summaryrefslogtreecommitdiffstats
path: root/install/share/default-aci.ldif
Commit message (Expand)AuthorAgeFilesLines
* Permit reads to ipatokenRadiusProxyUser objectsNathaniel McCallum2013-07-111-1/+1
* Add IPA OTP schema and ACLsNathaniel McCallum2013-05-171-1/+9
* Add Kerberos ticket flags management to service and host plugins.Jan Cholasta2013-03-291-1/+1
* Update anonymous access ACI to protect secret attributes.Rob Crittenden2013-01-231-1/+1
* Use certmonger to renew CA subsystem certificatesRob Crittenden2012-07-301-0/+10
* Remove ipaNTHash from global allow ACIMartin Kosek2012-06-261-4/+4
* Add LDAP ACIs for SSH public key schema.Jan Cholasta2012-02-131-0/+3
* install: Remove uid=kdc userSimo Sorce2011-08-261-4/+0
* Change the way has_keytab is determined, also check for password.Rob Crittenden2011-08-241-0/+8
* Make main selfservice aci visible to the selfservice plugin.Rob Crittenden2011-02-101-2/+2
* Add support for tracking and counting entitlementsRob Crittenden2011-02-021-1/+1
* Add support for account unlockingJan Zeleny2011-01-281-1/+1
* block anonymous access to sudo info https://fedorahosted.org/freeipa/ticket/865Jr Aquino2011-01-271-0/+6
* ACI plugin supports prefixesMartin Kosek2011-01-261-1/+1
* Block anonymous access to HBAC, role and some member information.Rob Crittenden2011-01-241-0/+6
* Remove radius options completely.Simo Sorce2011-01-141-6/+0
* Allow the kdc to write krbExtraDataRob Crittenden2011-01-071-1/+1
* Remove common entries when deleting a master.Simo Sorce2010-12-211-0/+5
* Don't use camel-case LDAP attributes in ACI and don't clear enrolledByRob Crittenden2010-12-171-3/+3
* Set labels on all attributes in the config object.Rob Crittenden2010-12-101-1/+1
* Re-implement access control using an updated model.Rob Crittenden2010-12-011-0/+5
* Reduce the number of attributes a host is allowed to write.Rob Crittenden2010-11-301-2/+6
* Give a detached group a full set of group objectclasses.Rob Crittenden2010-11-191-1/+1
* Add managedby to Host entriesRob Crittenden2010-11-191-0/+8
* Revoke a host's certificate (if any) when it is deleted or disabled.Rob Crittenden2010-11-191-1/+1
* Disallow writes on serverHostName and memberOfRob Crittenden2010-10-221-2/+1
* Fix a couple of typos in some ACIs.Rob Crittenden2010-10-061-3/+3
* Remove reliance on the name 'admin' as a special user.Rob Crittenden2010-10-011-1/+1
* Unenroll the client from the IPA server on uninstall.Rob Crittenden2010-09-201-1/+2
* Set ipaUniqueId to be unwritable and add to uniqueness configuration.Rob Crittenden2010-09-201-2/+2
* Enable a host to retrieve a keytab for all its services.Rob Crittenden2010-08-161-1/+3
* - allow the KDC to read krbCanonicalNameNalin Dahyabhai2010-02-051-2/+2
* Make hosts more like real services so we can issue certs for host principalsRob Crittenden2009-12-161-0/+6
* Make the IPA server host and its services "real" IPA entriesRob Crittenden2009-12-111-1/+1
* Use a new mechanism for delegating certificate issuance.Rob Crittenden2009-11-031-0/+7
* Mass tree reorganization for IPAv2. To view previous history of files use:Rob Crittenden2009-02-031-0/+38