summaryrefslogtreecommitdiffstats
path: root/ACI.txt
Commit message (Expand)AuthorAgeFilesLines
* User life cycle: permission to delete a preserved userroot2015-06-291-0/+2
* DNS: add UnknownRecord to schemaMartin Basti2015-06-181-2/+2
* regenerate ACI.txt after stage user permission renamePetr Vobornik2015-06-151-2/+2
* Stage User: Fix permissions naming and split them where apropriate.Thierry Bordaz2015-06-151-12/+14
* Add CA ACL pluginFraser Tweedale2015-06-111-0/+10
* Add usercertificate attribute to user pluginFraser Tweedale2015-06-041-1/+1
* Add certprofile pluginFraser Tweedale2015-06-041-0/+8
* Add plugin to manage service constraint delegationsRob Crittenden2015-06-031-0/+16
* Add Domain Level featureTomas Babej2015-05-261-0/+2
* User life cycle: Add 'Stage User Provisioning' permission/priviledgeThierry Bordaz2015-05-181-1/+3
* User life cycle: Stage user Administrators permission/priviledgeThierry Bordaz2015-05-181-0/+18
* ipalib: Make sure correct attribute name is referenced for faxTomas Babej2015-02-191-1/+1
* Add anonymous read ACI for DUA profileMartin Kosek2015-01-211-0/+2
* Allow PassSync user to locate and update NT usersMartin Kosek2015-01-191-0/+2
* Make token auth and sync windows configurableNathaniel McCallum2014-12-051-0/+2
* Add ipaSshPubkey and gidNumber to the ACI to read ID user overridesAlexander Bokovoy2014-10-241-1/+1
* DNSSEC: ACIMartin Basti2014-10-211-0/+6
* Support idviews in compat treeAlexander Bokovoy2014-10-201-0/+6
* keytab manipulation permission managementPetr Vobornik2014-10-171-0/+4
* Allow override of gecos field in ID viewsAlexander Bokovoy2014-10-131-1/+1
* Support overridding user shell in ID viewsAlexander Bokovoy2014-10-131-1/+1
* idviews: Add ipaOriginalUidTomas Babej2014-09-301-1/+1
* idviews: Split the idoverride commands into iduseroverride and idgroupoverrideTomas Babej2014-09-301-1/+3
* idvies: Add managed permissions for idview and idoverride objectsTomas Babej2014-09-301-0/+4
* idviews: Add ipaAssignedIDVIew reference to the host objectTomas Babej2014-09-301-2/+2
* Allow deleting obsolete permissions; remove operational attribute permissionsPetr Viktorin2014-09-121-4/+0
* permission plugin: Auto-add operational atttributes to read permissionsPetr Viktorin2014-09-121-42/+42
* Fix: Add managed read permissions for compat tree and operational attrsPetr Viktorin2014-09-051-4/+8
* Add managed read permissions for compat treePetr Viktorin2014-09-051-0/+8
* Add permissions for certificate store.Jan Cholasta2014-07-301-0/+10
* Add permissions for CA certificate renewal.Jan Cholasta2014-07-301-0/+4
* makeaci: Use the DN where the ACI is stored, not the permission's DNPetr Viktorin2014-07-071-131/+131
* Add Modify Realm Domains permissionMartin Kosek2014-07-041-0/+2
* Add NSEC3PARAM to zone settingsMartin Basti2014-07-021-2/+2
* Remove NSEC3PARAM recordMartin Basti2014-07-021-2/+2
* Fix ACI in DNSMartin Basti2014-07-011-2/+2
* DNSSEC: add TLSA record typeMartin Basti2014-07-011-2/+2
* sudorule: Allow using external groups as groups of runAsUsersTomas Babej2014-06-251-2/+2
* trusts: Allow reading system trust accounts by adtrust agentsTomas Babej2014-06-251-0/+2
* trusts: Add more read attributesTomas Babej2014-06-251-1/+1
* Add several CRUD default permissionsPetr Viktorin2014-06-241-0/+12
* Convert Sudo Command Group default permissions to managedPetr Viktorin2014-06-241-0/+6
* Convert Sudo Command default permissions to managedPetr Viktorin2014-06-241-0/+6
* Convert Service default permissions to managedPetr Viktorin2014-06-241-0/+8
* Convert SELinux User Map default permissions to managedPetr Viktorin2014-06-241-0/+6
* Convert Role default permissions to managedPetr Viktorin2014-06-241-0/+8
* Convert the Modify privilege membership permission to managedPetr Viktorin2014-06-241-0/+2
* Convert Netgroup default permissions to managedPetr Viktorin2014-06-241-0/+8
* Convert Hostgroup default permissions to managedPetr Viktorin2014-06-241-0/+8
* Convert HBAC Service Group default permissions to managedPetr Viktorin2014-06-241-0/+6