Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | Remove all services when a host is removed Revoke certificate (if any) when ↵ | Rob Crittenden | 2009-05-13 | 2 | -14/+35 | |
| | | | | a service is removed | |||||
* | Improve revocation_reason argument | Rob Crittenden | 2009-05-13 | 1 | -1/+8 | |
| | ||||||
* | Add a reason to the NotFound exception so we can provide more robust errors | Rob Crittenden | 2009-05-13 | 6 | -12/+12 | |
| | ||||||
* | Force xmlrpc tests to run with in_tree=True so config files in /etc/ipa/ ↵ | Jason Gerard DeRose | 2009-05-11 | 3 | -46/+83 | |
| | | | | don't get read; cleaned up config.Env automagic with regard to running in-tree vs. installed | |||||
* | We decided not to issue a certificate on join | Rob Crittenden | 2009-05-07 | 1 | -53/+2 | |
| | ||||||
* | Store the new certificate in a service record. Clean up some argument names ↵ | Rob Crittenden | 2009-05-07 | 1 | -15/+67 | |
| | | | | to match the current standard. | |||||
* | Make MalformedServicePrincipal take a reason arg and add Base64DecodeError | Rob Crittenden | 2009-05-06 | 1 | -3/+19 | |
| | ||||||
* | Add validator and normalizer for service principals Add --certificate ↵ | Rob Crittenden | 2009-05-06 | 1 | -37/+98 | |
| | | | | argument Update default objectclasses Use the crud.Search method for service-find | |||||
* | Some minor cosmetic changes | Rob Crittenden | 2009-05-04 | 1 | -2/+4 | |
| | ||||||
* | When reading a password, if there is no tty, read from stdin instead. | Rob Crittenden | 2009-05-04 | 1 | -2/+14 | |
| | | | | | | This will allow one to pipe a password in: echo -e "secret123\secret123\n" | ipa password someuser | |||||
* | Add posixGroup to the objectclass list if gidnumber is set | Rob Crittenden | 2009-05-04 | 1 | -5/+13 | |
| | | | | 498335 | |||||
* | Issue an SSL server cert when joining the IPA domain | Rob Crittenden | 2009-05-04 | 1 | -17/+30 | |
| | ||||||
* | A class for dealing with a temporary NSS certificate database | Rob Crittenden | 2009-05-04 | 1 | -7/+45 | |
| | ||||||
* | Add DNS management plugin port to the new ldap backend. | Pavel Zuna | 2009-04-30 | 1 | -0/+797 | |
| | ||||||
* | Change help interface to display builtin commands and a list of topics based ↵ | Pavel Zuna | 2009-04-30 | 1 | -20/+77 | |
| | | | | on plugin modules. | |||||
* | Use right attribute name for e-mail in user2 plugin. | Pavel Zuna | 2009-04-30 | 1 | -2/+2 | |
| | ||||||
* | Add missing required attribute, nisdomainname | Rob Crittenden | 2009-04-30 | 1 | -0/+16 | |
| | ||||||
* | Use correct attribute for e-mail address | Rob Crittenden | 2009-04-29 | 1 | -1/+1 | |
| | | | | Resolves 498269 | |||||
* | Fixed cli.run() catching SystemExit exception under Python2.4 | Jason Gerard DeRose | 2009-04-28 | 1 | -1/+1 | |
| | | | | Resolves BZ #498088 | |||||
* | trivial update to standardize terms in docstring | David O'Brien | 2009-04-28 | 1 | -1/+1 | |
| | ||||||
* | Import the RequiresRoot error and make note to replace this at some point | Rob Crittenden | 2009-04-24 | 1 | -1/+1 | |
| | ||||||
* | Rename errors2.py to errors.py. Modify all affected files. | Pavel Zuna | 2009-04-23 | 19 | -75/+75 | |
| | ||||||
* | Make LDAP entry output slightly nicer, don't print u's in front of unicode ↵ | Pavel Zuna | 2009-04-23 | 1 | -7/+23 | |
| | | | | strings etc. | |||||
* | Introduce AlreadyGroupMember exception, raised when a member is attempted to ↵ | Pavel Zuna | 2009-04-22 | 1 | -0/+16 | |
| | | | | be re-added to a group. | |||||
* | Add user plugin port with some bugs fixed to the new LDAP backend. | Pavel Zuna | 2009-04-22 | 1 | -0/+405 | |
| | ||||||
* | Add conditional (env.use_ldap2 is True) modifications required by new LDAP ↵ | Pavel Zuna | 2009-04-22 | 2 | -7/+19 | |
| | | | | backend. | |||||
* | Add new env variables. 'container_dns' for DNS plugin, 'use_ldap2' for new ↵ | Pavel Zuna | 2009-04-22 | 1 | -0/+2 | |
