Commit Graph

16663 Commits

Author SHA1 Message Date
Love Hörnquist Åstrand
ab4cf1597e Add EKU for the KDC certificate
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17350 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-29 15:05:11 +00:00
Love Hörnquist Åstrand
03276c9ead (pk_verify_host): set better error string, only check kdc name/address
when we got a hostname/address passed in the the function.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17349 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-29 15:04:42 +00:00
Love Hörnquist Åstrand
36b923f56a (_kdc_pk_check_client): reorganize and make log when a SAN matches.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17348 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-29 14:30:01 +00:00
Love Hörnquist Åstrand
a4e67a6533 (hx509_cert_get_base_subject): reject un-canon proxy certs, not the reverse
(add_to_list): constify and fix argument order to copy_octet_string
(hx509_cert_find_subjectAltName_otherName): make work


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17347 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-29 14:22:41 +00:00
Love Hörnquist Åstrand
fea62ab3b7 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17346 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 16:43:26 +00:00
Love Hörnquist Åstrand
5a7018a15e pkinit certificates
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17345 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 16:42:59 +00:00
Love Hörnquist Åstrand
9275975f0f Generate pkinit certificates.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17344 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 16:41:56 +00:00
Love Hörnquist Åstrand
c6c3668d19 Add pkinit glue.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17343 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 16:41:17 +00:00
Love Hörnquist Åstrand
4ca34ce513 Add pk-init mapping file
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17342 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 14:11:02 +00:00
Love Hörnquist Åstrand
d8af61b107 Add pkcs11 example.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17341 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 14:06:16 +00:00
Love Hörnquist Åstrand
c0fba2d7ff Add openssl ca example
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17340 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 13:26:13 +00:00
Love Hörnquist Åstrand
c896e8ae74 Add kinit example.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17339 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 13:22:15 +00:00
Love Hörnquist Åstrand
059ee70ad1 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17338 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 13:16:32 +00:00
Love Hörnquist Åstrand
3ec5202b77 More options and some text about windows clients, certificate and KDCs.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17337 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 13:16:20 +00:00
Love Hörnquist Åstrand
04c94a1d76 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17336 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 12:23:24 +00:00
Love Hörnquist Åstrand
665526d2df x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17335 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 11:28:38 +00:00
Love Hörnquist Åstrand
4b90cf5552 Example pki-mapping file.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17334 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 11:27:19 +00:00
Love Hörnquist Åstrand
feb2699d9b (hx509_verify_hostname): implement stub function
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17333 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 11:24:10 +00:00
Love Hörnquist Åstrand
e5194fdc60 (pk_verify_host): verify hostname/address
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17332 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 11:23:35 +00:00
Love Hörnquist Åstrand
bfd894ccf4 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17331 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 10:52:27 +00:00
Love Hörnquist Åstrand
5e97c59ab7 Add missing ;'s, found by bison on a SuSE 8.2 machine.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17330 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 10:51:35 +00:00
Love Hörnquist Åstrand
cc3201fd9f x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17329 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 07:37:27 +00:00
Love Hörnquist Åstrand
0db21e2b07 Bump hdb interface version to 4.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17328 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-28 07:37:11 +00:00
Love Hörnquist Åstrand
9d3cae3291 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17327 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 20:52:35 +00:00
Love Hörnquist Åstrand
81ea1bb05f Document --credential=principal.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17326 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 20:52:12 +00:00
Love Hörnquist Åstrand
ca6c6b5caa x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17325 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 14:34:15 +00:00
Love Hörnquist Åstrand
149c2d1e5d Sprinkle more ap-req now that the credential is removed from the cache
using kdestroy --credential=


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17324 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 14:34:03 +00:00
Love Hörnquist Åstrand
25621f44fd check that AP_OPTS_MUTUAL_REQUIRED matches, check seqnumber
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17323 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 14:17:27 +00:00
Love Hörnquist Åstrand
385c718ea1 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17322 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 12:38:59 +00:00
Love Hörnquist Åstrand
d4c22d7bf8 Build as-req.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17321 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 12:38:29 +00:00
Love Hörnquist Åstrand
0c6b815385 Sprinkel some as-req
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17320 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 12:38:03 +00:00
Love Hörnquist Åstrand
506b246491 simple test program checking that as ap-req/as-rep exchange works
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17319 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 12:37:09 +00:00
Love Hörnquist Åstrand
2497e2d799 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17318 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 12:01:32 +00:00
Love Hörnquist Åstrand
76ee5cb311 (tgs_rep2): check that the client exists in the kerberos database if
its local request.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17317 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 12:01:09 +00:00
Love Hörnquist Åstrand
5c9982831b pass down HDB_F_GET_ flags as appropriate
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17316 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:33:21 +00:00
Love Hörnquist Åstrand
357ca89f2d (_kdc_db_fetch4): pass down flags though krb5_425_conv_principal_ext2
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17315 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:32:13 +00:00
Love Hörnquist Åstrand
2a5d097734 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17314 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:19:53 +00:00
Love Hörnquist Åstrand
eea5f34855 Pass in HDB_F_GET_ANY to all ->hdb fetch to hint what entries we are looking for
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17313 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:18:52 +00:00
Love Hörnquist Åstrand
06660d5790 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17312 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:10:51 +00:00
Love Hörnquist Åstrand
988af20ec2 set and clear error string
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17311 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:10:07 +00:00
Love Hörnquist Åstrand
5f22b44baa Break out the that we request from principal from the entry and pass
it in as a separate argument.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17310 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:09:30 +00:00
Love Hörnquist Åstrand
e4adaa6783 Break out the that we request from principal from the entry and pass
it in as a seprate argument.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17309 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:06:57 +00:00
Love Hörnquist Åstrand
83d3254750 (_kdc_db_fetch): Break out the that we request from principal from the
entry and pass it in as a seprate argument.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17308 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:05:25 +00:00
Love Hörnquist Åstrand
d176572cbc (hdb_get_entry): Break out the that we request from principal from the
entry and pass it in as a seprate argument.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17307 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:01:30 +00:00
Love Hörnquist Åstrand
becd133799 Break out the that we request from principal from the entry and pass
it in as a seprate argument.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17306 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 11:00:29 +00:00
Love Hörnquist Åstrand
47d79a7568 Break out the that we request from principal from the entry and pass
it in as a seprate argument. Add more flags to ->hdb_get(). Re-indent.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17305 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 10:59:32 +00:00
Love Hörnquist Åstrand
4170a1fe6e x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17304 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 09:18:09 +00:00
Love Hörnquist Åstrand
390feff0cb rshd_SOURCES += add limits_conf.c
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17303 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 09:17:54 +00:00
Love Hörnquist Åstrand
b927ccbbf1 Include "loginpaths.h"
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17302 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 09:17:01 +00:00
Love Hörnquist Åstrand
94731a9251 Read limits from limits.conf, patch from Daniel Ahlin on non-root login.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@17301 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-27 09:16:11 +00:00