kdc: Return NEVER_VALID error code if ticket will never be valid
[lorikeet-heimdal.git] / kdc /
2022-01-17 Nicolas Williamskdc: Fix ENOMEM path null deref (synthetic princs)
2022-01-17 Nicolas Williamskdc: Quiet a coverity warning (TGS)
2022-01-17 Nicolas Williamskdc: Quiet a coverity warning
2022-01-17 Nicolas Williamskdc: Add missing encryption retval check
2022-01-17 Nicolas Williamskdc: Fix build
2022-01-17 Jeffrey Altmankdc: update_csr do not leak error messages
2022-01-17 Jeffrey Altmankdc: check_authz free 'cprinc' on success
2022-01-17 Jeffrey Altmanhx509_request_get_san can return an output string on...
2022-01-16 Luke Howardkdc: use memset rather than {0} to initialize fxreq
2022-01-16 Jeffrey Altmankdc: fast_unwrap_request use memset to init fastreq
2022-01-16 Nicolas Williamsbx509d: Add missing check of result of key2SPKI()
2022-01-16 Jeffrey Altmanremove (krb5_enctype) cast for ETYPE_xxx
2022-01-15 Luke Howardhdb: eliminate hdb_entry_ex
2022-01-15 Luke Howardhdb: decorate HDB_entry with context member
2022-01-15 Nicolas WilliamsFix make dist
2022-01-14 Nicolas Williamskdc: Fix warnings
2022-01-14 Nicolas Williamshttpkadmind: Fix warnings
2022-01-14 Nicolas Williamsbx509d: Fix warnings
2022-01-14 Nicolas Williamshpropd: Fix warning
2022-01-14 Nicolas Williamskstash: Fix warning
2022-01-14 Nicolas WilliamsCheck HMAC_Init_ex() return value
2022-01-13 Nicolas Williamshttpkadmind: Build with older libmicrohttpd (fix GH CI)
2022-01-13 Nicolas Williamsbx509d: Build with older libmicrohttpd (fix GH CI)
2022-01-13 Nicolas Williamscf: Check cc support of -Werror=enum-conversion
2022-01-13 Luke Howardkdc: move auth event definitions into KDC header
2022-01-11 Nicolas WilliamsIgnore enum-conversion errors
2022-01-10 Luke Howardkdc: send request, not TGS, server name in TGS errors
2022-01-10 Luke Howardkdc: use astgs_request_t for client/server name (TGS)
2022-01-08 Luke Howardkdc: don't leak etype/error message in pa_enc_ts_validate()
2022-01-08 Luke HowardRevert "kdc: don't leak etype/error message in pa_enc_t...
2022-01-08 Luke Howardkdc: don't leak etype/error message in pa_enc_ts_validate()
2022-01-05 Luke Howardkdc: KDC plugin API contract notes
2022-01-05 Luke Howardkdc: use r->canon_client_princ field in AS
2022-01-05 Luke Howardkdc: move Services for User implementation out of krb5tgs.c
2022-01-04 Luke Howardhdb: consolidate preauth audit event types
2022-01-04 Luke Howardkdc: audit preauth event only at end of PA loop
2022-01-04 Luke Howardkdc: audit requestor SID in altsecid GSS PA plugin
2022-01-04 Luke Howardkdc: fix build regression in fixing Windows build
2022-01-04 Luke Howardkdc: fix Windows build
2022-01-04 Luke Howardkdc: fix misplaced semi-colons in ASTGS_REQUEST
2022-01-04 Luke Howardkdc: add _kdc_audit_addkv_{number,object}
2022-01-04 Luke Howardkdc: annotate libkdc Windows function annotations
2022-01-04 Luke Howardkdc: use attribute dictionary in altsec authorizer...
2022-01-04 Luke Howardkdc: add attribute dictionary to kdc_request_t
2022-01-03 Luke Howardbase: s/addkv_{bool,number,object}/setkv
2022-01-03 Luke Howardkdc: don't cast away const in krb5plugin_kdc_ftable
2022-01-03 Luke Howardkdc: rename windc to kdc plugin
2022-01-03 Luke Howardkdc: add audit plugin API to windc API
2022-01-03 Luke HowardRevert "heimdal: handle referrals for 3 part DRSUAPI...
