]> git.ipfire.org Git - thirdparty/krb5.git/log
thirdparty/krb5.git
15 years agocleanup
Luke Howard [Tue, 1 Sep 2009 16:04:03 +0000 (16:04 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22701 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Tue, 1 Sep 2009 15:50:43 +0000 (15:50 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22700 dc483132-0cff-0310-8789-dd5450dbe970

15 years agouse -d instead of -A for ad types, because -A clashes with OS X
Luke Howard [Tue, 1 Sep 2009 14:04:45 +0000 (14:04 +0000)] 
use -d instead of -A for ad types, because -A clashes with OS X

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22698 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoAdd -A option for enumerating submitted auth data types
Luke Howard [Tue, 1 Sep 2009 13:02:32 +0000 (13:02 +0000)] 
Add -A option for enumerating submitted auth data types

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22697 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoIf authorization data is submitted in a TGS-REQ, be sure that it is
Luke Howard [Tue, 1 Sep 2009 12:53:22 +0000 (12:53 +0000)] 
If authorization data is submitted in a TGS-REQ, be sure that it is
not submitted again when chasing a referral, and be sure that any
referral tickets containing submitted authorization data are marked
as such lest they be confused with those with different or no auth
data.

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22696 dc483132-0cff-0310-8789-dd5450dbe970

15 years agowhen matching creds for removal, match auth data
Luke Howard [Tue, 1 Sep 2009 12:50:54 +0000 (12:50 +0000)] 
when matching creds for removal, match auth data

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22695 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoneed to store in_cred->authdata so we can match on it
Luke Howard [Mon, 31 Aug 2009 23:40:24 +0000 (23:40 +0000)] 
need to store in_cred->authdata so we can match on it

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22694 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoauthdata type may be negative
Luke Howard [Mon, 31 Aug 2009 23:38:09 +0000 (23:38 +0000)] 
authdata type may be negative

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22693 dc483132-0cff-0310-8789-dd5450dbe970

15 years agofix some uninitialized variables
Luke Howard [Mon, 31 Aug 2009 22:28:09 +0000 (22:28 +0000)] 
fix some uninitialized variables

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22690 dc483132-0cff-0310-8789-dd5450dbe970

15 years agorefactor, cleanup
Luke Howard [Mon, 31 Aug 2009 15:02:42 +0000 (15:02 +0000)] 
refactor, cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22679 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoprefer KDCIssued over ticket authdata
Luke Howard [Mon, 31 Aug 2009 07:22:48 +0000 (07:22 +0000)] 
prefer KDCIssued over ticket authdata

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22678 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoallow for TGS-REQ authdata
Luke Howard [Mon, 31 Aug 2009 07:02:07 +0000 (07:02 +0000)] 
allow for TGS-REQ authdata

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22677 dc483132-0cff-0310-8789-dd5450dbe970

15 years agokrb5_authdata_export_attributes should not fail if there are no attributes to export
Luke Howard [Mon, 31 Aug 2009 07:00:24 +0000 (07:00 +0000)] 
krb5_authdata_export_attributes should not fail if there are no attributes to export

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22676 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoreformat
Luke Howard [Mon, 31 Aug 2009 06:48:22 +0000 (06:48 +0000)] 
reformat

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22675 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Mon, 31 Aug 2009 06:46:58 +0000 (06:46 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22674 dc483132-0cff-0310-8789-dd5450dbe970

15 years agobe sure to copy authenticated state
Luke Howard [Sun, 30 Aug 2009 23:22:08 +0000 (23:22 +0000)] 
be sure to copy authenticated state

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22672 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Sun, 30 Aug 2009 23:20:46 +0000 (23:20 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22671 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Sun, 30 Aug 2009 23:15:06 +0000 (23:15 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22670 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Sun, 30 Aug 2009 23:09:17 +0000 (23:09 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22669 dc483132-0cff-0310-8789-dd5450dbe970

15 years agopass authdata context to modules to facilitate stacking
Luke Howard [Sun, 30 Aug 2009 22:52:21 +0000 (22:52 +0000)] 
pass authdata context to modules to facilitate stacking

