Alexander Bokovoy
649963736f
Make selinux subpackage dependency in -common versioned
2020-09-27 18:11:56 +03:00
Alexander Bokovoy
cc0d18ca0a
Fix dependency between freeipa-selinux and freeipa-common
...
We need to make sure freeipa-selinux subpackage pulls the same NVR set of
freeipa-* packages. We can achieve this with freeipa-common dependency.
Using freeipa-server was wrong as it pulled server packages into a
client-only deployment.
Rsolves: rhbz#1883005
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2020-09-27 18:05:53 +03:00
Alexander Bokovoy
dd627d4562
Support upgrade F32 to F33 with systemd-resolved
2020-09-26 16:41:34 +03:00
Alexander Bokovoy
90249d2730
Update changelog
2020-09-26 12:25:51 +03:00
Alexander Bokovoy
3c2acac7db
Update to FreeIPA 4.8.10
2020-09-26 12:23:38 +03:00
Alexander Bokovoy
be9ba85ab6
Support older installations on upgrade
2020-08-21 15:34:04 +03:00
François Cami
8ac40118cb
FreeIPA 4.8.7 upstream release
2020-08-20 19:24:07 +02:00
Alexander Bokovoy
9255ad4636
Make use of unshare+chroot in ipa-extdom-extop unittests to work against glibc 2.32
2020-08-03 12:36:19 +03:00
Fedora Release Engineering
3c3db56f45
- Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2020-08-01 01:04:16 +00:00
Merlin Mathesius
05cc0230f3
Conditional fixes for ELN to set krb5-kdb version appropriately
...
Signed-off-by: Merlin Mathesius <mmathesi@redhat.com>
2020-07-30 08:23:26 -05:00
Fedora Release Engineering
043318b878
- Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2020-07-27 17:48:52 +00:00
Alexander Bokovoy
b7be92ba08
FreeIPA 4.8.7 upstream release
2020-06-10 23:45:00 +03:00
Miro Hrončok
21412083bf
Rebuilt for Python 3.9
2020-05-26 02:45:52 +02:00
Alexander Bokovoy
c2ce1eaf19
FreeIPA 4.8.6 release
2020-03-27 09:35:21 +02:00
Alexander Bokovoy
307dce1d32
Roll up post-release fixes from upstream
...
Move freeipa-selinux to be a dependency of freeipa-common instead of
freeipa-server as client is also using some of the defined contexts.
2020-03-21 22:41:22 +02:00
Alexander Bokovoy
96a53ecb23
Do not build selinux policy subpackage for client-only build
2020-03-18 18:05:13 +02:00
Alexander Bokovoy
6147e44e8d
Depend on selinux-policy-devel 3.14.6-9 for the build
...
https://github.com/fedora-selinux/selinux-policy/pull/333 is only fixed
in selinux-policy-devel-3.14.6-9.fc33.
2020-03-18 17:39:50 +02:00
Alexander Bokovoy
6803b54398
Upstream release FreeIPA 4.8.5
2020-03-17 16:12:44 +02:00
Alexander Bokovoy
6d5d5ab36b
FreeIPA 4.8.5
2020-03-17 16:12:01 +02:00
Alexander Bokovoy
7bdea0a373
Support OpenDNSSEC 2.1
...
Resolves : #1809492
2020-03-03 17:03:12 +02:00
François Cami
485092e39c
Fix audit_as_req() callback usage.
...
Fixes: rhbz#1803786
Signed-off-by: François Cami <fcami@redhat.com>
2020-02-17 17:53:05 +01:00
Alexander Bokovoy
76138553c1
Fix constraint delegation for krb5 1.18 update
...
Fixes: rhbz#1797096
2020-02-01 10:14:56 +02:00
Fedora Release Engineering
1343c174cd
- Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2020-01-28 18:58:21 +00:00
Alexander Bokovoy
6684913272
Add pre-req patches for KDB fixes
2020-01-28 10:33:22 +02:00
Alexander Bokovoy
a7de121edc
Rebuild against krb5 1.18 beta
2020-01-28 10:22:32 +02:00
Alexander Bokovoy
229f6e6fdd
Rebuild against Samba 4.12RC1
2020-01-26 22:07:15 +02:00
Alexander Bokovoy
8ae86f33dc
Revert "Rebuild against krb5 1.18 beta"
...
This reverts commit 87131d93f7
.
