[Freeipa-devel] [PATCH] Add {user, host, sourcehost}Category to HBAC and make accessTime multivalue.

Rob Crittenden rcritten at redhat.com
Mon Nov 23 21:25:12 UTC 2009


Pavel Zuna wrote:
> Due to the format of accessTime (it has commas and spaces in it), we 
> can't use the List parameter type. I made it so that accessTime values 
> have to be entered one by one using new commands.
> 
> We also agreed, that we're going to rename GeneralizedTime parameter to 
> AccessTime to prevent confusion with RFC 4517 standard. I attached a 
> separate patch for clarity.
> 
> Pavel

A couple of questions:

- Would it make sense to leave time in as an option that takes a 
singular value? If someone wants multiple times they can use the new add 
interface, right?
- What are these new enums for? If there is only one choice do you 
really have a choice?
- We still need some tests for GeneralizedTime/AccessTime.

rob




More information about the Freeipa-devel mailing list