2a9d00dd91
add digest and apop support
Love Hornquist Astrand
2010-10-19 18:16:49 -07:00
9f1168b703
add targetinfo and comerr error codes
Love Hornquist Astrand
2010-10-19 18:15:40 -07:00
99f690fd19
krb5_cc_last_change_time is missing
Jan Rękorajski
2010-10-18 16:07:59 -07:00
8ddc462ec1
Add heimbase
Love Hornquist Astrand
2010-10-18 15:00:34 -07:00
03dfe132d0
Make build w/o PKINIT
Joerg Pulz
2010-10-18 08:28:42 -07:00
4154bb82ce
Add libintl for i18n support
Joerg Pulz
2010-10-18 08:27:33 -07:00
8e7cf16491
Switch to ULL
Love Hornquist Astrand
2010-10-11 20:15:37 -07:00
f5b16cbddb
remove tfm
Love Hornquist Astrand
2010-10-11 20:10:24 -07:00
4dc6b5f259
hcrypto: Flag 64bit bit constants as long long
Simon Wilkinson
2010-10-11 12:47:07 -04:00
3d7fc1001a
Assign a value for HX509_CMS_EV_ID_NAME
Simon Wilkinson
2010-10-11 20:05:26 -07:00
20e4f3b9de
more glue
Love Hornquist Astrand
2010-10-11 20:04:11 -07:00
8e24a897d7
make code match comment
Love Hornquist Astrand
2010-10-12 04:27:13 +02:00
bf1f62b0a8
Document KCM
Love Hornquist Astrand
2010-10-10 18:18:46 -04:00
667ec8eb81
Use version 0 for issuer name serial number and version 2 for ski
Love Hornquist Astrand
2010-10-07 00:22:09 -07:00
ef543041fc
moving on top of ourself is simple
Love Hornquist Astrand
2010-10-07 00:01:24 -07:00
3789b1111e
stop if there is not enough data
Love Hornquist Astrand
2010-10-07 00:01:06 -07:00
c50d442375
release cred too
Love Hornquist Astrand
2010-10-06 23:47:37 -07:00
a3746c9f07
handle unix credentials
Love Hornquist Astrand
2010-10-06 23:32:36 -07:00
f225af82c1
if db_create() returns non zero, fail
Love Hornquist Astrand
2010-10-06 21:37:50 -07:00
34e5278ae4
random bits
Love Hornquist Astrand
2010-10-04 00:03:12 -07:00
106689c7a0
add rsakey2048 and rsakey4096
Love Hornquist Astrand
2010-10-03 18:13:58 -07:00
b7b40b1ef9
add more speed (or maybe non speed numbers)
Love Hornquist Astrand
2010-10-03 18:13:16 -07:00
4c1b29346f
test rsakey2048
Love Hornquist Astrand
2010-10-03 17:06:48 -07:00
b4181e4560
rsakey2048
Love Hornquist Astrand
2010-10-03 17:04:48 -07:00
48ad3e1e65
add import/export type for private keys
Love Hornquist Astrand
2010-10-03 16:32:01 -07:00
dfc54c6eea
now that we use 2k rsa keys, don't make ca keys twise as large
Love Hornquist Astrand
2010-10-03 14:59:43 -07:00
97390e087d
default to 2k rsa keys, for performance reasons you might want to generate 1k rsa keys though
Love Hornquist Astrand
2010-10-03 14:58:18 -07:00
5cc4d5d2bd
heimdal Use a seperate krb5_auth_context for the delegated credentials
Andrew Bartlett
2010-09-29 06:44:33 +10:00
b78419f126
heimdal use returned server entry from HDB to compare realms
Andrew Bartlett
2010-10-01 13:58:36 +10:00
0225db7152
Don't redefine socket() if socket_wrapper is already in use
Andrew Bartlett
2010-10-02 20:58:02 +10:00
c6fb9428dd
Drop imath for ltm for speed reasons
Love Hornquist Astrand
2010-10-02 12:28:27 -07:00
0a608964a4
only set error code in case of failure, add comment
Love Hornquist Astrand
2010-10-02 12:13:19 -07:00
6cdf8104f7
do is deprecated, so lets stop using it
Love Hornquist Astrand
2010-10-02 12:05:41 -07:00
7ea9ccf737
heimdal: added verbose logging of hemimdal crypto errors
Andrew Bartlett
2010-09-30 20:13:34 -07:00
c434086ba0
Add error code to use when a secret is not in this database
Andrew Bartlett
2010-10-02 21:22:17 +10:00
1d09e39d45
Don't segfault when in --one-file mode
Andrew Bartlett
2010-01-12 13:22:10 +11:00
799956e9b7
Check if we should enable weak crypto before parsing enctypes list
Buck Huppmann
2010-10-02 11:28:20 -07:00
0d64a7830b
1.5 items
Love Hornquist Astrand
2010-09-30 22:09:00 -07:00
6beb058640
Handle picky windows RODC servers
Love Hornquist Astrand
2010-10-01 17:49:05 -07:00
d5e4619738
Fix order of arguments given to memchr().
