- Issued:
- 2018-05-15
- Updated:
- 2018-05-15
RHEA-2018:1485 - Product Enhancement Advisory
Synopsis
ovirt-engine-extension-aaa-ldap bug fix and enhancement update for RHV 4.2
Type/Severity
Product Enhancement Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated ovirt-engine-extension-aaa-ldap packages that fix several bugs and add various enhancements are now available.
Description
The ovirt-engine-extension-aaa-ldap extension allows users to customize their external directory setup easily. The ovirt-engine-extension-aaa-ldap extension supports many different LDAP server types, and an interactive setup script is provided to assist you with the setup for most LDAP types.
Changes to the ovirt-engine-extension-aaa-ldap component:
- Using the virt-engine-extension-aaa-ldap-setup tool it's possible to configure an Active Directory forest with multi-domain trust, or an Active Directory forest with a single domain. However it is currently not possible to configure using a single domain from a multi-domain Active Directory forest because this is advanced configuration which is difficult to perform automatically.
This update provides common advanced Active Directory configuration examples that users can copy and adapt to their local environment. Those examples are bundled within the ovirt-engine-extension-aaa-ldap package, and can be found at /usr/share/ovirt-engine-extension-aaa-ldap/examples/README.md.
The ovirt-engine-extension-aaa-ldap-setup tool user experience has also been improved with the following changes:
- Add more detailed error reporting for various Active Directory forest configuration steps.
- Made the login test mandatory to test the provided configuration. (BZ#1462294)
Solution
Before applying this update, make sure all previously released errata
relevant to your system have been applied.
For details on how to apply this update, refer to:
Affected Products
- Red Hat Virtualization Manager 4.2 x86_64
Fixes
- BZ - 1462294 - [RFE] AD domain configuration is not supported in ovirt-engine-extension-aaa-ldap-setup, provide examples how to configure AD domain
- BZ - 1475015 - [Rebase] ovirt-engine-extension-aaa-ldap for RHV 4.2
- BZ - 1511120 - Misleading Error : Unexpected comma or semicolon found at the end of the DN string.
- BZ - 1524120 - Fix language in ovirt-engine-extension-aaa-ldap/examples/README.md
- BZ - 1538217 - AAA - setup script errors out solely on the exit status of dig command.
CVEs
(none)
References
(none)
Red Hat Virtualization Manager 4.2
SRPM | |
---|---|
ovirt-engine-extension-aaa-ldap-1.3.7-1.el7ev.src.rpm | SHA-256: 77727f0d93f2cdc04554375b78ffe1f8e90da9003c4e1a050163777e6a764a91 |
x86_64 | |
ovirt-engine-extension-aaa-ldap-1.3.7-1.el7ev.noarch.rpm | SHA-256: 60c24856cf47b3e16b787c532487d64c72bc73075497514fa239ba5853ee3729 |
ovirt-engine-extension-aaa-ldap-setup-1.3.7-1.el7ev.noarch.rpm | SHA-256: 512f2aa7685f705501469957a9509f5ec0ac351256510c29bfd0acc8138b9be1 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.