diff options
| author | Nalin Dahyabhai <nalin@dahyabhai.net> | 2013-10-09 15:03:16 -0400 |
|---|---|---|
| committer | Greg Hudson <ghudson@mit.edu> | 2014-03-20 17:46:47 -0400 |
| commit | b562400826409deceb0d52ffbe6570670ee9db55 (patch) | |
| tree | 85011e422ef79811f811c59cf50b05970418ab1e /src/plugins | |
| parent | 53d6d0d64e96b84b57b7446a787e683312e2a529 (diff) | |
| download | krb5-b562400826409deceb0d52ffbe6570670ee9db55.tar.gz krb5-b562400826409deceb0d52ffbe6570670ee9db55.tar.xz krb5-b562400826409deceb0d52ffbe6570670ee9db55.zip | |
Don't check kpasswd reply address
Don't check the address of the kpasswd server when parsing the reply
we received from it. If the server's address was modified by a proxy
or other network element, the user will be incorrectly warned that the
password change failed when it succeeded. The check is unnecessary as
the kpasswd protocol is not subject to a reflection attack.
[ghudson@mit.edu: edit commit message]
ticket: 7886 (new)
Diffstat (limited to 'src/plugins')
0 files changed, 0 insertions, 0 deletions
