mech_eap.orig
13 years agoMerge branch 'master' of ssh://moonshot.suchdamage.org:822/srv/git/moonshot
Luke Howard [Sun, 2 Jan 2011 08:57:19 +0000 (19:57 +1100)]
Merge branch 'master' of ssh://moonshot.suchdamage.org:822/srv/git/moonshot
Reauth fixes

Conflicts:
shibboleth/opensaml2
shibboleth/sp

13 years agoGet default credentials for acceptor context too
Luke Howard [Sun, 2 Jan 2011 07:45:54 +0000 (18:45 +1100)]
Get default credentials for acceptor context too

13 years agoAllow zero length but non-NULL tokens on init_sec_context
Luke Howard [Sun, 2 Jan 2011 07:33:38 +0000 (18:33 +1100)]
Allow zero length but non-NULL tokens on init_sec_context

13 years agoAdd GSSEAP_MISSING_PASSWORD minor status code
Luke Howard [Sun, 2 Jan 2011 04:25:55 +0000 (15:25 +1100)]
Add GSSEAP_MISSING_PASSWORD minor status code

13 years agoupdate for current EAP draft
Luke Howard [Sat, 1 Jan 2011 12:39:37 +0000 (23:39 +1100)]
update for current EAP draft

13 years agoupdate Lucid code for Heimdal
Luke Howard [Sat, 1 Jan 2011 12:38:10 +0000 (23:38 +1100)]
update Lucid code for Heimdal

13 years agoMore Heimdal portability cleanups
Luke Howard [Sat, 1 Jan 2011 12:18:18 +0000 (23:18 +1100)]
More Heimdal portability cleanups

13 years agoHeimdal portability cleanups
Luke Howard [Sat, 1 Jan 2011 12:16:20 +0000 (23:16 +1100)]
Heimdal portability cleanups

13 years agoupdate notes
Luke Howard [Sat, 1 Jan 2011 11:11:30 +0000 (22:11 +1100)]
update notes

13 years agoMIT build fixes
Luke Howard [Sat, 1 Jan 2011 11:07:43 +0000 (22:07 +1100)]
MIT build fixes

13 years agoMore Heimdal reauth portability
Luke Howard [Sat, 1 Jan 2011 11:05:34 +0000 (22:05 +1100)]
More Heimdal reauth portability

13 years agoFix some warnings
Luke Howard [Sat, 1 Jan 2011 10:04:41 +0000 (21:04 +1100)]
Fix some warnings

13 years agoPartial build of reauth code against Heimdal
Luke Howard [Sat, 1 Jan 2011 10:01:20 +0000 (21:01 +1100)]
Partial build of reauth code against Heimdal

13 years agoHeimdal portability fixes (except for reauth)
Luke Howard [Fri, 31 Dec 2010 08:45:03 +0000 (19:45 +1100)]
Heimdal portability fixes (except for reauth)

13 years agoEnsure checksum type is keyed
Luke Howard [Sat, 4 Dec 2010 01:52:16 +0000 (12:52 +1100)]
Ensure checksum type is keyed

13 years agoWhen processing error tokens at the initiator, verify minor status
Luke Howard [Sun, 21 Nov 2010 14:19:30 +0000 (01:19 +1100)]
When processing error tokens at the initiator, verify minor status
code is valid wire error with new IS_WIRE_ERROR macro

13 years agofix incorrect OID in sample documentation
Luke Howard [Thu, 11 Nov 2010 03:37:05 +0000 (14:37 +1100)]
fix incorrect OID in sample documentation

13 years agonote sample radsec.conf
Luke Howard [Thu, 11 Nov 2010 03:36:16 +0000 (14:36 +1100)]
note sample radsec.conf

13 years agogssEapCreateAttrContext should not mutate context fields directly
Luke Howard [Tue, 26 Oct 2010 23:22:36 +0000 (10:22 +1100)]
gssEapCreateAttrContext should not mutate context fields directly

13 years agoSet *conf_state on successful return from
Luke Howard [Tue, 26 Oct 2010 22:00:42 +0000 (09:00 +1100)]
Set *conf_state on successful return from
gss_krb5int_make_seal_token_v3_iov, fixing a case where it wasn't
always set by gss_wrap_iov.  Patch from aberry@likewise.com.