| | | | | LDAP backend debugging. | |||||
* | Finish work replacing the errors module with errors2 | Rob Crittenden | 2009-04-20 | 6 | -466/+194 | |
| | | | | | | Once this is committed we can start the process of renaming errors2 as errors. I thought that combinig this into one commit would be more difficult to review. | |||||
* | Handle GSSAPI exceptions more gracefully | Rob Crittenden | 2009-04-20 | 2 | -6/+107 | |
| | ||||||
* | Make parentmap a autofill variable and add tests when parentmap is not passed | Rob Crittenden | 2009-04-13 | 1 | -0/+1 | |
| | ||||||
* | Fill in default values for os and platform | Rob Crittenden | 2009-04-13 | 1 | -0/+18 | |
| | ||||||
* | Add 'container_hbac' env variable. | root | 2009-04-03 | 1 | -1/+1 | |
| | ||||||
* | Implement an installer for the Dogtag certificate system. | Rob Crittenden | 2009-04-03 | 1 | -0/+1 | |
| | | | | | | | | | | | | | | | The CA is currently not automatically installed. You have to pass in the --ca flag to install it. What works: - installation - unistallation - cert/ra plugins can issue and retrieve server certs What doesn't work: - self-signed CA is still created and issues Apache and DS certs - dogtag and python-nss not in rpm requires - requires that CS be in the "pre" install state from pkicreate | |||||
* | Renamed remaining plugins still using f_* b_* convention | Jason Gerard DeRose | 2009-04-01 | 10 | -0/+0 | |
| | ||||||
* | Implement a few new targets for ACIs | Rob Crittenden | 2009-03-25 | 1 | -8/+32 | |
| | | | | | Also switch to the StrEnum parameter type for some options so we let the framework do the enforcement | |||||
* | Add a 'showall' command so one can pick from a list of tasks to add to a role | Rob Crittenden | 2009-03-25 | 1 | -1/+35 | |
| | ||||||
* | Use tuples instead of lists for class variables | Rob Crittenden | 2009-03-25 | 3 | -4/+5 | |
| | ||||||
* | Raise a more specific error when a user lacks the proper permissions. | Rob Crittenden | 2009-03-25 | 2 | -4/+1 | |
| | | | | | The info part of the message will contain details on what permission failed on what attribute. | |||||
* | Always print the dn first when printing an entry | Rob Crittenden | 2009-03-25 | 1 | -0/+3 | |
| | ||||||
* | Add new type List that converts delimited values into a tuple | Rob Crittenden | 2009-03-20 | 2 | -1/+51 | |
| | ||||||
* | Converted to use new baseclass, remove the one with the f_ prefix | Rob Crittenden | 2009-03-20 | 3 | -1254/+0 | |
| | ||||||
* | Convert to use the new basegroup framework | Rob Crittenden | 2009-03-20 | 1 | -0/+272 | |
| | ||||||
* | Convert to use the new basegroup framework | Rob Crittenden | 2009-03-20 | 1 | -0/+156 | |
| | ||||||
* | Convert to use the new basegroup framework | Rob Crittenden | 2009-03-20 | 1 | -0/+208 | |
| | ||||||
* | Modify the taskgroup plugin to use the new group baseclass and add tests | Rob Crittenden | 2009-03-20 | 1 | -159/+73 | |
| | ||||||
* | New plugin to handle role groups | Rob Crittenden | 2009-03-20 | 1 | -0/+85 | |
| | | | | | | Role groups will be part of the ACI system. It will let one create broad categories of permissions. Things like: helpdesk, user admin, group admin, whatever. | |||||
* | Add generic base class that will most of the heavy lifting for groups | Rob Crittenden | 2009-03-20 | 1 | -0/+422 | |
| | ||||||
* | kw is supposed to contain just lower-case values | Rob Crittenden | 2009-03-19 | 1 | -1/+1 | |
| | ||||||
* | kw is supposed to contain just lower-case values | Rob Crittenden | 2009-03-19 | 1 | -2/+2 | |
| | ||||||
* | Update the ACI class to be more robust and the beginnings of an ACI plugin | Rob Crittenden | 2009-03-18 | 2 | -87/+602 | |
| | | | | | | The ACI plugin is really meant for developers to help manage the ACIs. It may or may not be shipped. If it is it will be disabled by default. It is very much a shoot-in-foot problem waiting to happen. |