2020-01-26 22:05:24 +02:00
Alexander Bokovoy
106979cbb5
Revert "Fix typo"
...
This reverts commit 099c181d69
.
2020-01-26 22:05:02 +02:00
Alexander Bokovoy
099c181d69
Fix typo
2020-01-25 01:01:57 +02:00
Alexander Bokovoy
87131d93f7
Rebuild against krb5 1.18 beta
2020-01-25 00:37:09 +02:00
Adam Williamson
7ba1008817
Backport PR #4045 to fix overlapping DNS zone check bugs
2019-12-16 09:50:34 -08:00
Alexander Bokovoy
89ac168643
FreeIPA 4.8.4 release
2019-12-14 14:56:41 +02:00
Alexander Bokovoy
0827a2c92c
Update dependencies for FreeIPA 4.8.4 release
2019-12-14 14:53:43 +02:00
Alexander Bokovoy
504c0ac7cd
New upstream security release 4.8.3
2019-11-26 16:17:22 +02:00
Rob Crittenden
1463c20af5
Update to 4.8.2
...
- Replace %%{_libdir} macro in BuildRequires (#1746882 )
- Restore user-nsswitch.conf before calling authselect (#1746557 )
- ipa service-find does not list cifs service created by
ipa-client-samba (#1731433 )
- Occasional 'whoami.data is undefined' error in FreeIPA web UI
(#1699109 )
- ipa-kra-install fails due to fs.protected_regular=1 (#1698384 )
2019-11-12 14:45:10 -05:00
Alexander Bokovoy
44e6cfb46a
Don't create log files from the helper scripts
...
Fixes rhbz#1754189
2019-10-20 13:18:47 +03:00
Christian Heimes
341de25783
Fix compat issue with preexec_fn in Python 3.8
...
Fixes: rhbz#1759290
2019-10-08 10:37:26 +02:00
Alexander Bokovoy
2c65074a31
Fix bogus changelog date
2019-10-01 09:41:30 +03:00
Alexander Bokovoy
56d3eef1e2
Fix compatibility with Samba 4.11
...
Fixes: rhbz#1757089
2019-10-01 09:40:40 +03:00
Miro Hrončok
92c399779f
Rebuilt for Python 3.8
2019-08-19 10:14:17 +02:00
Alexander Bokovoy
d3d8a98ebf
Update to FreeIPA 4.8.1
2019-08-14 18:55:41 +03:00
Fedora Release Engineering
452bd5ce72
- Rebuilt for https://fedoraproject.org/wiki/Fedora_31_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2019-07-25 01:00:19 +00:00
Alexander Bokovoy
5eefa180c1
FreeIPA 4.8.0 release
2019-07-03 10:36:06 +03:00
Alexander Bokovoy
a38d5dea8b
Handle upgrade when trust is configured but not established yet
...
Fixes: rhbz#1708808
2019-05-11 11:59:25 +03:00
Alexander Bokovoy
e4170a4cc4
Bump release as the previous version was already built
2019-05-03 23:26:05 +03:00
Alexander Bokovoy
b4d8a0ae2d
Use krb5 1.17-17 for krb5-kdb-version
2019-05-03 23:23:37 +03:00
Alexander Bokovoy
fb39356a83
Rebuild to drop upper limit for Kerberos package
...
After krb5-server will provide krb5-kdb-version, we'll switch to it
2019-05-03 23:09:22 +03:00
Alexander Bokovoy
f287b17875
Merge #3 Drop upper bound on krb5 version
2019-05-03 20:06:54 +00:00
Adam Williamson
be564e23eb
Backport PR #3104 to fix a font path error
2019-05-01 16:29:01 -07:00
Alexander Bokovoy
3eda80f6d8
Revert MINSSF defaults because realmd cannot join FreeIPA right now
...
realmd uses anonymous LDAP connection for the discovery and validation
and fails to validate it is joining FreeIPA server.
2019-05-01 21:30:10 +03:00
Alexander Bokovoy
7eef088ee0
Update spec file
2019-04-29 23:01:26 +03:00
Alexander Bokovoy
7d9a415144
First release candidate for FreeIPA 4.8.0
2019-04-29 22:40:13 +03:00
Robbie Harwood
a05de75daf
Drop upper bound on krb5 version
...
This check is no longer needed now that krb5 exports the KDB version.
