[Freeipa-devel] [PATCH] add group inactivation

Simo Sorce ssorce at redhat.com
Wed Oct 24 15:25:39 UTC 2007


On Wed, 2007-10-24 at 08:19 -0700, Kevin McCarthy wrote:
> Simo Sorce wrote:
> > On Wed, 2007-10-24 at 08:53 -0400, Rob Crittenden wrote:
> > > Kevin McCarthy wrote:
> > > > This adds the same inactivation code for users to the groups pages.
> > > > 
> > > > -Kevin
> > > > 
> > > 
> > > I had wondered about this. What does it mean to have an inactive 
> > > objects. Currently the cli group delete command actually deletes the 
> > > group. I suppose it should do the same thing as the GUI.
> > > 
> > > On a more general note, will ACI's automatically reject requests when 
> > > nsAccountLock is set?
> > 
> > I was wondering as well, I can't remember talking about group
> > deactivation ...
> 
> I'm not sure what it means either.  I only added this because of Req21.5
> http://www.freeipa.com/page/V1PRD#.5BReq21.5DAdministrator_Management_of_Groups
> 
> however, not that I'm thinking about it, maybe it means inactivate all
> the _users_ in the group.  not the group itself.

Yes, I think that's what it means.

> No problem, just drop this patch then.  :-)

Ok.




More information about the Freeipa-devel mailing list