summaryrefslogtreecommitdiffstats
path: root/ipalib
Commit message (Collapse)AuthorAgeFilesLines
* Introduce AlreadyGroupMember exception, raised when a member is attempted to ↵Pavel Zuna2009-04-221-0/+16
| | | | be re-added to a group.
* Add user plugin port with some bugs fixed to the new LDAP backend.Pavel Zuna2009-04-221-0/+405
|
* Add conditional (env.use_ldap2 is True) modifications required by new LDAP ↵Pavel Zuna2009-04-222-7/+19
| | | | backend.
* Add new env variables. 'container_dns' for DNS plugin, 'use_ldap2' for new ↵Pavel Zuna2009-04-221-0/+2
| | | | LDAP backend debugging.
* Finish work replacing the errors module with errors2Rob Crittenden2009-04-206-466/+194
| | | | | | Once this is committed we can start the process of renaming errors2 as errors. I thought that combinig this into one commit would be more difficult to review.
* Handle GSSAPI exceptions more gracefullyRob Crittenden2009-04-202-6/+107
|
* Make parentmap a autofill variable and add tests when parentmap is not passedRob Crittenden2009-04-131-0/+1
|
* Fill in default values for os and platformRob Crittenden2009-04-131-0/+18
|
* Add 'container_hbac' env variable.root2009-04-031-1/+1
|
* Implement an installer for the Dogtag certificate system.Rob Crittenden2009-04-031-0/+1
| | | | | | | | | | | | | | | The CA is currently not automatically installed. You have to pass in the --ca flag to install it. What works: - installation - unistallation - cert/ra plugins can issue and retrieve server certs What doesn't work: - self-signed CA is still created and issues Apache and DS certs - dogtag and python-nss not in rpm requires - requires that CS be in the "pre" install state from pkicreate
* Renamed remaining plugins still using f_* b_* conventionJason Gerard DeRose2009-04-0110-0/+0
|
* Implement a few new targets for ACIsRob Crittenden2009-03-251-8/+32
| | | | | Also switch to the StrEnum parameter type for some options so we let the framework do the enforcement
* Add a 'showall' command so one can pick from a list of tasks to add to a roleRob Crittenden2009-03-251-1/+35
|
* Use tuples instead of lists for class variablesRob Crittenden2009-03-253-4/+5
|
* Raise a more specific error when a user lacks the proper permissions.Rob Crittenden2009-03-252-4/+1
| | | | | The info part of the message will contain details on what permission failed on what attribute.
* Always print the dn first when printing an entryRob Crittenden2009-03-251-0/+3
|
* Add new type List that converts delimited values into a tupleRob Crittenden2009-03-202-1/+51
|
* Converted to use new baseclass, remove the one with the f_ prefixRob Crittenden2009-03-203-1254/+0
|
* Convert to use the new basegroup frameworkRob Crittenden2009-03-201-0/+272
|
* Convert to use the new basegroup frameworkRob Crittenden2009-03-201-0/+156
|
* Convert to use the new basegroup frameworkRob Crittenden2009-03-201-0/+208
|
* Modify the taskgroup plugin to use the new group baseclass and add testsRob Crittenden2009-03-201-159/+73
|
* New plugin to handle role groupsRob Crittenden2009-03-201-0/+85
| | | | | | Role groups will be part of the ACI system. It will let one create broad categories of permissions. Things like: helpdesk, user admin, group admin, whatever.
* Add generic base class that will most of the heavy lifting for groupsRob Crittenden2009-03-201-0/+422
|
* kw is supposed to contain just lower-case valuesRob Crittenden2009-03-191-1/+1
|
* kw is supposed to contain just lower-case valuesRob Crittenden2009-03-191-2/+2
|
* Update the ACI class to be more robust and the beginnings of an ACI pluginRob Crittenden2009-03-182-87/+602
| | | | | | The ACI plugin is really meant for developers to help manage the ACIs. It may or may not be shipped. If it is it will be disabled by default. It is very much a shoot-in-foot problem waiting to happen.
* Fix some minor issues in group and service pluginsRob Crittenden2009-03-172-5/+3
|
* Add taskgroups pluginRob Crittenden2009-03-171-0/+228
| | | | Taskgroups are what we grant permission to with the new ACI system.
* Fixed Executioner.execute() so that its 'name' argument doesn't conflict ↵Jason Gerard DeRose2009-03-131-4/+4
| | | | with a param called 'name' (which is a valid param name)
* Plugin to handle IPA configurationRob Crittenden2009-03-041-0/+137
|
* Set a minimum value for password policy integersRob Crittenden2009-03-041-6/+11
|
* Add maxvalue and minvalue kwargs and rules to Int and FloatRob Crittenden2009-03-031-2/+67
|
* Fix some netgroup issues related to not all groups being posixGroupsRob Crittenden2009-02-271-4/+4
|
* Update objectclasses for groups, by default not posix groups.Rob Crittenden2009-02-272-11/+67
| | | | | | This change depends on DS bugs 487574 and 487725. Groups cannot be promoted properly without these fixed. It will fail with an Object Class violation because gidNumber isn't set.
* Fixed broken autfill logic in cli.prompt_interactively()Jason Gerard DeRose2009-02-271-20/+22
|
* Enforce netgroup uniqueness, allow netgroups to be members of netgroupsRob Crittenden2009-02-271-5/+27
| | | | | When adding an entry, convert a constraint violation of "already exists" into a DuplicateEntry exception so the user gets a useful response
* Added tofiles command and some documentation to the automount pluginRob Crittenden2009-02-241-5/+133
|
* Fix multivalue params requiring default to be of type self.type instead of ↵Pavel Zuna2009-02-231-1/+4
| | | | tuple.
* Add ipalib.frontend.Command method to build an entry from params with ↵Pavel Zuna2009-02-232-5/+20
| | | | | | | | attribute=True. Often plugins need to build LDAP entries from params. This should make things a bit easier. Crud methods (Create, Retrieve, Update, Delete, Search) have attribute=True by default. And it also works for multivalue params.
* Use OpenSSL for SSL instead of the built-in python version.Rob Crittenden2009-02-201-3/+127
|
* raise exceptions in the proper formRob Crittenden2009-02-202-2/+2
|
* Utility function to get the local hostnameRob Crittenden2009-02-191-0/+11
|
* A new exception for requiring root, RootRequiredRob Crittenden2009-02-191-0/+16
|
* The start of machine joinRob Crittenden2009-02-191-0/+116
|
* Print out multi-valued values one per-line instead of comman-delimitedRob Crittenden2009-02-191-3/+3
|
* Add new users as a member of the default groupRob Crittenden2009-02-191-5/+11
|
* Add --all option to show/find, add default attrs to show, cleanup outputRob Crittenden2009-02-193-20/+32
|
* Removed 'Assert False' that was mistakingly left in cert.py; small cleanup ↵Jason Gerard DeRose2009-02-171-4/+2
| | | | in cert.py and ra.py imports
* Implemented more elegant way for entire plugin module to be conditionally ↵Jason Gerard DeRose2009-02-176-79/+133
| | | | skipped; updated cert.py and ra.py modules to use this