summaryrefslogtreecommitdiffstats
path: root/install/updates
Commit message (Expand)AuthorAgeFilesLines
* Add additional pam ftp services to HBAC, and a ftp HBAC service groupRob Crittenden2011-08-242-0/+44
* Change the way has_keytab is determined, also check for password.Rob Crittenden2011-08-241-0/+4
* Correct sudo runasuser and runasgroup attributes in schemaJr Aquino2011-07-192-0/+41
* Correct behavior for sudorunasgroup vs sudorunasuserJr Aquino2011-07-192-0/+3
* Set the ipa-modrdn plugin precedence to 60 so it runs lastRob Crittenden2011-07-171-0/+5
* Disallow direct modifications to enrolledBy.Rob Crittenden2011-07-144-23/+27
* Configure Managed Entries on replicas.Rob Crittenden2011-05-253-0/+28
* A new flag to disable creation of UPGMartin Kosek2011-05-252-0/+3
* Enable 389-ds SSL host checking by defauiltRob Crittenden2011-05-202-0/+6
* The default groups we create should have ipaUniqueId setRob Crittenden2011-04-152-1/+14
* Add memberHost and memberUser to default indexesJr Aquino2011-04-081-0/+16
* Fix ORDERING in some attributetypes and remove other unnecessary elements.Rob Crittenden2011-04-052-0/+23
* Allow a client to enroll using principal when the host has a OTPRob Crittenden2011-03-301-0/+18
* Store list of non-master replicas in DIT and provide way to list themSimo Sorce2011-03-022-0/+10
* Use Sudo rather than SUDO as a label.Rob Crittenden2011-03-012-40/+40
* Add default roles and permissions for HBAC, SUDO and pw policyRob Crittenden2011-02-223-1/+316
* Add aci to make managed netgroups immutable.Rob Crittenden2011-02-182-1/+6
* Updated default Kerberos password policyJan Zeleny2011-02-162-0/+5
* Add permission/privilege for updating IPA configuration.Rob Crittenden2011-02-142-0/+19
* Move automount, default HBAC services, netgroup and hostgroup bootstrapping.Rob Crittenden2010-12-175-121/+0
* Re-implement access control using an updated model.Rob Crittenden2010-12-014-746/+0
* Reduce the number of attributes a host is allowed to write.Rob Crittenden2010-11-301-2/+2
* Add additional default HBAC login servicesRob Crittenden2010-11-081-0/+21
* Remove hardcoded domain value and replace with $SUFFIXRob Crittenden2010-11-041-3/+3
* Use correct attribute name, nshostlocation, not location.Rob Crittenden2010-11-031-1/+1
* UUIDs: remove uuid python plugin and let DS always autogenerateSimo Sorce2010-10-281-8/+8
* Use correct description in hostgroup acis.Rob Crittenden2010-10-061-3/+3
* Remove reliance on the name 'admin' as a special user.Rob Crittenden2010-10-011-1/+1
* Enabling SUDO supportDmitri Pal2010-09-161-7/+26
* Allow decoupling of user-private groups.Rob Crittenden2010-08-101-8/+8
* Add hbac service for su-l, su with a login shellRob Crittenden2010-08-061-0/+6
* Add container and initial ACIs for entitlement supportRob Crittenden2010-07-291-0/+37
* Add separate role group for enrolling hosts, enrollhostRob Crittenden2010-06-221-0/+8
* Include missing update file 30-hbacsvc.updateRob Crittenden2010-05-271-0/+35
* Add ipaUniqueID to HBAC services and service groupsRob Crittenden2010-05-271-0/+1
* Re-number some attributes to compress our usage to be contiguousRob Crittenden2010-05-272-2/+1
* Use GSSAPI auth for the ipa-replica-manage list and del commands.Rob Crittenden2010-03-191-0/+37
* Set proper dn in default automount locationNalin Dahyabhai2010-02-231-1/+1
* Add default automount location. Auto-create auto.direct in new locations.Pavel Zuna2010-02-121-6/+10
* First pass at enforcing certificates be requested from same hostRob Crittenden2009-10-211-5/+37
* Fix ACI for host delegationRob Crittenden2009-10-171-2/+2
* Fix an oops where I forgot to replace a string with a templateRob Crittenden2009-10-171-6/+6
* Use nestedgroup instead of groupofnames for rolegroups so we have memberofRob Crittenden2009-10-121-50/+50
* Enrollment for a host in an IPA domainRob Crittenden2009-09-241-5/+26
* Implement support for non-LDAP-based actions that use the LDAP ACI subsystem.Rob Crittenden2009-07-101-0/+139
* Basic changes to get a default principal for DNSSimo Sorce2009-07-101-0/+20
* Fix quoting to work with new csv handler in ldapupdateRob Crittenden2009-05-192-112/+113
* Add taskgroup and ACI for writing host principal keys (so ipa-getkeytab works)Rob Crittenden2009-05-191-0/+15
* Fill in the ACIs and taskgroups for most of the plugins.Rob Crittenden2009-04-011-13/+311
* Name update files so they can be easily sorted.Rob Crittenden2009-03-2516-24/+162