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22668 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Sun, 30 Aug 2009 18:14:01 +0000 (18:14 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22667 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd some documentation/asserts
Luke Howard [Sun, 30 Aug 2009 18:04:52 +0000 (18:04 +0000)] 
add some documentation/asserts

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22666 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoenhance authdata context interface to handle automatic verification of KDC issued...
Luke Howard [Sun, 30 Aug 2009 18:00:29 +0000 (18:00 +0000)] 
enhance authdata context interface to handle automatic verification of KDC issued auth data

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22665 dc483132-0cff-0310-8789-dd5450dbe970

15 years agotry authdata plugins before internal authdata systems
Luke Howard [Sun, 30 Aug 2009 17:58:51 +0000 (17:58 +0000)] 
try authdata plugins before internal authdata systems

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22664 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoAdd a sample KDC Issued authorization data plugin
Luke Howard [Sun, 30 Aug 2009 17:57:30 +0000 (17:57 +0000)] 
Add a sample KDC Issued authorization data plugin

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22663 dc483132-0cff-0310-8789-dd5450dbe970

15 years agomake reply session key available to authdata backends, so they can implement AD-KDCIssued
Luke Howard [Sun, 30 Aug 2009 16:11:12 +0000 (16:11 +0000)] 
make reply session key available to authdata backends, so they can implement AD-KDCIssued

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22662 dc483132-0cff-0310-8789-dd5450dbe970

15 years agofix some bugs in AD-KDCIssued implementation
Luke Howard [Sun, 30 Aug 2009 16:01:16 +0000 (16:01 +0000)] 
fix some bugs in AD-KDCIssued implementation

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22661 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd KDCIssued helpers
Luke Howard [Sun, 30 Aug 2009 15:34:32 +0000 (15:34 +0000)] 
add KDCIssued helpers

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22660 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoplug some memory leaks
Luke Howard [Sat, 29 Aug 2009 14:53:54 +0000 (14:53 +0000)] 
plug some memory leaks

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22656 dc483132-0cff-0310-8789-dd5450dbe970

15 years agodebug re-imported name string
Luke Howard [Sat, 29 Aug 2009 13:50:40 +0000 (13:50 +0000)] 
debug re-imported name string

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22655 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Sat, 29 Aug 2009 13:48:40 +0000 (13:48 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22654 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup, ensure code is initialized
Luke Howard [Sat, 29 Aug 2009 13:47:16 +0000 (13:47 +0000)] 
cleanup, ensure code is initialized

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22653 dc483132-0cff-0310-8789-dd5450dbe970

15 years agokrb5_authdata_get_attribute_types should not return an error if no attributes
Luke Howard [Sat, 29 Aug 2009 13:43:01 +0000 (13:43 +0000)] 
krb5_authdata_get_attribute_types should not return an error if no attributes

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22652 dc483132-0cff-0310-8789-dd5450dbe970

15 years agouse correct OID release function
Luke Howard [Sat, 29 Aug 2009 13:41:50 +0000 (13:41 +0000)] 
use correct OID release function

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22651 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoif no authdata attributes present, gss_export_composite_name() should emit a downleve...
Luke Howard [Sat, 29 Aug 2009 13:34:42 +0000 (13:34 +0000)] 
if no authdata attributes present, gss_export_composite_name() should emit a downlevel name token

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22650 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoharmonize get_attribute_types SPI with naming_exts; cleanup
Luke Howard [Sat, 29 Aug 2009 07:51:51 +0000 (07:51 +0000)] 
harmonize get_attribute_types SPI with naming_exts; cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22649 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Thu, 27 Aug 2009 14:18:06 +0000 (14:18 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22637 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoAP_REQ attributes belong on initiator name, notiator not target GSS name
Luke Howard [Thu, 27 Aug 2009 10:59:38 +0000 (10:59 +0000)] 
AP_REQ attributes belong on initiator name, notiator not target GSS name

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22633 dc483132-0cff-0310-8789-dd5450dbe970

15 years agofix bounds checking macro
Luke Howard [Wed, 26 Aug 2009 17:40:16 +0000 (17:40 +0000)] 
fix bounds checking macro

