From cfa23b1c2a421e795095c4b40c21e53d5090dce0 Mon Sep 17 00:00:00 2001 From: Simo Sorce Date: Wed, 12 Jan 2011 10:33:36 -0500 Subject: Allow using Kerberos credentials with the 'connect' command Now that we can setup GSSAPI authenticated replication we are not tied to use the Directory Manager password to set up replication agreements. Fixes: https://fedorahosted.org/freeipa/ticket/644 --- install/share/replica-acis.ldif | 2 +- install/tools/ipa-replica-manage | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) (limited to 'install') diff --git a/install/share/replica-acis.ldif b/install/share/replica-acis.ldif index 11c785726..2acbd92dc 100644 --- a/install/share/replica-acis.ldif +++ b/install/share/replica-acis.ldif @@ -3,7 +3,7 @@ dn: cn="$SUFFIX",cn=mapping tree,cn=config changetype: modify add: aci -aci: (targetattr=*)(targetfilter="(|(objectclass=nsds5replicationagreement)(objectclass=nsDSWindowsReplicationAgreement))")(version 3.0;acl "Add Replication Agreements";allow (add) groupdn = "ldap:///cn=addreplica,cn=permissions,cn=pbac,$SUFFIX";) +aci: (targetattr=*)(version 3.0;acl "Add Replication Agreements";allow (add) groupdn = "ldap:///cn=addreplica,cn=permissions,cn=pbac,$SUFFIX";) dn: cn="$SUFFIX",cn=mapping tree,cn=config changetype: modify diff --git a/install/tools/ipa-replica-manage b/install/tools/ipa-replica-manage index 0fd06fd26..809745457 100755 --- a/install/tools/ipa-replica-manage +++ b/install/tools/ipa-replica-manage @@ -368,7 +368,7 @@ def main(): if options.dirman_passwd: dirman_passwd = options.dirman_passwd else: - if not test_connection(realm, host) or args[0] == "connect": + if not test_connection(realm, host): dirman_passwd = getpass.getpass("Directory Manager password: ") options.dirman_passwd = dirman_passwd -- cgit