[Freeipa-devel] [PATCH] 0520 Add managed read permission to service

Petr Viktorin pviktori at redhat.com
Wed Apr 23 12:22:15 UTC 2014


On 04/14/2014 01:04 PM, Petr Viktorin wrote:
> Read access is given to all authenticated users.
>
> Exposed attributes are:
> [top]
>    objectClass
> [ipaObject]
>    ipaUniqueID
> [ipaService]
>    managedBy
>    memberOf
>    ipaKrbAuthzData  (a.k.a. pac_type)
> [pkiUser]
>    userCertificate
> [krbPrincipalAux]
>    krbPrincipalName
>    krbCanonicalName
>    krbPrincipalAliases
>    krbPrincipalExpiration
>    krbPasswordExpiration
>    krbLastPwdChange
> [krbTicketPolicyAux] - none
> [ipaKrbPrincipal]
>    krbPrincipalName
>    ipaKrbPrincipalAlias
> [krbPrincipal]
>    krbPrincipalName
>    krbObjectReferences
>
>
> Kerberos-related attributes were discussed for hosts here:
> http://www.redhat.com/archives/freeipa-devel/2014-April/msg00242.html

ping, any takers for the review?

-- 
Petr³




More information about the Freeipa-devel mailing list