diff options
| author | Martin Babinsky <mbabinsk@redhat.com> | 2017-03-31 15:15:50 +0200 |
|---|---|---|
| committer | Jan Cholasta <jcholast@redhat.com> | 2017-04-28 08:38:12 +0000 |
| commit | 2374b648d0dfd08ec4cfbcc35f7987fa8b8a6ffa (patch) | |
| tree | de934cd59930885e27652fb4c037124c706811bd /ipaserver | |
| parent | 68c6a4d4e1340ce01bdc7ec5dd394604a3da7688 (diff) | |
| download | freeipa-2374b648d0dfd08ec4cfbcc35f7987fa8b8a6ffa.tar.gz freeipa-2374b648d0dfd08ec4cfbcc35f7987fa8b8a6ffa.tar.xz freeipa-2374b648d0dfd08ec4cfbcc35f7987fa8b8a6ffa.zip | |
Use local anchor when armoring password requests
https://pagure.io/freeipa/issue/6830
Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
Reviewed-By: Jan Cholasta <jcholast@redhat.com>
Reviewed-By: Martin Basti <mbasti@redhat.com>
Reviewed-By: Simo Sorce <ssorce@redhat.com>
Diffstat (limited to 'ipaserver')
| -rw-r--r-- | ipaserver/rpcserver.py | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/ipaserver/rpcserver.py b/ipaserver/rpcserver.py index 77ed7e124..161872450 100644 --- a/ipaserver/rpcserver.py +++ b/ipaserver/rpcserver.py @@ -944,7 +944,7 @@ class login_password(Backend, KerberosSession): self.debug('Obtaining armor in ccache %s', armor_path) try: - kinit_armor(armor_path) + kinit_armor(armor_path, pkinit_anchor=paths.CACERT_PEM) except RuntimeError as e: self.error("Failed to obtain armor cache") # We try to continue w/o armor, 2FA will be impacted |
