summaryrefslogtreecommitdiff
path: root/source3/librpc/crypto
AgeCommit message (Expand)AuthorFilesLines
2026-03-30s3/librpc/crypto: Don't keep growing in memory keytabNoel Power1-1/+17
2025-08-05librpc:gse: Implement storing tickets into an emtpy ccacheAndreas Schneider1-0/+65
2024-12-05gensec: add GENSEC_FEATURE_NO_DELEGATION flag to avoid GSS_C_DELEG[_POLICY]_FLAGStefan Metzmacher1-1/+4
2024-07-17s3:librpc: Fix a typo in DEBUG textPavel Filipenský1-2/+2
2024-06-24gse: Simplify gse_errstr() with talloc_asprintf_addbuf()Volker Lendecke1-13/+5
2024-06-24gse: Avoid explicit ZERO_STRUCT in gse_errstr()Volker Lendecke1-5/+2
2024-05-22s3:librpc: Use lp_dns_hostname() for creating the fqdnAndreas Schneider1-3/+7
2024-05-14s3:gse: get an explicit ccache_name from creds and kinit if requiredStefan Metzmacher1-1/+242
2024-05-14s3:gse: Pass down the mech to gse_context_init()Andreas Schneider1-7/+27
2024-05-14s3:gse: Implement gensec_gse_security_by_oid()Andreas Schneider2-2/+15
2024-05-14s3:gse: Use smb_gss_mech_import_cred() in gse_init_server()Andreas Schneider1-1/+2
2024-05-07s3:gse: don't call krb5_cc_resolve() as serverStefan Metzmacher1-15/+16
2024-05-07s3:gse: avoid prompting for a password that we don't use in the endStefan Metzmacher1-7/+0
2024-05-07s3:gse: make use of gensec_kerberos_possible()Stefan Metzmacher1-22/+18
2024-04-23s3:crypto/gse: implement channel binding supportStefan Metzmacher1-7/+88
2023-09-11s3:librpc: Fix code spellingJoseph Sutton1-1/+1
2023-07-28librpc:crypto: SAFE_FREE() -> krb5_free_enctypes()Pavel Filipenský1-1/+1
2023-07-28librpc:crypto: SAFE_FREE() -> krb5_free_string()Pavel Filipenský1-1/+1
2023-07-17s3:librpc: Fix code spellingAndreas Schneider1-1/+1
2022-10-25s3:librpc: Improve GSE error messageAndreas Schneider1-2/+19
2022-06-09lib/util: Change function to mem_equal_const_time()Joseph Sutton1-2/+2
2022-06-09auth: Use constant-time memcmp when comparing sensitive buffersJoseph Sutton1-2/+2
2021-12-09librpc: match gensec_gssapi and call gsskrb5_set_dns_canonicalize() for HeimdalAndrew Bartlett1-6/+36
2021-11-03s3:librpc: Improve calling of krb5_kt_end_seq_get()Pavel Filipenský1-51/+59
2021-06-15gse_krb5: Provide keytab name in fill_mem_keytab_from_dedicated_keytab() erro...Andrew Bartlett1-2/+5
2020-08-28s3: safe_string: do not include string_wrappers.hMatthew DeVore1-0/+1
2020-04-14s3/librpc/crypto: Fix double free with unresolved credential cacheNoel Power1-4/+0
2019-11-27heimdal: invoke gsskrb5_set_dns_canonicalize(false) in gse_context_init()Isaac Boukris1-0/+10
2019-09-25s3/librpc/crypto: clang: Fixes Value stored to 'ret' is never readNoel Power1-1/+1
2019-09-25s3/librpc/crypto: clang: warning: Value stored to 'gss_maj' is never readNoel Power1-4/+4
2018-12-19librpc: Add kerberos tracingSwen Schillig1-5/+3
2018-11-22librpc: Free krb5 context on errorSwen Schillig1-0/+4
2018-06-18librpc/crypto: Fix a misleading commentVolker Lendecke1-3/+1
2018-03-16s3: gse: use "gensec_gssapi:requested_life_time"Ralph Boehme1-2/+8
2018-01-31s3: librpc: Allow client to correctly report etype unsupported by KDC to caller.Jeremy Allison1-0/+3
2017-08-18s3:gse_krb5: make use of precalculated krb5 keys in fill_mem_keytab_from_secr...Stefan Metzmacher1-95/+85
2017-06-27s3:gse_krb5: simplify fill_keytab_from_password() by using kerberos_fetch_sal...Stefan Metzmacher1-26/+14
2017-06-27s3:gse_krb5: fix a possible crash in fill_mem_keytab_from_system_keytab()Michael Saxl1-0/+8
2017-05-21s3:gse: add simple gensec_gse_update_send/recv() wrapper functionsStefan Metzmacher1-15/+71
2017-05-21s3:gse: always announce GENSEC_FEATURE_SIGN_PKT_HEADER support.Stefan Metzmacher1-9/+1
2017-03-29auth_log: Also log the final type of authentication (ntlmssp,krb5)Andrew Bartlett1-0/+16
2017-03-15lib: Fix an uninitialized variable warningVolker Lendecke1-1/+2
2017-03-10s3:gse: Correctly handle external trusts with MITAndreas Schneider1-0/+54
2017-03-10s3:gse: Check if we have a target_princpal set we should useAndreas Schneider1-1/+2
2017-03-10s3:gse: Move setup of service_principal to update functionAndreas Schneider1-26/+71
2017-03-10s3:gse: Pass down the gensec_security pointerAndreas Schneider1-7/+12
2017-03-10s3:gse: Use smb_krb5_get_realm_from_hostname()Andreas Schneider1-25/+68
2017-03-08s3-gse: move krb5 fallback to smb_gss_krb5_import_cred wrapperAlexander Bokovoy1-48/+1
2017-03-08s3-gse: convert to use smb_gss_krb5_import_credAlexander Bokovoy1-9/+11
2017-03-02s3:librpc: Handle gss_min in gse_get_client_auth_token() correctlyAndreas Schneider1-6/+40