diff options
author | Martin Kosek <mkosek@redhat.com> | 2012-03-01 11:01:45 +0100 |
---|---|---|
committer | Rob Crittenden <rcritten@redhat.com> | 2012-02-29 21:26:53 -0500 |
commit | 61af2c9b1efe021fd6fac2c6c62160cde96ea3cb (patch) | |
tree | d6fb476f4d8f885d18c019632e5c342b863f0ae1 /ipaserver | |
parent | 5e01ed13255c972e2f63724a5f3be15474850ff4 (diff) | |
download | freeipa-61af2c9b1efe021fd6fac2c6c62160cde96ea3cb.tar.gz freeipa-61af2c9b1efe021fd6fac2c6c62160cde96ea3cb.tar.xz freeipa-61af2c9b1efe021fd6fac2c6c62160cde96ea3cb.zip |
Improve hostname verification in install tools
Our install tools like ipa-server-install, ipa-replica-{prepare,
install} may allow hostnames that do not match the requirements
in ipalib. This creates a disconnect and may cause issues when
user cannot delete hostnames created by install tools.
This patch makes sure that ipalib requirements are applied to
install tools hostnames as well.
https://fedorahosted.org/freeipa/ticket/2089
Diffstat (limited to 'ipaserver')
-rw-r--r-- | ipaserver/install/installutils.py | 7 |
1 files changed, 7 insertions, 0 deletions
diff --git a/ipaserver/install/installutils.py b/ipaserver/install/installutils.py index a9a3ec431..3e7ae41b5 100644 --- a/ipaserver/install/installutils.py +++ b/ipaserver/install/installutils.py @@ -34,6 +34,7 @@ from ConfigParser import SafeConfigParser from ipapython import ipautil, dnsclient, sysrestore from ipapython.ipa_log_manager import * +from ipalib.util import validate_hostname # Used to determine install status IPA_MODULES = ['httpd', 'kadmin', 'dirsrv', 'pki-cad', 'pkids', 'install', 'krb5kdc', 'ntpd', 'named', 'ipa_memcached'] @@ -159,6 +160,12 @@ def verify_fqdn(host_name, no_host_dns=False, local_hostname=True): if ipautil.valid_ip(host_name): raise BadHostError("IP address not allowed as a hostname") + try: + # make sure that the host name meets the requirements in ipalib + validate_hostname(host_name) + except ValueError, e: + raise BadHostError("Invalid hostname '%s', %s" % (host_name, unicode(e))) + if local_hostname: try: ex_name = socket.gethostbyaddr(host_name) |