History log of /opensolaris-onvv-gate/usr/src/lib/pam_modules/krb5_migrate/krb5_migrate_authenticate.c
Revision Date Author Comments
# 8991:5ab80299f68b 06-Mar-2009 Peter Shoults <Peter.Shoults@Sun.COM>

6799884 pam_krb5 could allow authentication to an attacker's KDC


# 5890:9e8e51bc1851 23-Jan-2008 jjj

6483447 pam_sm_chauthtok NOT mt-safe: authtok_check/dict.c:lock_db uses alarm(2)
6548129 some pam modules can use some malloc/strdup error checking


# 4960:a4746a82a247 29-Aug-2007 willf

PSARC/2006/277 Support for Kerberos Records in LDAP Directory
6399903 Support for Kerberos Records in LDAP Directory
6520554 MIT bug #5427 with krb5_kt_get_name()
6597851 dmake lint in usr/src/lib/gss_mechs/mech_krb5 broken


# 4621:77407f8b6bb2 09-Jul-2007 semery

6550530 pam_krb5_migrate's expire_pw expires the Kerberos password too late
6557188 included pam_krb5 doesn't function correctly as 'auth required' in pam.conf
6559678 kpasswd returns "KDC reply did not match expectations" when using Heimdal server
6564714 Option "-m" doesn't work for kadmind.
6564718 kdb5_util dump doesn't create a "dump ok" file if the master key is not available
6570434 libkadm5srv should be smarter in figuring out the enc type of the master key in the stash file
6575452 kdb5_util should be more robust after CF providers have failed


# 3391:2e4fef544e31 08-Jan-2007 semery

6266812 pam_krb5 and pam_krb5_migrate localize their syslog messages
6430941 pam_krb5 pam_sm_setcred can cause /tmp/krb5cc_<PAM_USER> to be owned by euid rather than PAM_USER
6484675 pam_krb5(5) needs some cleanup
6499804 pam_krb5 account management should not return success if user is not defined in kerberos realm
6507080 autofs no longer passing credential information in upcalls


# 0:68f95e015346 14-Jun-2005 stevel@tonic-gate

OpenSolaris Launch


# 8991:5ab80299f68b 06-Mar-2009 Peter Shoults <Peter.Shoults@Sun.COM>

6799884 pam_krb5 could allow authentication to an attacker's KDC


# 5890:9e8e51bc1851 23-Jan-2008 jjj

6483447 pam_sm_chauthtok NOT mt-safe: authtok_check/dict.c:lock_db uses alarm(2)
6548129 some pam modules can use some malloc/strdup error checking


# 4960:a4746a82a247 29-Aug-2007 willf

PSARC/2006/277 Support for Kerberos Records in LDAP Directory
6399903 Support for Kerberos Records in LDAP Directory
6520554 MIT bug #5427 with krb5_kt_get_name()
6597851 dmake lint in usr/src/lib/gss_mechs/mech_krb5 broken


# 4621:77407f8b6bb2 09-Jul-2007 semery

6550530 pam_krb5_migrate's expire_pw expires the Kerberos password too late
6557188 included pam_krb5 doesn't function correctly as 'auth required' in pam.conf
6559678 kpasswd returns "KDC reply did not match expectations" when using Heimdal server
6564714 Option "-m" doesn't work for kadmind.
6564718 kdb5_util dump doesn't create a "dump ok" file if the master key is not available
6570434 libkadm5srv should be smarter in figuring out the enc type of the master key in the stash file
6575452 kdb5_util should be more robust after CF providers have failed


# 3391:2e4fef544e31 08-Jan-2007 semery

6266812 pam_krb5 and pam_krb5_migrate localize their syslog messages
6430941 pam_krb5 pam_sm_setcred can cause /tmp/krb5cc_<PAM_USER> to be owned by euid rather than PAM_USER
6484675 pam_krb5(5) needs some cleanup
6499804 pam_krb5 account management should not return success if user is not defined in kerberos realm
6507080 autofs no longer passing credential information in upcalls


# 0:68f95e015346 14-Jun-2005 stevel@tonic-gate

OpenSolaris Launch