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22630 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocomment out composite name hack for now
Luke Howard [Wed, 26 Aug 2009 17:36:27 +0000 (17:36 +0000)] 
comment out composite name hack for now

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22629 dc483132-0cff-0310-8789-dd5450dbe970

15 years agomake SPNEGO test conditional by USE_SPNEGO, because we have unrelated mechglue bugs...
Luke Howard [Wed, 26 Aug 2009 17:08:02 +0000 (17:08 +0000)] 
make SPNEGO test conditional by USE_SPNEGO, because we have unrelated mechglue bugs that make it difficult to test

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22628 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoAdd some assertion checks, deal with cred->princ == NULL for acceptor creds
Luke Howard [Wed, 26 Aug 2009 16:59:17 +0000 (16:59 +0000)] 
Add some assertion checks, deal with cred->princ == NULL for acceptor creds

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22627 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoremove unused file
Luke Howard [Wed, 26 Aug 2009 15:56:30 +0000 (15:56 +0000)] 
remove unused file

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22626 dc483132-0cff-0310-8789-dd5450dbe970

15 years agodon't return any PAC attributes if we don't have a PAC
Luke Howard [Wed, 26 Aug 2009 13:01:34 +0000 (13:01 +0000)] 
don't return any PAC attributes if we don't have a PAC

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22625 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd greet authdata client plugin test
Luke Howard [Wed, 26 Aug 2009 12:49:01 +0000 (12:49 +0000)] 
add greet authdata client plugin test

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22624 dc483132-0cff-0310-8789-dd5450dbe970

15 years agotry to preserve extended attributes with stacked mechanisms
Luke Howard [Wed, 26 Aug 2009 12:48:28 +0000 (12:48 +0000)] 
try to preserve extended attributes with stacked mechanisms

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22623 dc483132-0cff-0310-8789-dd5450dbe970

15 years agodon't return EINVAL if PAC is empty
Luke Howard [Wed, 26 Aug 2009 12:47:13 +0000 (12:47 +0000)] 
don't return EINVAL if PAC is empty

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22622 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd greet_client plugin
Luke Howard [Wed, 26 Aug 2009 12:26:35 +0000 (12:26 +0000)] 
add greet_client plugin

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22621 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoupdate AD plugin type enumeration
Luke Howard [Wed, 26 Aug 2009 12:26:16 +0000 (12:26 +0000)] 
update AD plugin type enumeration

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22620 dc483132-0cff-0310-8789-dd5450dbe970

15 years agofix some issues with client-set attributes
Luke Howard [Wed, 26 Aug 2009 12:25:46 +0000 (12:25 +0000)] 
fix some issues with client-set attributes

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22619 dc483132-0cff-0310-8789-dd5450dbe970

15 years agosample authdata client plugin
Luke Howard [Wed, 26 Aug 2009 12:24:51 +0000 (12:24 +0000)] 
sample authdata client plugin

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22618 dc483132-0cff-0310-8789-dd5450dbe970

15 years agodon't free caller owned memory if krb5_generate_authenticator/encode_krb5_authenticat...
Luke Howard [Wed, 26 Aug 2009 12:16:19 +0000 (12:16 +0000)] 
don't free caller owned memory if krb5_generate_authenticator/encode_krb5_authenticator fails

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22617 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocopy greet to greet_client
Luke Howard [Wed, 26 Aug 2009 11:00:29 +0000 (11:00 +0000)] 
copy greet to greet_client

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22616 dc483132-0cff-0310-8789-dd5450dbe970

15 years agolock source name on duplicate
Luke Howard [Wed, 26 Aug 2009 10:58:11 +0000 (10:58 +0000)] 
lock source name on duplicate

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22615 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoseparate import and verify callbacks for authdata plugin
Luke Howard [Wed, 26 Aug 2009 06:30:22 +0000 (06:30 +0000)] 
separate import and verify callbacks for authdata plugin

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22614 dc483132-0cff-0310-8789-dd5450dbe970

15 years agotest import/export name
Luke Howard [Wed, 26 Aug 2009 06:08:14 +0000 (06:08 +0000)] 
test import/export name

