- 
    Wed Nov 10 2021 David Sloboda <david.x.sloboda@oracle.com> - 4.9.6-6.0.1
    
- Set IPAPLATFORM=rhel when build on Oracle Linux [Orabug: 29516674]
   
  
  - 
    Fri Sep 17 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.6-6
    
- Don't store entries with a usercertificate in the LDAP cache
  Resolves: RHBZ#1999893
   
  
  - 
    Mon Sep 13 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.6-5
    
- Catch and log errors when adding CA profiles
  Resolves: RHBZ#1999142
- selinux policy: allow custodia to access /proc/cpuinfo
  Resolves: RHBZ#1998129
- extdom: LDAP_INVALID_SYNTAX returned instead of LDAP_NO_SUCH_OBJECT
  Resolves: RHBZ#2000263
- ipa migrate-ds command fails to warn when compat plugin is enabled
  Resolves: RHBZ#1999992
- Backport latest test fixes in python3-ipatests
  Resolves: RHBZ#2000553
   
  
  - 
    Thu Jul 22 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.6-4
    
- ipatests: NAMED_CRYPTO_POLICY_FILE not defined for RHEL
  Resolves: RHBZ#1982956
   
  
  - 
    Thu Jul 15 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.6-3
    
- man page: update ipa-server-upgrade.1
  Resolves: RHBZ#1973273
- Fall back to krbprincipalname when validating host auth indicators
  Resolves: RHBZ#1979625
- Add dependency for sssd-winbind-idmap to server-trust-ad
  Resolves: RHBZ#1982211
   
  
  - 
    Thu Jul 08 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.6-2
    
- IPA server in debug mode fails to run because time.perf_counter_ns is
  Python 3.7+
  Resolves: RHBZ#1974822
- Add checks to prevent assigning authentication indicators to internal IPA
  services
  Resolves: RHBZ#1979625
- Unable to set ipaUserAuthType with stageuser-add
  Resolves: RHBZ#1979605
   
  
  - 
    Thu Jul 01 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.6-1
    
- Upstream release FreeIPA 4.9.6
  Related: RHBZ#1945038
- Revise PKINIT upgrade code
  Resolves: RHBZ#1886837
- ipa-cert-fix man page: add note about certmonger renewal
  Resolves: RHBZ#1780317
- Certificate Serial Number issue
  Resolves: RHBZ#1919384
   
  
  - 
    Mon Jun 14 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.5-1
    
- Upstream release FreeIPA 4.9.5
  Related: RHBZ#1945038
- IPA to allow setting a new range type
  Resolves: RHBZ#1688267
- ipa-server-install displays debug output when --debug output is not
  specified.
  Resolves: RHBZ#1943151
- ACME fails to generate a cert on migrated RHEL8.4 server
  Resolves: RHBZ#1934991
- Switch ipa-client to use the JSON API
  Resolves: RHBZ#1937856
- IDM - Allow specifying permanent logging settings for BIND
  Resolves: RHBZ#1951511
- Cache LDAP data within a request
  Resolves: RHBZ#1953656
- ipa-server-upgrade is failing while upgrading rhel8.3 to rhel8.4
  Resolves: RHBZ#1957768
   
  
  - 
    Wed Mar 31 2021 Thomas Woerner <twoerner@redhat.com> - 4.9.3-1
    
- Upstream release FreeIPA 4.9.3
  Resolves: RHBZ#1945038
   
  
  - 
    Mon Feb 15 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.2-1
    
- Upstream release FreeIPA 4.9.2
  Related: RHBZ#1891832