summaryrefslogtreecommitdiff
path: root/source3/librpc/crypto/gse.c
AgeCommit message (Expand)AuthorFilesLines
2025-08-05librpc:gse: Implement storing tickets into an emtpy ccacheAndreas Schneider1-0/+65
2024-12-05gensec: add GENSEC_FEATURE_NO_DELEGATION flag to avoid GSS_C_DELEG[_POLICY]_FLAGStefan Metzmacher1-1/+4
2024-06-24gse: Simplify gse_errstr() with talloc_asprintf_addbuf()Volker Lendecke1-13/+5
2024-06-24gse: Avoid explicit ZERO_STRUCT in gse_errstr()Volker Lendecke1-5/+2
2024-05-14s3:gse: get an explicit ccache_name from creds and kinit if requiredStefan Metzmacher1-1/+242
2024-05-14s3:gse: Pass down the mech to gse_context_init()Andreas Schneider1-7/+27
2024-05-14s3:gse: Implement gensec_gse_security_by_oid()Andreas Schneider1-1/+13
2024-05-14s3:gse: Use smb_gss_mech_import_cred() in gse_init_server()Andreas Schneider1-1/+2
2024-05-07s3:gse: don't call krb5_cc_resolve() as serverStefan Metzmacher1-15/+16
2024-05-07s3:gse: avoid prompting for a password that we don't use in the endStefan Metzmacher1-7/+0
2024-05-07s3:gse: make use of gensec_kerberos_possible()Stefan Metzmacher1-22/+18
2024-04-23s3:crypto/gse: implement channel binding supportStefan Metzmacher1-7/+88
2023-09-11s3:librpc: Fix code spellingJoseph Sutton1-1/+1
2023-07-28librpc:crypto: SAFE_FREE() -> krb5_free_string()Pavel Filipenský1-1/+1
2023-07-17s3:librpc: Fix code spellingAndreas Schneider1-1/+1
2022-10-25s3:librpc: Improve GSE error messageAndreas Schneider1-2/+19
2021-12-09librpc: match gensec_gssapi and call gsskrb5_set_dns_canonicalize() for HeimdalAndrew Bartlett1-6/+36
2020-04-14s3/librpc/crypto: Fix double free with unresolved credential cacheNoel Power1-4/+0
2019-11-27heimdal: invoke gsskrb5_set_dns_canonicalize(false) in gse_context_init()Isaac Boukris1-0/+10
2019-09-25s3/librpc/crypto: clang: warning: Value stored to 'gss_maj' is never readNoel Power1-4/+4
2018-12-19librpc: Add kerberos tracingSwen Schillig1-5/+3
2018-11-22librpc: Free krb5 context on errorSwen Schillig1-0/+4
2018-03-16s3: gse: use "gensec_gssapi:requested_life_time"Ralph Boehme1-2/+8
2018-01-31s3: librpc: Allow client to correctly report etype unsupported by KDC to caller.Jeremy Allison1-0/+3
2017-05-21s3:gse: add simple gensec_gse_update_send/recv() wrapper functionsStefan Metzmacher1-15/+71
2017-05-21s3:gse: always announce GENSEC_FEATURE_SIGN_PKT_HEADER support.Stefan Metzmacher1-9/+1
2017-03-29auth_log: Also log the final type of authentication (ntlmssp,krb5)Andrew Bartlett1-0/+16
2017-03-15lib: Fix an uninitialized variable warningVolker Lendecke1-1/+2
2017-03-10s3:gse: Correctly handle external trusts with MITAndreas Schneider1-0/+54
2017-03-10s3:gse: Check if we have a target_princpal set we should useAndreas Schneider1-1/+2
2017-03-10s3:gse: Move setup of service_principal to update functionAndreas Schneider1-26/+71
2017-03-10s3:gse: Pass down the gensec_security pointerAndreas Schneider1-7/+12
2017-03-10s3:gse: Use smb_krb5_get_realm_from_hostname()Andreas Schneider1-25/+68
2017-03-08s3-gse: move krb5 fallback to smb_gss_krb5_import_cred wrapperAlexander Bokovoy1-48/+1
2017-03-08s3-gse: convert to use smb_gss_krb5_import_credAlexander Bokovoy1-9/+11
2017-03-02s3:librpc: Handle gss_min in gse_get_client_auth_token() correctlyAndreas Schneider1-6/+40
2017-02-23s3:librpc: Fix OM_uint32 comparsion in if-clauseAndreas Schneider1-1/+1
2017-01-02s3:librpc/gse: make use of gss_krb5_import_cred() instead of gss_acquire_cred()Stefan Metzmacher1-13/+18
2017-01-02s3:librpc/gse: remove unused #ifdef HAVE_GSS_KRB5_IMPORT_CREDStefan Metzmacher1-3/+0
2017-01-02s3:librpc/gse: include ccache_name in DEBUG message if krb5_cc_resolve() failsStefan Metzmacher1-2/+2
2016-12-20CVE-2016-2125: s3:gse: avoid using GSS_C_DELEG_FLAGStefan Metzmacher1-1/+0
2016-11-15s3:gse: We need to use the users realm in the target_principalStefan Metzmacher1-2/+4
2016-11-02libcli: Increase the debug level for expired ticketsVolker Lendecke1-2/+7
2016-10-26s3:gse: pass gss_got_flags to gssapi_get_sig_size()Stefan Metzmacher1-1/+1
2016-09-29mit: make it possible to build with MIT kerberos and --picky-developerGünther Deschner1-1/+2
2016-08-31krb5_wrap: Rename kerberos_get_principal_from_service_hostname()Andreas Schneider1-2/+5
2016-08-31krb5_wrap: Rename smb_krb5_keytab_name()Andreas Schneider1-1/+1
2016-04-28s3:librpc:crypto:gse: increase debug level for gse_init_client().Günther Deschner1-1/+1
2016-03-10s3:librpc/gse: implement gensec_gse_max_{input,wrapped}_size()Stefan Metzmacher1-0/+38
2016-03-10s3:librpc/gse: don't log gss_acquire_creds failed at level 0Stefan Metzmacher1-1/+2