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22613 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Wed, 26 Aug 2009 06:06:47 +0000 (06:06 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22612 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd support for importing composite names, and bounds checking to krb5_gss_import_name
Luke Howard [Wed, 26 Aug 2009 05:55:41 +0000 (05:55 +0000)] 
add support for importing composite names, and bounds checking to krb5_gss_import_name

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22611 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoset authdata context when calling mk_req_extended
Luke Howard [Wed, 26 Aug 2009 05:47:00 +0000 (05:47 +0000)] 
set authdata context when calling mk_req_extended

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22610 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Tue, 25 Aug 2009 23:06:25 +0000 (23:06 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22609 dc483132-0cff-0310-8789-dd5450dbe970

15 years agolessen distinction between importing and verifying authdata
Luke Howard [Tue, 25 Aug 2009 23:01:59 +0000 (23:01 +0000)] 
lessen distinction between importing and verifying authdata

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22608 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoimplement krb5_gss_export_name_composite
Luke Howard [Tue, 25 Aug 2009 22:40:17 +0000 (22:40 +0000)] 
implement krb5_gss_export_name_composite

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22607 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoplug leak
Luke Howard [Tue, 25 Aug 2009 22:07:10 +0000 (22:07 +0000)] 
plug leak

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22606 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoinclude context authdata in AP-REQ
Luke Howard [Tue, 25 Aug 2009 22:05:52 +0000 (22:05 +0000)] 
include context authdata in AP-REQ

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22605 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoplug leak
Luke Howard [Tue, 25 Aug 2009 22:03:43 +0000 (22:03 +0000)] 
plug leak

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22604 dc483132-0cff-0310-8789-dd5450dbe970

15 years agorefactor authdata context copying
Luke Howard [Tue, 25 Aug 2009 21:54:55 +0000 (21:54 +0000)] 
refactor authdata context copying

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22603 dc483132-0cff-0310-8789-dd5450dbe970

15 years agodon't copy auth data context, take ownership of it from auth context
Luke Howard [Tue, 25 Aug 2009 18:14:57 +0000 (18:14 +0000)] 
don't copy auth data context, take ownership of it from auth context

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22602 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoaccess krb5_authdata_context via krb5_auth_context
Luke Howard [Tue, 25 Aug 2009 18:02:06 +0000 (18:02 +0000)] 
access krb5_authdata_context via krb5_auth_context

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22601 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoindicate how we might ignore PAC verification failures
Luke Howard [Tue, 25 Aug 2009 17:37:11 +0000 (17:37 +0000)] 
indicate how we might ignore PAC verification failures

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22600 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Tue, 25 Aug 2009 17:10:38 +0000 (17:10 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22599 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoserialize access to ad_context member of krb5_gss_name_t, and create contexts on...
Luke Howard [Tue, 25 Aug 2009 16:58:52 +0000 (16:58 +0000)] 
serialize access to ad_context member of krb5_gss_name_t, and create contexts on demand

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22598 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoplug a leak
Luke Howard [Tue, 25 Aug 2009 16:52:28 +0000 (16:52 +0000)] 
plug a leak

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22597 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup
Luke Howard [Tue, 25 Aug 2009 13:57:48 +0000 (13:57 +0000)] 
cleanup

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22596 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocleanup, test naming exts
Luke Howard [Tue, 25 Aug 2009 13:26:38 +0000 (13:26 +0000)] 
cleanup, test naming exts

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22595 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd naming extension SPI to SPNEFGO mech
Luke Howard [Tue, 25 Aug 2009 13:20:29 +0000 (13:20 +0000)] 
add naming extension SPI to SPNEFGO mech

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22594 dc483132-0cff-0310-8789-dd5450dbe970

15 years agopreliminary naming extensions mechglue
Luke Howard [Tue, 25 Aug 2009 12:58:23 +0000 (12:58 +0000)] 
preliminary naming extensions mechglue

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22593 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoAdd methods for naming extensions
Luke Howard [Tue, 25 Aug 2009 12:00:16 +0000 (12:00 +0000)] 
Add methods for naming extensions

