[Freeipa-devel] [PATCH 0073] Remove support for IPA deployments with no persistent search

Martin Kosek mkosek at redhat.com
Mon Aug 5 15:59:32 UTC 2013


On 07/17/2013 01:47 PM, Tomas Babej wrote:
>> I will release version 3.5 before end of this week. I have some small fixes 
>> ready so it is worth to release it now.
>>
>> To summarize the discussion - please remove following options from 
>> configuration file and LDAP schema:
>> cache_ttl
>> psearch (attribute idnsPersistentSearch in idnsConfigObject)
>> zone_refresh (attribute idnsZoneRefresh in idnsConfigObject)
>>
>> -- 
>> Petr^2 Spacek
> 
> I have a patch ready, but it can't be tested until 3.5 is out.
> 
> Tomas
> 

I did not test the patch yet, I just want to comment on one thing I just noticed.

I is it a good idea to remove idnsZoneRefresh and idnsPersistentSearch
attribute types and modify idnsConfigObject objectclass?

This will affect not only new instances, but also the old ones (i.e. RHEL-6.4)
which may still use these attributes. DNS config object would suddenly become
unusable because DS would refuse to operate the entry as it does not follow the
schema. The same applies for ACIs.

I would personally not do these changes yet, I think just hiding and marking as
DeprecatedParam is enough for now. Alexander, what do you think?

Martin




More information about the Freeipa-devel mailing list