Go to file
Alexander Bokovoy 48acb7d865
Processing of server roles should ignore errors.EmptyResult
When non-admin user issues a command that utilizes
api.Object.config.show_servroles_attributes(), some server roles might
return errors.EmptyResult, indicating that a role is not visible to this
identity.

Most of the callers to api.Object.config.show_servroles_attributes() do
not process errors.EmptyResult so it goes up to an API caller. In case
of Web UI it breaks retrieval of the initial configuration due to ipa
config-show failing completely rather than avoiding to show available
server roles.

Fixes: https://pagure.io/freeipa/issue/7452
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
Reviewed-By: Rob Crittenden <rcritten@redhat.com>
Reviewed-By: Christian Heimes <cheimes@redhat.com>
Reviewed-By: Stanislav Laznicka <slaznick@redhat.com>
2018-03-21 22:22:35 +01:00
asn1 fix minor spelling mistakes 2017-05-19 09:52:46 +02:00
client Fix some typos in man page 2018-03-21 08:41:34 +01:00
contrib Have all the scripts run in python 3 by default 2018-02-15 18:43:12 +01:00
daemons Log errors from NSS during FIPS OTP key import 2018-03-14 13:05:17 -04:00
doc Have all the scripts run in python 3 by default 2018-02-15 18:43:12 +01:00
init Move tmpfiles.d configuration handling back to spec file 2017-08-30 13:05:23 +02:00
install Fix some typos in man page 2018-03-21 08:41:34 +01:00
ipaclient vault: fix vault-retrieve to a file 2018-03-06 13:00:23 +01:00
ipalib ipa host-add: do not raise exception when reverse record not added 2018-02-23 14:39:34 +01:00
ipaplatform NSS: Force restore of SELinux context 2018-02-23 11:04:10 +01:00
ipapython Remove the Continuous installer class, it is unused 2018-03-19 17:38:41 +01:00
ipaserver Processing of server roles should ignore errors.EmptyResult 2018-03-21 22:22:35 +01:00
ipatests Fix for test TestInstallMasterReservedIPasForwarder 2018-03-20 10:44:22 +01:00
po Run API and ACI under Python 2 and 3 2018-02-15 09:41:30 +01:00
pypi Use namespace-aware meta importer for ipaplatform 2017-11-15 14:17:24 +01:00
util C compilation fixes and hardening 2017-03-01 10:38:01 +01:00
.freeipa-pr-ci.yaml prci: Bump ci-master-f27 template to 1.0.3 2018-03-15 09:26:56 +01:00
.git-commit-template git-commit-template: update ticket url to use pagure.io instead of fedorahosted.org 2017-03-28 13:10:08 +02:00
.gitignore Include npm related files into Makefile and .gitignore 2017-12-14 18:57:37 +01:00
.mailmap Update Contributors.txt 2017-02-23 10:16:44 +01:00
.test_runner_config_py3_temp.yaml travis-ci: collect logs from cmocka tests 2017-11-29 15:55:00 +02:00
.test_runner_config.yaml Make WebUI unit tests to generate results as JUnit 2018-03-16 14:26:48 +01:00
.tox-install.sh tox testing support for client wheel packages 2017-04-12 16:53:22 +02:00
.travis_run_task.sh Run tox tests for PyPI packages on Travis 2017-11-20 17:01:59 +01:00
.travis.yml Edit TravisCI conf files to run WebUI unit tests 2017-12-14 18:57:37 +01:00
.wheelconstraints.in Use pylint 1.7.5 with fix for bad python3 import 2017-12-19 13:28:06 +01:00
ACI.txt Add --password-expiration to allow admin to force user password expiration 2017-03-31 12:19:40 +02:00
API.txt Generate same API.txt under Python 2 and 3 2018-02-15 09:41:30 +01:00
autogen.sh build tweaks - use automake's foreign mode, avoid creating empty files to satisfy gnu mode - run autoreconf -f to ensure that everything matches 2010-11-29 11:39:55 -05:00
BUILD.txt Add make targets for fast linting and testing 2017-12-11 20:40:06 +01:00
configure.ac autoconf prefers Python 3 over 2 2018-03-15 12:57:00 +01:00
Contributors.txt Update Contributors.txt 2018-03-16 11:35:10 -04:00
COPYING Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
COPYING.openssl Add a clear OpenSSL exception. 2015-02-23 16:25:54 +01:00
freeipa.spec.in Require Dogtag PKI >= 10.6 2018-03-19 15:48:46 +01:00
ipa Have all the scripts run in python 3 by default 2018-02-15 18:43:12 +01:00
ipasetup.py.in Add python_requires to Python package metadata 2017-12-11 15:32:45 +01:00
make-doc Make an ipa-tests package 2013-06-17 19:22:50 +02:00
make-test Use pytest conftest.py and drop pytest.ini 2017-01-05 17:37:02 +01:00
makeaci Have all the scripts run in python 3 by default 2018-02-15 18:43:12 +01:00
makeapi Have all the scripts run in python 3 by default 2018-02-15 18:43:12 +01:00
Makefile.am Simplify Python package installation 2018-03-15 12:57:00 +01:00
Makefile.python.am Add PYTHON_INSTALL_EXTRA_OPTIONS and --install-layout=deb 2017-03-15 13:48:23 +01:00
makerpms.sh makerpms.sh: make git checkout optional 2017-08-18 11:46:13 +02:00
pylint_plugins.py Pylint 1.8.3 fixes 2018-03-19 10:58:48 +01:00
pylintrc LGTM: Name unused variable in loop 2018-01-09 07:53:28 +01:00
README.md README: Fix trailing whitespace 2017-07-21 09:47:36 +02:00
server.m4 ipa-extdom-extop: refactor nsswitch operations 2017-11-30 11:38:03 +02:00
tox.ini Make tox tests to generate results in JUnit XML 2018-03-20 14:42:49 +01:00
VERSION.m4 VERSION.m4: Set back to git snapshot 2018-03-16 14:20:33 -04:00
zanata.xml Zanata: exlude testing ipa.pot file 2016-11-21 14:47:47 +01:00

FreeIPA Server

FreeIPA allows Linux administrators to centrally manage identity, authentication and access control aspects of Linux and UNIX systems by providing simple to install and use command line and web based managment tools.

FreeIPA is built on top of well known Open Source components and standard protocols with a very strong focus on ease of management and automation of installation and configuration tasks.

FreeIPA can seamlessly integrate into an Active Directory environment via cross-realm Kerberos trust or user synchronization.

Benefits

FreeIPA:

  • Allows all your users to access all the machines with the same credentials and security settings
  • Allows users to access personal files transparently from any machine in an authenticated and secure way
  • Uses an advanced grouping mechanism to restrict network access to services and files only to specific users
  • Allows central management of security mechanisms like passwords, SSH Public Keys, SUDO rules, Keytabs, Access Control Rules
  • Enables delegation of selected administrative tasks to other power users
  • Integrates into Active Directory environments

Components

The FreeIPA project provides unified installation and management tools for the following components:

Project Website

Releases, announcements and other information can be found on the IPA server project page at http://www.freeipa.org/ .

Documentation

The most up-to-date documentation can be found at http://freeipa.org/page/Documentation .

Quick Start

To get started quickly, start here: http://www.freeipa.org/page/Quick_Start_Guide

For developers

Licensing

Please see the file called COPYING.

Contacts