mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2025-02-25 18:55:28 -06:00
ipa-kdb: set krbCanonicalName when creating new principals
Additionally, stop setting ipakrbprincipalalias attribute during principal creation. Part of https://fedorahosted.org/freeipa/ticket/3864 Reviewed-By: David Kupka <dkupka@redhat.com> Reviewed-By: Simo Sorce <ssorce@redhat.com>
This commit is contained in:
parent
3f93f80557
commit
7ed7a86511
@ -40,7 +40,6 @@
|
||||
static char *std_principal_attrs[] = {
|
||||
"krbPrincipalName",
|
||||
"krbCanonicalName",
|
||||
"ipaKrbPrincipalAlias",
|
||||
"krbUPEnabled",
|
||||
"krbPrincipalKey",
|
||||
"krbTicketPolicyReference",
|
||||
@ -89,7 +88,6 @@ static char *std_principal_obj_classes[] = {
|
||||
"krbprincipal",
|
||||
"krbprincipalaux",
|
||||
"krbTicketPolicyAux",
|
||||
"ipakrbprincipal",
|
||||
|
||||
NULL
|
||||
};
|
||||
@ -1755,7 +1753,7 @@ static krb5_error_code ipadb_principal_to_mods(krb5_context kcontext,
|
||||
if (kerr) {
|
||||
goto done;
|
||||
}
|
||||
kerr = ipadb_get_ldap_mod_str(imods, "ipaKrbPrincipalAlias",
|
||||
kerr = ipadb_get_ldap_mod_str(imods, "krbCanonicalName",
|
||||
principal, mod_op);
|
||||
if (kerr) {
|
||||
goto done;
|
||||
|
Loading…
Reference in New Issue
Block a user