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22592 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocombine request and plugin context initialization, for now
Luke Howard [Tue, 25 Aug 2009 06:14:28 +0000 (06:14 +0000)] 
combine request and plugin context initialization, for now

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22589 dc483132-0cff-0310-8789-dd5450dbe970

15 years agocareful to de-internalize names when releasing them
Luke Howard [Tue, 25 Aug 2009 05:45:40 +0000 (05:45 +0000)] 
careful to de-internalize names when releasing them

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22588 dc483132-0cff-0310-8789-dd5450dbe970

15 years agopreliminary implementation of GSS naming SPI krb5 backend
Luke Howard [Mon, 24 Aug 2009 22:33:46 +0000 (22:33 +0000)] 
preliminary implementation of GSS naming SPI krb5 backend

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22587 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoembed authdata accessor in krb5_gss_name_t
Luke Howard [Mon, 24 Aug 2009 21:33:09 +0000 (21:33 +0000)] 
embed authdata accessor in krb5_gss_name_t

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22586 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoadd some code for copying ad contexts
Luke Howard [Mon, 24 Aug 2009 17:01:58 +0000 (17:01 +0000)] 
add some code for copying ad contexts

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22584 dc483132-0cff-0310-8789-dd5450dbe970

15 years agomore work on naming extensions
Luke Howard [Mon, 24 Aug 2009 13:40:07 +0000 (13:40 +0000)] 
more work on naming extensions

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22583 dc483132-0cff-0310-8789-dd5450dbe970

15 years agomore work on authdata API
Luke Howard [Mon, 24 Aug 2009 06:05:08 +0000 (06:05 +0000)] 
more work on authdata API

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22582 dc483132-0cff-0310-8789-dd5450dbe970

15 years agopreliminary implementation of pluggable authdata verifiers
Luke Howard [Sun, 23 Aug 2009 21:52:29 +0000 (21:52 +0000)] 
preliminary implementation of pluggable authdata verifiers

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22581 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoCreating branch for VerifyAuthData project
Luke Howard [Sat, 22 Aug 2009 16:36:11 +0000 (16:36 +0000)] 
Creating branch for VerifyAuthData project

git-svn-id: svn://anonsvn.mit.edu/krb5/users/lhoward/authdata@22578 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoRename db2 header files db.h and db-config.h in the source tree, so
Ken Raeburn [Fri, 21 Aug 2009 22:37:55 +0000 (22:37 +0000)] 
Rename db2 header files db.h and db-config.h in the source tree, so
that there will always be only one version of each name in the include
path (namely, the copy made in the build tree, or the generated db.h
if not using the in-tree one).  This should fix some minor problems
with different dependency lists generated on different systems.

Sort and uniquify dependency header names before doing substitutions,
as well as after.  Look for the db2 headers listed in sorted order.

Don't copy db-ndbm.h into the build tree; let libdb2 find it from the
source tree only.

Update dependencies.

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22572 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoupdate dependencies
Ken Raeburn [Fri, 21 Aug 2009 22:30:43 +0000 (22:30 +0000)] 
update dependencies

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22571 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoUse load_32_be processing length in TCP reply
Ken Raeburn [Fri, 21 Aug 2009 18:32:53 +0000 (18:32 +0000)] 
Use load_32_be processing length in TCP reply

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22570 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoChange "vague-errors" compile-time conditionals into run-time
Ken Raeburn [Fri, 21 Aug 2009 18:32:50 +0000 (18:32 +0000)] 
Change "vague-errors" compile-time conditionals into run-time
conditionals, based on a variable initialized based on the
compile-time conditional (but probably eventually set from the config
file or command line).

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22569 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoUse {load,store}_{16,32}_be for big-endian integers
Ken Raeburn [Fri, 21 Aug 2009 18:32:46 +0000 (18:32 +0000)] 
Use {load,store}_{16,32}_be for big-endian integers

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22568 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoMinor code cleanups in pkinit plugin, mostly around malloc/free
Greg Hudson [Tue, 18 Aug 2009 03:05:16 +0000 (03:05 +0000)] 
Minor code cleanups in pkinit plugin, mostly around malloc/free
invocations.  No functional changes.

