Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Dmitri Pal
On 12/16/2014 07:22 PM, Lukas Slebodnik wrote: On (16/12/14 19:00), Dmitri Pal wrote: On 12/16/2014 09:34 AM, Nikolai Kondrashov wrote: On 12/16/2014 04:15 PM, Sumit Bose wrote: On Tue, Dec 16, 2014 at 03:49:16PM +0200, Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I w

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Lukas Slebodnik
On (16/12/14 19:00), Dmitri Pal wrote: >On 12/16/2014 09:34 AM, Nikolai Kondrashov wrote: >>On 12/16/2014 04:15 PM, Sumit Bose wrote: >>>On Tue, Dec 16, 2014 at 03:49:16PM +0200, Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the option

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Dmitri Pal
On 12/16/2014 09:34 AM, Nikolai Kondrashov wrote: On 12/16/2014 04:15 PM, Sumit Bose wrote: On Tue, Dec 16, 2014 at 03:49:16PM +0200, Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the options deal with setting various LDAP attribute names. Th

Re: [SSSD] Design Discussion: Domains, users and groups over D-Bus

2014-12-16 Thread Dmitri Pal
On 12/16/2014 08:26 AM, Pavel Březina wrote: https://fedorahosted.org/sssd/wiki/DesignDocs/DBusResponder Hi, I have take the following tikcet that is about implementing D-Bus calls for domains, users and groups. I have some questions. https://fedorahosted.org/sssd/ticket/2150 *List and Find

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Nikolai Kondrashov
On 12/16/2014 07:58 PM, Simo Sorce wrote: On Tue, 16 Dec 2014 17:20:18 +0200 Nikolai Kondrashov wrote: On 12/16/2014 05:14 PM, Lukas Slebodnik wrote: On (16/12/14 16:32), Nikolai Kondrashov wrote: On 12/16/2014 03:55 PM, Lukas Slebodnik wrote: On (16/12/14 15:49), Nikolai Kondrashov wrote:

Re: [SSSD] sssd man page edit - https://fedorahosted.org/sssd/ticket/2515

2014-12-16 Thread Sumit Bose
On Tue, Dec 16, 2014 at 08:43:37PM +0100, Sumit Bose wrote: > On Mon, Dec 15, 2014 at 03:22:18AM +0100, Jakub Hrozek wrote: > > On Thu, Dec 11, 2014 at 10:37:07PM -0500, Dan Lavu wrote: > > > Downstream ticket - https://bugzilla.redhat.com/show_bug.cgi?id=1169459 > > > > > > Just a note ensuring t

Re: [SSSD] sssd man page edit - https://fedorahosted.org/sssd/ticket/2515

2014-12-16 Thread Sumit Bose
On Mon, Dec 15, 2014 at 03:22:18AM +0100, Jakub Hrozek wrote: > On Thu, Dec 11, 2014 at 10:37:07PM -0500, Dan Lavu wrote: > > Downstream ticket - https://bugzilla.redhat.com/show_bug.cgi?id=1169459 > > > > Just a note ensuring that there is no confusion in which policy to edit. I > > did not thin

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Simo Sorce
On Tue, 16 Dec 2014 17:20:18 +0200 Nikolai Kondrashov wrote: > On 12/16/2014 05:14 PM, Lukas Slebodnik wrote: > > On (16/12/14 16:32), Nikolai Kondrashov wrote: > >> On 12/16/2014 03:55 PM, Lukas Slebodnik wrote: > >>> On (16/12/14 15:49), Nikolai Kondrashov wrote: > Hi everyone, > > >>

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Nikolai Kondrashov
On 12/16/2014 05:14 PM, Lukas Slebodnik wrote: On (16/12/14 16:32), Nikolai Kondrashov wrote: On 12/16/2014 03:55 PM, Lukas Slebodnik wrote: On (16/12/14 15:49), Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the options deal with setting vari

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Lukas Slebodnik
On (16/12/14 16:32), Nikolai Kondrashov wrote: >On 12/16/2014 03:55 PM, Lukas Slebodnik wrote: >>On (16/12/14 15:49), Nikolai Kondrashov wrote: >>>Hi everyone, >>> >>>Reading the sssd-ldap manpage I was struck by how many of the options deal >>>with setting various LDAP attribute names. This really

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Nikolai Kondrashov
On 12/16/2014 04:32 PM, Nikolai Kondrashov wrote: On 12/16/2014 03:55 PM, Lukas Slebodnik wrote: On (16/12/14 15:49), Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the options deal with setting various LDAP attribute names. This really makes t

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Nikolai Kondrashov
On 12/16/2014 04:15 PM, Sumit Bose wrote: On Tue, Dec 16, 2014 at 03:49:16PM +0200, Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the options deal with setting various LDAP attribute names. This really makes the manpage crowded and hard to navi

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Nikolai Kondrashov
On 12/16/2014 03:55 PM, Lukas Slebodnik wrote: On (16/12/14 15:49), Nikolai Kondrashov wrote: Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the options deal with setting various LDAP attribute names. This really makes the manpage crowded and hard to navigate. What if w

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Sumit Bose
On Tue, Dec 16, 2014 at 03:49:16PM +0200, Nikolai Kondrashov wrote: > Hi everyone, > > Reading the sssd-ldap manpage I was struck by how many of the options deal > with setting various LDAP attribute names. This really makes the manpage > crowded and hard to navigate. > > What if we replace all t

Re: [SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Lukas Slebodnik
On (16/12/14 15:49), Nikolai Kondrashov wrote: >Hi everyone, > >Reading the sssd-ldap manpage I was struck by how many of the options deal >with setting various LDAP attribute names. This really makes the manpage >crowded and hard to navigate. > >What if we replace all these options with a single o

[SSSD] Collapsing LDAP attribute name options into one

2014-12-16 Thread Nikolai Kondrashov
Hi everyone, Reading the sssd-ldap manpage I was struck by how many of the options deal with setting various LDAP attribute names. This really makes the manpage crowded and hard to navigate. What if we replace all these options with a single option, accepting a list of mappings (e.g. "ldap_attr_

[SSSD] Design Discussion: Domains, users and groups over D-Bus

2014-12-16 Thread Pavel Březina
https://fedorahosted.org/sssd/wiki/DesignDocs/DBusResponder Hi, I have take the following tikcet that is about implementing D-Bus calls for domains, users and groups. I have some questions. https://fedorahosted.org/sssd/ticket/2150 *List and Find methods interface* At this moment we implement

Re: [SSSD] [PATCH] IPA: verify group memberships of trusted domain users

2014-12-16 Thread Sumit Bose
On Mon, Dec 15, 2014 at 10:41:25AM +0100, Lukas Slebodnik wrote: > On (12/12/14 11:04), Sumit Bose wrote: > >Hi, > > > >This patch tries to assure on IPA clients that users from trusted > >domains are really belong ot all groups they are member of and should > >fix https://fedorahosted.org/sssd/tic