aboutsummaryrefslogtreecommitdiff
path: root/src/kdc
AgeCommit message (Expand)AuthorFilesLines
2014-02-19Make KDC "status" statements more homogeneousZhanna Tsitkov3-21/+35
2013-12-31Fix possible null deref in previousTom Yu1-3/+4
2013-12-30Log service princ in KDC more reliablyrbasch2-12/+18
2013-12-20make dependGreg Hudson1-0/+13
2013-12-20Move kdc log routines into a separate fileZhanna Tsitkov3-198/+229
2013-12-10make dependTom Yu1-15/+30
2013-11-04Multi-realm KDC null deref [CVE-2013-1418]Tom Yu1-0/+3
2013-11-04Clean up the code to eliminate some clang warningsBen Kaduk1-2/+2
2013-10-04KDC Audit infrastructure and plugin implementationZhanna Tsitkov6-5/+552
2013-10-04Remove unneeded variable enc_tkt_transitedBen Kaduk1-7/+2
2013-10-04Zero out stack variables in process_tgs_req()Ben Kaduk1-4/+5
2013-09-25Support authoritative KDB check_transited methodsGreg Hudson1-8/+6
2013-09-23Re-factoring of service processing code in AS-REQZhanna Tsitkov1-12/+12
2013-09-23Err codes in KRB_ERROR protocol messages are < 128Zhanna Tsitkov2-2/+2
2013-09-03Stop modifying TGS requests for referralsGreg Hudson1-17/+0
2013-09-03Explicitly prevent referrals for certain requestsGreg Hudson2-2/+21
2013-09-03Tighten up referral recognition in KDC TGS codeGreg Hudson1-2/+6
2013-09-03Support FAST hide-client-names optionGreg Hudson4-0/+18
2013-08-29Make it possible to renew aliased service ticketsGreg Hudson1-3/+3
2013-08-29Don't change realm in find_alternate_tgsGreg Hudson1-1/+1
2013-08-28Don't treat local krbtgt principal as referralGreg Hudson1-8/+7
2013-08-28Fix KDC reply service principal for aliasesGreg Hudson1-8/+15
2013-08-20Omit signedpath if no_auth_data_required is setGreg Hudson1-1/+2
2013-07-11Use k5calloc instead of k5alloc where appropriateGreg Hudson2-4/+4
2013-07-11Add server-side otp preauth pluginNathaniel McCallum1-0/+2
2013-07-01KDC null deref due to referrals [CVE-2013-1417]Tom Yu1-1/+3
2013-06-07Fix various warningsGreg Hudson1-2/+0
2013-06-06Refactor KDC renewable ticket handlingGreg Hudson5-59/+61
2013-05-16Reduce boilerplate in makefilesGreg Hudson1-6/+1
2013-05-03Make AS requests work with no client keyGreg Hudson2-16/+26
2013-05-03Don't send empty etype info from KDCGreg Hudson1-0/+5
2013-05-03Check for keys in encrypted timestamp/challengeGreg Hudson2-2/+11
2013-05-03Add kdcpreauth callback to check for client keysGreg Hudson1-2/+18
2013-04-13Set msg_type when decoding FAST requestsGreg Hudson1-0/+1
2013-04-08Avoid passing null pointers to memcpy/memcmpGreg Hudson2-6/+12
2013-03-26Fix minor KDC memory leaksGreg Hudson3-17/+13
2013-03-24make dependGreg Hudson1-67/+61
2013-03-24Move a bunch of stuff out of k5-int.hGreg Hudson1-3/+0
2013-02-09Add and use k5memdup, k5memdup0 helpersGreg Hudson2-10/+5
2013-01-31Revert previous change to process_tgs_reqGreg Hudson1-1/+1
2013-01-31Fix is_referral flag in KDC TGS codeGreg Hudson1-1/+1
2013-01-16Get rid of krb5_read_realm_paramsGreg Hudson1-62/+63
2013-01-15Remove KDC macros for realm config fieldsGreg Hudson4-15/+9
2013-01-15Remove unused krb5_realm_params fieldsGreg Hudson2-10/+0
2013-01-11Simplify KDC host referral codeGreg Hudson3-106/+64
2013-01-11Fix no_host_referral concatention in KDCGreg Hudson1-6/+7
2013-01-10Get rid of adm.hGreg Hudson4-12/+33
2013-01-10make dependGreg Hudson1-1/+1
2012-12-20Remove inoperative null checks in KDC codeGreg Hudson2-7/+3
2012-12-20Simplify k5test.py environmentsGreg Hudson1-1/+1