[El-errata] ELBA-2017-2568 Oracle Linux 7 ipa bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Sep 5 18:07:33 PDT 2017


Oracle Linux Bug Fix Advisory ELBA-2017-2568

http://linux.oracle.com/errata/ELBA-2017-2568.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ipa-client-4.5.0-21.0.1.el7_4.1.2.x86_64.rpm
ipa-client-common-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
ipa-common-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
ipa-python-compat-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
ipa-server-4.5.0-21.0.1.el7_4.1.2.x86_64.rpm
ipa-server-common-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
ipa-server-dns-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
ipa-server-trust-ad-4.5.0-21.0.1.el7_4.1.2.x86_64.rpm
python2-ipaclient-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
python2-ipalib-4.5.0-21.0.1.el7_4.1.2.noarch.rpm
python2-ipaserver-4.5.0-21.0.1.el7_4.1.2.noarch.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.5.0-21.0.1.el7_4.1.2.src.rpm



Description of changes:

[4.5.0-21.0.1.el7_4.1.2]
- Blank out header-logo.png product-name.png
   Replace login-screen-logo.png [20362818]

[4.5.0-21.el7.1.2]
- Fixing issues reported by Errata tool

[4.5.0-21.el7.1.1]
- Resolves: #1477046 Use CommonNameToSANDefault in default profile
   (new installs only)
   - Restore old version of caIPAserviceCert for upgrade only

[4.5.0-21.el7.1]
- Resolves: #1473272 Provide a tooling automating the configuration
   of Smart Card authentication on a FreeIPA master
   - smart-card advises: configure systemwide NSS DB also on master
   - smart-card advises: add steps to store smart card signing CA cert
   - Allow to pass in multiple CA cert paths to the smart card advises
   - add a class that tracks the indentation in the generated advises
   - delegate the indentation handling in advises to dedicated class
   - advise: add an infrastructure for formatting Bash compound statements
   - delegate formatting of compound Bash statements to dedicated classes
   - Fix indentation of statements in Smart card advises
   - Use the compound statement formatting API for configuring PKINIT
   - smart card advises: use a wrapper around Bash `for` loops
   - smart card advise: use password when changing trust flags on HTTP cert
   - smart-card-advises: ensure that krb5-pkinit is installed on client
- Resolves: #1477046 Use CommonNameToSANDefault in default profile
   (new installs only)
   - Add CommonNameToSANDefault to default cert profile
- Resolves: #1475664 NULL LDAP context in call to ldap_search_ext_s
   during search in cn=ad,cn=trusts,dc=example,dc=com
   - NULL LDAP context in call to ldap_search_ext_s during search





More information about the El-errata mailing list