summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorTomas Babej <tbabej@redhat.com>2014-07-10 17:26:25 +0200
committerPetr Viktorin <pviktori@redhat.com>2014-07-18 10:08:04 +0200
commitb7a1401e9dd06c1c8b055295087907e33954a889 (patch)
tree54b60a3cb537164537fc827c388a0d017ec44369
parent9a0aae013393097de655b7c6d1e584b2c8a0a75b (diff)
downloadfreeipa-b7a1401e9dd06c1c8b055295087907e33954a889.tar.gz
freeipa-b7a1401e9dd06c1c8b055295087907e33954a889.tar.xz
freeipa-b7a1401e9dd06c1c8b055295087907e33954a889.zip
trusts: Make cn=adtrust agents sysaccount nestedgroup
Since recent permissions work references this entry, we need to be able to have memberOf attributes created on this entry. Hence we need to include the nestedgroup objectclass. https://fedorahosted.org/freeipa/ticket/4433 Reviewed-By: Jan Cholasta <jcholast@redhat.com>
-rw-r--r--install/updates/60-trusts.update1
1 files changed, 1 insertions, 0 deletions
diff --git a/install/updates/60-trusts.update b/install/updates/60-trusts.update
index d55bc94bb..9dabc806e 100644
--- a/install/updates/60-trusts.update
+++ b/install/updates/60-trusts.update
@@ -11,6 +11,7 @@ default: nsAccountLock: FALSE
default: ipaUniqueID: autogenerate
dn: cn=adtrust agents,cn=sysaccounts,cn=etc,$SUFFIX
+add: objectClass: nestedgroup
default: objectClass: GroupOfNames
default: objectClass: top
default: cn: adtrust agents