mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2025-02-25 18:55:28 -06:00
Enable automember for upgraded servers
automember functionality is depends on predefined data is in LDAP. Since we add it for fresh installs only, automember cannot be used for upgraded servers. Make sure that automember LDAP data is added during upgrade too. https://fedorahosted.org/freeipa/ticket/1992
This commit is contained in:
parent
216505d2a0
commit
9cdeabc778
22
install/updates/40-automember.update
Normal file
22
install/updates/40-automember.update
Normal file
@ -0,0 +1,22 @@
|
||||
# Add all supported automember LDAP objects
|
||||
dn: cn=Auto Membership Plugin,cn=plugins,cn=config
|
||||
addifnew: nsslapd-pluginConfigArea: 'cn=automember,cn=etc,$SUFFIX'
|
||||
|
||||
dn: cn=automember,cn=etc,$SUFFIX
|
||||
default: objectClass: top
|
||||
default: objectClass: nsContainer
|
||||
default: cn: automember
|
||||
|
||||
dn: cn=Hostgroup,cn=automember,cn=etc,$SUFFIX
|
||||
default: objectclass: autoMemberDefinition
|
||||
default: cn: Hostgroup
|
||||
default: autoMemberScope: cn=computers,cn=accounts,$SUFFIX
|
||||
default: autoMemberFilter: objectclass=ipaHost
|
||||
default: autoMemberGroupingAttr: member:dn
|
||||
|
||||
dn: cn=Group,cn=automember,cn=etc,$SUFFIX
|
||||
default: objectclass: autoMemberDefinition
|
||||
default: cn: Group
|
||||
default: autoMemberScope: cn=users,cn=accounts,$SUFFIX
|
||||
default: autoMemberFilter: objectclass=posixAccount
|
||||
default: autoMemberGroupingAttr: member:dn
|
@ -20,6 +20,7 @@ app_DATA = \
|
||||
21-replicas_container.update \
|
||||
40-delegation.update \
|
||||
40-dns.update \
|
||||
40-automember.update \
|
||||
45-roles.update \
|
||||
50-lockout-policy.update \
|
||||
50-groupuuid.update \
|
||||
|
Loading…
Reference in New Issue
Block a user