2022-01-03 Luke Howardkdc: add referral_policy callback to windc plugin
2022-01-03 Nicolas Williamshttpkadmind: Use enum MHD_Result return type
2022-01-03 Nicolas Williamsbx509d: Use enum MHD_Result return type
2022-01-03 Nicolas Williamskdc: Fix bx509d/httpkadmind (b1dcc1a47)
2022-01-03 Luke Howardkdc: remove unused rx.h header
2022-01-02 Luke Howardkdc: fix _kdc_audit_addkv_bool wrapper copy paste
2022-01-02 Luke Howardkdc: note that GSS PA uses synthetic principals
2022-01-02 Luke Howardkdc: document windc plugin entry points
2022-01-02 Luke Howardkdc: separate PKINIT/GSS authorization failure
2022-01-02 Luke Howardkdc: audit "yes" boolean values as booleans
2022-01-02 Luke Howardkdc: remove auth_event_details audit key
2022-01-02 Luke Howardkdc: call HDB audit function in both AS and TGS
2022-01-02 Luke Howardkdc: make error code available to audit function
2022-01-02 Luke Howardkdc: preserve value types in auditing
2022-01-02 Luke Howardkdc: refactor Samba-specific auditing API in terms...
2022-01-02 Luke Howardbx509d: don't audit NULL message string
2022-01-01 Luke Howardkdc: return KRB5KDC_ERR_C_PRINCIPAL_UNKNOWN (PA)
2021-12-30 Luke Howardkdc: remove unused v4 hprop code
2021-12-29 Luke Howardkdc: remove unnecessary cast in finalize() (windc.c)
2021-12-26 Nicolas Williamskdc: Add ret to common svc req elements
2021-12-24 Nicolas Williamskdc: Log more about KRB-ERROR failures
2021-12-24 Nicolas Williamskdc: Stop confusing the compiler
2021-12-23 Luke Howardkdc: remove e_text argument to _kdc_encode_reply()
2021-12-23 Luke Howardkdc: remove outpadata from astgs_request_t
2021-12-23 Luke Howardkdc: simplify client_access windc plugin API
2021-12-23 Luke Howardkdc: remove unused padata field from astgs_request_t
2021-12-23 Luke Howardkdc: add finalize_reply API to windc plugin
2021-12-23 Luke Howardkdc: use PAC from request in _kdc_gss_finalize_pac()
2021-12-23 Luke Howardkdc: remove superflous request arg to _kdc_check_access()
2021-12-23 Luke Howardkdc: use rep/et/ek fields in astgs_request_t
2021-12-23 Luke Howardkdc: make common astgs_request_t elements public API
2021-12-23 Luke Howardkdc: move PAC into astgs_request_t structure
2021-12-23 Luke Howardkdc: separate astgs_request_t common elements
2021-12-23 Luke Howardkdc: centralize include PAC logic
2021-12-23 Luke Howardkdc: remove pac_attributes_present field
2021-12-23 Luke Howardkdc: distinguish long-term key from replacing reply key
2021-12-23 Luke HowardRevert "kdc: distinguish long-term key from replacing...
2021-12-23 Luke Howardkdc: distinguish long-term key from replacing reply key
2021-12-23 Luke Howardkdc: avoid linear search of PA types
2021-12-22 Luke Howardkdc: honor PAC_ATTRIBUTES in presented TGT
2021-12-22 Luke Howardkdc: don't add PAC_ATTRIBUTES PAC buffer for service...
2021-12-22 Luke Howardkdc: don't add REQUESTOR_SID PAC buffer for service...
2021-12-21 Luke Howardkdc: include SID in PAC with GSS authorizer
2021-12-21 Luke Howardkdc: add PA PAC finalize callback
2021-12-21 Luke Howardkdc: support for PAC_ATTRIBUTES_INFO
2021-12-21 Luke Howardkdc: add canonical principal name to authz data
2021-12-20 Joseph Suttonkdc: Return error code from _kdc_check_pac() with an...
2021-12-20 Joseph Suttonkdc: Fix NULL pointer dereference on failure to verify...
2021-12-19 Luke Howardkdc: audit armor client principal name
2021-12-18 Luke Howardkdc: allow cross-realm FAST armor TGT
2021-12-18 Luke Howardkdc: add auth data type for synthetic principals
next