svn rev #19069: trunk/src/windows/identity/plugins/krb5/

jaltman@MIT.EDU jaltman at MIT.EDU
Thu Jan 18 07:43:58 EST 2007


Commit By: jaltman
Log Message: 
ticket: new
subject: NIM Kerberos 5 Provider corrections
tags: pullup
component: windows

	When validating a Kerberos 5 principal name, the request
	to the KDC should not request forwardable, renewable, or 
	proxiable options as these may be blocked by policy and 
	will result in the return of an error.

	Always treat the Kerberos 5 principal name as valid 
	unless the KDC returns an error that clearly indicates that
	the principal name does not exist.

	Use a MEMORY: ccache for temporary storage instead of an
	API: ccache.

	Initialize pointer values with NULL instead of 0.



Changed Files:
U   trunk/src/windows/identity/plugins/krb5/krb5funcs.c
U   trunk/src/windows/identity/plugins/krb5/krb5identpro.c
U   trunk/src/windows/identity/plugins/krb5/krb5newcreds.c



More information about the cvs-krb5 mailing list