freeipa/daemons/ipa-slapi-plugins
Rob Crittenden bf77679909 Password change in a transaction, ensure passwords are truly expired
Wrap the password change extop in a transaction.

Fix the case where a password is reset and then immediately used. If done
fast enough then the KDC may not detect that the password is expired and
grant access using the expired password rather than prompting for a reset.

https://fedorahosted.org/freeipa/ticket/1064
2012-12-07 10:30:33 +01:00
..
common include <stdint.h> for uintptr_t 2011-09-22 09:42:11 -04:00
ipa-cldap Fix various issues found by Coverity 2012-10-17 14:32:37 +02:00
ipa-enrollment Fix CID 10742: Unchecked return value 2011-11-07 11:13:55 -05:00
ipa-extdom-extop extdom: handle INP_POSIX_UID and INP_POSIX_GID requests 2012-10-18 10:57:54 +02:00
ipa-lockout Honor the kdb options disabling KDC writes in ipa_lockout plugin 2012-12-05 10:40:50 -05:00
ipa-modrdn Enable transactions by default, make password and modrdn TXN-aware 2012-11-21 14:55:12 +01:00
ipa-pwd-extop Password change in a transaction, ensure passwords are truly expired 2012-12-07 10:30:33 +01:00
ipa-range-check Forbid overlapping primary and secondary rid ranges 2012-10-19 09:02:50 +02:00
ipa-sidgen Fix various issues found by Coverity 2012-10-17 14:32:37 +02:00
ipa-uuid Return LDAP_SUCCESS on mods on a referral entry. 2012-05-11 08:37:41 +02:00
ipa-version Fix typos 2011-09-07 13:20:42 +02:00
ipa-winsync Support the new Winsync POSIX API. 2012-09-06 14:29:14 +02:00
Makefile.am Add range check preop plugin 2012-06-29 18:00:58 -04:00
README Mass tree reorganization for IPAv2. To view previous history of files use: 2009-02-03 15:27:14 -05:00