[El-errata] ELBA-2016-2863 Oracle Linux 7 ipa bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Dec 6 18:53:25 PST 2016


Oracle Linux Bug Fix Advisory ELBA-2016-2863

http://linux.oracle.com/errata/ELBA-2016-2863.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ipa-admintools-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-client-4.4.0-14.0.1.el7_3.x86_64.rpm
ipa-client-common-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-common-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-python-compat-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-server-4.4.0-14.0.1.el7_3.x86_64.rpm
ipa-server-common-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-server-dns-4.4.0-14.0.1.el7_3.noarch.rpm
ipa-server-trust-ad-4.4.0-14.0.1.el7_3.x86_64.rpm
krb5-devel-1.14.1-27.el7_3.i686.rpm
krb5-devel-1.14.1-27.el7_3.x86_64.rpm
krb5-libs-1.14.1-27.el7_3.i686.rpm
krb5-libs-1.14.1-27.el7_3.x86_64.rpm
krb5-pkinit-1.14.1-27.el7_3.x86_64.rpm
krb5-server-1.14.1-27.el7_3.x86_64.rpm
krb5-server-ldap-1.14.1-27.el7_3.x86_64.rpm
krb5-workstation-1.14.1-27.el7_3.x86_64.rpm
libkadm5-1.14.1-27.el7_3.i686.rpm
libkadm5-1.14.1-27.el7_3.x86_64.rpm
python2-ipaclient-4.4.0-14.0.1.el7_3.noarch.rpm
python2-ipalib-4.4.0-14.0.1.el7_3.noarch.rpm
python2-ipaserver-4.4.0-14.0.1.el7_3.noarch.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.4.0-14.0.1.el7_3.src.rpm
http://oss.oracle.com/ol7/SRPMS-updates/krb5-1.14.1-27.el7_3.src.rpm



Description of changes:

ipa
[4.4.0-14.0.1]
- Blank out header-logo.png product-name.png
   Replace login-screen-logo.png [20362818]

[4.4.0-14]
- Resolves: #1378353 Replica install fails with old IPA master sometimes 
during
   replication process
   - spec file: bump minimal required version of 389-ds-base
- Resolves: #1387779 Make httpd publish CA certificate on Domain Level 1
   - Fix missing file that fails DL1 replica installation
- Resolves: #1387782 WebUI: Services are not displayed correctly after 
upgrade
   - WebUI: services without canonical name are shown correctly
- Resolves: #1389709 Traceback seen in error_log when trustdomain-del is run
   - trustdomain-del: fix the way how subdomain is searched

[4.4.0-13]
- Resolves: #1318616 CA fails to start after doing ipa-ca-install 
--external-ca
   - Keep NSS trust flags of existing certificates
- Resolves: #1360813 ipa-server-certinstall does not update all certificate
   stores and doesn't set proper trust permissions
   - Add cert checks in ipa-server-certinstall
- Resolves: #1371479 cert-find --all does not show information about 
revocation
   - cert: add revocation reason back to cert-find output
- Resolves: #1375133 WinSync users who have First.Last casing creates 
users who
   can have their password set
   - ipa passwd: use correct normalizer for user principals
- Resolves: #1377858 Users with 2FA tokens are not able to login to IPA 
servers
   - Properly handle LDAP socket closures in ipa-otpd
- Resolves: #1387779 Make httpd publish CA certificate on Domain Level 1
   - Make httpd publish its CA certificate on DL1

krb5
[1.14.1-27]
- Properly handle EOF on libkrad sockets
- Resolves: #1382449






More information about the El-errata mailing list