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22534 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoBump sonames of libkadm5 libraries, since r22527 changed their ABIs
Greg Hudson [Mon, 17 Aug 2009 20:07:21 +0000 (20:07 +0000)] 
Bump sonames of libkadm5 libraries, since r22527 changed their ABIs

ticket: 6547

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22528 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoModify kadm5 initializers to accept krb5 contexts
Greg Hudson [Mon, 17 Aug 2009 19:40:48 +0000 (19:40 +0000)] 
Modify kadm5 initializers to accept krb5 contexts

Add krb5_context parameters to all kadm5 initialization functions.
This allows extended error information to be retrieved by the caller
when an error is returned.

ticket: 6547

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22527 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoRemove unused variables resulting from r22521, and also remove the
Greg Hudson [Mon, 17 Aug 2009 14:39:44 +0000 (14:39 +0000)] 
Remove unused variables resulting from r22521, and also remove the
unused file svr_misc_free.c.

ticket: 6544

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22523 dc483132-0cff-0310-8789-dd5450dbe970

15 years agoIn doc/Makefile, specify the new location of the kpasswd man page (the
Greg Hudson [Fri, 14 Aug 2009 16:24:36 +0000 (16:24 +0000)] 
In doc/Makefile, specify the new location of the kpasswd man page (the
old one was removed in r22521.

ticket: 6544

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22522 dc483132-0cff-0310-8789-dd5450dbe970

16 years agoRemove kadmin v1 API support
Greg Hudson [Thu, 13 Aug 2009 21:25:54 +0000 (21:25 +0000)] 
Remove kadmin v1 API support

The kadmin v1 API and the even older ovsec_kadm_* API were legacy when
kadmin was first incorporated in 1996, and compatibility with them is
no longer believed to be necessary.

The uninstalled kadmin/passwd has been removed (since it used the ovsec
API).  The test suite has been updated to use the v2 API where
appropriate, and the parts specifically designed to test the old API
have been excised.

ticket: 6544

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22521 dc483132-0cff-0310-8789-dd5450dbe970

16 years agoFix lib/crypto/krb/dk/Makefile.in mydir value
Greg Hudson [Thu, 13 Aug 2009 18:48:46 +0000 (18:48 +0000)] 
Fix lib/crypto/krb/dk/Makefile.in mydir value

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22520 dc483132-0cff-0310-8789-dd5450dbe970

16 years agoReply message ordering bug in ftpd
Greg Hudson [Wed, 12 Aug 2009 18:53:47 +0000 (18:53 +0000)] 
Reply message ordering bug in ftpd

user() was replying to the user command and then calling login(),
which could send a continuation reply if it fails to chdir to the
user's homedir.  Continuation replies must come before the actual
reply; the mis-ordering was causing ftp and ftpd to deadlock.  To fix
the bug, invoke login() before reply() so that the continuation reply
comes first.

ticket: 6543
tags: pullup
target_version: 1.7

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22519 dc483132-0cff-0310-8789-dd5450dbe970

16 years ago r22529@squish: raeburn | 2009-08-12 13:49:45 -0400
Ken Raeburn [Wed, 12 Aug 2009 17:58:24 +0000 (17:58 +0000)] 
 r22529@squish:  raeburn | 2009-08-12 13:49:45 -0400
 .
 r22530@squish:  raeburn | 2009-08-12 13:55:57 -0400
 Change KRBCONF_KDC_MODIFIES_KDB to a mostly run-time option.

 Change all code conditionals to test a new global variable, the
 initial value of which is based on KRBCONF_KDC_MODIFIES_KDB.  There is
 currently no way to alter the value from the command line; that will
 presumably be desired later.

 Change initialize_realms to store db_args in a global variable.  In
 process_as_req, call db_open instead of the old set_name + init.
 Don't reopen if an error is reported by krb5_db_fini.

 Add a test of running kinit with an incorrect password, to trigger a
 kdb update if enabled.
 r22531@squish:  raeburn | 2009-08-12 13:58:13 -0400
 Fix trailing whitespace.

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@22518 dc483132-0cff-0310-8789-dd5450dbe970