mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2025-02-25 18:55:28 -06:00
Remove --no-serial-autoincrement
Deprecate this option and do not offer it in installation tools. Without this option enabled, advanced DNS features like DNSSEC would not work. https://fedorahosted.org/freeipa/ticket/3962
This commit is contained in:
@@ -45,5 +45,5 @@ dynamic-db "ipa" {
|
||||
arg "auth_method sasl";
|
||||
arg "sasl_mech GSSAPI";
|
||||
arg "sasl_user DNS/$FQDN";
|
||||
arg "serial_autoincrement $SERIAL_AUTOINCREMENT";
|
||||
arg "serial_autoincrement yes";
|
||||
};
|
||||
|
||||
@@ -52,9 +52,6 @@ def parse_options():
|
||||
parser.add_option("--zonemgr", action="callback", callback=bindinstance.zonemgr_callback,
|
||||
type="string",
|
||||
help="DNS zone manager e-mail address. Defaults to hostmaster@DOMAIN")
|
||||
parser.add_option("--no-serial-autoincrement", dest="serial_autoincrement",
|
||||
default=True, action="store_false",
|
||||
help="Do not enable SOA serial autoincrement")
|
||||
parser.add_option("-U", "--unattended", dest="unattended", action="store_true",
|
||||
default=False, help="unattended installation never prompts the user")
|
||||
|
||||
@@ -209,8 +206,7 @@ def main():
|
||||
print ""
|
||||
|
||||
bind.setup(api.env.host, ip_address, api.env.realm, api.env.domain,
|
||||
dns_forwarders, conf_ntp, reverse_zone, zonemgr=options.zonemgr,
|
||||
serial_autoincrement=options.serial_autoincrement)
|
||||
dns_forwarders, conf_ntp, reverse_zone, zonemgr=options.zonemgr)
|
||||
bind.create_instance()
|
||||
|
||||
# Restart http instance to make sure that python-dns has the right resolver
|
||||
|
||||
@@ -212,9 +212,6 @@ def parse_options():
|
||||
help="Do not use DNS for hostname lookup during installation")
|
||||
dns_group.add_option("--no-dns-sshfp", dest="create_sshfp", default=True, action="store_false",
|
||||
help="Do not automatically create DNS SSHFP records")
|
||||
dns_group.add_option("--no-serial-autoincrement", dest="serial_autoincrement",
|
||||
default=True, action="store_false",
|
||||
help="Do not enable SOA serial autoincrement")
|
||||
parser.add_option_group(dns_group)
|
||||
|
||||
uninstall_group = OptionGroup(parser, "uninstall options")
|
||||
@@ -1181,7 +1178,6 @@ def main():
|
||||
bind = bindinstance.BindInstance(fstore, dm_password)
|
||||
bind.setup(host_name, ip_address, realm_name, domain_name, dns_forwarders,
|
||||
options.conf_ntp, reverse_zone, zonemgr=options.zonemgr,
|
||||
serial_autoincrement=options.serial_autoincrement,
|
||||
ca_configured=setup_ca)
|
||||
if options.setup_dns:
|
||||
api.Backend.ldap2.connect(bind_dn=DN(('cn', 'Directory Manager')), bind_pw=dm_password)
|
||||
|
||||
@@ -49,9 +49,6 @@ Do not create new reverse DNS zone. If used on a replica and a reverse DNS zone
|
||||
\fB\-\-zonemgr\fR
|
||||
The e\-mail address of the DNS zone manager. Defaults to hostmaster@DOMAIN
|
||||
.TP
|
||||
\fB\-\-no\-serial\-autoincrement\fR
|
||||
Do not enable SOA serial autoincrement feature. SOA serial will have to be updated automatically or other DNS features like zone transfer od DNSSEC will not function properly. This feature requires persistent search zone update mechanism.
|
||||
.TP
|
||||
\fB\-U\fR, \fB\-\-unattended\fR
|
||||
An unattended installation that will never prompt for user input
|
||||
.SH "EXIT STATUS"
|
||||
|
||||
@@ -151,9 +151,6 @@ Do not use DNS for hostname lookup during installation
|
||||
.TP
|
||||
\fB\-\-no\-dns\-sshfp\fR
|
||||
Do not automatically create DNS SSHFP records.
|
||||
.TP
|
||||
\fB\-\-no\-serial\-autoincrement\fR
|
||||
Do not enable SOA serial autoincrement feature. SOA serial will have to be updated automatically or other DNS features like zone transfer od DNSSEC will not function properly. This feature requires persistent search zone update mechanism.
|
||||
|
||||
.SS "UNINSTALL OPTIONS"
|
||||
.TP
|
||||
|
||||
Reference in New Issue
Block a user