Fri, 29 Mar 2024 14:49:24 UTC | login

Information for build ipa-4.9.6-6.el9

ID13927
Package Nameipa
Version4.9.6
Release6.el9
Epoch
Sourcegit+https://gitlab.com/redhat/centos-stream/rpms/ipa#992ffe6b8961c61fca314018e2ad91dc4def8c33
SummaryThe Identity, Policy and Audit system
DescriptionIPA is an integrated solution to provide centrally managed Identity (users, hosts, services), Authentication (SSO, 2FA), and Authorization (host access control, SELinux user roles, services). The solution provides features for further integration with Linux based clients (SUDO, automount) and integration with Active Directory based infrastructures (Trusts).
Built byfrenaud
State complete
Volume DEFAULT
StartedThu, 26 Aug 2021 14:17:14 UTC
CompletedThu, 26 Aug 2021 14:20:31 UTC
Taskbuild (c9s-candidate, /redhat/centos-stream/rpms/ipa:992ffe6b8961c61fca314018e2ad91dc4def8c33)
Extra{'source': {'original_url': 'git+https://gitlab.com/redhat/centos-stream/rpms/ipa#992ffe6b8961c61fca314018e2ad91dc4def8c33'}}
Tags
c9s-released
RPMs
src
ipa-4.9.6-6.el9.src.rpm (info) (download)
aarch64
ipa-client-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-client-epn-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-client-samba-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-server-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-server-trust-ad-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-client-debuginfo-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-debuginfo-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-debugsource-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-server-debuginfo-4.9.6-6.el9.aarch64.rpm (info) (download)
ipa-server-trust-ad-debuginfo-4.9.6-6.el9.aarch64.rpm (info) (download)
i686
ipa-client-4.9.6-6.el9.i686.rpm (info) (download)
ipa-client-epn-4.9.6-6.el9.i686.rpm (info) (download)
ipa-client-samba-4.9.6-6.el9.i686.rpm (info) (download)
ipa-client-debuginfo-4.9.6-6.el9.i686.rpm (info) (download)
ipa-debugsource-4.9.6-6.el9.i686.rpm (info) (download)
noarch
ipa-client-common-4.9.6-6.el9.noarch.rpm (info) (download)
ipa-common-4.9.6-6.el9.noarch.rpm (info) (download)
ipa-python-compat-4.9.6-6.el9.noarch.rpm (info) (download)
ipa-selinux-4.9.6-6.el9.noarch.rpm (info) (download)
ipa-server-common-4.9.6-6.el9.noarch.rpm (info) (download)
ipa-server-dns-4.9.6-6.el9.noarch.rpm (info) (download)
python3-ipaclient-4.9.6-6.el9.noarch.rpm (info) (download)
python3-ipalib-4.9.6-6.el9.noarch.rpm (info) (download)
python3-ipaserver-4.9.6-6.el9.noarch.rpm (info) (download)
python3-ipatests-4.9.6-6.el9.noarch.rpm (info) (download)
ppc64le
ipa-client-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-client-epn-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-client-samba-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-server-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-server-trust-ad-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-client-debuginfo-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-debuginfo-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-debugsource-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-server-debuginfo-4.9.6-6.el9.ppc64le.rpm (info) (download)
ipa-server-trust-ad-debuginfo-4.9.6-6.el9.ppc64le.rpm (info) (download)
s390x
ipa-client-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-client-epn-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-client-samba-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-server-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-server-trust-ad-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-client-debuginfo-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-debuginfo-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-debugsource-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-server-debuginfo-4.9.6-6.el9.s390x.rpm (info) (download)
ipa-server-trust-ad-debuginfo-4.9.6-6.el9.s390x.rpm (info) (download)
x86_64
