diff options
author | Sam Hartman <hartmans@mit.edu> | 2009-11-24 01:05:30 +0000 |
---|---|---|
committer | Sam Hartman <hartmans@mit.edu> | 2009-11-24 01:05:30 +0000 |
commit | d55064e02f1078be49e9ff4200bc98cff7002834 (patch) | |
tree | 265ac9aa5120bd645944c7423ca811e381b28f23 /src/util | |
parent | a47489bddf97bb20dc561500ba581a5b64c7479a (diff) | |
download | krb5-d55064e02f1078be49e9ff4200bc98cff7002834.tar.gz krb5-d55064e02f1078be49e9ff4200bc98cff7002834.tar.xz krb5-d55064e02f1078be49e9ff4200bc98cff7002834.zip |
KDC MUST NOT accept ap-request armor in FAST TGS
Per the latest preauth framework spec, the working group has decided
to forbid ap-request armor in the TGS request because of security
problems with that armor type.
This commit was tested against an implementation of FAST TGS client to
confirm that if explicit armor is sent, the request is rejected.
ticket: 6585
target_version: 1.7.1
tags: pullup
git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@23325 dc483132-0cff-0310-8789-dd5450dbe970
Diffstat (limited to 'src/util')
0 files changed, 0 insertions, 0 deletions