summaryrefslogtreecommitdiffstats
path: root/ipalib/plugins/group.py
diff options
context:
space:
mode:
authorPetr Viktorin <pviktori@redhat.com>2014-06-12 12:01:26 +0200
committerPetr Viktorin <pviktori@redhat.com>2014-06-23 10:54:43 +0200
commitac8539bd344f2309f74efc6b42bddb3a925ff20f (patch)
tree42ff24c96d15c102699500d1fbef61d0a0f925ae /ipalib/plugins/group.py
parent02b5074d84ad42cb6ffc2abd7a84fbff62747470 (diff)
downloadfreeipa-ac8539bd344f2309f74efc6b42bddb3a925ff20f.tar.gz
freeipa-ac8539bd344f2309f74efc6b42bddb3a925ff20f.tar.xz
freeipa-ac8539bd344f2309f74efc6b42bddb3a925ff20f.zip
Add posixgroup to groups' permission object filter
Private groups don't have the 'ipausergroup' objectclass. Add posixgroup to the objectclass filters to make "--type group" permissions apply to all groups. https://fedorahosted.org/freeipa/ticket/4372 Reviewed-By: Martin Kosek <mkosek@redhat.com>
Diffstat (limited to 'ipalib/plugins/group.py')
-rw-r--r--ipalib/plugins/group.py2
1 files changed, 1 insertions, 1 deletions
diff --git a/ipalib/plugins/group.py b/ipalib/plugins/group.py
index 581ee70b6..d130f8668 100644
--- a/ipalib/plugins/group.py
+++ b/ipalib/plugins/group.py
@@ -126,7 +126,7 @@ class group(LDAPObject):
object_class = ['ipausergroup']
object_class_config = 'ipagroupobjectclasses'
possible_objectclasses = ['posixGroup', 'mepManagedEntry', 'ipaExternalGroup']
- permission_filter_objectclasses = ['ipausergroup']
+ permission_filter_objectclasses = ['posixgroup', 'ipausergroup']
search_attributes_config = 'ipagroupsearchfields'
default_attributes = [
'cn', 'description', 'gidnumber', 'member', 'memberof',