diff options
| author | Martin Babinsky <mbabinsk@redhat.com> | 2016-09-01 18:14:22 +0200 |
|---|---|---|
| committer | Martin Babinsky <mbabinsk@redhat.com> | 2016-09-05 09:20:55 +0200 |
| commit | 4ca671788cc54a00de6a55a2529df6126da14d88 (patch) | |
| tree | 9ca41d1c4e1632306637704d2b361aa9f57136f3 /ipapython/secrets | |
| parent | c789b17b2e28ed9008fee076a0db72fe90f7e93f (diff) | |
| download | freeipa-4ca671788cc54a00de6a55a2529df6126da14d88.tar.gz freeipa-4ca671788cc54a00de6a55a2529df6126da14d88.tar.xz freeipa-4ca671788cc54a00de6a55a2529df6126da14d88.zip | |
Always fetch forest info from root DCs when establishing one-way trust
Prior To Windows Server 2012R2, the `netr_DsRGetForestTrustInformation` calls
performed against non-root forest domain DCs were automatically routed to
the root domain DCs to resolve trust topology information.
This is no longer the case, so the `com.redhat.idm.trust-fetch-domains` oddjob
helper used to establish one-way needs to explicitly contact root domain DCs
even in the case when an external trust to non-root domain is requested.
https://fedorahosted.org/freeipa/ticket/6057
Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
Diffstat (limited to 'ipapython/secrets')
0 files changed, 0 insertions, 0 deletions