Patrik Lundin
2010-09-30 23:15:30 +02:00
3128a7a416
SHA384
Love Hornquist Astrand
2010-09-30 18:36:58 -07:00
b206aeb016
SHA384
Love Hornquist Astrand
2010-09-30 18:22:00 -07:00
1b48afda47
add sha512
Love Hornquist Astrand
2010-09-30 01:04:19 -07:00
9dbcb98f84
clue in sha512 in rsa signature
Love Hornquist Astrand
2010-09-30 01:00:42 -07:00
1072afd6bf
Andrew Bartlet pointed out that the patch was incomplete, update and write doxygen.
Love Hornquist Astrand
2010-09-30 00:44:35 -07:00
6699b5e59a
get padding size right
Love Hornquist Astrand
2010-09-30 00:20:52 -07:00
42727fc891
glue in sha512
Love Hornquist Astrand
2010-09-30 00:18:03 -07:00
150f1401d1
Add SHA512
Love Hornquist Astrand
2010-09-30 00:08:48 -07:00
b32651c830
SHA512 support
Love Hornquist Astrand
2010-09-29 23:37:34 -07:00
5fc132d888
add _der_gmtime, use and test it
Love Hornquist Astrand
2010-09-29 13:32:39 -07:00
f454f45fbf
If the hostname contains a dot, assumes it's a FQAN and don't use search domains since that might be painfully slow when machine is disconnected from that network.
Love Hornquist Astrand
2010-09-28 22:37:01 -07:00
5410614330
free more bn that was allocated
Love Hornquist Astrand
2010-09-28 22:12:20 -07:00
97d939d9af
don't allocate n twice, indent
Love Hornquist Astrand
2010-09-28 22:08:00 -07:00
76266ab5ac
s4:heimdal Create a new PAC when impersonating a user with S4U2Self
Andrew Bartlett
2010-09-25 09:46:38 +10:00
686f2abe61
x
Love Hornquist Astrand
2010-09-19 01:14:07 -07:00
b5bc5c1d84
add PTHREAD_LIBADD
Love Hornquist Astrand
2010-09-19 00:55:36 -07:00
84f6409923
Move to a plugin cache, contributed from Secure Endpoints
Love Hornquist Astrand
2010-09-18 23:37:06 -07:00
cad554ad3d
Generalize MSLSA ccache type to a plug-in based ccache type
Asanka C. Herath
2010-09-18 23:37:32 -04:00
a4be8fcd7e
Windows: Add missing export for libhcrypto-exports.def
Asanka C. Herath
2010-09-18 15:39:25 -04:00
fea391eb96
remove prefix zeros
Love Hornquist Astrand
2010-09-18 14:45:33 -07:00
8668bfaefc
less brokenness
Love Hornquist Astrand
2010-09-18 11:55:59 -07:00
8de6bccd50
add validate.obj
Love Hornquist Astrand
2010-09-14 10:52:04 -07:00
75df9577e7
Uses unsigned ints for lengths
Simon Wilkinson
2010-09-12 17:48:47 +01:00
9907781fa3
make address a full adress
Love Hornquist Astrand
2010-09-18 11:26:09 -07:00
057f139f6a
Fix to build on aix.
Anton Lundin
2010-09-17 12:42:39 +02:00
61bfc2997b
Fix testing when compiled with --disable-afs-support
Anton Lundin
2010-09-17 12:44:50 +02:00
4328f3980f
make addresses not use compression in the middle since diffrent inet_ntop have diffrent way to format them
Love Hornquist Astrand
2010-09-17 12:20:29 -07:00
eac56da073
Rename struct to not clash with aix header sys/proc.h
Anton Lundin
2010-09-16 09:57:33 +02:00
46a4a64dfe
ifdef away code to be able to build with --disable-krb4
Anton Lundin
2010-09-16 08:18:35 +02:00
0bfd697f62
use krb5_unparse_name instead of krb5_unparse_name_short since that doesnt fail. From Zdenek Hatas
Love Hornquist Astrand
2010-09-16 20:59:35 -07:00
cf925c82b8
typecase to avoid warning
Love Hornquist Astrand
2010-09-15 22:47:52 -07:00
6a57e6a784
make test pass
Love Hornquist Astrand
2010-09-15 21:57:20 -07:00