Commit Graph

12956 Commits

Author SHA1 Message Date
Love Hörnquist Åstrand
237ff82b29 add pkinit support
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13094 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-08 08:56:38 +00:00
Love Hörnquist Åstrand
61cd5b101e add support for pkinit
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13093 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-08 08:52:07 +00:00
Love Hörnquist Åstrand
bb6a4a2b80 rename krb5_pk_init_openssl_ctx to krb5_pk_init_ctx
fix win2k error handling


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13092 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-08 08:49:02 +00:00
Love Hörnquist Åstrand
acc61addac make compile again
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13091 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-08 08:46:58 +00:00
Love Hörnquist Åstrand
f955c2a095 add the opaque krb5_pk_init_ctx to _krb5_get_init_creds_opt_private
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13090 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-08 08:42:03 +00:00
Love Hörnquist Åstrand
0c7a0277a1 PKINIT patch from Daniel Kouril and Petr Holub, I removed the
dependency on valicert asn1 parser, remove smartcard and globus
support (for now). Work to be done on this: DH support, Globus
support, Smartcard support, windows support (MS implements -09 of the
draft), verify that it conforms the new draft


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13089 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-08 08:32:11 +00:00
Love Hörnquist Åstrand
d56cb05fe8 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13088 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-07 23:19:30 +00:00
Love Hörnquist Åstrand
c066dfa9e4 spelling, partly from jmc <jmc@prioris.mini.pw.edu.pl>
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13087 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-07 23:18:02 +00:00
Love Hörnquist Åstrand
ce15bb75c3 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13086 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-07 23:14:07 +00:00
Love Hörnquist Åstrand
9ecc605816 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13085 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-07 07:45:26 +00:00
Love Hörnquist Åstrand
48a9c79e8f (copy_oid): copy all components
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13084 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-07 07:39:43 +00:00
Love Hörnquist Åstrand
113cf794d6 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13083 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-06 01:34:19 +00:00
Love Hörnquist Åstrand
bb7c2ec23c checksum the header last in MIC token, update to -03
From: Luke Howard <lukeh@padl.com>


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13082 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-11-06 01:27:50 +00:00
Love Hörnquist Åstrand
24bcc161e3 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13081 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-29 23:12:02 +00:00
Johan Danielsson
c12de88181 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13079 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-27 11:16:21 +00:00
Johan Danielsson
7448fcfe7c document capaths section
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13077 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-27 11:14:55 +00:00
Johan Danielsson
5bfcbbf79b x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13073 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 18:48:54 +00:00
Johan Danielsson
ed1bc5a928 make sure that the server realm and the krbtgt second component are
identical; get rpath from the capaths section


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13072 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 18:48:20 +00:00
Johan Danielsson
3cedc78b77 document recent changes
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13071 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 18:45:56 +00:00
Johan Danielsson
1461770557 change logic for when to check transited policy to a tri-state model
involving per principal flags (to be implemented)


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13070 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 18:22:24 +00:00
Johan Danielsson
3ddd0c11e7 change enforce_transited_policy to a tri-state variable
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13069 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 18:19:11 +00:00
Love Hörnquist Åstrand
da5f054d77 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13068 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 06:08:38 +00:00
Love Hörnquist Åstrand
731fab1b47 (krb5_domain_x500_encode): always zero out encoding to make sure it
have a defined value on failure


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13066 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-22 06:04:35 +00:00
Love Hörnquist Åstrand
2e4e601571 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13063 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 23:08:50 +00:00
Love Hörnquist Åstrand
4cd19e3fe3 (krb5_domain_x500_encode): if num_realms == 0, set encoding and return
(avoids malloc(0)), check return value for malloc


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13062 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 23:06:50 +00:00
Love Hörnquist Åstrand
f052cd93b0 spelling, From: Tracy Di Marco White
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13059 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 21:34:32 +00:00
Johan Danielsson
fbf5812618 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13046 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 16:58:00 +00:00
Johan Danielsson
fb3910cc5a (fix_transited_encoding): always print cross-realm information
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13045 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 16:56:32 +00:00
Love Hörnquist Åstrand
ff498fb097 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13044 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 14:53:17 +00:00
Love Hörnquist Åstrand
d18d7cea84 (fix_transited_encoding): set transited type
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13043 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 14:53:02 +00:00
Johan Danielsson
a49cebb033 fix capaths example
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13042 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 13:32:45 +00:00
Johan Danielsson
d3c94dd68e ize->ise
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13041 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 13:27:48 +00:00
Johan Danielsson
da0880581b [capaths] section
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13040 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 11:59:16 +00:00
Johan Danielsson
f56c8320eb x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13039 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 11:57:37 +00:00
Johan Danielsson
74f0967ff7 document enforce-transited-policy
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13038 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 11:22:52 +00:00
Johan Danielsson
357e4592b9 always check transited policy if flag set either globally or on
principal


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13037 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 11:16:43 +00:00
Johan Danielsson
8505970b33 add flag to always check transited policy
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13036 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 11:10:44 +00:00
Johan Danielsson
cf7d2c2fb1 add flag to enforce transited policy
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13035 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 11:09:59 +00:00
Love Hörnquist Åstrand
ca242c590b x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13034 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 10:16:59 +00:00
Love Hörnquist Åstrand
b446b9833f (krb5_domain_x500_decode): set *num_realms to zero not num_realms
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13033 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 10:16:39 +00:00
Love Hörnquist Åstrand
d4a13c5877 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13032 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 08:04:13 +00:00
Love Hörnquist Åstrand
378fc043da add --no-transit-check
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13031 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 08:03:36 +00:00
Love Hörnquist Åstrand
ef9f43076b x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13030 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 06:24:58 +00:00
Love Hörnquist Åstrand
1193f2ca59 describe Transit policy
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13029 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-21 06:21:03 +00:00
Johan Danielsson
ae0a37f393 x
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13028 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-20 16:45:38 +00:00
Johan Danielsson
5d138af639 (fix_transited_encoding): also verify with policy, unless asked not to
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13027 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-20 16:45:28 +00:00
Johan Danielsson
88e4f61f85 (krb5_decrypt_ticket): try to verify transited realms, unless the
transited-policy-checked flag is set


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13026 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-20 16:43:30 +00:00
Johan Danielsson
df034198d5 (krb5_domain_x500_decode): handle zero length tr data;
(krb5_check_transited): new function that does more useful stuff


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13025 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-20 16:41:27 +00:00
Johan Danielsson
e7a40f2d44 get capath info from [capaths] section
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13024 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-20 16:40:14 +00:00
Johan Danielsson
7bfff16231 krb5_princ_realm -> krb5_principal_get_realm
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@13023 ec53bebd-3082-4978-b11e-865c3cabbd6b
2003-10-20 16:38:53 +00:00