Go to file
Thierry Bordaz 9345142c2b
389-ds-base crashed as part of ipa-server-intall in ipa-uuid
Bug Description:
	When adding an entry, ipa-uuid plugin may generate a unique value
	for some of its attribute.
	If the generated attribute is part of the RDN, the target DN
	is replaced on the fly and the previous one freed.
	Unfortunately, previous DN may be later used instead of
	the new one.

Fix Description:
	Make sure to use only the current DN of the operation

https://bugzilla.redhat.com/show_bug.cgi?id=1496226
https://pagure.io/freeipa/issue/7227

Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
2017-11-08 08:06:35 +01:00
asn1 fix minor spelling mistakes 2017-05-19 09:52:46 +02:00
client ipa-getkeytab man page: add more details about the -r option 2017-11-08 08:00:18 +01:00
contrib logging: do not reference loggers in arguments and attributes 2017-07-14 15:55:59 +02:00
daemons 389-ds-base crashed as part of ipa-server-intall in ipa-uuid 2017-11-08 08:06:35 +01:00
doc logging: do not reference loggers in arguments and attributes 2017-07-14 15:55:59 +02:00
init Move tmpfiles.d configuration handling back to spec file 2017-08-30 13:05:23 +02:00
install Add indexing to improve host-find performance 2017-11-07 16:49:36 +01:00
ipaclient x509: remove the strip_header() function 2017-11-01 07:55:04 +01:00
ipalib x509: remove subject_base() function 2017-11-01 07:55:04 +01:00
ipaplatform Remove caJarSigningCert profile and related code 2017-11-01 12:39:19 +01:00
ipapython Use os.path.isfile() and isdir() 2017-10-20 12:27:19 +02:00
ipaserver Add a notice to restart ipa services after certs are installed 2017-11-01 12:46:57 +01:00
ipatests caless tests: decode cert bytes in debug log 2017-11-08 07:58:46 +01:00
po fix minor spelling mistakes 2017-05-19 09:52:46 +02:00
pypi tox testing support for client wheel packages 2017-04-12 16:53:22 +02:00
util C compilation fixes and hardening 2017-03-01 10:38:01 +01:00
.freeipa-pr-ci.yaml prci: add external_ca test 2017-11-06 14:05:25 +01:00
.git-commit-template git-commit-template: update ticket url to use pagure.io instead of fedorahosted.org 2017-03-28 13:10:08 +02:00
.gitignore install: do not assume /etc/krb5.conf.d exists 2017-06-28 15:44:51 +02:00
.mailmap Update Contributors.txt 2017-02-23 10:16:44 +01:00
.test_runner_config_py3_temp.yaml travis: remove "fast" from "makecache fast" 2017-09-08 15:42:07 +02:00
.test_runner_config.yaml travis: remove "fast" from "makecache fast" 2017-09-08 15:42:07 +02:00
.tox-install.sh tox testing support for client wheel packages 2017-04-12 16:53:22 +02:00
.travis_run_task.sh travis: pep8 changes to pycodestyle 2017-10-25 09:59:28 +02:00
.travis.yml travis: pep8 changes to pycodestyle 2017-10-25 09:59:28 +02:00
.wheelconstraints.in Change the requirements for pylint in wheel 2017-09-08 15:42:07 +02:00
ACI.txt Add --password-expiration to allow admin to force user password expiration 2017-03-31 12:19:40 +02:00
API.txt parameters: introduce CertificateSigningRequest 2017-10-25 09:44:37 +02:00
autogen.sh build tweaks - use automake's foreign mode, avoid creating empty files to satisfy gnu mode - run autoreconf -f to ensure that everything matches 2010-11-29 11:39:55 -05:00
BUILD.txt Build: allow to build only py2 rpms for fedora 2017-06-20 12:36:29 +02:00
configure.ac Move tmpfiles.d configuration handling back to spec file 2017-08-30 13:05:23 +02:00
Contributors.txt Contributors.txt: update 2017-09-01 14:38:37 +02:00
COPYING Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
COPYING.openssl Add a clear OpenSSL exception. 2015-02-23 16:25:54 +01:00
freeipa.spec.in ipa-kdb: support KDB DAL version 7.0 2017-10-26 12:46:44 +02:00
ignore_import_errors.py makeapi, makeaci: do not fail on missing imports 2016-10-24 14:11:08 +02:00
ipa Use entry_points for ipa CLI 2017-04-11 13:29:50 +02:00
ipasetup.py.in Misc Python 3 fixes for ipaserver.secrets 2017-08-11 13:47:35 +02:00
make-doc Make an ipa-tests package 2013-06-17 19:22:50 +02:00
make-test Use pytest conftest.py and drop pytest.ini 2017-01-05 17:37:02 +01:00
makeaci config: provide defaults for xmlrpc_uri, ldap_uri and basedn 2017-07-04 12:06:33 +02:00
makeapi config: provide defaults for xmlrpc_uri, ldap_uri and basedn 2017-07-04 12:06:33 +02:00
Makefile.am WebUI: remove creating js/libs symlink from makefile 2017-08-30 16:15:57 +02:00
Makefile.python.am Add PYTHON_INSTALL_EXTRA_OPTIONS and --install-layout=deb 2017-03-15 13:48:23 +01:00
makerpms.sh makerpms.sh: make git checkout optional 2017-08-18 11:46:13 +02:00
pylint_plugins.py logging: do not reference loggers in arguments and attributes 2017-07-14 15:55:59 +02:00
pylintrc pylint: make unsupported-assignment-operation check local 2017-09-08 15:42:07 +02:00
README.md README: Fix trailing whitespace 2017-07-21 09:47:36 +02:00
server.m4 ipa-sam: use smbldap_set_bind_callback for Samba 4.7 or later 2017-07-11 15:21:35 +02:00
tox.ini Slim down dependencies 2017-05-09 17:17:29 +02:00
VERSION.m4 VERSION: set 4.6 git snapshot 2017-09-01 14:39:22 +02:00
zanata.xml Zanata: exlude testing ipa.pot file 2016-11-21 14:47:47 +01:00

FreeIPA Server

FreeIPA allows Linux administrators to centrally manage identity, authentication and access control aspects of Linux and UNIX systems by providing simple to install and use command line and web based managment tools.

FreeIPA is built on top of well known Open Source components and standard protocols with a very strong focus on ease of management and automation of installation and configuration tasks.

FreeIPA can seamlessly integrate into an Active Directory environment via cross-realm Kerberos trust or user synchronization.

Benefits

FreeIPA:

  • Allows all your users to access all the machines with the same credentials and security settings
  • Allows users to access personal files transparently from any machine in an authenticated and secure way
  • Uses an advanced grouping mechanism to restrict network access to services and files only to specific users
  • Allows central management of security mechanisms like passwords, SSH Public Keys, SUDO rules, Keytabs, Access Control Rules
  • Enables delegation of selected administrative tasks to other power users
  • Integrates into Active Directory environments

Components

The FreeIPA project provides unified installation and management tools for the following components:

Project Website

Releases, announcements and other information can be found on the IPA server project page at http://www.freeipa.org/ .

Documentation

The most up-to-date documentation can be found at http://freeipa.org/page/Documentation .

Quick Start

To get started quickly, start here: http://www.freeipa.org/page/Quick_Start_Guide

For developers

Licensing

Please see the file called COPYING.

Contacts