Commit Graph

876 Commits

Author SHA1 Message Date
Love Hörnquist Åstrand
b6fdc26556 (check_addresses): treat netbios as no addresses
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16949 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-02 01:54:38 +00:00
Love Hörnquist Åstrand
2211af38b6 _kdc_check_flags takes hdb_entry_ex
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16948 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-02 01:54:37 +00:00
Love Hörnquist Åstrand
b3f8381a4d (_kdc_check_flags): make it take hdb_entry_ex to avoid ?:'s at callers
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16947 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-04-02 01:52:32 +00:00
Love Hörnquist Åstrand
945efb8a96 Add pool of certificates to help certificate path building for clients
sending incomplete path in the signedData.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16854 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 19:57:25 +00:00
Love Hörnquist Åstrand
cd6acf1200 Allow passing in related certificates used to build the chain.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16850 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-28 04:38:14 +00:00
Love Hörnquist Åstrand
905242765a (log_patype): Add case for KRB5_PADATA_PA_PK_OCSP_RESPONSE.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16844 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 22:54:50 +00:00
Love Hörnquist Åstrand
56057ad91b (pk_mk_pa_reply_dh): encode the DH public key with asn1 wrapping
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16822 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 02:27:59 +00:00
Love Hörnquist Åstrand
b6350decc0 (_kdc_pk_check_client): More logging.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16821 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-27 02:15:12 +00:00
Love Hörnquist Åstrand
f024392e81 Switch to hx509.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16814 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-26 23:55:17 +00:00
Love Hörnquist Åstrand
137d218e79 (log_patypes): log the patypes requested by the client
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16804 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-03-24 22:50:02 +00:00
Love Hörnquist Åstrand
5290184954 update to new paChecksum definition, use hdb_entry_ex
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16733 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-02-13 11:48:21 +00:00
Love Hörnquist Åstrand
ca3745e9a4 Fix spelling of "Kungliga Tekniska Högskolan".
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16665 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-01-27 13:30:57 +00:00
Love Hörnquist Åstrand
6d3861991a (_kdc_db_fetch): use calloc to allocate the entry, from Andrew Bartlet.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16420 ec53bebd-3082-4978-b11e-865c3cabbd6b
2006-01-01 23:17:16 +00:00
Love Hörnquist Åstrand
5a7da8cf52 (tgs_make_reply): less const on hdb_entry_ex to make samba happy
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16410 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-15 20:26:31 +00:00
Love Hörnquist Åstrand
40386c602d (tgs_rep2): also print the principal for which the enctype was missing
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16407 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-14 12:17:58 +00:00
Love Hörnquist Åstrand
ddddd59d94 Finish up transition from hdb_entry to hdb_entry_ex.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16402 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-13 19:44:27 +00:00
Love Hörnquist Åstrand
83c3fb4698 Finish up transition from hdb_entry with hdb_entry_ex.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16401 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-13 19:10:44 +00:00
Love Hörnquist Åstrand
0c2369acd0 Wrap hdb_entry with hdb_entry_ex, patch originally from Andrew Bartlet
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16378 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-12 12:40:12 +00:00
Love Hörnquist Åstrand
294b954cdd (tgs_make_reply): there are no such things a keytypes any more, just
use enctypes.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16374 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-12 12:25:33 +00:00
Love Hörnquist Åstrand
d2a057331a Remove private prototypes and instead include <kdc-private.h>.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16373 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-12 12:23:33 +00:00
Love Hörnquist Åstrand
7dd4709d04 Build kdc-private.h and depend on it.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16372 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-12 12:17:48 +00:00
Love Hörnquist Åstrand
96ff4f214f (configure): wrap line
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16371 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-12-12 12:14:09 +00:00
Love Hörnquist Åstrand
1e5120ac02 (_kdc_as_rep): add comment when we send ETYPE-INFO and ETYPE-INFO2,
from Andrew Bartlett


