summaryrefslogtreecommitdiff
path: root/source4/kdc
AgeCommit message (Expand)AuthorFilesLines
2026-02-23s4:kdc:db-glue:tests free principalGary Lockyer1-2/+3
2026-02-23s4:kdc:db-glue altSecurityIdentities DN and serial reversedGary Lockyer2-17/+454
2026-02-18CVE-2026-20833: s4:kdc: Make default domain supported enctypes AES by defaultJennifer Sutton1-4/+9
2026-01-21s4:kdc: Return SDB_ERR_NOENTRY if canonicalization is requiredJennifer Sutton1-1/+1
2026-01-20lib: Remove &data_blob_null refsVolker Lendecke2-4/+8
2026-01-15s4:kdc: honour "kdc require canonicalization = yes"Douglas Bagnall1-1/+22
2026-01-15kdc: match implicit dollar without canon affects AS_REQ client onlyDouglas Bagnall1-1/+3
2025-12-08auth: Use new data_blob_..._s() functions and remove talloc_keep_secret()Pavel Filipenský1-4/+4
2025-11-20s4:kdc: avoid reusing a variable nameDouglas Bagnall1-11/+12
2025-11-20s4:kdc: do not match principal + '$' if smb.conf says not toDouglas Bagnall1-4/+52
2025-11-20s4:kdc: allocate fallback realm later, closer to useDouglas Bagnall1-9/+7
2025-11-20s4:kdc: do not fallback to "$$" if user is "$"Douglas Bagnall1-1/+1
2025-11-20s4:kdc: flatten samba_kdc_lookup_client dollar fallbackDouglas Bagnall1-52/+56
2025-11-20s4:kdc: avoid a leak on errorDouglas Bagnall1-1/+1
2025-11-20s4:kdc: improve a commentDouglas Bagnall1-1/+1
2025-10-22s4:kdc: Implement Object SID certificate security extensionJennifer Sutton3-3/+44
2025-10-22s4:kdc: Don’t leak pub_keys.keysJennifer Sutton1-4/+6
2025-10-22s4:kdc: Move talloc_steal() back to function endJennifer Sutton1-6/+6
2025-10-22s4:kdc: Correct debug messagesJennifer Sutton1-3/+3
2025-10-22s4:kdc: Correct commentsJennifer Sutton1-5/+5
2025-10-22s4:kdc: Correct spellingJennifer Sutton1-1/+1
2025-10-17s4:kdc: Fix cmocka.h includeAndreas Schneider2-2/+2
2025-10-17Add missing include needed for cmocka.hAndreas Schneider2-0/+2
2025-10-13s4:kdc:db-glue-tests Fix CID 1666664Gary Lockyer1-0/+1
2025-10-10s4:kdc:sdb_to_hdb strong/flexible certificate mappingsGary Lockyer2-0/+596
2025-10-10s4:kdc:sdb Support Windows flexible cert mappingsGary Lockyer4-30/+1451
2025-09-25s4:kdc:sdb_to_hdb: Fix CID 1665466Gary Lockyer1-5/+5
2025-09-17s4:kdc/db-glue: Use realloc_p macroMike L1-4/+4
2025-09-16s4:kdc:sdb_to_hdb key trust supportGary Lockyer3-0/+314
2025-09-16s4:kdc:db-glue binary dn changesGary Lockyer2-33/+144
2025-08-06s4:kdc:db-glue talloc steal pub_key dataGary Lockyer1-0/+5
2025-07-29s4:kdc Support for key trust authenticationGary Lockyer3-0/+1309
2025-07-29s4:kdc:sdb: Add support for key trust public keysGary Lockyer2-1/+54
2025-07-29s4:kdc: Fix clang-tidy error in db-glue.cGary Lockyer1-0/+5
2025-06-03s4:kdc: Fix memory leak of padata_valueIvan Korytov1-5/+2
2025-06-03s4:kdc: Fix ticket encryption types memory leakIvan Korytov1-0/+4
2025-06-03s4:kdc: Fix memory leak for unused keys in TGTIvan Korytov1-0/+11
2025-05-28Fix clang 20 unused-function warningsGary Lockyer1-6/+0
2025-04-03s4:kdc: samba_kdc_add_compounded_auth() should add Compounded_Authentication ...Stefan Metzmacher1-1/+5
2025-04-03s4:kdc: only use compound authentication with an explicit FAST armorStefan Metzmacher3-0/+9
2025-04-03s4:kdc: samba_kdc_update_pac() doesn't need explicit delegated_proxy_principalStefan Metzmacher4-8/+1
2025-04-03s4:kdc: store pac_princ in struct samba_kdc_entry_pacStefan Metzmacher2-6/+38
2025-04-03s4:kdc: pass pac_princ to samba_kdc_entry_pac()Stefan Metzmacher5-3/+14
2025-04-03s4:kdc: pass pac_princ to samba_kdc_entry_pac_from_trusted()Stefan Metzmacher3-0/+13
2025-04-03s4:kdc: let samba_kdc_entry_pac[_from_trusted]() assert krbtgt is valid if pa...Stefan Metzmacher1-0/+8
2025-04-03s4:kdc: let hdb_samba4_check_rbcd() fill device_pac_entry() without device_entryStefan Metzmacher1-6/+16
2025-04-03s4:kdc: let samba_wdc_get_pac() use samba_kdc_get_device_pac()Stefan Metzmacher1-20/+1
2025-04-03s4:kdc: let samba_kdc_get_device_pac() always extract device_krbtgt_skdc_entryStefan Metzmacher1-7/+18
2025-04-03s4:kdc: let samba_wdc_reget_pac() use krbtgt_skdc_entry as delegated_proxy_kr...Stefan Metzmacher1-6/+14
2025-04-03s4:kdc: let mit_samba_check_allowed_to_delegate_from() fetch krbtgt_entryStefan Metzmacher1-1/+46