freeipa/ipaplatform/fedora
Christian Heimes 90a75f0d43 Use system-wide crypto-policies on Fedora
HTTPS connections from IPA framework and bind named instance now use
system-wide crypto-policies on Fedora.

For HTTPS the 'DEFAULT' crypto policy also includes unnecessary ciphers
for PSK, SRP, aDSS and 3DES. Since these ciphers are not used by freeIPA,
they are explicitly excluded.

See: https://bugzilla.redhat.com/show_bug.cgi?id=1179925
See: https://bugzilla.redhat.com/show_bug.cgi?id=1179220
Fixes: https://pagure.io/freeipa/issue/4853
Signed-off-by: Christian Heimes <cheimes@redhat.com>
Reviewed-By: Stanislav Laznicka <slaznick@redhat.com>
2018-02-20 17:01:52 +01:00
..
__init__.py Build: replace ipaplatform magic with symlinks generated by configure 2016-10-24 13:30:12 +02:00
constants.py Use system-wide crypto-policies on Fedora 2018-02-20 17:01:52 +01:00
paths.py Use system-wide crypto-policies on Fedora 2018-02-20 17:01:52 +01:00
services.py Break ipaplatform / ipalib import cycle of hell 2016-11-24 16:30:32 +01:00
tasks.py Split off generic Red Hat-like platform code from Fedora platform code 2014-10-09 15:37:24 +02:00