13 years agocleanup
Luke Howard [Mon, 25 Oct 2010 22:42:50 +0000 (09:42 +1100)]
cleanup

13 years agoEnable libeap debugging iff GSSEAP_DEBUG defined
Luke Howard [Mon, 25 Oct 2010 22:35:20 +0000 (09:35 +1100)]
Enable libeap debugging iff GSSEAP_DEBUG defined

13 years agoIf we can't make reauth creds, return GSS_S_UNAVAILABLE
Luke Howard [Mon, 25 Oct 2010 21:34:42 +0000 (08:34 +1100)]
If we can't make reauth creds, return GSS_S_UNAVAILABLE

13 years agoexport gssspi_set_cred_option
Luke Howard [Mon, 25 Oct 2010 21:12:37 +0000 (08:12 +1100)]
export gssspi_set_cred_option

13 years agoremove unnecessary namespace qualification
Luke Howard [Mon, 25 Oct 2010 12:06:23 +0000 (23:06 +1100)]
remove unnecessary namespace qualification

13 years agoset cred->flags from usage before testing
Luke Howard [Mon, 25 Oct 2010 11:45:21 +0000 (22:45 +1100)]
set cred->flags from usage before testing

13 years agoremove some XXX markers
Luke Howard [Mon, 25 Oct 2010 11:40:47 +0000 (22:40 +1100)]
remove some XXX markers

13 years agoCleanup
Luke Howard [Mon, 25 Oct 2010 06:59:40 +0000 (17:59 +1100)]
Cleanup

13 years agoSet GSS_S_CALL_INACCESSIBLE_READ for NULL params
Luke Howard [Mon, 25 Oct 2010 06:59:14 +0000 (17:59 +1100)]
Set GSS_S_CALL_INACCESSIBLE_READ for NULL params

13 years agodocument state constants
Luke Howard [Fri, 22 Oct 2010 01:14:41 +0000 (12:14 +1100)]
document state constants

13 years agocleanup some symbolic constants
Luke Howard [Fri, 22 Oct 2010 01:11:53 +0000 (12:11 +1100)]
cleanup some symbolic constants

13 years agocleanup
Luke Howard [Thu, 21 Oct 2010 23:18:08 +0000 (10:18 +1100)]
cleanup

13 years agoEnable rs_conn_select_server code
Luke Howard [Thu, 21 Oct 2010 23:05:37 +0000 (10:05 +1100)]
Enable rs_conn_select_server code

13 years agocleanup
Luke Howard [Thu, 21 Oct 2010 13:39:27 +0000 (00:39 +1100)]
cleanup

13 years agomap Shibboleth/OpenSAML exceptions to mech errors
Luke Howard [Thu, 21 Oct 2010 13:36:25 +0000 (00:36 +1100)]
map Shibboleth/OpenSAML exceptions to mech errors

13 years agobetter error code propagation when creating attr contexts
Luke Howard [Thu, 21 Oct 2010 12:47:43 +0000 (23:47 +1100)]
better error code propagation when creating attr contexts

13 years agoReturn an error if attribute context initialisation fails
Luke Howard [Thu, 21 Oct 2010 12:17:31 +0000 (23:17 +1100)]
Return an error if attribute context initialisation fails

13 years agocatch resolver exceptions
Luke Howard [Thu, 21 Oct 2010 04:45:51 +0000 (15:45 +1100)]
catch resolver exceptions

13 years agocleanup
Luke Howard [Thu, 21 Oct 2010 04:45:48 +0000 (15:45 +1100)]
cleanup

13 years agofix some build issues with current resolver
Luke Howard [Thu, 21 Oct 2010 04:36:47 +0000 (15:36 +1100)]
fix some build issues with current resolver

13 years agoBuild with new C++ clean libeap
Luke Howard [Tue, 19 Oct 2010 13:08:02 +0000 (00:08 +1100)]
Build with new C++ clean libeap

13 years agoMerge branch 'master' of ssh://moonshot.suchdamage.org:822/srv/git/moonshot
Luke Howard [Tue, 19 Oct 2010 12:08:57 +0000 (23:08 +1100)]
Merge branch 'master' of ssh://moonshot.suchdamage.org:822/srv/git/moonshot

Conflicts:
shibboleth/opensaml2
shibboleth/xmltooling

13 years agofix uninitialised return code in encodeExtensions
Luke Howard [Mon, 18 Oct 2010 22:04:59 +0000 (09:04 +1100)]
fix uninitialised return code in encodeExtensions

13 years agoremove reflect error
Luke Howard [Sat, 16 Oct 2010 21:06:55 +0000 (08:06 +1100)]
remove reflect error

13 years agoadd some function headers
Luke Howard [Sat, 16 Oct 2010 08:55:23 +0000 (19:55 +1100)]
add some function headers

13 years agocleanup
Luke Howard [Sat, 16 Oct 2010 07:39:08 +0000 (18:39 +1100)]
cleanup