ipa-client-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-client-epn-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-client-samba-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-server-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-server-trust-ad-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-client-debuginfo-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-debuginfo-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-debugsource-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-server-debuginfo-4.9.6-6.el9.x86_64.rpm (info) (download)
ipa-server-trust-ad-debuginfo-4.9.6-6.el9.x86_64.rpm (info) (download)
Logs
aarch64
build.log
hw_info.log
installed_pkgs.log
mock_output.log
noarch_rpmdiff.json
root.log
state.log
i686
build.log
hw_info.log
installed_pkgs.log
mock_output.log
noarch_rpmdiff.json
root.log
state.log
ppc64le
build.log
hw_info.log
installed_pkgs.log
mock_output.log
noarch_rpmdiff.json
root.log
state.log
s390x
build.log
hw_info.log
installed_pkgs.log
mock_output.log
noarch_rpmdiff.json
root.log
state.log
x86_64
build.log
hw_info.log
installed_pkgs.log
mock_output.log
noarch_rpmdiff.json
root.log
state.log
Changelog * Thu Aug 26 2021 Florence Blanc-Renaud <frenaud@redhat.com> - 4.9.6-6 - Resolves: rhbz#1998098 - Backport latest test fixes in python3-ipatests - ipatests: Test unsecure nsupdate. - ipatests: Fix TestAJPSecretUpgrade tests on systems without pkiuser - ipatests: test_ipahealthcheck: Verify permissions for /var/log/ files - ipatests: test to renew certs on replica using ipa-cert-fix - ipatests: wait while http/ldap/pkinit cert get renew on replica - ipatests: refactor test_ipa_cert_fix with tasks - ipatests: use whole date for journalctl --since * Tue Aug 17 2021 Florence Blanc-Renaud <frenaud@redhat.com> - 4.9.6-5 - Resolves: rhbz#1988383 Do SRV discovery in ipa-getkeytab if -s and -H aren't provided - ipa-getkeytab: add option to discover servers using DNS SRV - ipa-getkeytab: fix compiler warnings - ipatests: test ipa-getkeytab server option - Resolves: rhbz#1986329 ipa-server install failure without DNS - Fix ldapupdate.get_sub_dict() for missing named user - Resolves: rhbz#1980734 Remove python3-pexpect as dependency for ipatests pkg - freeipa.spec.in: remove python3-pexpect from Requires - Resolves: rhbz#1992538 Backport recent test fixes in python3-ipatests - ipatests: use whole date when calling journalctl --since - ipatests: Fix for test_source_ipahealthcheck_ipa_host_check_ipahostkeytab - ipatests: test_ipahealthcheck: print a message if a system is healthy - ipatests: test_installation: move tracking_reqs dependency to ipalib constants ipaserver: krainstance: utilize moved tracking_reqs dependency - webui tests: close notification when revoking cert - ipatests: Test ipa-cert-fix warns when startup directive is missing from CS.cfg - webui tests: fix algo for finding available idrange - ipatests: smbclient "-k" => "--use-kerberos=desired" - test_acme: refactor with tasks - test_acme: make password renewal more robust - tasks.py: fix flake8-reported issues - ipatests: Test for OTP when the LDAP connection timed out. - ipatests: verify that getcert output includes the issued date - ipatests: Look for warning into stderr instead of stdout - ipatests: use krb5_trace in TestIpaAdTrustInstall - ipatests: Test ldapsearch with base scope works with compat tree. - ipatests: skip test_basesearch_compat_tree on fedora. - ipatests: Refactor test_check_otpd_after_idle_timeout * Mon Aug 09 2021 Mohan Boddu <mboddu@redhat.com> - 4.9.6-4.1 - Rebuilt for IMA sigs, glibc 2.34, aarch64 flags Related: rhbz#1991688 * Fri Jul 23 2021 Rob Crittenden <rcritten@redhat.com> - 4.9.6-4 - Use new method in check to prevent removal of last KRA (#1985072) - ipatests: NAMED_CRYPTO_POLICY_FILE not defined for RHEL (#1982952) - Fix index definition for memberOf (#1952028) * Thu Jul 15 2021 Florence Blanc-Renaud <frenaud@redhat.com> - 4.9.6-3 - Resolves: rhbz#1979629 Add checks to prevent assigning authentication indicators to internal IPA services - Resolves: rhbz#1982212 ipa-trust-add fails with "not enough quota" - Resolves: rhbz#1952028 [RFE] Add support for managing subuids and subgids in FreeIPA - Resolves: