294b954cdd
(tgs_make_reply): there are no such things a keytypes any more, just use enctypes.
Love Hörnquist Åstrand
2005-12-12 12:25:33 +00:00
d2a057331a
Remove private prototypes and instead include <kdc-private.h>.
Love Hörnquist Åstrand
2005-12-12 12:23:33 +00:00
7dd4709d04
Build kdc-private.h and depend on it.
Love Hörnquist Åstrand
2005-12-12 12:17:48 +00:00
96ff4f214f
(configure): wrap line
Love Hörnquist Åstrand
2005-12-12 12:14:09 +00:00
1fd6f6cf04
KDC 4 support is always compiled in.
Love Hörnquist Åstrand
2005-12-12 12:11:51 +00:00
60306cc26b
Remove some stuff that have been done.
Love Hörnquist Åstrand
2005-12-12 12:10:13 +00:00
977ee6f6e3
x
Love Hörnquist Åstrand
2005-12-12 12:08:38 +00:00
98f78b878b
Document the _r functions.
Love Hörnquist Åstrand
2005-12-12 12:08:16 +00:00
68675cb4bb
Split long line
Love Hörnquist Åstrand
2005-12-12 11:57:45 +00:00
faad2eb363
x
Love Hörnquist Åstrand
2005-12-12 11:04:22 +00:00
b8dc71ed90
Spelling, From Måns Nilsson.
Love Hörnquist Åstrand
2005-12-12 11:03:44 +00:00
930ae3857f
spelling, From Måns Nilsson
Love Hörnquist Åstrand
2005-12-12 09:43:11 +00:00
a28a141ec2
Constify principal argument to on krb5_principal_get_ functions.
Love Hörnquist Åstrand
2005-12-11 17:48:38 +00:00
fa44f5a141
x
Love Hörnquist Åstrand
2005-12-08 19:24:23 +00:00
8145f2b840
drop convert_db, 0.0 to 0.1 transition was a long long time ago
Love Hörnquist Åstrand
2005-12-08 19:23:53 +00:00
36ac3bcf8e
x
Love Hörnquist Åstrand
2005-12-06 20:00:48 +00:00
945ffb4357
Add test string for constraints.
Love Hörnquist Åstrand
2005-12-06 20:00:33 +00:00
f1f22c334f
Add support for part of the Constraint-s
Love Hörnquist Åstrand
2005-12-06 19:59:52 +00:00
fcfe7bc161
Set new constraints pointer in Type to NULL for inline constructed types.
Love Hörnquist Åstrand
2005-12-06 19:59:13 +00:00
fb7c1e5ca2
Add support for parsing part of the Constraint-s
Love Hörnquist Åstrand
2005-12-06 19:57:59 +00:00
3f5f50e0b8
x
Love Hörnquist Åstrand
2005-12-05 18:44:17 +00:00
a7589e6109
more tests, From Andrew Bartlet
Love Hörnquist Åstrand
2005-12-05 18:44:02 +00:00
08b361da54
(mkt_remove_entry): realloc can return NULL on success in the case 0 entries are allocated, From Andrew Bartlet
Love Hörnquist Åstrand
2005-12-05 18:39:46 +00:00
f223888240
x x
Love Hörnquist Åstrand
2005-12-05 13:09:59 +00:00
8b53c6c4f2
Change gss_krb5_import_ccache to gss_krb5_import_cred, it can handle keytabs too.
Love Hörnquist Åstrand
2005-12-05 11:52:45 +00:00
2fab85ec36
x
Love Hörnquist Åstrand
2005-12-05 09:31:56 +00:00
723e43d205
test acquire_cred(GSS_C_ACCEPT)
Love Hörnquist Åstrand
2005-12-05 09:22:03 +00:00
afe55cba30
(gss_add_cred): avoid deadlock
Love Hörnquist Åstrand
2005-12-05 09:20:32 +00:00
0c372958f3
(gssapi_lifetime_left): define the 0 lifetime as GSS_C_INDEFINITE.
Love Hörnquist Åstrand
2005-12-05 09:19:52 +00:00
828197fc78
(acl_parse_format): tmp needs to be freed too on failure to parse format specifier.
Love Hörnquist Åstrand
2005-12-02 15:33:47 +00:00
2b64016a93
Free more of the allocated memory.
Love Hörnquist Åstrand
2005-12-02 15:15:43 +00:00
eb0369c938
(krb5_derive_key): Free more of the allocated memory, this function is only used by the test program.
Love Hörnquist Åstrand
2005-12-02 14:47:44 +00:00
e4794726e4
Free more of the allocated memory.
Love Hörnquist Åstrand
2005-12-02 14:14:43 +00:00
63506f62b3
update (c)
Love Hörnquist Åstrand
2005-12-01 21:00:03 +00:00
8ed16b3e1c
x
Love Hörnquist Åstrand
2005-12-01 16:26:13 +00:00
c9962c948d
(acquire_acceptor_cred): only check if principal exists if we got called with principal as an argument.
