- 
    Thu May 09 2019 Jacob Wang <jacob.wang@oracle.com> - 4.7.1-11.0.1
    
- Set IPAPLATFORM=rhel when build on Oracle Linux [Orabug: 29516674]
   
  
  - 
    Wed Feb 27 2019 Rob Crittenden <rcritten@redhat.com> - 4.7.1-11
    
- Handle NFS configuration file changes. nfs-utils moved the
  configuration file from /etc/sysconfig/nfs to /etc/nfs.conf.
  Resolves: RHBZ#1676981
   
  
  - 
    Tue Jan 15 2019 Christian Heimes <cheimes@redhat.com> - 4.7.1-10
    
- Fix systemd-user HBAC rule
  Resolves: RHBZ#1664974
   
  
  - 
    Mon Jan 14 2019 Thomas Woerner <twoerner@redhat.com> - 4.7.1-9
    
- Resolve user/group names in idoverride*-find
  Resolves: RHBZ#1657745
   
  
  - 
    Mon Jan 14 2019 Christian Heimes <cheimes@redhat.com> - 4.7.1-8
    
- Create systemd-user HBAC service and rule
  Resolves: RHBZ#1664974
- ipaserver/dcerpc: fix exclusion entry with a forest trust domain info returned
  Resolves: RHBZ#1664023
   
  
  - 
    Fri Dec 14 2018 Thomas Woerner <twoerner@redhat.com> - 4.7.1-7.el8
    
- Fix misleading errors during client install rollback
  Resolves: RHBZ#1658283
- ipa-advise: update url of cacerdir_rehash tool
  Resolves: RHBZ#1658287
- Handle NTP configuration in a replica server installation
  Resolves: RHBZ#1651679
- Fix defects found by static analysis
  Resolves: RHBZ#1658182
- ipa-replica-install --setup-adtrust: check for package ipa-server-trust-ad
  Resolves: RHBZ#1658294
- ipaldap: invalid modlist when attribute encoding can vary
  Resolves: RHBZ#1658302
- Allow ipaapi and Apache user to access SSSD IFP
  Resolves: RHBZ#1639910
- Add sysadm_r to default SELinux user map order
  Resolves: RHBZ#1658303
- certdb: ensure non-empty Subject Key Identifier and validate server cert sig
  Resolves: RHBZ#1641988
- ipa-replica-install: password and admin-password options mutually exclusive
  Resolves: RHBZ#1658309
- ipa upgrade: handle double-encoded certificates
  Resolves: RHBZ#1658310
- PKINIT: fix ipa-pkinit-manage enable|disable
  Resolves: RHBZ#1658313
- Enable LDAP debug output in client to display TLS errors in join
  Resolves: RHBZ#1658316
- rpc: always read response
  Resolves: RHBZ#1639890
- ipa vault-retrieve: fix internal error
  Resolves: RHBZ#1658485
- Move ipa's systemd tmpfiles from /var/run to /run
  Resolves: RHBZ#1658487
- Fix authselect invocations to work with 1.0.2
  Resolves: RHBZ#1654291
- ipa-client-automount and NFS unit name changes
  Resolves: RHBZ#1645501
- Fix compile issue with new 389-ds
  Resolves: RHBZ#1659448
   
  
  - 
    Thu Nov 15 2018 LumÃr Balhar <lbalhar@redhat.com> - 4.7.1-6.el8
    
- Require platform-python-setuptools instead of python3-setuptools
- Resolves: rhbz#1650139
   
  
  - 
    Mon Oct 29 2018 Alexander Bokovoy <abokovoy@redhat.com> - 4.7.1-5.el8
    
- Fixed: rhbz#1643445 - External CA step 2 fails with pki_client_database_dir is missing
- Fixed: rhbz#1642834 - Smart card advise script uses hard-coded Python interpreter
   
  
  - 
    Tue Oct 16 2018 Alexander Bokovoy <abokovoy@redhat.com> - 4.7.1-4.el8
    
- Fix mapping of BUILTIN\Guests to 'nobody' group during upgrade
  to not use generated Samba config at this point
- Related: rhbz#1623895
   
  
  - 
    Mon Oct 15 2018 Thomas Woerner <twoerner@redhat.com> - 4.7.1-3.el8
    
- New command automember-find-orphans to find and remove orphan automemeber
  rules has been added
  Resolves: RHBZ#1638373
- Moved ipa/idm logos and background to redhat-logos-ipa-80.4:
  header-logo.png, login-screen-background.jpg, login-screen-logo.png,
  product-name.png
  New requirement to redhat-logos-ipa >= 80.4 in ipa-server-common
  Resolves: RHBZ#1626507