13 years agocleanup
Luke Howard [Sat, 16 Oct 2010 07:34:06 +0000 (18:34 +1100)]
cleanup

13 years agoupdate for libradsec API cleanups
Luke Howard [Sat, 16 Oct 2010 06:26:02 +0000 (17:26 +1100)]
update for libradsec API cleanups

13 years agofix comment explaining key derivation
Luke Howard [Fri, 15 Oct 2010 06:59:50 +0000 (17:59 +1100)]
fix comment explaining key derivation

13 years agoattrbutes internal to the GSS EAP mechanism (not keys) can now
Luke Howard [Wed, 13 Oct 2010 20:03:20 +0000 (07:03 +1100)]
attrbutes internal to the GSS EAP mechanism (not keys) can now
be requested, but they are not enumerated, nor can they be set
or deleted

13 years agoadd set/delete attribute to SAML provider
Luke Howard [Wed, 13 Oct 2010 04:07:52 +0000 (15:07 +1100)]
add set/delete attribute to SAML provider

13 years agoproperly support multiple attribute statements
Luke Howard [Wed, 13 Oct 2010 00:51:09 +0000 (11:51 +1100)]
properly support multiple attribute statements

13 years agocleanup, fix some uninitialised variable warnings
Luke Howard [Wed, 13 Oct 2010 00:09:52 +0000 (11:09 +1100)]
cleanup, fix some uninitialised variable warnings

13 years agocopy name flags
Luke Howard [Tue, 12 Oct 2010 22:19:05 +0000 (09:19 +1100)]
copy name flags

13 years agomore error reporting work
Luke Howard [Tue, 12 Oct 2010 21:12:57 +0000 (08:12 +1100)]
more error reporting work

13 years agoguess acceptor service name if none specified
Luke Howard [Tue, 12 Oct 2010 11:22:57 +0000 (22:22 +1100)]
guess acceptor service name if none specified

13 years agomore error handling improvements
Luke Howard [Tue, 12 Oct 2010 11:11:07 +0000 (22:11 +1100)]
more error handling improvements

13 years agoMore error reporting
Luke Howard [Tue, 12 Oct 2010 09:20:15 +0000 (20:20 +1100)]
More error reporting

13 years agobetter error checking
Luke Howard [Tue, 12 Oct 2010 01:43:35 +0000 (12:43 +1100)]
better error checking

13 years agodon't include attr length in exported composite names
Luke Howard [Tue, 12 Oct 2010 01:38:53 +0000 (12:38 +1100)]
don't include attr length in exported composite names

13 years agoplug leak
Luke Howard [Tue, 12 Oct 2010 01:33:19 +0000 (12:33 +1100)]
plug leak

13 years agoadd RADIUS set/delete attribute code
Luke Howard [Tue, 12 Oct 2010 01:31:05 +0000 (12:31 +1100)]
add RADIUS set/delete attribute code

13 years agosquash error codes before emitting error tokens
Luke Howard [Tue, 12 Oct 2010 01:04:18 +0000 (12:04 +1100)]
squash error codes before emitting error tokens

13 years agoAdd error token type
Luke Howard [Tue, 12 Oct 2010 00:16:56 +0000 (01:16 +0100)]
Add error token type

13 years agoerror fixes
Luke Howard [Mon, 11 Oct 2010 21:58:23 +0000 (22:58 +0100)]
error fixes

13 years agocleanup
Luke Howard [Mon, 11 Oct 2010 20:39:27 +0000 (21:39 +0100)]
cleanup

13 years agocleanup radsec error mapping
Luke Howard [Mon, 11 Oct 2010 20:02:43 +0000 (22:02 +0200)]
cleanup radsec error mapping

13 years agoerror handling fixes
Luke Howard [Mon, 11 Oct 2010 19:43:45 +0000 (21:43 +0200)]
error handling fixes

13 years agoBetter error reporting through com_err
Luke Howard [Mon, 11 Oct 2010 19:12:52 +0000 (21:12 +0200)]
Better error reporting through com_err

13 years agoadd gsseap error table
Luke Howard [Mon, 11 Oct 2010 14:35:02 +0000 (16:35 +0200)]
add gsseap error table

13 years agoinitialise output token, cleanup
Luke Howard [Mon, 11 Oct 2010 13:00:14 +0000 (15:00 +0200)]
initialise output token, cleanup

13 years agomake name importing table driven
Luke Howard [Mon, 11 Oct 2010 08:12:06 +0000 (10:12 +0200)]
make name importing table driven

