mirror of
https://salsa.debian.org/freeipa-team/freeipa.git
synced 2024-12-25 08:21:05 -06:00
a92328452d
Service Constraints are the delegation model used by ipa-kdb to grant service A to obtain a TGT for a user against service B. https://fedorahosted.org/freeipa/ticket/3644 Reviewed-By: Martin Basti <mbasti@redhat.com>
20 lines
904 B
Plaintext
20 lines
904 B
Plaintext
# Expand attributes checked by Referential Integrity plugin
|
|
# pres and eq indexes defined in 20-indices.update must be set for all these
|
|
# attributes
|
|
# NOTE: migration to new style is done in update_referint.py
|
|
dn: cn=referential integrity postoperation,cn=plugins,cn=config
|
|
add: referint-membership-attr: manager
|
|
add: referint-membership-attr: secretary
|
|
add: referint-membership-attr: memberuser
|
|
add: referint-membership-attr: memberhost
|
|
add: referint-membership-attr: sourcehost
|
|
add: referint-membership-attr: memberservice
|
|
add: referint-membership-attr: managedby
|
|
add: referint-membership-attr: memberallowcmd
|
|
add: referint-membership-attr: memberdenycmd
|
|
add: referint-membership-attr: ipasudorunas
|
|
add: referint-membership-attr: ipasudorunasgroup
|
|
add: referint-membership-attr: ipatokenradiusconfiglink
|
|
add: referint-membership-attr: ipaassignedidview
|
|
add: referint-membership-attr: ipaallowedtarget
|