mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2024-12-24 08:00:02 -06:00
Add fix for no-hbac-allow option in server install
This PR brings uniformity in option provided by no-hbac-allow and other options present in IPA server install script Fixes https://fedorahosted.org/freeipa/ticket/6357 Signed-off-by: Abhijeet Kasurde <akasurde@redhat.com> Reviewed-By: Stanislav Laznicka <slaznick@redhat.com> Reviewed-By: Jan Cholasta <jcholast@redhat.com> Reviewed-By: Tomas Krizek <tkrizek@redhat.com>
This commit is contained in:
parent
5710ecddca
commit
a420592280
@ -58,7 +58,7 @@ The starting user and group id number (default random)
|
||||
\fB\-\-idmax\fR=\fIIDMAX\fR
|
||||
The maximum user and group id number (default: idstart+199999). If set to zero, the default value will be used.
|
||||
.TP
|
||||
\fB\-\-no_hbac_allow\fR
|
||||
\fB\-\-no-hbac-allow\fR
|
||||
Don't install allow_all HBAC rule. This rule lets any user from any host access any service on any other host. It is expected that users will remove this rule before moving to production.
|
||||
.TP
|
||||
\fB\-\-ignore-topology-disconnect\fR
|
||||
|
@ -1288,7 +1288,8 @@ class Server(BaseServer):
|
||||
no_hbac_allow = Knob(
|
||||
bool, False,
|
||||
description="Don't install allow_all HBAC rule",
|
||||
cli_name='no_hbac_allow',
|
||||
cli_name='no-hbac-allow',
|
||||
cli_aliases=['no_hbac_allow'],
|
||||
)
|
||||
|
||||
ignore_topology_disconnect = Knob(
|
||||
|
Loading…
Reference in New Issue
Block a user