mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2025-02-25 18:55:28 -06:00
Only call add_agent_to_security_domain_admins() when CA is installed
This allows the RA agent to manage the pki security domain and is only needed if a CA has been configured. Only call it in a CA-ful installation. https://pagure.io/freeipa/issue/8956 Signed-off-by: Rob Crittenden <rcritten@redhat.com> Reviewed-By: Francois Cami <fcami@redhat.com> Reviewed-By: Florence Blanc-Renaud <frenaud@redhat.com>
This commit is contained in:
@@ -1843,11 +1843,11 @@ def upgrade_configuration():
|
||||
ca.setup_acme()
|
||||
ca_update_acme_configuration(ca, fqdn)
|
||||
ca_initialize_hsm_state(ca)
|
||||
add_agent_to_security_domain_admins()
|
||||
|
||||
migrate_to_authselect()
|
||||
add_systemd_user_hbac()
|
||||
add_admin_root_alias()
|
||||
add_agent_to_security_domain_admins()
|
||||
|
||||
sssd_update()
|
||||
|
||||
|
||||
Reference in New Issue
Block a user