Name: | ipa-server |
---|---|
Version: | 4.8.7 |
Release: | 14.0.1.module+el8.3.0+9658+79f1697c |
Architecture: | x86_64 |
Module: | idm:DL1:8030020210112201916:fcba9779 |
Group: | Unspecified |
Size: | 1109249 |
License: | GPLv3+ |
RPM: | ipa-server-4.8.7-14.0.1.module+el8.3.0+9658+79f1697c.x86_64.rpm |
Source RPM: | ipa-4.8.7-14.0.1.module+el8.3.0+9658+79f1697c.src.rpm |
Build Date: | Fri Feb 19 2021 |
Build Host: | host-100-100-224-60.blddevtest1iad.osdevelopmeniad.oraclevcn.com |
Vendor: | Oracle America |
URL: | http://www.freeipa.org/ |
Summary: | The IPA authentication server |
Description: | IPA is an integrated solution to provide centrally managed Identity (users, hosts, services), Authentication (SSO, 2FA), and Authorization (host access control, SELinux user roles, services). The solution provides features for further integration with Linux based clients (SUDO, automount) and integration with Active Directory based infrastructures (Trusts). If you are installing an IPA server, you need to install this package. |
- Set IPAPLATFORM=rhel when build on Oracle Linux [Orabug: 29516674]
- wgi/plugins.py: ignore empty plugin directories Resolves: RHBZ#1895910 - rpcserver: fallback to non-armored kinit in case of trusted domains Resolves: RHBZ#1914821 - pylint: remove unused variable Resolves: RHBZ#1914821 - ipa-kdb: support subordinate/superior UPN suffixes Resolves: RHBZ#1914823 - ad trust: accept subordinate domains of the forest trust root Resolves: RHBZ#1914823 - ipatests: support subordinate upn suffixes Resolves: RHBZ#1914823
- Fix nsslapd-db-lock tuning of BDB backend Resolves: RHBZ#1882472
- Require selinux sub package in the proper version Related: RHBZ#1868432 - SELinux: do not double-define node_t and pki_tomcat_cert_t Related: RHBZ#1868432 - SELinux: add dedicated policy for ipa-pki-retrieve-key + ipatests Related: RHBZ#1868432 - dogtaginstance.py: add --debug to pkispawn Resolves: RHBZ#1879604
- SELinux Policy: let custodia replicate keys Resolves: RHBZ#1868432
- Set mode of /etc/ipa/ca.crt to 0644 in CA-less installations Resolves: RHBZ#1870202
- CAless installation: set the perms on KDC cert file Resolves: RHBZ#1863616 - EPN: handle empty attributes Resolves: RHBZ#1866938 - IPA-EPN: enhance input validation Resolves: RHBZ#1866291 - EPN: enhance input validation Resolves: RHBZ#1863079 - Require new samba build 4.12.3-52 Related: RHBZ#1868558 - Require new selinux-policy build 3.14.3-52 Related: RHBZ#1869311
- [WebUI] IPA Error 3007: RequirmentError" while adding members in "User ID overrides" tab (updated) Resolves: RHBZ#1757045 - ipa-client-install: use the authselect backup during uninstall Resolves: RHBZ#1810179 - Replace SSLCertVerificationError with CertificateError for py36 Resolves: RHBZ#1858318 - Fix AVC denial during ipa-adtrust-install --add-agents Resolves: RHBZ#1859213
- replica install failing with avc denial for custodia component Resolves: RHBZ#1857157
- selinux don't audit rules deny fetching trust topology Resolves: RHBZ#1845596 - fix iPAddress cert issuance for >1 host/service Resolves: RHBZ#1846352 - Specify cert_paths when calling PKIConnection Resolves: RHBZ#1849155 - Update crypto policy to allow AD-SUPPORT when installing IPA Resolves: RHBZ#1851139 - Add version to ipa-idoverride-memberof obsoletes Related: RHBZ#1846434