Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | Add ipa man page. | Pavel Zuna | 2010-04-07 | 1 | -0/+1 |
| | |||||
* | Fix the client and client-rpms make targets | rcrit | 2010-03-19 | 1 | -2/+2 |
| | |||||
* | Don't create /var/log/ipa_error.log since we aren't using TurboGears any more. | Rob Crittenden | 2010-03-08 | 1 | -4/+4 |
| | |||||
* | Install Contributors.txt | John Dennis | 2010-03-04 | 1 | -6/+6 |
| | |||||
* | Make the CA a required component and configured by default. | Rob Crittenden | 2010-03-02 | 1 | -0/+1 |
| | | | | | | | | To install IPA without dogtag use the --selfsign option. The --ca option is now deprecated. 552995 | ||||
* | Fixed ipa.spec.in to include share/ipa/wsgi.py* | Jason Gerard DeRose | 2010-03-01 | 1 | -1/+4 |
| | |||||
* | Run ipaserver under mod_wsgi | Jason Gerard DeRose | 2010-03-01 | 1 | -0/+5 |
| | |||||
* | Add fix for wehjit (ctypes) SELinux problem | Jason Gerard DeRose | 2010-02-12 | 1 | -3/+6 |
| | |||||
* | Add support for building internationalized translations. | John Dennis | 2010-02-09 | 1 | -1/+5 |
| | | | | | | | | | | | A new directory install/po has been added which contains all the translations for all files in IPA. The build has been agumented to build these files. Also the autogen.sh script was mostly replaced by autoreconf, the preferred method. The old autogen.sh sript also had some serious bugs in the way it compared versions which caused it to run old versions of some of the tools, using standared autoreconf is much better. | ||||
* | Add ipa-dns-install script | Martin Nagy | 2010-02-09 | 1 | -0/+1 |
| | | | | Unfortunately, for now there is no --uninstall option. | ||||
* | Configure sssd and certmonger in ipa-client-install | Rob Crittenden | 2010-02-03 | 1 | -0/+5 |
| | | | | | | | | | | | This does a number of things under the hood: - Use authconfig to enable sssd in nss and pam - Configure /etc/sssd/sssd.conf to use our IPA provider - Enable the certmonger process and request a server cert - join the IPA domain and retrieve a principal. The clinet machine *must* exist in IPA to be able to do a join. - And then undo all this on uninstall | ||||
* | Update spec to require python-wehjit >= 0.2.0 | Jason Gerard DeRose | 2010-01-27 | 1 | -1/+4 |
| | |||||
* | Add DS migration plugin and password migration page. | Pavel Zuna | 2010-01-20 | 1 | -0/+6 |
| | |||||
* | Replace uses of %define with %global in the .spec file | Rob Crittenden | 2010-01-07 | 1 | -7/+7 |
| | | | | | | | Fixes rawhide builds per https://www.redhat.com/archives/fedora-devel-list/2010-January/msg00093.html Contributed by Nalin Dahyabhai | ||||
* | A utility for removing principals from a keytab. | Rob Crittenden | 2009-12-04 | 1 | -0/+5 |
| | | | | | | | | | | | | When we un-enroll a client we'll do a bit of cleanup including removing any principals for the IPA realm from /etc/krb5.keytab. This removes principals in 2 ways: - By principal, only entries matching the full principal are removed - By realm. Any principal for that realm is removed This does not change the KDC at all, just removes entries from a file on the client machine. | ||||
* | Set minimum of python-pyasn1 to 0.0.9a so we have support for the ASN.1 Any type | Rob Crittenden | 2009-12-02 | 1 | -1/+5 |
| | |||||
* | Replace /etc/ipa/ipa.conf with /etc/ipa/default.conf | Rob Crittenden | 2009-12-01 | 1 | -3/+6 |
| | | | | | | | The new framework uses default.conf instead of ipa.conf. This is useful also because Apache uses a configuration file named ipa.conf. This wipes out the last vestiges of the old ipa.conf from v1. | ||||
* | Add SELinux policy for CRL file publishing. | Rob Crittenden | 2009-11-26 | 1 | -0/+1 |
| | | | | | | | | | | This policy should really be provided by dogtag. We don't want to grant read/write access to everything dogtag can handle so we change the context to cert_t instead. But we have to let dogtag read/write that too hence this policy. To top it off we can't load this policy unless dogtag is also loaded so we insert it in the IPA installer | ||||
