Skip Menu |
 

From: ghudson@mit.edu
Subject: SVN Commit

Change the signature of _make_etype_info_entry to take the canonical
client principal instead of the request structure. Also fixes the salt
we compute for SALTTYPE_NOREALM keys.

Sending an explicit salt for SALTTYPE_NORMAL keys is believed to be
necessary for some preauth scenarios involving aliases.


https://github.com/krb5/krb5/commit/83acbdbd1a5bfb2e1f47275f7cf34fa0c504438f
Commit By: ghudson
Revision: 22264
Changed Files:
U trunk/src/kdc/kdc_preauth.c
U trunk/src/kdc/kdc_util.c
From: tlyu@mit.edu
Subject: SVN Commit

pull up r22264 from trunk

------------------------------------------------------------------------
r22264 | ghudson | 2009-04-16 12:46:33 -0400 (Thu, 16 Apr 2009) | 12 lines
Changed paths:
M /trunk/src/kdc/kdc_preauth.c
M /trunk/src/kdc/kdc_util.c

ticket: 6470
subject: Send explicit salt for SALTTYPE_NORMAL keys
target_version: 1.7
tags: pullup

Change the signature of _make_etype_info_entry to take the canonical
client principal instead of the request structure. Also fixes the salt
we compute for SALTTYPE_NOREALM keys.

Sending an explicit salt for SALTTYPE_NORMAL keys is believed to be
necessary for some preauth scenarios involving aliases.

https://github.com/krb5/krb5/commit/c7db9729537607715ba013d7abe85a3b6464cd1a
Commit By: tlyu
Revision: 22265
Changed Files:
U branches/krb5-1-7/src/kdc/kdc_preauth.c
U branches/krb5-1-7/src/kdc/kdc_util.c
This change did not have the intended effect because keys with normal
salts generally have key_data_ver == 1, which causes the switch statement
to be bypassed.

r25410 (currently slated for 1.11) finally does what this change was
intended to.