summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorJakub Hrozek <jhrozek@redhat.com>2016-08-16 21:15:28 +0200
committerJakub Hrozek <jhrozek@redhat.com>2016-10-03 15:32:19 +0200
commitba96228853da4981cc5c12904c52cd7242417d6d (patch)
treeb979bf72a67adcda3eb416969bf5e9e30e312aa2
parent5e17edfc899d4fffb15f8300d15e4412af0f2f7d (diff)
downloadsssd-ba96228853da4981cc5c12904c52cd7242417d6d.tar.gz
sssd-ba96228853da4981cc5c12904c52cd7242417d6d.tar.xz
sssd-ba96228853da4981cc5c12904c52cd7242417d6d.zip
CONFIG: List allowed secrets responder options
Related: https://fedorahosted.org/sssd/ticket/3207 Reviewed-by: Fabiano FidĂȘncio <fidencio@redhat.com>
-rw-r--r--src/config/cfg_rules.ini27
1 files changed, 27 insertions, 0 deletions
diff --git a/src/config/cfg_rules.ini b/src/config/cfg_rules.ini
index 023ceacc1..4d9acf8da 100644
--- a/src/config/cfg_rules.ini
+++ b/src/config/cfg_rules.ini
@@ -210,6 +210,33 @@ option = description
option = allowed_uids
option = user_attributes
+[rule/allowed_sec_options]
+validator = ini_allowed_options
+section_re = ^secrets\(/users/\([0-9]\+\)\?\)\?$
+
+option = timeout
+option = debug
+option = debug_level
+option = debug_timestamps
+option = debug_microseconds
+option = debug_to_files
+option = command
+option = reconnection_retries
+option = fd_limit
+option = client_idle_timeout
+option = description
+
+# Secrets service
+option = provider
+# Secrets service - proxy
+option = proxy_url
+option = auth_type
+option = auth_header_name
+option = auth_header_value
+option = forward_headers
+option = username
+option = password
+
[rule/allowed_domain_options]
validator = ini_allowed_options
section_re = ^domain/.*$