* | Bash tab completion script | Rob Crittenden | 2009-11-25 | 1 | -0/+11 |
| | |||||
* | Require current versions of python-nss & python-lxml | John Dennis | 2009-11-23 | 1 | -1/+2 |
| | | | | | | ipa.spec.in | 3 ++- ipapython/nsslib.py | 2 +- 2 files changed, 3 insertions(+), 2 deletions(-) | ||||
* | Add SELinux policy for UI assets | Rob Crittenden | 2009-11-04 | 1 | -3/+5 |
| | | | | | | | | This also removes the Index option of /ipa-assets as well as the deprecated IPADebug option. No need to build or install ipa_webgui anymore. Leaving in the code for reference purposes for now. | ||||
* | ipa-server-install now renders UI assets | Jason Gerard DeRose | 2009-11-04 | 1 | -0/+1 |
| | |||||
* | Add a separate client-only target | Rob Crittenden | 2009-10-17 | 1 | -4/+37 |
| | |||||
* | Giant webui patch take 2 | Jason Gerard DeRose | 2009-10-13 | 1 | -2/+6 |
| | |||||
* | Add man page for ipa-join command | Rob Crittenden | 2009-10-12 | 1 | -0/+1 |
| | |||||
* | No longer use the IPA-specific memberof plugin. Use the DS-supplied one. | Rob Crittenden | 2009-10-12 | 1 | -2/+0 |
| | |||||
* | Properly own (via ghost) the Apache configuration files. | Rob Crittenden | 2009-09-28 | 1 | -2/+6 |
| | |||||
* | Added BuildRequires: xmlrpc-c-devel | Jason Gerard DeRose | 2009-09-24 | 1 | -0/+1 |
| | |||||
* | Enrollment for a host in an IPA domain | Rob Crittenden | 2009-09-24 | 1 | -1/+4 |
| | | | | | | | | | | | | This will create a host service principal and may create a host entry (for admins). A keytab will be generated, by default in /etc/krb5.keytab If no kerberos credentails are available then enrollment over LDAPS is used if a password is provided. This change requires that openldap be used as our C LDAP client. It is much easier to do SSL using openldap than mozldap (no certdb required). Otherwise we'd have to write a slew of extra code to create a temporary cert database, import the CA cert, ... | ||||
* | Generate CRLs and make them available from the IPA web server | Rob Crittenden | 2009-08-26 | 1 | -2/+6 |
| | |||||
* | Move ipalib to the ipa-python subpackage and bump up min version of slapi-nis. | Rob Crittenden | 2009-05-21 | 1 | -2/+6 |
| | |||||
* | Own the Apache configuration files that ipa-server-install creates | Rob Crittenden | 2009-05-19 | 1 | -0/+6 |
| | |||||
* | New tool to enable/disable DS plugin to act as NIS server | Rob Crittenden | 2009-05-13 | 1 | -1/+6 |
| | |||||
* | Add python-nss as a dependency | Rob Crittenden | 2009-05-04 | 1 | -0/+4 |
| | |||||
* | Remove our copy of the DNA plugin and use the one that comes with DS. | Rob Crittenden | 2009-03-06 | 1 | -3/+4 |
| | | | | | The DS plugin does config checking when adding new entries online so we are dropping the Posix subtree. | ||||
* | Don't build radius by default | Rob Crittenden | 2009-03-04 | 1 | -7/+14 |
| | |||||
* | Add missing buildrequires | Jakub Hrozek | 2009-02-23 | 1 | -0/+2 |
| | |||||
* | Use OpenSSL for SSL instead of the built-in python version. | Rob Crittenden | 2009-02-20 | 1 | -0/+2 |
| | |||||
* | Rename ipa-python directory to ipapython so it is a real python library | Rob Crittenden | 2009-02-09 | 1 | -3/+3 |
| | | | | | We used to install it as ipa, now installing it as ipapython. The rpm is still ipa-python. | ||||
* | Replace TurboGears requirement with python-cherrypy Remove some ↵ | Rob Crittenden | 2009-02-06 | 1 | -45/+6 |
| | | | | commented-out files Move /usr/bin/ipa to admintools package | ||||
* | Complete consolidation into a single autogen.sh | Rob Crittenden | 2009-02-04 | 1 | -3/+3 |
| | |||||
* | Get merged tree into an installalble state. | Rob Crittenden | 2009-02-03 | 1 | -0/+637 |
I have only tested the all, rpms and *clean targets directly. install may work but the rpm moves a lot of things around for us. The Apache configuration file isn't in its final state but it works with the new mod_python configuration. |