summaryrefslogtreecommitdiffstats
path: root/ipapython/errors.py
diff options
context:
space:
mode:
authorPetr Spacek <pspacek@redhat.com>2015-11-26 15:19:03 +0100
committerMartin Basti <mbasti@redhat.com>2016-01-07 14:13:23 +0100
commit21e6cc6863a0bf7d832cf04dedfc3a2bdd22a78f (patch)
treeae98896cbb102970a502db6f3c99307c8ce2dcaf /ipapython/errors.py
parent9ff1c0ac297cba8c0d5a87f6ecfa7d41169476c0 (diff)
downloadfreeipa-21e6cc6863a0bf7d832cf04dedfc3a2bdd22a78f.tar.gz
freeipa-21e6cc6863a0bf7d832cf04dedfc3a2bdd22a78f.tar.xz
freeipa-21e6cc6863a0bf7d832cf04dedfc3a2bdd22a78f.zip
DNSSEC: Make sure that current key state in LDAP matches key state in BIND
We have to explicitly specify "none" value to prevent dnssec-keyfromlabel utility from using current time for keys without "publish" and "activate" timestamps. Previously this lead to situation where key was in (intermediate) state "generated" in OpenDNSSEC but BIND started to use this key for signing. https://fedorahosted.org/freeipa/ticket/5348 Reviewed-By: Martin Basti <mbasti@redhat.com>
Diffstat (limited to 'ipapython/errors.py')
0 files changed, 0 insertions, 0 deletions