[El-errata] ELBA-2016-1036 Oracle Linux 7 ipa bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Thu May 12 15:34:38 PDT 2016


Oracle Linux Bug Fix Advisory ELBA-2016-1036

http://linux.oracle.com/errata/ELBA-2016-1036.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ipa-admintools-4.2.0-15.0.1.el7_2.15.x86_64.rpm
ipa-client-4.2.0-15.0.1.el7_2.15.x86_64.rpm
ipa-python-4.2.0-15.0.1.el7_2.15.x86_64.rpm
ipa-server-4.2.0-15.0.1.el7_2.15.x86_64.rpm
ipa-server-dns-4.2.0-15.0.1.el7_2.15.x86_64.rpm
ipa-server-trust-ad-4.2.0-15.0.1.el7_2.15.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.2.0-15.0.1.el7_2.15.src.rpm



Description of changes:

[4.2.0-15.0.1.15]
- Drop redhat-access-plugin-ipa requires for OL7
   Blank out header-logo.png product-name.png
   Replace login-screen-logo.png [20362818]

[4.2.0-15.15]
- Related: #1327197 Crash during IPA upgrade due to slapd
   - spec file: update minimum required version of slapi-nis

[4.2.0-15.14]
- Rebuild against newer Samba version
- Related: #1322690

[4.2.0-15.13]
- Resolves: #1324060 Installers fail when there are multiple versions of the
   same certificate
   - certdb: never use the -r option of certutil

[4.2.0-15.12]
- Resolves: #1309382 issues with migration from RHEL 6 self-signed to 
RHEL 7 CA
   IPA setup
   - replica install: improvements in the handling of CA-related IPA config
     entries

[4.2.0-15.11]
- Resolves: #1311470 ipa trust-add succeded but after that ipa trust-find
   returns "0 trusts matched"
   - Fix broken trust warnings

[4.2.0-15.10]
- Resolves: #1311470 ipa trust-add succeded but after that ipa trust-find
   returns "0 trusts matched"
   - Insure the admin_conn is disconnected on stop
   - Fix connections to DS during installation
- Renamed patch 1011 to 0196, as it was merged upstream

[4.2.0-15.9]
- Resolves: #1311468 shared certificateProfiles container is missing on a
   freshly installed RHEL7.2 system
   - upgrade: unconditional import of certificate profiles into LDAP
- Resolves: #1311470 ipa trust-add succeded but after that ipa trust-find
   returns "0 trusts matched"
   - upgrade: fix config of sidgen and extdom plugins
   - trusts: use ipaNTTrustPartner attribute to detect trust entries
   - Warn user if trust is broken
   - fix upgrade: wait for proper DS socket after DS restart
- Resolves: #1311502 [RFE] compat tree: show AD members of IPA groups
   - slapi-nis: update configuration to allow external members of IPA groups

[4.2.0-15.8]
- Resolves: #1303052 install fails when locale is "fr_FR.UTF-8"
   - Do not decode HTTP reason phrase from Dogtag
- Resolves: #1303059 --setup-dns and other options is forgotten for using an
   external PKI
   - installer: Propagate option values from components instead of 
copying them.
   - installer: Fix logic of reading option values from cache.
- Resolves: #1309362 User should be notified for wrong password in password
   reset page
   - Fixed login error message box in LoginScreen page
- Resolves: #1309382 issues with migration from RHEL 6 self-signed to 
RHEL 7 CA
   IPA setup
   - ipa-ca-install: print more specific errors when CA is already installed
   - cert renewal: import all external CA certs on IPA CA cert renewal
   - CA install: explicitly set dogtag_version to 10
   - fix standalone installation of externally signed CA on IPA master
   - replica install: validate DS and HTTP server certificates

[4.2.0-15.7]
- Resolves: #1304333 In IPA-AD trust environment some secondary IPA 
based Posix
   groups are missing
   - ipa-kdb: map_groups() consider all results





More information about the El-errata mailing list