[El-errata] ELBA-2017-3319 Oracle Linux 7 ipa bug fix update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Thu Nov 30 21:14:14 PST 2017


Oracle Linux Bug Fix Advisory ELBA-2017-3319

http://linux.oracle.com/errata/ELBA-2017-3319.html

The following updated rpms for Oracle Linux 7 have been uploaded to the 
Unbreakable Linux Network:

x86_64:
ipa-client-4.5.0-22.0.1.el7_4.x86_64.rpm
ipa-client-common-4.5.0-22.0.1.el7_4.noarch.rpm
ipa-common-4.5.0-22.0.1.el7_4.noarch.rpm
ipa-python-compat-4.5.0-22.0.1.el7_4.noarch.rpm
ipa-server-4.5.0-22.0.1.el7_4.x86_64.rpm
ipa-server-common-4.5.0-22.0.1.el7_4.noarch.rpm
ipa-server-dns-4.5.0-22.0.1.el7_4.noarch.rpm
ipa-server-trust-ad-4.5.0-22.0.1.el7_4.x86_64.rpm
python2-ipaclient-4.5.0-22.0.1.el7_4.noarch.rpm
python2-ipalib-4.5.0-22.0.1.el7_4.noarch.rpm
python2-ipaserver-4.5.0-22.0.1.el7_4.noarch.rpm


SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/ipa-4.5.0-22.0.1.el7_4.src.rpm



Description of changes:

[4.5.0-22.0.1.el7_4]
- Rebuild
- Blank out header-logo.png product-name.png
   Replace login-screen-logo.png [20362818]

[4.5.0-22.el7]
- Resolves: #1506528 In case full PKINIT configuration is failing during
   server/replica install the error message should be more meaningful.
     - Less confusing message for PKINIT configuration during install
- Resolves: #1506526 Use X509v3 Basic Constraints "CA:TRUE" instead of
   "CA:FALSE" IPA CA CSR
     - Include the CA basic constraint in CSRs when renewing a CA
- Resolves: #1506913 ipa-replica-install might fail because of an already
   existing entry cn=ipa-http-delegation,cn=s4u2proxy,cn=etc,$SUFFIX
     - Checks if replica-s4u2proxy.ldif should be applied
- Resolves: #1506525 server-del doesn't remove dns-server configuration
   from ldap
     - server.py: Removes dns-server configuration from ldap




More information about the El-errata mailing list