13 years agominor cleanup
Luke Howard [Mon, 11 Oct 2010 00:13:13 +0000 (02:13 +0200)]
minor cleanup

13 years agocleanup
Luke Howard [Mon, 11 Oct 2010 00:02:45 +0000 (02:02 +0200)]
cleanup

13 years agocleanup
Luke Howard [Sun, 10 Oct 2010 23:59:41 +0000 (01:59 +0200)]
cleanup

13 years agorefactory extensions code per Sam's comments
Luke Howard [Sun, 10 Oct 2010 23:57:24 +0000 (01:57 +0200)]
refactory extensions code per Sam's comments

13 years agomake extension tokens extensible
Luke Howard [Sun, 10 Oct 2010 17:16:05 +0000 (19:16 +0200)]
make extension tokens extensible

13 years agodon't store count in exported RADIUS attrs
Luke Howard [Sun, 10 Oct 2010 15:51:26 +0000 (17:51 +0200)]
don't store count in exported RADIUS attrs

13 years agocleanup
Luke Howard [Sat, 9 Oct 2010 16:19:57 +0000 (18:19 +0200)]
cleanup

13 years agogitignore
Luke Howard [Sat, 9 Oct 2010 13:52:37 +0000 (15:52 +0200)]
gitignore

13 years agonew autogen.sh from libradsec
Luke Howard [Sat, 9 Oct 2010 13:39:22 +0000 (15:39 +0200)]
new autogen.sh from libradsec

13 years agocleanup
Luke Howard [Sat, 9 Oct 2010 09:26:10 +0000 (11:26 +0200)]
cleanup

13 years agocleanup
Luke Howard [Sat, 9 Oct 2010 09:21:26 +0000 (11:21 +0200)]
cleanup

13 years agomark attributes authenticated if they have PW_MESSAGE_AUTHENTICATOR
Luke Howard [Sat, 9 Oct 2010 08:32:56 +0000 (10:32 +0200)]
mark attributes authenticated if they have PW_MESSAGE_AUTHENTICATOR

13 years agocleanup
Luke Howard [Sat, 9 Oct 2010 08:29:35 +0000 (10:29 +0200)]
cleanup

13 years agoremove name pointer to handle/config file
Luke Howard [Sat, 9 Oct 2010 08:28:36 +0000 (10:28 +0200)]
remove name pointer to handle/config file

13 years agocleanup, filter secret attributes before copying
Luke Howard [Sat, 9 Oct 2010 08:12:55 +0000 (10:12 +0200)]
cleanup, filter secret attributes before copying

13 years agodestroy conn handle after authenticated
Luke Howard [Sat, 9 Oct 2010 07:46:18 +0000 (09:46 +0200)]
destroy conn handle after authenticated

13 years agoremove util_alloc.c
Luke Howard [Sat, 9 Oct 2010 07:44:17 +0000 (09:44 +0200)]
remove util_alloc.c

13 years agoremove util_alloc.c
Luke Howard [Sat, 9 Oct 2010 07:44:04 +0000 (09:44 +0200)]
remove util_alloc.c

13 years agocleanup
Luke Howard [Sat, 9 Oct 2010 07:39:55 +0000 (09:39 +0200)]
cleanup

13 years agocleanup
Luke Howard [Fri, 8 Oct 2010 22:49:18 +0000 (00:49 +0200)]
cleanup

13 years agoadd some documentation
Luke Howard [Fri, 8 Oct 2010 22:48:12 +0000 (00:48 +0200)]
add some documentation

13 years agoadd sample config file
Luke Howard [Fri, 8 Oct 2010 22:45:18 +0000 (00:45 +0200)]
add sample config file

13 years agorequire MSK on client
Luke Howard [Fri, 8 Oct 2010 22:04:24 +0000 (00:04 +0200)]
require MSK on client

13 years agoalways need a key for CB to work
Luke Howard [Fri, 8 Oct 2010 21:37:01 +0000 (23:37 +0200)]
always need a key for CB to work

13 years agofix uninitialised return value
Luke Howard [Fri, 8 Oct 2010 20:41:39 +0000 (22:41 +0200)]
fix uninitialised return value

13 years agofix octet string length check
Luke Howard [Fri, 8 Oct 2010 20:41:11 +0000 (22:41 +0200)]
fix octet string length check

13 years agocleanup
Luke Howard [Fri, 8 Oct 2010 19:29:47 +0000 (21:29 +0200)]
cleanup

13 years agofix some libradsec interop nits
Luke Howard [Fri, 8 Oct 2010 18:50:06 +0000 (20:50 +0200)]
fix some libradsec interop nits