Love Hörnquist Åstrand
2005-12-01 16:26:02 +00:00
68d7efd2e4
x
Love Hörnquist Åstrand
2005-12-01 15:50:58 +00:00
1cff67e8ce
(acquire_acceptor_cred): check that the acceptor exists in the keytab before returning ok.
Love Hörnquist Åstrand
2005-12-01 15:50:42 +00:00
449a5b09a7
x
Love Hörnquist Åstrand
2005-12-01 15:30:51 +00:00
477270a1ca
remove setlinebuf that sneeked in
Love Hörnquist Åstrand
2005-12-01 15:29:40 +00:00
1dda491372
x
Love Hörnquist Åstrand
2005-12-01 15:26:01 +00:00
ea8a943e6d
Initialize the slc mapping table before its used. Based on bugraport from Russell Sanford <rrs@clyde.dcccd.edu>
Love Hörnquist Åstrand
2005-12-01 15:25:45 +00:00
7b06520517
x
Love Hörnquist Åstrand
2005-12-01 15:05:59 +00:00
5b8d57d256
spelling, From Måns Nilsson
Love Hörnquist Åstrand
2005-12-01 14:56:28 +00:00
b8044b7a33
x
Love Hörnquist Åstrand
2005-12-01 12:41:37 +00:00
bc23e0056b
Memory keytab are now named and refcounted.
Love Hörnquist Åstrand
2005-12-01 12:41:22 +00:00
76fe170bdd
Test that memory keytab are refcounted.
Love Hörnquist Åstrand
2005-12-01 12:40:50 +00:00
b6037cc29a
Index by name and start reference counting on entries.
Love Hörnquist Åstrand
2005-12-01 12:40:22 +00:00
c955b32547
x
Love Hörnquist Åstrand
2005-12-01 09:27:31 +00:00
591052ef87
Add ank as an alias to add, it lost in transition to slc, from Måns Nilsson.
Love Hörnquist Åstrand
2005-12-01 09:26:02 +00:00
ad3f3d8f3c
(set_field): try another way to calculate the path to the database/logfile/signal-socket
Love Hörnquist Åstrand
2005-11-30 12:39:19 +00:00
665577dc46
(kadm5_log_init): set error string on failures
Love Hörnquist Åstrand
2005-11-30 12:27:07 +00:00
fe6921c768
Specifify explicitly that the database is in the current directory.
Love Hörnquist Åstrand
2005-11-30 12:22:38 +00:00
6e58db8120
(find_method): accept relative paths as old db format too.
Love Hörnquist Åstrand
2005-11-30 12:22:09 +00:00
116c7fa6f6
Remove usage of krb5_enctype_to_keytype.
Love Hörnquist Åstrand
2005-11-30 11:25:45 +00:00
486c4cd80c
Make compile again
Love Hörnquist Åstrand
2005-11-29 20:34:35 +00:00
d63b2abca9
x
Love Hörnquist Åstrand
2005-11-29 19:04:27 +00:00
1019cb16d4
(kcm_loop): Use HAVE_DOOR_CREATE, not HAVE_DOORS.
Love Hörnquist Åstrand
2005-11-29 19:03:50 +00:00
68caf40b2c
(libdefaults_entries): add default_cc_name
Love Hörnquist Åstrand
2005-11-29 18:59:19 +00:00
c2fc62851f
x
Love Hörnquist Åstrand
2005-11-29 18:53:33 +00:00
f32ada0887
Only match db databases on filename starting with '/'.
Love Hörnquist Åstrand
2005-11-29 18:48:07 +00:00
56538b207f
Update (c)
Love Hörnquist Åstrand
2005-11-29 18:22:51 +00:00
755229f6d3
(krb5_verify_ap_re2): check timestamp in authenticator
Love Hörnquist Åstrand
2005-11-29 15:55:34 +00:00
ca1a379a41
(check_transited): explain the TR-type 0 better and why it matters.
Love Hörnquist Åstrand
2005-11-29 14:14:26 +00:00
d7b6e1f223
test krb5_cc_get_prefix_ops
Love Hörnquist Åstrand
2005-11-29 09:11:12 +00:00
6ccf928a53
(krb5_cc_get_prefix_ops): change the behavior to return NULL when its not found, and fcc when the name starts with a '/'. Almost matches behavior in other parts of the code, but can't really do that since the name passed in to this function may only contain the prefix itself without the colon.
Love Hörnquist Åstrand
2005-11-29 09:10:47 +00:00
459932f3ef
(krb5_cc_get_prefix_ops): if there are not colon (:) in the name, its a file credential cachce
Love Hörnquist Åstrand
2005-11-29 08:44:21 +00:00
0fa794702c
(hdb_db_create): use calloc to callocate memory
Love Hörnquist Åstrand
2005-11-28 23:33:24 +00:00
daf7286660
(hdb_ndbm_create): use calloc to allocate memory
Love Hörnquist Åstrand
2005-11-28 23:31:36 +00:00
8ce2056373
(gss_krb5_import_cred): fix buglet, from Andrew Bartlett.
