2005-01-05 Luke Howard * lib/krb5/auth_context.c: use krb5_generate_subkey_extended() * lib/krb5/generate_subkey.c: add krb5_generate_subkey_extended(), set *subkey to NULL if key geneartion fails * lib/krb5/build_auth.c: support for enctype negotiation (client sends EtypeList in Authenticator authz data) * lib/krb5/rd_req.c: support for enctype negotiation (client sends EtypeList in Authenticator authz data) * lib/gssapi/8003.c: use symbolic name for checksum type * lib/gssapi/accept_sec_context.c: allow client to indicate that subkey should be used * lib/gssapi/acquire_cred.c: plug leak * lib/gssapi/get_mic.c: use gss_krb5_get_subkey() instead of gss_krb5_get_{local,remote}key() * lib/gssapi/gssapi_local.c: use gss_krb5_get_subkey() * lib/gssapi/unwrap.c: use gss_krb5_get_subkey() * lib/gssapi/verify_mic.c: use gss_krb5_get_subkey() * lib/gssapi/wrap.c: use gss_krb5_get_subkey() 2005-01-04 Luke Howard * lib/asn1/k5.asn1: add authorization data types for enctype negotiation implementation 2005-01-04 Love Hörnquist Åstrand * lib/krb5/changepw.c (change_password_loop): on failing to find a kdc, set result_code to KRB5_KPASSWD_HARDERROR 2005-01-01 Love Hörnquist Åstrand * doc/heimdal.texi: Happy New Year