summaryrefslogtreecommitdiffstats
path: root/install/share
diff options
context:
space:
mode:
authorRob Crittenden <rcritten@redhat.com>2011-04-14 14:37:45 -0400
committerMartin Kosek <mkosek@redhat.com>2011-04-15 13:02:17 +0200
commitfe67680da5c3d7799884bdbd4d900070394dc5d0 (patch)
treebf51ade36d8d0895b28f8d059c1ed2f91dac6058 /install/share
parente3ec1fb7efb12c3669855b6c388f196c268680ee (diff)
downloadfreeipa-fe67680da5c3d7799884bdbd4d900070394dc5d0.tar.gz
freeipa-fe67680da5c3d7799884bdbd4d900070394dc5d0.tar.xz
freeipa-fe67680da5c3d7799884bdbd4d900070394dc5d0.zip
The default groups we create should have ipaUniqueId set
This adds a new directive to ipa-ldap-updater: addifnew. This will add a new attribute only if it doesn't exist in the current entry. We can't compare values because the value we are adding is automatically generated. ticket 1177
Diffstat (limited to 'install/share')
-rw-r--r--install/share/bootstrap-template.ldif6
1 files changed, 6 insertions, 0 deletions
diff --git a/install/share/bootstrap-template.ldif b/install/share/bootstrap-template.ldif
index 0a81b63f2..ddfb68b30 100644
--- a/install/share/bootstrap-template.ldif
+++ b/install/share/bootstrap-template.ldif
@@ -188,11 +188,13 @@ objectClass: top
objectClass: groupofnames
objectClass: posixgroup
objectClass: ipausergroup
+objectClass: ipaobject
cn: admins
description: Account administrators group
gidNumber: $IDSTART
member: uid=admin,cn=users,cn=accounts,$SUFFIX
nsAccountLock: False
+ipaUniqueID: autogenerate
dn: cn=ipausers,cn=groups,cn=accounts,$SUFFIX
changetype: add
@@ -201,9 +203,11 @@ objectClass: groupofnames
objectClass: nestedgroup
objectClass: ipausergroup
objectClass: posixgroup
+objectClass: ipaobject
gidNumber: eval($IDSTART+1)
description: Default group for all users
cn: ipausers
+ipaUniqueID: autogenerate
dn: cn=editors,cn=groups,cn=accounts,$SUFFIX
changetype: add
@@ -211,9 +215,11 @@ objectClass: top
objectClass: groupofnames
objectClass: posixgroup
objectClass: ipausergroup
+objectClass: ipaobject
gidNumber: eval($IDSTART+2)
description: Limited admins who can edit other users
cn: editors
+ipaUniqueID: autogenerate
dn: cn=sshd,cn=hbacservices,cn=hbac,$SUFFIX
changetype: add