diff options
| author | Greg Hudson <ghudson@mit.edu> | 2013-01-07 15:22:26 -0500 |
|---|---|---|
| committer | Greg Hudson <ghudson@mit.edu> | 2013-01-09 15:35:43 -0500 |
| commit | 090f561c631db7e4970b71cbe1426d636c39c77a (patch) | |
| tree | b42d62ba55e427796ff837f39f1117b7b71569dd /src/ccapi/server/ccs_array.c | |
| parent | 941e26f9eb76471159e0a024aeac63f1b6e6ea45 (diff) | |
| download | krb5-090f561c631db7e4970b71cbe1426d636c39c77a.tar.gz krb5-090f561c631db7e4970b71cbe1426d636c39c77a.tar.xz krb5-090f561c631db7e4970b71cbe1426d636c39c77a.zip | |
Stop loading policy for pw_expiration in LDAP
populate_krb5_db_entry() performs a subsidiary LDAP search to load the
password policy, which it uses to update the pw_expiration field.
This has some minimal value (it causes pw_expiration values in
principals to auto-update whenever the pw_max_life field of a policy
changes), but it's complicated, expensive, and inconsistent with the
DB2 back end. Get rid of it.
ticket: 7535 (new)
Diffstat (limited to 'src/ccapi/server/ccs_array.c')
0 files changed, 0 insertions, 0 deletions
