summaryrefslogtreecommitdiffstats
path: root/daemons/ipa-kdb
Commit message (Expand)AuthorAgeFilesLines
* Implement user pre-authentication control with kdcpolicy pluginChangmin Teng2019-09-103-17/+73
* Add a skeleton kdcpolicy pluginRobbie Harwood2019-09-103-0/+73
* Extend the list of supported pre-auth mechanisms in IPA server APIChangmin Teng2019-09-102-0/+4
* Fix NULL pointer dereference in maybe_require_preauth()Robbie Harwood2019-09-051-1/+1
* Log INFO message when LDAP connection fails on startupRobbie Harwood2019-09-054-5/+4
* kdb: support SMB services on IPA domain membersAlexander Bokovoy2019-06-291-0/+15
* ipa-kdb: reduce LDAP operations timeout to 30 secondsAlexander Bokovoy2018-11-161-1/+1
* ipadb_mspac_get_trusted_domains: NULL ptr derefChristian Heimes2018-11-011-0/+6
* Don't abuse strncpy() length limitationChristian Heimes2018-10-241-1/+1
* Fix ipadb_multires resource handlingChristian Heimes2018-10-242-5/+10
* Silence GCC warning in ipa-kdbChristian Heimes2018-02-231-0/+2
* ipa-kdb: update trust information in all workersSumit Bose2018-02-081-13/+20
* ipa-kdb: use magic value to check if ipadb is usedSumit Bose2018-02-083-1/+4
* Include ipa_krb5.h without util prefixChristian Heimes2017-12-201-1/+1
* ipa-kdb: override krb5.conf when testing KDC code in cmockaAlexander Bokovoy2017-11-292-0/+4
* ipa-kdb: support KDB DAL version 7.0Robbie Harwood2017-10-263-3/+14
* ipa-kdb: reinit trusted domain data for enterprise principalsSumit Bose2017-10-131-0/+11
* NULL LDAP context in call to ldap_search_ext_s during searchThierry Bordaz2017-07-241-0/+6
* install: do not assume /etc/krb5.conf.d existsJan Cholasta2017-06-282-11/+0
* ipa-kdb: use canonical principal in certauth pluginSumit Bose2017-06-071-1/+1
* ipa-kdb: add pkinit authentication indicator in case of a successful certauthAlexander Bokovoy2017-06-051-2/+34
* ipa-kdb: reload certificate mapping rules periodicallySumit Bose2017-06-021-72/+81
* Fix s4u2self with adtrustSimo Sorce2017-04-121-4/+10
* IPA-KDB: use relative path in ipa-certmap config snippetSumit Bose2017-04-052-9/+5
* ipa-kdb: do not depend on certauth_plugin.hSumit Bose2017-03-272-0/+10
* IPA certauth pluginSumit Bose2017-03-276-1/+434
* ipa-kdb: add ipadb_fetch_principals_with_extra_filter()Sumit Bose2017-03-272-13/+56
* Add support for searching policies in cn=accountsSimo Sorce2017-03-103-6/+17
* Add code to retrieve results from multiple basesSimo Sorce2017-03-102-0/+113
* ipa-kdb: support KDB DAL version 6.1Alexander Bokovoy2017-02-153-20/+66
* Clean / ignore make check artefactChristian Heimes2017-01-181-0/+3
* ipa-kdb: search for password policies globallyAlexander Bokovoy2016-12-151-1/+1
* Build: remove incorrect use of MAINTAINERCLEANFILESPetr Spacek2016-11-161-4/+0
* Support DAL version 5 and version 6Simo Sorce2016-11-101-39/+63
* Build: fix distribution of daemon/ipa-kdb filesPetr Spacek2016-11-091-0/+3
* Build: fix Makefile.am files to separate source and build directoriesPetr Spacek2016-11-091-7/+3
* Build: transform util directory to libutil convenience libraryPetr Spacek2016-10-241-4/+4
* Build: adjust include paths in daemons/ipa-kdb/tests/ipa_kdb_tests.cPetr Spacek2016-10-241-2/+2
* ipa-kdb: simplify trusted domain parent searchAlexander Bokovoy2016-08-221-13/+14
* ipa-kdb: Allow to build with samba 4.5Lukas Slebodnik2016-08-091-0/+9
* kdb: check for local realm in enterprise principalsSumit Bose2016-07-121-12/+40
* Allow unexpiring passwordsDavid Kupka2016-07-012-1/+16
* ipa-kdb: set krbCanonicalName when creating new principalsMartin Babinsky2016-06-231-3/+1
* perform case-insensitive principal search when canonicalization is requestedMartin Babinsky2016-06-231-1/+12
* adtrust: support UPNs for trusted domain usersAlexander Bokovoy2016-06-112-11/+50
* Migrate from #ifndef guards to #pragma onceNathaniel McCallum2016-05-291-5/+1
* Enable authentication indicators for OTP and RADIUSNathaniel McCallum2016-05-261-2/+8
* Return password-only preauth if passwords are allowedNathaniel McCallum2016-05-261-4/+2
* ipa_kdb: add krbPrincipalAuthInd handlingMatt Rogers2016-05-021-0/+170
* Allow to specify Kerberos authz data type per userSimo Sorce2016-03-091-7/+9