[El-errata] ELBA-2015-2562 Oracle Linux 7 ipa bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Dec 8 13:18:10 PST 2015


Oracle Linux Bug Fix Advisory ELBA-2015-2562

http://linux.oracle.com/errata/ELBA-2015-2562.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ipa-admintools-4.2.0-15.0.1.el7_2.3.x86_64.rpm
ipa-client-4.2.0-15.0.1.el7_2.3.x86_64.rpm
ipa-python-4.2.0-15.0.1.el7_2.3.x86_64.rpm
ipa-server-4.2.0-15.0.1.el7_2.3.x86_64.rpm
ipa-server-dns-4.2.0-15.0.1.el7_2.3.x86_64.rpm
ipa-server-trust-ad-4.2.0-15.0.1.el7_2.3.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.2.0-15.0.1.el7_2.3.src.rpm



Description of changes:

[4.2.0-15.0.1.3]
- Drop redhat-access-plugin-ipa requires for OL7
   Blank out header-logo.png product-name.png
   Replace login-screen-logo.png [20362818]

[4.2.0-15.3]
- Resolves: #1284052 IPA DNS Zone/DNS Forward Zone details missing after
   upgrade from RHEL 7.0 to RHEL 7.2
   - Fix upgrade of forwardzones when zone is in realmdomains

[4.2.0-15.2]
- Resolves: #1283890 installer options are not validated at the beginning of
   installation
   - Fix incorrectly rebased patch 0144
- Resolves: #1284803 Default CA ACL rule is not created during
   ipa-replica-install
   - disconnect ldap2 backend after adding default CA ACL profiles
   - do not disconnect when using existing connection to check default 
CA ACLs

[4.2.0-15.1]
- Resolves: #1283882 IPA certificate auto renewal fail with "Invalid
   Credential"
   - cert renewal: make renewal of ipaCert atomic
- Resolves: #1283883 ipa upgrade causes vault internal error
   - install: export KRA agent PEM file in ipa-kra-install
- Resolves: #1283884 ipa-kra-install: fails to apply updates
   - suppress errors arising from adding existing LDAP entries during KRA
     install
- Resolves: #1283890 installer options are not validated at the beginning of
   installation
   - install: fix command line option validation
- Resolves: #1283915 Caching of ipaconfig does not work in framework
   - fix caching in get_ipa_config
- Resolves: #1284025 sshd_config change on ipa-client-install can 
prevent sshd
   from starting up
   - client install: do not corrupt OpenSSH config with Match sections
- Resolves: #1284052 IPA DNS Zone/DNS Forward Zone details missing after
   upgrade from RHEL 7.0 to RHEL 7.2
   - upgrade: fix migration of old dns forward zones
- Resolves: #1284803 Default CA ACL rule is not created during
   ipa-replica-install
   - TLS and Dogtag HTTPS request logging improvements
   - Avoid race condition caused by profile delete and recreate
   - Do not erroneously reinit NSS in Dogtag interface
   - Add profiles and default CA ACL on migration
- Resolves: #1284811 ipa-cacert-manage renew fails on nonexistent ldap
   connection
   - ipa-cacert-renew: Fix connection to ldap.
- Resolves: #1284813 ipa-otptoken-import fails on nonexistent ldap 
connection
   - ipa-otptoken-import: Fix connection to ldap.





More information about the El-errata mailing list