Commit Graph

4 Commits

Author SHA1 Message Date
Florence Blanc-Renaud
103dc90372 Update rpminspect's annocheck policy
annocheck is now using "hardened" policy both for rhel and centos.
Override the options for "hardened" instead of "rhel-policy".
2022-01-25 17:26:51 +01:00
Florence Blanc-Renaud
848d623257 ipa-4.9.8-1
- Resolves: rhbz#2015608 - [Rebase] Rebase ipa to latest 4.9.x release RHEL9
- Resolves: rhbz#1825010 - Concerns regarding 'ipa pwpolicy-mod --minlife 24 --maxlife 1'
- Resolves: rhbz#1966289 - Info about searchrecordslimit set search limit to 10,000 after upgrade
- Resolves: rhbz#1980356 - reinstalling samba client causes winbindd coredump
- Resolves: rhbz#1986054 - fix automountlocation-tofiles output
- Resolves: rhbz#2020205 - Missing bind-pkcs11-utils causing failures in OpenDNSSec
- Resolves: rhbz#2021445 - CVE-2020-25719 ipa: samba: Samba AD DC did not always rely on the SID and PAC in Kerberos tickets
2021-12-02 21:16:40 +01:00
Florence Blanc-Renaud
1d7b04711c rpminspect: add automatic waiver for runpath check
The "runpath" check of rpminspect raises an error related
to DT_RPATH using /usr/lib64/samba for /usr/lib64/samba/pdb/ipasam.so.
This can be waived as ipasam.so is a plugin for smdb and
requires to have DT_RPATH set.
Add the path /usr/lib64/samba to the list of allowed DT_RPATH
to ignore the issue.

Resolves: #1947029 rpminspect false positive in runpath check
Signed-off-by: Florence Blanc-Renaud <flo@redhat.com>
2021-04-07 16:29:26 +02:00
DistroBaker
dcf7347419 Merged update from upstream sources
This is an automated DistroBaker update from upstream sources.
If you do not know what this is about or would like to opt out,
contact the OSCI team.

Source: https://src.fedoraproject.org/rpms/freeipa.git#34b883f55ed4e94c11f9b3ee5c1833fea768e075
2021-04-01 03:45:19 +00:00