summaryrefslogtreecommitdiffstats
path: root/src/plugins
diff options
context:
space:
mode:
authorNalin Dahyabhai <nalin@dahyabhai.net>2013-10-09 15:03:16 -0400
committerGreg Hudson <ghudson@mit.edu>2014-03-20 17:46:47 -0400
commitb562400826409deceb0d52ffbe6570670ee9db55 (patch)
tree85011e422ef79811f811c59cf50b05970418ab1e /src/plugins
parent53d6d0d64e96b84b57b7446a787e683312e2a529 (diff)
downloadkrb5-b562400826409deceb0d52ffbe6570670ee9db55.tar.gz
krb5-b562400826409deceb0d52ffbe6570670ee9db55.tar.xz
krb5-b562400826409deceb0d52ffbe6570670ee9db55.zip
Don't check kpasswd reply address
Don't check the address of the kpasswd server when parsing the reply we received from it. If the server's address was modified by a proxy or other network element, the user will be incorrectly warned that the password change failed when it succeeded. The check is unnecessary as the kpasswd protocol is not subject to a reflection attack. [ghudson@mit.edu: edit commit message] ticket: 7886 (new)
Diffstat (limited to 'src/plugins')
0 files changed, 0 insertions, 0 deletions