rhbz#1981789 [man page] contradiction in ipa-server-upgrade command's man page and usage * Fri Jul 09 2021 Florence Blanc-Renaud <frenaud@redhat.com> - 4.9.6-2 - Resolves: rhbz#1955440 ipa installation fails to configure chrony - Resolves: rhbz#1976761 Package python3-ipatests (from CRB repo) Requires python3-coverage - Resolves: rhbz#1979609 Unable to set ipaUserAuthType with stageuser-add - Resolves: rhbz#1979629 Add checks to prevent assigning authentication indicators to internal IPA services * Wed Jun 30 2021 Florence Blanc-Renaud <frenaud@redhat.com> - 4.9.6-1 - Resolves: rhbz#1969351 Rebase IPA to latest 4.9.x version - Resolves: rhbz#1976288 ansible-freeipa automember test fails with `automember_add_condition: testgroup: 'objectclass'` due to ldap cache - Resolves: rhbz#1975139 Upgrade error: Add failure missing required attribute "objectclass" - Resolves: rhbz#1973024 CA_less ipa-server-install fails if CA cert subject contains non ascii chars - Resolves: rhbz#1966101 [RFE] - IDM - Allow specifying permanent logging settings for BIND - Resolves: rhbz#1962570 IPA in c9s should not require redhat-logos-ipa as a runtime package - Resolves: rhbz#1957736 [RFE] IPA to allow configuring auto-private-groups at idrange level * Wed Jun 16 2021 Mohan Boddu <mboddu@redhat.com> - 4.9.3-2.1 - Rebuilt for RHEL 9 BETA for openssl 3.0 Related: rhbz#1971065 * Tue Apr 20 2021 Florence Blanc-Renaud <frenaud@redhat.com> - 4.9.3-2 - RHEL 9 Beta mass rebuild. Resolves: rhbz#1951304 * Wed Mar 31 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.3-1 - Upstream release FreeIPA 4.9.3 * Fri Feb 26 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.2-4 - Rebuild against 389-ds and PKI to fix https://github.com/389ds/389-ds-base/issues/4609 * Tue Feb 23 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.2-3 - Only use python-platform on RHEL 8 * Mon Feb 15 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.2-2 - Fix ipatests dependency to python3-pexpect * Mon Feb 15 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.2-1 - Upstream release FreeIPA 4.9.2 * Wed Jan 27 2021 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.1-1 - Upstream release FreeIPA 4.9.1 * Tue Jan 26 2021 Fedora Release Engineering <releng@fedoraproject.org> - 4.9.0-2.1 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild * Wed Jan 20 2021 Rob Crittenden <rcritten@redhat.com> - 4.9.0-2 - Set client keytab location for 389ds (RHBZ#1918075) * Wed Dec 23 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-1 - FreeIPA 4.9.0 final release * Wed Dec 16 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.6.rc3 - Refactor DNSSEC paths creation code (upstream PR#5340) * Thu Dec 10 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.5.rc3 - FreeIPA 4.9.0 release candidate 3 - Enforce C.UTF-8 locale in systemd service units - Fold up fixes from Rawhide and RHEL 8.4 testing * Wed Dec 09 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.4.rc2 - Fix upgrade script for CA rule rewrites - Fix permissions for /run/ipa/ccaches * Fri Dec 04 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.3.rc2 - Correct SELinux policy requirements * Fri Dec 04 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.2.rc2 - FreeIPA 4.9.0 release candidate 2 * Thu Nov 19 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.1.rc1 - Use correct bind PKCS11 engine dependencies - Fix SELinux build requirement - Fix linting requirements * Wed Nov 18 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.9.0-0.rc1 - FreeIPA 4.9.0 release candidate 1 - Synchronize spec file with upstream and RHEL * Wed Oct 28 2020 Adam Williamson <awilliam@redhat.com> - 4.8.10-7 - Backport #5212 for deployment failures with 389-ds-base 1.4.4.6+ * Tue Oct 13 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.10-6 - Handle sshd_config upgrade properly Fixes: rhbz#1887928 * Tue Sep 29 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.10-5 - Properly handle upgrade case when systemd-resolved is enabled * Mon Sep 28 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.10-4 - Fix permissions