freeipa/ipaserver
Martin Babinsky f8d7e37a09 Allow login to WebUI using Kerberos aliases/enterprise principals
The logic of the extraction/validation of principal from the request and
subsequent authentication was simplified and most of the guesswork will
be done by KDC during kinit. This also allows principals from trusted
domains to login via rpcserver.

https://fedorahosted.org/freeipa/ticket/6343

Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
Reviewed-By: Simo Sorce <ssorce@redhat.com>
Reviewed-By: David Kupka <dkupka@redhat.com>
2017-03-08 15:56:11 +01:00
..
advise scripts, tests: explicitly set confdir in the rest of server code 2017-02-22 08:07:48 +00:00
dnssec scripts, tests: explicitly set confdir in the rest of server code 2017-02-22 08:07:48 +00:00
install KRA: add --setup-kra to ipa-server-install 2017-03-08 15:50:30 +01:00
plugins dns: fix dnsrecord_add interactive mode 2017-03-08 15:52:41 +01:00
secrets Fix replica with --setup-ca issues 2017-03-01 13:39:44 +00:00
__init__.py Change FreeIPA license to GPLv3+ 2010-12-20 17:19:53 -05:00
dcerpc.py Drop use of kinit_as_http from trust code 2017-02-15 07:13:37 +01:00
dns_data_management.py Fix compatibility with python-dns 1.15.0 2016-10-11 15:45:41 +02:00
Makefile.am Build: Makefiles for Python packages 2016-11-09 13:08:32 +01:00
p11helper.py ipapython: move dnssec, p11helper and secrets to ipaserver 2016-11-29 14:50:51 +01:00
rpcserver.py Allow login to WebUI using Kerberos aliases/enterprise principals 2017-03-08 15:56:11 +01:00
servroles.py Introduce "NTP server" role 2016-06-15 13:51:48 +02:00
setup.cfg Port all setup.py to setuptools 2016-10-20 18:43:37 +02:00
setup.py Finish port to PyCA cryptography 2017-03-01 12:51:50 +01:00
topology.py Fix topologysuffix-verify failing connections 2016-06-24 13:32:02 +02:00