCES/0053-copy_schema_to_ca-Fallback-to-old-import-location-fo.patch
file added
+43
SOURCES/0053-ipaserver-dcerpc-catch-the-case-of-insuffient-permis.patch
file removed
-40
SOURCES/0054-Remove-redefinition-of-LOG-from-ipa-otp-lasttoken.patch
file added
+29
SOURCES/0054-fix-filtering-of-subdomain-based-trust-users.patch
file removed
-100
SOURCES/0055-Unload-P11_Helper-object-s-library-when-it-is-finali.patch
file added
+81
SOURCES/0055-ipa-kdb-do-not-fetch-client-principal-if-it-is-the-s.patch
file removed
-62
SOURCES/0056-Fix-Kerberos-error-handling-in-ipa-sam.patch
file added
+28
SOURCES/0056-ipa-replica-install-never-checks-for-7389-port.patch
file removed
-220
SOURCES/0057-Avoid-passing-non-terminated-string-to-is_master_hos.patch
file removed
-40
SOURCES/0057-Fix-unchecked-return-value-in-ipa-kdb.patch
file added
+28
SOURCES/0058-Fix-unchecked-return-values-in-ipa-winsync.patch
file added
+108
SOURCES/0058-ipa-sam-cache-gid-to-sid-and-uid-to-sid-requests-in-.patch
file removed
-303
SOURCES/0059-Fix-unchecked-return-value-in-ipa-join.patch
file added
+32
SOURCES/0059-ipaserver-dcerpc-make-sure-to-always-return-unicode-.patch
file removed
-33
SOURCES/0060-Fix-unchecked-return-value-in-krb5-common-utils.patch
file added
+30
SOURCES/0060-trust-do-not-fetch-subdomains-in-case-shared-secret-.patch
file removed
-44
SOURCES/0061-Fix-memory-leak-in-GetKeytabControl-asn1-code.patch
file added
+52
SOURCES/0061-Update-Dogtag-9-database-during-replica-installation.patch
file removed
-101
SOURCES/0062-AD-trust-improve-trust-validation.patch
file added
+75
SOURCES/0062-Prohibit-deletion-of-active-subdomain-range.patch
file removed
-54
SOURCES/0063-Add-TLS-1.2-to-the-protocol-list-in-mod_nss-config.patch
file added
+72
SOURCES/0063-extdom-do-not-return-results-from-the-wrong-domain.patch
file removed
-58
SOURCES/0064-Proxy-PKI-clone-ca-ee-ca-profileSubmit-URI.patch
file removed
-37
SOURCES/0064-webui-add-radius-fields-to-user-page.patch
file added
+39
SOURCES/0065-Fix-zonemgr-option-encoding-detection.patch
file added
+30
SOURCES/0065-Make-ipa-client-automount-backwards-compatible.patch
file removed
-39
SOURCES/0066-Catch-USBError-during-YubiKey-location.patch
file added
+40
SOURCES/0066-Convert-external-CA-chain-to-PKCS-7-before-passing-i.patch
file removed
-86
SOURCES/0067-Use-NSS-protocol-range-API-to-set-available-TLS-prot.patch
file added
+149
SOURCES/0067-ipaserver-dcerpc.py-if-search-of-a-closest-GC-failed.patch
file removed
-33
SOURCES/0068-Throw-zonemgr-error-message-before-installation-proc.patch
file added
+136
SOURCES/0068-ipaserver-dcerpc.py-make-PDC-discovery-more-robust.patch
file removed
-80
SOURCES/0069-certs-Fix-incorrect-flag-handling-in-load_cacert.patch
file added
+62
SOURCES/0069-ipaserver-dcerpc.py-be-more-open-to-what-domains-can.patch
file removed
-29
SOURCES/0070-Preliminary-refactoring-of-libotp-files.patch
file added
+2309
SOURCES/0070-ipaserver-dcerpc.py-Make-sure-trust-is-established-o.patch
file removed
-67
SOURCES/0071-Move-authentication-configuration-cache-into-libotp.patch
file added
+1207
SOURCES/0071-ipaserver-dcerpc.py-Avoid-hitting-issue-with-transit.patch
file removed
-54
SOURCES/0072-Enable-last-token-deletion-when-password-auth-type-i.patch
file added
+327
SOURCES/0073-add-hosts-and-hostgroup-options-to-allow-retrieve-ke.patch
file added
+878
SOURCES/0074-hosts-Display-assigned-ID-view-by-default-in-host-fi.patch
file added
+152
SOURCES/0075-Prefer-TCP-connections-to-UDP-in-krb5-clients.patch
file added
+61
SOURCES/0076-webui-fix-service-unprovisioning.patch
file added
+30
SOURCES/0077-webui-increase-duration-of-notification-messages.patch
file added
+30
SOURCES/0078-Fix-automatic-CA-cert-renewal-endless-loop-in-dogtag.patch
file added
+34
SOURCES/0079-Do-not-renew-the-IPA-CA-cert-by-serial-number-in-dog.patch
file added
+34
