[El-errata] ELBA-2016-2863 Oracle Linux 7 ipa bug fix update
Errata Announcements for Oracle Linux
el-errata at oss.oracle.com
Tue Dec 6 18:53:25 PST 2016
Oracle Linux Bug Fix Advisory ELBA-2016-2863
http://linux.oracle.com/errata/ELBA-2016-2863.html
The following updated rpms for Oracle Linux 7 have been uploaded to the
Unbreakable Linux Network:
x86_64:
ipa-admintools-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-client-4.4.0-14.0.1.el7_3.x86_64.rpm
ipa-client-common-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-common-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-python-compat-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-server-4.4.0-14.0.1.el7_3.x86_64.rpm
ipa-server-common-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-server-dns-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-server-trust-ad-4.4.0-14.0.1.el7_3.x86_64.rpm
krb5-devel-1.14.1-27.el7_3.i686.rpm
krb5-devel-1.14.1-27.el7_3.x86_64.rpm
krb5-libs-1.14.1-27.el7_3.i686.rpm
krb5-libs-1.14.1-27.el7_3.x86_64.rpm
krb5-pkinit-1.14.1-27.el7_3.x86_64.rpm
krb5-server-1.14.1-27.el7_3.x86_64.rpm
krb5-server-ldap-1.14.1-27.el7_3.x86_64.rpm
krb5-workstation-1.14.1-27.el7_3.x86_64.rpm
libkadm5-1.14.1-27.el7_3.i686.rpm
libkadm5-1.14.1-27.el7_3.x86_64.rpm
python2-ipaclient-4.4.0-14.0.1.el7_3.noarch.rpm
python2-ipalib-4.4.0-14.0.1.el7_3.noarch.rpm
python2-ipaserver-4.4.0-14.0.1.el7_3.noarch.rpm
SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.4.0-14.0.1.el7_3.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/krb5-1.14.1-27.el7_3.src.rpm
Description of changes:
ipa
[4.4.0-14.0.1]
- Blank out header-logo.png product-name.png
Replace login-screen-logo.png [20362818]
[4.4.0-14]
- Resolves: #1378353 Replica install fails with old IPA master sometimes
during
replication process
- spec file: bump minimal required version of 389-ds-base
- Resolves: #1387779 Make httpd publish CA certificate on Domain Level 1
- Fix missing file that fails DL1 replica installation
- Resolves: #1387782 WebUI: Services are not displayed correctly after
upgrade
- WebUI: services without canonical name are shown correctly
- Resolves: #1389709 Traceback seen in error_log when trustdomain-del is run
- trustdomain-del: fix the way how subdomain is searched
[4.4.0-13]
- Resolves: #1318616 CA fails to start after doing ipa-ca-install
--external-ca
- Keep NSS trust flags of existing certificates
- Resolves: #1360813 ipa-server-certinstall does not update all certificate
stores and doesn't set proper trust permissions
- Add cert checks in ipa-server-certinstall
- Resolves: #1371479 cert-find --all does not show information about
revocation
- cert: add revocation reason back to cert-find output
- Resolves: #1375133 WinSync users who have First.Last casing creates
users who
can have their password set
- ipa passwd: use correct normalizer for user principals
- Resolves: #1377858 Users with 2FA tokens are not able to login to IPA
servers
- Properly handle LDAP socket closures in ipa-otpd
- Resolves: #1387779 Make httpd publish CA certificate on Domain Level 1
- Make httpd publish its CA certificate on DL1
krb5
[1.14.1-27]
- Properly handle EOF on libkrad sockets
- Resolves: #1382449
More information about the El-errata
mailing list