freeipa/util
Martin Kosek 827ea50566 ipa-kdb: read SID blacklist from LDAP
SIDs in incoming MS-PAC were checked and filtered with a fixed list of
well-known SIDs. Allow reading the SID blacklist from LDAP
(ipaNTSIDBlacklistIncoming and ipaNTSIDBlacklistOutgoing) and add the list
to mspac adtrust structure. Use the hardcoded SID list only if the LDAP
SID list is not configured.

LIMITATION: SID blacklist list is not used yet.

https://fedorahosted.org/freeipa/ticket/3289
2013-02-12 10:37:47 +01:00
..
ipa_krb5.c Move code into common krb5 utils 2012-07-30 10:31:47 -04:00
ipa_krb5.h Move code into common krb5 utils 2012-07-30 10:31:47 -04:00
ipa_mspac.h ipa-kdb: read SID blacklist from LDAP 2013-02-12 10:37:47 +01:00
ipa_pwd_ntlm.c Make encode_ntlm_keys() public 2012-09-06 09:24:58 +02:00
ipa_pwd.c Make encode_ntlm_keys() public 2012-09-06 09:24:58 +02:00
ipa_pwd.h Prevent integer overflow when setting krbPasswordExpiration 2013-02-08 15:54:21 +01:00