for /etc/systemd/resolved.conf.d/zzz-ipa.conf - Add NetworkManager and systemd-resolved configuration files to backup * Sun Sep 27 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.10-3 - Fix dependency between freeipa-selinux and freeipa-common - Resolves: rhbz#1883005 * Sat Sep 26 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.10-2 - Support upgrade F32 -> F33 with systemd-resolved * Sat Sep 26 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.10-1 - Upstream release FreeIPA 4.8.10 * Fri Aug 21 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.9-2 - Backport fix for detecting older installations on upgrade * Thu Aug 20 2020 François Cami <fcami@redhat.com> - 4.8.9-1 - Upstream release FreeIPA 4.8.9 * Mon Aug 03 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.7-5 - Make use of unshare+chroot in ipa-extdom-extop unittests to work against glibc 2.32 * Sat Aug 01 2020 Fedora Release Engineering <releng@fedoraproject.org> - 4.8.7-4 - Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Thu Jul 30 2020 Merlin Mathesius <mmathesi@redhat.com> - 4.8.7-3 - Conditional fixes for ELN to set krb5-kdb version appropriately * Mon Jul 27 2020 Fedora Release Engineering <releng@fedoraproject.org> - 4.8.7-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild * Wed Jun 10 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.7-1 - Upstream release FreeIPA 4.8.7 * Tue May 26 2020 Miro Hrončok <mhroncok@redhat.com> - 4.8.6-2 - Rebuilt for Python 3.9 * Fri Mar 27 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.6-1 - Upstream release FreeIPA 4.8.6 * Sat Mar 21 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.5-2 - Roll up post-release fixes from upstream - Move freeipa-selinux to be a dependency of freeipa-common * Wed Mar 18 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.5-1 - Upstream release FreeIPA 4.8.5 - Depend on selinux-policy-devel 3.14.6-9 for build due to a makefile issue in SELinux external policy support * Tue Mar 03 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.4-8 - Support opendnssec 2.1 - Resolves: #1809492 * Mon Feb 17 2020 François Cami <fcami@redhat.com> - 4.8.4-7 - Fix audit_as_req() callback usage - Resolves: #1803786 * Sat Feb 01 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.4-6 - Fix constraint delegation for krb5 1.18 update - Resolves: #1797096 * Tue Jan 28 2020 Fedora Release Engineering <releng@fedoraproject.org> - 4.8.4-5 - Rebuilt for https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild * Tue Jan 28 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.4-4 - Rebuild against krb5 1.18 beta * Sun Jan 26 2020 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.4-3 - Rebuild against Samba 4.12RC1 * Mon Dec 16 2019 Adam Williamson <awilliam@redhat.com> - 4.8.4-2 - Backport PR #4045 to fix overlapping DNS zone check bugs * Sat Dec 14 2019 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.4-1 - New upstream release 4.8.4 * Tue Nov 26 2019 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.3-1 - New upstream release 4.8.3 - CVE-2019-14867: Denial of service in IPA server due to wrong use of ber_scanf() - CVE-2019-10195: Don't log passwords embedded in commands in calls using batch * Tue Nov 12 2019 Rob Crittenden <rcritten@redhat.com> - 4.8.2-1 - New upstream release 4.8.2 - Replace %{_libdir} macro in BuildRequires (#1746882) - Restore user-nsswitch.conf before calling authselect (#1746557) - ipa service-find does not list cifs service created by ipa-client-samba (#1731433) - Occasional 'whoami.data is undefined' error in FreeIPA web UI (#1699109) - ipa-kra-install fails due to fs.protected_regular=1 (#1698384) * Sun Oct 20 2019 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.1-5 - Don't create log files from helper scripts - Fixes: rhbz#1754189 * Tue Oct 08 2019 Christian Heimes <cheimes@redhat.com> - 4.8.1-4 - Fix compatibility issue with preexec_fn in Python 3.8 - Fixes: rhbz#1759290 * Tue Oct 01 2019 Alexander Bokovoy <abokovoy@redhat.com> - 4.8.1-3 - Fix ipasam for compatibility with Samba 4.11 - Fixes: rhbz#1757089