URL: https://github.com/freeipa/freeipa/pull/841 Author: sumit-bose Title: #841: ipa-kdb: use canonical principal in certauth plugin Action: opened
PR body: """ Currently the certauth plugin use the unmodified principal from the request to lookup the user. This might fail if e.g. enterprise principals are use. With this patch the canonical principal form the kdc entry is used.
Resolves https://pagure.io/freeipa/issue/6993 """
To pull the PR as Git branch: git remote add ghfreeipa https://github.com/freeipa/freeipa git fetch ghfreeipa pull/841/head:pr841 git checkout pr841
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin
Label: +prioritized
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin
dkupka commented: """ Works for me. """
See the full comment at https://github.com/freeipa/freeipa/pull/841#issuecomment-306743729
URL: https://github.com/freeipa/freeipa/pull/841 Title: #841: ipa-kdb: use canonical principal in certauth plugin
Label: +ack
freeipa-devel@lists.fedorahosted.org