 d8394c65b7
			
		
	
	d8394c65b7
	
	
	
		
			
			- Add --keepold/keepallold/pruneall options to various kadmin/ktutil
   commands.  Default behavior to "prune old keys".
 - When setting keys for a service, we need to specify enctypes for it:
    - Always use kadm5_randkey_principal_3() instead of the older
      kadm5_randkey_principal().
    - Add krb5_string_to_keysalts2(), like MIT's krb5_string_to_keysalts(),
      but with a context, and simpler.
    - Add --enctypes options to various kadmin/ktutil commands.
    - Add [libdefaults] supported_enctypes param with enctype[:salttype]
      list.
    - Add [realms] realm supported_enctypes param with enctype[:salttype]
      list.
      Default to aes128-cts-hmac-sha1-96:normal.
		
	
		
			
				
	
	
		
			62 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			Plaintext
		
	
	
	
	
	
			
		
		
	
	
			62 lines
		
	
	
		
			1.5 KiB
		
	
	
	
		
			Plaintext
		
	
	
	
	
	
| HEIMDAL_KADM5_CLIENT_1.0 {
 | |
| 	global:
 | |
| 		et_kadm5_error_table;
 | |
| 		initialize_kadm5_error_table;
 | |
| 		initialize_kadm5_error_table_r;
 | |
| 		kadm5_ad_init_with_password;
 | |
| 		kadm5_ad_init_with_password_ctx;
 | |
| 		kadm5_all_keys_are_bogus;
 | |
| 		kadm5_c_chpass_principal;
 | |
| 		kadm5_c_chpass_principal_with_key;
 | |
| 		kadm5_c_create_principal;
 | |
| 		kadm5_c_delete_principal;
 | |
| 		kadm5_c_destroy;
 | |
| 		kadm5_c_flush;
 | |
| 		kadm5_c_get_principal;
 | |
| 		kadm5_c_get_principals;
 | |
| 		kadm5_c_get_privs;
 | |
| 		kadm5_c_init_with_creds;
 | |
| 		kadm5_c_init_with_creds_ctx;
 | |
| 		kadm5_c_init_with_password;
 | |
| 		kadm5_c_init_with_password_ctx;
 | |
| 		kadm5_c_init_with_skey;
 | |
| 		kadm5_c_init_with_skey_ctx;
 | |
| 		kadm5_c_modify_principal;
 | |
| 		kadm5_c_prune_principal;
 | |
| 		kadm5_c_randkey_principal;
 | |
| 		kadm5_c_rename_principal;
 | |
| 		kadm5_chpass_principal;
 | |
| 		kadm5_chpass_principal_with_key;
 | |
| 		kadm5_create_principal;
 | |
| 		kadm5_delete_principal;
 | |
| 		kadm5_destroy;
 | |
| 		kadm5_flush;
 | |
| 		kadm5_free_key_data;
 | |
| 		kadm5_free_name_list;
 | |
| 		kadm5_free_principal_ent;
 | |
| 		kadm5_get_principal;
 | |
| 		kadm5_get_principals;
 | |
| 		kadm5_get_privs;
 | |
| 		kadm5_init_with_creds;
 | |
| 		kadm5_init_with_creds_ctx;
 | |
| 		kadm5_init_with_password;
 | |
| 		kadm5_init_with_password_ctx;
 | |
| 		kadm5_init_with_skey;
 | |
| 		kadm5_init_with_skey_ctx;
 | |
| 		kadm5_modify_principal;
 | |
| 		kadm5_randkey_principal;
 | |
| 		kadm5_randkey_principal_3;
 | |
| 		kadm5_rename_principal;
 | |
| 		kadm5_ret_key_data;
 | |
| 		kadm5_ret_principal_ent;
 | |
| 		kadm5_ret_principal_ent_mask;
 | |
| 		kadm5_ret_tl_data;
 | |
| 		kadm5_some_keys_are_bogus;
 | |
| 		kadm5_store_key_data;
 | |
| 		kadm5_store_principal_ent;
 | |
| 		kadm5_store_principal_ent_mask;
 | |
| 		kadm5_store_tl_data;
 | |
| 	local:
 | |
| 		*;
 | |
| };
 |