Love Hörnquist Åstrand
2005-11-28 23:05:44 +00:00
efd3e2ab61
x
Love Hörnquist Åstrand
2005-11-28 20:43:23 +00:00
d3d5392e05
(krb5_get_forwarded_creds): use session key for delegated credentials
Love Hörnquist Åstrand
2005-11-28 20:43:02 +00:00
6c218a0c6a
x
Love Hörnquist Åstrand
2005-11-28 20:34:16 +00:00
1e5120ac02
(_kdc_as_rep): add comment when we send ETYPE-INFO and ETYPE-INFO2, from Andrew Bartlett
Love Hörnquist Åstrand
2005-11-28 20:33:57 +00:00
d7e11e5716
s/krb5_keytab_get_full_name/krb5_kt_get_full_name/
Love Hörnquist Åstrand
2005-11-26 11:00:08 +00:00
56c27754ad
x
Love Hörnquist Åstrand
2005-11-25 21:48:15 +00:00
27546db2b4
(krb5_kt_get_full_name): new function
Love Hörnquist Åstrand
2005-11-25 21:46:40 +00:00
e4f39fc8ae
Use gss_krb5_import_cred
Love Hörnquist Åstrand
2005-11-25 15:57:35 +00:00
e5d85fd42d
Rename gss_krb5_import_ccache to gss_krb5_import_cred.
Love Hörnquist Åstrand
2005-11-25 14:43:03 +00:00
a85c42da3f
Rename gss_krb5_import_ccache to gss_krb5_import_cred and let it grow code to handle keytabs too.
Love Hörnquist Åstrand
2005-11-25 14:39:57 +00:00
859d1f0996
x
Love Hörnquist Åstrand
2005-11-24 09:58:04 +00:00
52e365482b
Split encryption and s2k iterations to diffrent counters, 38seconds of aes256 s2k is way too long.
Love Hörnquist Åstrand
2005-11-24 09:57:50 +00:00
2f31564fc4
Add timing code for s2k function.
Love Hörnquist Åstrand
2005-11-24 09:54:49 +00:00
72d1857ae0
x
Love Hörnquist Åstrand
2005-11-08 03:36:33 +00:00
b5204f4584
Print the time the principal expired, based on patch from Andrew Bartlett.
Love Hörnquist Åstrand
2005-11-08 03:32:25 +00:00
f363759739
x
Love Hörnquist Åstrand
2005-11-03 18:39:28 +00:00
a7629e422f
Spelling in comments, from Dave Love <fx@gnu.org>
Love Hörnquist Åstrand
2005-11-03 18:38:57 +00:00
2807ca723b
remove newline from syslog string
Johan Danielsson
2005-11-03 16:40:05 +00:00
d28785e212
Change sematics of ok-as-delegate to match windows if [gssapi]realm/ok-as-delegate=true is set, otherwise keep old sematics.
Love Hörnquist Åstrand
2005-11-02 11:52:49 +00:00
6ece760454
(gss_release_cred): use GSS_CF_DESTROY_CRED_ON_RELEASE to decide if the cache should be krb5_cc_destroy-ed
Love Hörnquist Åstrand
2005-11-02 08:57:35 +00:00
f0dc59770a
(acquire_initiator_cred): GSS_CF_DESTROY_CRED_ON_RELEASE on created credentials.
Love Hörnquist Åstrand
2005-11-02 08:56:25 +00:00
2a0d1e1d88
(gsskrb5_accept_delegated_token): rewrite to use gss_krb5_import_ccache
Love Hörnquist Åstrand
2005-11-02 08:55:19 +00:00
6879aaef09
(gss_cred_id_t_desc_struct): add field cred_flags
Love Hörnquist Åstrand
2005-11-02 08:51:17 +00:00
52bb24b476
s/RFC2140/RFC4120/ From Andrew Bartlet
Love Hörnquist Åstrand
2005-11-02 08:36:42 +00:00
d7396a3cea
(gss_krb5_import_ccache): Use krb5_cc_get_full_name.
Love Hörnquist Åstrand
2005-11-01 09:41:59 +00:00
333284ed2e
Document krb5_cc_get_full_name.
Love Hörnquist Åstrand
2005-11-01 09:40:23 +00:00
91f8f1ce51
(krb5_cc_get_full_name): Add
Love Hörnquist Åstrand
2005-11-01 09:36:41 +00:00
dd5b42fd8a
x
Love Hörnquist Åstrand
2005-11-01 09:01:56 +00:00
583a38754a
Spelling, From Michael Banck <mbanck@debian.org>
Love Hörnquist Åstrand
2005-11-01 09:01:17 +00:00