freeipa/ipa-server
Rob Crittenden 5a96618f5d Use file to store the current CA serial number
No longer create a PKCS#12 file that contains the CA
No longer send the entire CA to each replica, generate the SSL certs on master
Fix number of bugs in ipa-replica-install and prepare
Produce status output during replica creation
2008-02-05 12:23:53 -05:00
..
ipa-gui Use orig_user_dict to get krbprincipalname when changing passwords. 2008-01-31 17:38:21 -05:00
ipa-install Use file to store the current CA serial number 2008-02-05 12:23:53 -05:00
ipa-kpasswd Fix issues reported by rpmlint. 2008-01-18 16:20:36 -05:00
ipa-slapi-plugins Support getting in a principal with out the REALM part 2007-12-21 15:18:43 -05:00
ipaserver Use file to store the current CA serial number 2008-02-05 12:23:53 -05:00
xmlrpc-server Fix issues reported by rpmlint. 2008-01-18 16:20:36 -05:00
.hgignore Autotool ipa-server - patch from William Jon McCann <mccann@jhu.edu>. 0001-01-01 00:00:00 +00:00
AUTHORS Fix build from autoconf patch import. 0001-01-01 00:00:00 +00:00
autogen.sh Fix autogen.sh to correctly compare versions and removed .la files from packages. 0001-01-01 00:00:00 +00:00
configure.ac Finishe removing previous code to fetch keytabs 2007-12-21 12:31:31 -05:00
ipa-server.spec Marked with wrong license. IPA is GPLv2. 2008-01-31 16:49:01 -05:00
ipa-server.spec.in Marked with wrong license. IPA is GPLv2. 2008-01-31 16:49:01 -05:00
Makefile.am Enable server-side sessions. It is currently using files for sessions. 2008-01-23 09:45:46 -05:00
NEWS Fix build from autoconf patch import. 0001-01-01 00:00:00 +00:00
README Add a copy of the LICENSE and populate some README's 2008-01-23 10:30:18 -05:00

IPA uses Kerberos with an LDAP storage backend and some custom plugins
to help manage users and passwords.

A UI interface is provided to make user administration and self-service
possible. A set of command-line utilities that should provide the same
capabilities is in ipa-admintools.

Firefox
-------

The Gecko engine provides an interface for managing a user's configuration
in Javascript. Naturally this is highly protected and the user gets an
appropriately dire warning when you try to do this. It also requires 
signed javascript.

During installation a signing certificate is created that creates
and signs /usr/share/ipa/html/configure.jar which contains the javascript
to update the browser configuration. User's are directed to go to
/errors/preferencs.html to load this javascript and apply the changes.