Signed-off-by: Robbie Harwood <rharwood@redhat.com>
(This commit originally proposed upstream as #3009.)
2019-04-08 15:29:30 -04:00
Alexander Bokovoy
21ff3cd3b5
Fixed rhbz#1696963
2019-04-06 23:00:21 +03:00
Alexander Bokovoy
7987809d8d
Fix breakage for Samba 4.10 and 389-ds 1.4.1.2
2019-04-06 11:31:42 +03:00
Alexander Bokovoy
8368b30429
Remove python2 support
2019-02-28 11:23:33 +02:00
Alexander Bokovoy
8b08a231c9
Fix ipa-client-automount to work with new nfs-utils
...
nfs-utils no longer create /etc/sysconfig/nfs, take that into account
using upstream FreeIPA patch.
See https://bugzilla.redhat.com/show_bug.cgi?id=1668836 for nfs-utils
detalis.
2019-02-28 11:05:01 +02:00
François Cami
9cf5a63a52
- Fix FTBS due to Samba having removed
...
talloc_strackframe.h and memory.h (#1678670 )
- Fix CA setup when fs.protected_regular=1 (#1677027 )
2019-02-19 15:46:50 +01:00
Alexander Bokovoy
34d547a636
Rebuild for python-kdcproxy 0.4.1 and disable Python dep generator use
2019-02-11 20:42:52 +02:00
Alexander Bokovoy
4dd28889a2
Fix mass rebuild failure
...
Fix space/tabs issues reported by 'fedpkg lint'
2019-02-08 20:40:17 +02:00
Fedora Release Engineering
c0efa305a7
- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2019-01-31 20:08:31 +00:00
Igor Gnatenko
6a9720386c
Remove unneeded %clean section
...
It is the behavior since EPEL5.
Signed-off-by: Igor Gnatenko <ignatenkobrain@fedoraproject.org>
2019-01-29 05:45:51 +01:00
Igor Gnatenko
088a11d56a
Remove obsolete BuildRoot tag
...
Signed-off-by: Igor Gnatenko <ignatenkobrain@fedoraproject.org>
2019-01-29 05:35:04 +01:00
Igor Gnatenko
640d55c06f
Remove obsolete Group tag
...
References: https://fedoraproject.org/wiki/Changes/Remove_Group_Tag
2019-01-28 20:24:02 +01:00
Alexander Bokovoy
413580e0c6
Update to FreeIPA 4.7.2
2018-12-03 13:34:40 +02:00
Adam Williamson
d489fe9ffe
Update PR #2610 patch to tiran's modified version
2018-11-28 00:37:51 -08:00
Adam Williamson
38293c2b0c
Backport PR #2610 to fix for authselect 1.0.2+ (see #1645708 )
2018-11-27 17:13:12 -08:00
Alexander Bokovoy
e5b9ea7287
Increase release
2018-11-11 18:43:45 +02:00
Alexander Bokovoy
df4cd9334b
Rebuild with krb5-1.17
...
Also bump SSSD version to pick up return of pysss.getgrouplist() API
2018-11-11 18:42:51 +02:00
Rob Crittenden
c3d08f1176
Update to upstream 4.7.1
2018-10-05 15:51:43 -04:00
Thomas Woerner
eb63032682
Committing for Christian Heimes:
...
- Remove Python 2 support from Fedora 30
- https://fedoraproject.org/wiki/Changes/FreeIPA_Python_2_Removal
2018-09-25 11:09:19 +02:00
Thomas Woerner
2a327151b7
- Enable python2 client packages for f30 for now again
2018-09-04 15:56:20 +02:00
Thomas Woerner
f076221002
Fix only client build for Fedora>=28 and RHEL>7, readd special patch handing
2018-09-04 13:54:23 +02:00
Thomas Woerner
d73b97aca6
Force generation of aclocal.m4 and configuration scripts
2018-09-04 12:04:14 +02:00
Thomas Woerner
480173e259
Fixed bad comment line
2018-09-03 18:03:41 +02:00
Thomas Woerner
e7de033e9e
- Restore SELinux context of session_dir /etc/httpd/alias (pagure#7662)
...
- Restore SELinux context of template_dir /var/log/dirsrv/slapd-X (pagure#7662)
- Add "389-ds-base-legacy-tools" to requires
- Refactor os-release and platform information (#1609475 )
- Don't check for systemd service (#1609475 )
- Switched to upstream spec file with small adaptions
2018-09-03 17:51:54 +02:00
Thomas Woerner
f6a1c1b62c
Update to upstream 4.7.0
...
