[Freeipa-devel] [PATCH 0232] trusts: Allow reading ipaNTSecurityIdentifier in user and

Petr Viktorin pviktori at redhat.com
Mon Jun 23 13:09:39 UTC 2014


On 06/23/2014 03:00 PM, Alexander Bokovoy wrote:
> On Mon, 23 Jun 2014, Tomas Babej wrote:
>> Hi,
>>
>> this fixes initial findings of trust-after-aci-refactoring
>> investigation. Consider this effort still WIP (not this patch though).
>>
>> https://fedorahosted.org/freeipa/ticket/4385
> ACK. With this fix we are able to establish trust with git master.
>
> There are some strange errors where Samba libraries may report protocol
> version mismatch or AD refuse operating with access denied while AD
> administrator account works and creates trusts with rpcclient.
>
> This patch should go in but we are looking to fix the rest.
>

Hi Tomáš,
I've rebased the patch; there was a change in group ACIs recently.
I've also made the attributes lowercase for consistency.

Does this version still look OK?

-- 
Petr³

-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-tbabej-0232+pviktori-trusts-Allow-reading-ipaNTSecurityIdentifier-in-user.patch
Type: text/x-patch
Size: 5271 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20140623/165d1dcb/attachment.bin>


More information about the Freeipa-devel mailing list