[Freeipa-devel] [PATCH] 224 Add SSHFP update policy for existing zones

Martin Kosek mkosek at redhat.com
Fri Feb 24 15:27:42 UTC 2012


SSH public key support includes a feature to automatically add/update
client SSH fingerprints in SSHFP records. However, the update won't
work for zones created before this support was added as they don't
allow clients to update SSHFP records in their update policies.

This patch lets dns upgrade module extend the original policy
to allow the SSHFP dynamic updates. It updates only original
policy, we don't want it to overwrite custom user policies.

https://fedorahosted.org/freeipa/ticket/2394

-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-mkosek-224-add-sshfp-update-policy-for-existing-zones.patch
Type: text/x-patch
Size: 5146 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20120224/b5cd4ab9/attachment.bin>


More information about the Freeipa-devel mailing list