freeipa/tests
Rob Crittenden 9cc0754b71 Add option to limit the attributes allowed in an entry.
Kerberos ticket policy can update policy in a user entry. This allowed
set/addattr to be used to modify attributes outside of the ticket policy
perview, also bypassing all validation/normalization. Likewise the
ticket policy was updatable by the user plugin bypassing all validation.

Add two new LDAPObject values to control this behavior:

limit_object_classes: only attributes in these are allowed
disallow_object_classes: attributes in these are disallowed

By default both of these lists are empty so are skipped.

ticket 744
2011-05-27 13:51:37 -04:00
..
test_cmdline Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
test_install Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
test_ipalib Final i18n unit test fixes. 2011-03-01 10:31:43 -05:00
test_ipaserver Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
test_pkcs10 Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
test_xmlrpc Add option to limit the attributes allowed in an entry. 2011-05-27 13:51:37 -04:00
__init__.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
data.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
test_util.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
util.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00