Add fix for no-hbac-allow option in server install

This PR brings uniformity in option provided by no-hbac-allow
and other options present in IPA server install script

Fixes https://fedorahosted.org/freeipa/ticket/6357

Signed-off-by: Abhijeet Kasurde <akasurde@redhat.com>
Reviewed-By: Stanislav Laznicka <slaznick@redhat.com>
Reviewed-By: Jan Cholasta <jcholast@redhat.com>
Reviewed-By: Tomas Krizek <tkrizek@redhat.com>
This commit is contained in:
Abhijeet Kasurde 2016-09-26 15:50:44 +05:30 committed by Martin Basti
parent 5710ecddca
commit a420592280
2 changed files with 3 additions and 2 deletions

View File

@ -58,7 +58,7 @@ The starting user and group id number (default random)
\fB\-\-idmax\fR=\fIIDMAX\fR
The maximum user and group id number (default: idstart+199999). If set to zero, the default value will be used.
.TP
\fB\-\-no_hbac_allow\fR
\fB\-\-no-hbac-allow\fR
Don't install allow_all HBAC rule. This rule lets any user from any host access any service on any other host. It is expected that users will remove this rule before moving to production.
.TP
\fB\-\-ignore-topology-disconnect\fR

View File

@ -1288,7 +1288,8 @@ class Server(BaseServer):
no_hbac_allow = Knob(
bool, False,
description="Don't install allow_all HBAC rule",
cli_name='no_hbac_allow',
cli_name='no-hbac-allow',
cli_aliases=['no_hbac_allow'],
)
ignore_topology_disconnect = Knob(