- Allow the admin user to be disabled
Resolves: RHEL-34756
- ipa-otptoken-import: open the key file in binary mode
Resolves: RHEL-39616
- ipa-crlgen-manage: manage the cert status task execution time
Resolves: RHEL-30280
- idrange-add: add a warning because 389ds restart is required
Resolves: RHEL-28996
- PKINIT certificate: fix renewal on hidden replica
Resolves: RHEL-4913, RHEL-45908
ipa-healthcheck:
- Change log file permissions of IPA as per CIS benchmark
Resolves: RHEL-38929
Signed-off-by: Rafael Guterres Jeffman <rjeffman@redhat.com>
- kdb: PAC generator: do not fail if canonical principal is missing
Resolves: RHEL-23630
- ipa-kdb: Fix memory leak during PAC verification
Resolves: RHEL-22644
- Fix session cookie access
Resolves: RHEL-23622
- Do not ignore staged users in sidgen plugin\
Resovlves: RHEL-23626
- ipa-kdb: Disable Bronze-Bit check if PAC not available
Resolves: RHEL-22313
- krb5kdc: Fix start when pkinit and otp auth type are enabled
Resolves: RHEL-4874
- hbactest was not collecting or returning messages
Resolves: RHEL-12780
Signed-off-by: Rafael Guterres Jeffman <rjeffman@redhat.com>
module:
- Use stream-idm-DL1-rhel-{version} as RPM references. This will
allow a more similar build process to previous RHEL 8 versions.
ipa:
- Use the OpenSSL certificate parser in cert-find.
Resolves: RHBZ#2209947
Signed-off-by: Rafael Guterres Jeffman <rjeffman@redhat.com>
- Rebase ipa to 4.9.12
Resolves: RHBZ#2196425
- user or group name: explain the supported format
Resolves: RHBZ#2150217
Signed-off-by: Rafael Guterres Jeffman <rjeffman@redhat.com>