- New BuildRequires for nodejs and uglify-js
- New Requires for 389-ds-base-legacy-tools in server (RHBZ#1606541)
- Do not build python2-ipaserver and python2-ipatests for Fedora 29 and up
- Do not build any python2 packages for Fedora 30
- Added ipatest man pages to python3-ipatests packages also
- Added ipatest bindir links to python3-ipatests for Fedora up to 28
- Dropped explicit copy of freeipa.template, install is doing this now
- Added upstream fix: (f3faecb) Fix $-style format string in ipa_ldap_init
- Added upstream fix: (4b592fe,1a7baa2) Added reason to raise of errors.NotFound
2018-07-26 14:15:24 +02:00
Alexander Bokovoy
d895dd1288
Use versioned python macros
2018-07-16 16:26:12 +03:00
Fedora Release Engineering
779c74e270
- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild
...
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2018-07-13 00:49:59 +00:00
Jason Tibbitts
9cdadfb7d0
Remove needless use of %defattr
2018-07-10 00:52:37 -05:00
Miro Hrončok
00df4a2aa9
Rebuilt for Python 3.7
2018-07-02 18:22:31 +02:00
Rob Crittenden
1029bba356
Build using the py3-lesscpy command
2018-06-27 13:53:07 -04:00
Rob Crittenden
0c79414454
*-domainname.service moved to the hostname package in F29
...
Resolves : #1592355
2018-06-19 13:13:14 -04:00
Miro Hrončok
3245f2c6dd
Rebuilt for Python 3.7
2018-06-19 10:43:19 +02:00
Rob Crittenden
509ffd6083
Change BuildRequires from python-lesscpy to python3-lesscpy
2018-06-15 13:33:31 -04:00
Rob Crittenden
be02de03ae
Fix bad date in changelog
2018-06-15 09:41:55 -04:00
Rob Crittenden
5fd105c019
Fedora renamed fedora-domainname.service to nis-domainname.service
...
Resolves : #1588192
2018-06-15 09:24:49 -04:00
Alexander Bokovoy
023dc4e57a
Client-only build needs /usr/share/ipa and freeipa.template
...
We condition make to run in install/share only for ENABLE_SERVER case.
This means client side never has /usr/share/ipa created and populated.
Force-create the directory and put freeipa.template in the spec right
now until upstream fix is done properly to allow client-side target to
run install/share too.
2018-05-16 10:20:03 +03:00
Alexander Bokovoy
aed8774b7e
Make sure we have /usr/share/ipa in any case
2018-05-16 09:58:28 +03:00
Alexander Bokovoy
7482939f1e
Fine tune packaging of server templates
2018-05-16 09:49:34 +03:00
Rob Crittenden
8281c2e0fa
Exclude /usr/share from client-only builds
2018-05-15 17:11:13 -04:00
Rob Crittenden
baaf4e605c
Update to upstream 4.6.90.pre2
...
Resolves : #1562606
2018-05-15 16:22:52 -04:00
Alexander Bokovoy
21c066104d
Also rebuild aclocal as its version is recorded in the generated scripts
2018-05-02 12:18:31 +03:00
Alexander Bokovoy
00f4635acb
Rebuild configure as autoconf version changes affect generated scripts
2018-05-02 12:07:17 +03:00
Alexander Bokovoy
6c4a1decac
Replace wrong patch cherry-picked
2018-05-02 11:00:11 +03:00
Alexander Bokovoy
5253080d71
Fix upgrade when using DNS-less setup and pull new slapi-nis
...
Resolves rhbz#1573636 for nisserver underlinkage
Resolves rhbz#1573671 for DNS-less setup upgrade issues
2018-05-02 10:40:46 +03:00
Alexander Bokovoy
49a9934df0
Require pki-symkey until pki-core has proper dependencies
2018-03-21 16:31:07 +02:00
Alexander Bokovoy
c7b3fb0668
Fix missing import in the upgrade patch
2018-03-21 16:09:44 +02:00
Alexander Bokovoy
445afe77e5
Fix changelog date
2018-03-21 13:46:13 +02:00
Alexander Bokovoy
533fcd195a
Run upgrade under empty DIR: ccache collection
2018-03-21 13:44:28 +02:00