summaryrefslogtreecommitdiffstats
path: root/base/tps/shared
diff options
context:
space:
mode:
authorChristina Fu <cfu@redhat.com>2015-05-19 17:34:51 -0700
committerChristina Fu <cfu@redhat.com>2015-05-22 19:38:47 -0700
commitcb359cb37cf62d357f8c960c7dfb96aa1d537e53 (patch)
treed844668ecc981091091a0b6e27409f92cd947e42 /base/tps/shared
parent0bf9c6bc326de463f7ec35efb0ae448419ec579a (diff)
downloadpki-cb359cb37cf62d357f8c960c7dfb96aa1d537e53.tar.gz
pki-cb359cb37cf62d357f8c960c7dfb96aa1d537e53.tar.xz
pki-cb359cb37cf62d357f8c960c7dfb96aa1d537e53.zip
Ticket 1309 Recovering of a revoked cert erroneously reflects "active" in the token db cert entry
Diffstat (limited to 'base/tps/shared')
-rw-r--r--base/tps/shared/conf/CS.cfg.in33
1 files changed, 18 insertions, 15 deletions
diff --git a/base/tps/shared/conf/CS.cfg.in b/base/tps/shared/conf/CS.cfg.in
index 2f64b33e4..fb2f9d4f9 100644
--- a/base/tps/shared/conf/CS.cfg.in
+++ b/base/tps/shared/conf/CS.cfg.in
@@ -133,22 +133,25 @@ externalReg._000=#########################################
externalReg._001=#External Registration
externalReg._002=# Design: http://pki.fedoraproject.org/wiki/TPS_-_New_Recovery_Option:_External_Registration_DS
externalReg._003=#
-externalReg._004=# enable - is user external registration DB enabled?
-externalReg._005=# authId - auth id of the user external registration DB
-externalReg._006=# delegation.enable - is delegation enabled?
-externalReg._007=#
-externalReg._008=# default.tokenType - when set, defaults to it if not specified in user
-externalReg._009=# record
-externalReg._010=#
-externalReg._011=# format.loginRequest.enable - login required for format?
-externalReg._012=# 1. requires no login to format
-externalReg._013=# or
-externalReg._014=# 2. user record does not contain tokenType
-externalReg._015=#
-externalReg._016=# mappingResolver - when exists, tells whcih mappingResolver to use
-externalReg._017=# to map to the right keySet
-externalReg._018=#########################################
+externalReg._004=# allowRecoverInvalidCert.enable - defalut is allowed
+externalReg._005=# to recover invalid (revoked, expired, not-yet-valid certs)
+externalReg._006=# enable - is user external registration DB enabled?
+externalReg._007=# authId - auth id of the user external registration DB
+externalReg._008=# delegation.enable - is delegation enabled?
+externalReg._009=#
+externalReg._010=# default.tokenType - when set, defaults to it if not specified in user
+externalReg._011=# record
+externalReg._012=#
+externalReg._013=# format.loginRequest.enable - login required for format?
+externalReg._014=# 1. requires no login to format
+externalReg._015=# or
+externalReg._016=# 2. user record does not contain tokenType
+externalReg._017=#
+externalReg._018=# mappingResolver - when exists, tells whcih mappingResolver to use
+externalReg._019=# to map to the right keySet
+externalReg._020=#########################################
externalReg.authId=ldap1
+externalReg.allowRecoverInvalidCert.enable=true
externalReg.default.tokenType=externalRegAddToToken
externalReg.delegation.enable=false
externalReg.enable=false