freeipa/ipaserver
Jan Cholasta dea924ac8a replica install: do not set CA renewal master flag
The CA renewal master flag was uncoditionally set on every replica during
replica install. This causes the Dogtag certificates initially shared
among all replicas to differ after renewal.

Do not set the CA renewal master flag in replica install anymore. On
upgrade, remove the flag from all but one IPA masters.

https://fedorahosted.org/freeipa/ticket/5902

Reviewed-By: Martin Babinsky <mbabinsk@redhat.com>
2016-05-24 14:54:01 +02:00
..
advise advise: configure TLS in redhat_nss_pam_ldapd and redhat_nss_ldap plugins 2016-03-01 13:05:20 +01:00
install replica install: do not set CA renewal master flag 2016-05-24 14:54:01 +02:00
plugins Added exception handling for mal-formatted XML Parsing 2016-05-11 14:51:56 +02:00
__init__.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
dcerpc.py Pylint: import max one module per line 2016-03-22 10:20:51 +01:00
rpcserver.py Added fix for notifying user about locked user account in WebUI 2016-04-28 17:04:37 +02:00