SOURCES/0080-Improve-validation-of-instance-and-backend-options-i.patch
file added
+169
SOURCES/0081-revert-removal-of-cn-attribute-from-idnsRecord.patch
file added
+31
SOURCES/0082-Check-subject-name-encoding-in-ipa-cacert-manage-ren.patch
file added
+51
SOURCES/0083-Refer-the-user-to-freeipa.org-when-something-goes-wr.patch
file added
+68
SOURCES/0084-Show-SSHFP-record-containing-space-in-fingerprint.patch
file added
+37
SOURCES/0085-Always-add-etc-hosts-record-when-DNS-is-being-config.patch
file added
+31
SOURCES/0086-Avoid-calling-ldap-functions-without-a-context.patch
file added
+61
SOURCES/0087-Remove-the-removal-of-the-ccache.patch
file added
+38
SOURCES/0088-Fix-Upgrade-forwardzones-zones-after-adding-newer-re.patch
file added
+145
SOURCES/0089-Fix-zone-find-during-forwardzone-upgrade.patch
file added
+36
SOURCES/0090-migrate-ds-fix-compat-plugin-check.patch
file added
+44
SOURCES/0091-rpcclient-use-json_encode_binary-for-verbose-output.patch
file added
+52
SOURCES/0092-Remove-ipanttrustauthincoming-ipanttrustauthoutgoing.patch
file added
+29
SOURCES/0093-Abort-backup-restoration-on-not-matching-host.patch
file added
+36
SOURCES/0094-Fix-ipa-restore-on-systems-without-IPA-installed.patch
file added
+34
SOURCES/0095-Remove-RUV-from-LDIF-files-before-using-them-in-ipa-.patch
file added
+76
SOURCES/0096-Fix-CA-certificate-renewal-syslog-alert.patch
file added
+28
SOURCES/0097-Do-not-crash-on-unknown-services-in-installutils.sto.patch
file added
+46
SOURCES/0098-Restart-dogtag-when-its-server-certificate-is-renewe.patch
file added
+65
SOURCES/0099-Make-certificate-renewal-process-synchronized.patch
file added
+581
SOURCES/0100-Fix-validation-of-ipa-restore-options.patch
file added
+313
SOURCES/0101-Allow-PassSync-user-to-locate-and-update-NT-users.patch
file added
+284
SOURCES/0102-Allow-Replication-Administrators-manipulate-Winsync-.patch
file added
+68
SOURCES/0103-Do-not-assume-certmonger-is-running-in-httpinstance.patch
file added
+81
SOURCES/0104-Replication-Administrators-cannot-remove-replication.patch
file added
+41
SOURCES/0105-Put-LDIF-files-to-their-original-location-in-ipa-res.patch
file added
+40
SOURCES/0106-Add-anonymous-read-ACI-for-DUA-profile.patch
file added
+62
SOURCES/0107-Revert-Make-all-ipatokenTOTP-attributes-mandatory.patch
file added
+34
SOURCES/0108-Create-correct-log-directories-during-full-restore-i.patch
file added
+57
SOURCES/0109-Do-not-crash-when-replica-is-unreachable-in-ipa-rest.patch
file added
+35
SOURCES/0110-idviews-Allow-setting-ssh-public-key-on-ipauseroverr.patch
file added
+36
SOURCES/0111-Fix-ipa-pwd-extop-global-configuration-caching.patch
file added
+39
SOURCES/0112-group-detach-does-not-add-correct-objectclasses.patch
file added
+25
SOURCES/1001-Hide-pkinit-functionality-from-production-version.patch
file modified
+88
-48
SOURCES/1002-Remove-pkinit-plugin.patch
file modified
+18
-14
SOURCES/1003-Remove-pkinit-references-from-tool-man-pages.patch
file modified
+57
-39
SOURCES/1004-Change-branding-to-IPA-and-Identity-Management.patch
file modified
+198
-84
SOURCES/1005-Remove-pylint-from-build-process.patch
file modified
+8
-8
SOURCES/1006-Remove-i18test-from-build-process.patch
file modified
+5
-5
SOURCES/1007-Do-not-build-tests.patch
SOURCES/0016-Do-not-build-tests.patch
file renamed
+8
-8
SOURCES/1007-Remove-ipa-backup-and-ipa-restore-functionality.patch
file removed
-40
SOURCES/1008-RCUE.patch
file added
+196
SOURCES/1009-Do-not-allow-installation-in-FIPS-mode.patch
file added
+80
SOURCES/1010-Disable-DNSSEC-support.patch
file added
+512
SOURCES/1011-Disable-TLS-1.2-in-nss.conf-until-mod_nss-supports-i.patch
file added
+59
SOURCES/1012-Expand-the-token-auth-sync-windows.patch
file added
+43
SOURCES/1013-ipa-kdb-reject-principals-from-disabled-domains-as-a.patch
file added
+27
SOURCES/ipa-centos-branding.patch
file removed
-12
SPECS/ipa.spec
file modified
+512
-190