freeipa/install
David Kupka 157831a287 WebUI: cert login: Configure name of parameter used to pass username
Directive LookupUserByCertificateParamName tells mod_lookup_identity module the
name of GET parameter that is used to provide username in case certificate is
mapped to multiple user accounts.
Without this directive login with certificate that's mapped to multiple users
doesn't work.

https://pagure.io/freeipa/issue/6860

Reviewed-By: Florence Blanc-Renaud <frenaud@redhat.com>
2017-04-11 15:29:11 +02:00
..
certmonger renew agent, restart scripts: connect to LDAP after kinit 2017-04-07 18:53:15 +02:00
conf WebUI: cert login: Configure name of parameter used to pass username 2017-04-11 15:29:11 +02:00
html Build: remove incorrect use of MAINTAINERCLEANFILES 2016-11-16 09:12:07 +01:00
migration Set explicit confdir option for global contexts 2016-12-02 09:14:35 +01:00
oddjob Add a new user to run the framework code 2017-02-15 07:13:37 +01:00
restart_scripts renew agent, restart scripts: connect to LDAP after kinit 2017-04-07 18:53:15 +02:00
share Set "KDC:Disable Last Success" by default 2017-03-27 18:24:05 +02:00
tools ipa-ca-install man page: Add domain level 1 help 2017-03-31 12:16:58 +02:00
ui WebUI: Allow to add certs to certmapping with CERT LINES around 2017-03-27 18:48:51 +02:00
updates Upgrade: add gidnumber to trusted domain entry 2017-04-07 12:38:35 +02:00
wsgi Build: remove incorrect use of MAINTAINERCLEANFILES 2016-11-16 09:12:07 +01:00
Makefile.am Configure HTTPD to work via Gss-Proxy 2017-02-15 07:13:37 +01:00
README.schema Add some basic rules for adding new schema 2010-08-27 13:40:37 -04:00

Ground rules on adding new schema

Brand new schema, particularly when written specifically for IPA, should be
added in share/*.ldif. Any new files need to be explicitly loaded in
ipaserver/install/dsinstance.py. These simply get copied directly into
the new instance schema directory.

Existing schema (e.g. in an LDAP draft) may either be added as a separate
ldif in share or as an update in the updates directory. The advantage of
adding the schema as an update is if 389-ds ever adds the schema then the
installation won't fail due to existing schema failing to load during
bootstrap.

If the new schema requires a new container then this should be added
to install/bootstrap-template.ldif.