On (27/04/16 10:59), Jakub Hrozek wrote:
>On Mon, Mar 21, 2016 at 09:37:45AM +0100, Lukas Slebodnik wrote:
>> On (17/03/16 22:59), Jakub Hrozek wrote:
>> >a man page one liner :)
>> >
>> >No need to explicitly mention IPAv2, I hope there are no deployments of
>> >IPAv1 left anymore :)
>> >
>> >This change was suggested by Rob in
>> >https://fedorahosted.org/sssd/ticket/1907#comment:2
>> 
>> >From a571f05f492090e95ec25ba1e10b7f843f4688b7 Mon Sep 17 00:00:00 2001
>> >From: Jakub Hrozek <jhro...@redhat.com>
>> >Date: Thu, 17 Mar 2016 22:57:49 +0100
>> >Subject: [PATCH] MAN: Drop the reference to IPAv2 in the man page
>> >
>> >As suggested by Rob in
>> >https://fedorahosted.org/sssd/ticket/1907#comment:2
>> >---
>> > src/man/sssd-ipa.5.xml | 2 +-
>> > 1 file changed, 1 insertion(+), 1 deletion(-)
>> >
>> >diff --git a/src/man/sssd-ipa.5.xml b/src/man/sssd-ipa.5.xml
>> >index 
>> >be390d58dd3ce5a6ca6d5212d2c7aa176d3a74c4..11bfb7b0a273fa10fbb610490602c761cefcad90
>> > 100644
>> >--- a/src/man/sssd-ipa.5.xml
>> >+++ b/src/man/sssd-ipa.5.xml
>> >@@ -117,7 +117,7 @@
>> >                     <listitem>
>> >                         <para>
>> >                             Optional. This option tells SSSD to 
>> > automatically
>> >-                            update the DNS server built into FreeIPA v2 
>> >with
>> >+                            update the DNS server built into FreeIPA with
>> >                             the IP address of this client. The update is
>> >                             secured using GSS-TSIG. The IP address of the 
>> > IPA
>> >                             LDAP connection is used for the updates, if it 
>> > is
>> LGTM.
>> 
>> FreeIPA v2 is also mentioned on other space.
>> sssd-ipa.5.xml-                <varlistentry>
>> sssd-ipa.5.xml-                    <term>ipa_hbac_treat_deny_as 
>> (string)</term>
>> sssd-ipa.5.xml-                    <listitem>
>> sssd-ipa.5.xml-                        <para>
>> sssd-ipa.5.xml-                            This option specifies how to 
>> treat the deprecated
>> sssd-ipa.5.xml:                            DENY-type HBAC rules. As of 
>> FreeIPA v2.1, DENY
>> sssd-ipa.5.xml-                            rules are no longer supported on 
>> the server. All
>> sssd-ipa.5.xml-                            users of FreeIPA will need to 
>> migrate their rules
>> sssd-ipa.5.xml-                            to use only the ALLOW rules. The 
>> client will
>> sssd-ipa.5.xml-                            support two modes of operation 
>> during this
>> sssd-ipa.5.xml-                            transition period:
>> 
>> 
>> Do you think that is it a time to remove ipa_hbac_treat_deny_as?
>> I doubt anyone uses sssd with FreeIPA < 2.1
>
>That option was removed as of 6dff95bdfe437afc0b62b5270d0d84140981c786
I'm sorry I had to check in wrong branch.

ACK to patch

http://sssd-ci.duckdns.org/logs/job/42/77/summary.htm

LS
_______________________________________________
sssd-devel mailing list
sssd-devel@lists.fedorahosted.org
https://lists.fedorahosted.org/admin/lists/sssd-devel@lists.fedorahosted.org

Reply via email to