svn rev #19069: trunk/src/windows/identity/plugins/krb5/
jaltman@MIT.EDU
jaltman at MIT.EDU
Thu Jan 18 07:43:58 EST 2007
Commit By: jaltman
Log Message:
ticket: new
subject: NIM Kerberos 5 Provider corrections
tags: pullup
component: windows
When validating a Kerberos 5 principal name, the request
to the KDC should not request forwardable, renewable, or
proxiable options as these may be blocked by policy and
will result in the return of an error.
Always treat the Kerberos 5 principal name as valid
unless the KDC returns an error that clearly indicates that
the principal name does not exist.
Use a MEMORY: ccache for temporary storage instead of an
API: ccache.
Initialize pointer values with NULL instead of 0.
Changed Files:
U trunk/src/windows/identity/plugins/krb5/krb5funcs.c
U trunk/src/windows/identity/plugins/krb5/krb5identpro.c
U trunk/src/windows/identity/plugins/krb5/krb5newcreds.c
More information about the cvs-krb5
mailing list