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16298 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-11-28 20:33:57 +00:00
Love Hörnquist Åstrand
b5204f4584 Print the time the principal expired, based on patch from Andrew Bartlett.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16287 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-11-08 03:32:25 +00:00
Love Hörnquist Åstrand
911c099056 Remove leftover pkinit-19 bits.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16212 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-21 17:48:30 +00:00
Love Hörnquist Åstrand
3bfded2697 (get_dh_param): Pass down config so this function can check pkinit_dh_min_bits
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16210 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-21 17:14:19 +00:00
Love Hörnquist Åstrand
b2698d9dc7 Fill in pkinit_dh_min_bits from configuration file.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16209 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-21 17:11:59 +00:00
Love Hörnquist Åstrand
2e2d62a9e5 Add pkinit_dh_min_bits to krb5_kdc_configuration.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16208 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-21 17:11:21 +00:00
Love Hörnquist Åstrand
1ef128fbff Removing PK-INIT-19 support.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16141 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-07 11:00:05 +00:00
Love Hörnquist Åstrand
b1fffa7079 Save DH group name and print it on success.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16139 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-07 10:40:00 +00:00
Love Hörnquist Åstrand
776512783d Check dh group parameters from client.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16137 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-10-07 08:57:51 +00:00
Love Hörnquist Åstrand
388b0ffca4 More verbose PK-INIT logging.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16099 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-25 15:23:21 +00:00
Love Hörnquist Åstrand
61b1ea80de The public DH key is encoded as an INTEGER in subjectPublicKey.
Don't verify OID's for now.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16098 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-25 15:18:14 +00:00
Love Hörnquist Åstrand
f498bc66ae Implement correct DH for -27, now working with client.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16088 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-22 13:41:01 +00:00
Love Hörnquist Åstrand
28d0ef8d96 Move DH support from -19 to -27.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16086 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-21 00:40:32 +00:00
Love Hörnquist Åstrand
39b04f72d8 Support PK-INIT-27 DH (and remove -19)
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16080 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-20 19:10:29 +00:00
Love Hörnquist Åstrand
d0af14e4fe (make_etype_info2_entry): When its a afs3-salted key, use send the
opaque, length 1 (with content set to 0x01) in ETYPE-INFO2-ENTRY.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16077 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-19 22:01:04 +00:00
Love Hörnquist Åstrand
74c8063ed4 (make_etype_info_entry): Dont send salttype at all, use KRB5-PADATA-AFS3-SALT
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16002 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-09-01 11:17:41 +00:00
Love Hörnquist Åstrand
37bd48c497 (log_timestamp): endtime, not endtype
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@16001 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-31 06:16:45 +00:00
Love Hörnquist Åstrand
3f4ccfbc67 (fix_transited_encoding): Allow empty content of type 0 because that
is was Microsoft enerates in their TGT.


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15993 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-27 05:46:07 +00:00
Love Hörnquist Åstrand
5731755053 Update prototype for _kdc_pk_mk_pa_reply.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15935 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-15 11:07:25 +00:00
Love Hörnquist Åstrand
aa0dc9b533 Switch over logging and comments to -27.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15923 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 09:21:40 +00:00
Love Hörnquist Åstrand
761074d9a4 (pk_mk_pa_reply_enckey): add missing break;
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15922 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 09:14:52 +00:00
Love Hörnquist Åstrand
9c7e1cc84a Make compile.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15920 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 08:58:10 +00:00
Love Hörnquist Åstrand
f03c6de773 update prototype for _kdc_as_rep
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15918 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 08:46:39 +00:00
Love Hörnquist Åstrand
77d146c528 Pass down the request buffer to _kdc_as_rep().
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15917 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 08:25:48 +00:00
Love Hörnquist Åstrand
fa2d2092a7 (_kdc_as_rep): Pass down the request buffer to _kdc_pk_mk_pa_reply.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15916 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 08:24:50 +00:00
Love Hörnquist Åstrand
d8b8b146cc Fill in asChecksum, we now implements -27 in the KDC.
git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15915 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-12 08:17:13 +00:00
Love Hörnquist Åstrand
e6cee493ed (_kdc_as_rep): preserve the error code in the ENC-TS case.
From: Andrew Bartlett <abartlet@samba.org>


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15861 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-09 21:34:36 +00:00
Love Hörnquist Åstrand
07e7b59fab (tgs_rep2): only needs to log "Failed to verify authenticator" once,
its already done by tgs_check_authenticator().


git-svn-id: svn://svn.h5l.se/heimdal/trunk/heimdal@15860 ec53bebd-3082-4978-b11e-865c3cabbd6b
2005-08-09 21:25:40 +00:00