moonshot.git
13 years agolibeap is now C++ clean, remove workaround
Luke Howard [Fri, 22 Apr 2011 06:13:15 +0000 (08:13 +0200)]
libeap is now C++ clean, remove workaround

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Thu, 21 Apr 2011 18:22:45 +0000 (20:22 +0200)]
Merge branch 'master' into tlv-mic

Conflicts:
mech_eap/accept_sec_context.c

13 years agos/kerberosCtx/reauthCtx/g
Luke Howard [Thu, 21 Apr 2011 18:21:19 +0000 (20:21 +0200)]
s/kerberosCtx/reauthCtx/g

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Tue, 19 Apr 2011 22:09:11 +0000 (00:09 +0200)]
Merge branch 'master' into tlv-mic

13 years agosync sp with upstream - composite name support
Luke Howard [Tue, 19 Apr 2011 21:46:37 +0000 (23:46 +0200)]
sync sp with upstream - composite name support

13 years agosync sp with upstream
Luke Howard [Tue, 19 Apr 2011 21:41:04 +0000 (23:41 +0200)]
sync sp with upstream

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Tue, 19 Apr 2011 21:25:12 +0000 (23:25 +0200)]
Merge branch 'master' into tlv-mic

13 years agoupdate for changed addToken() API
Luke Howard [Tue, 19 Apr 2011 21:24:41 +0000 (23:24 +0200)]
update for changed addToken() API

13 years agosend a composite name token instead of a sec context to shib
Luke Howard [Tue, 19 Apr 2011 18:49:28 +0000 (20:49 +0200)]
send a composite name token instead of a sec context to shib

13 years agosend a composite name token instead of a sec context to shib
Luke Howard [Tue, 19 Apr 2011 18:49:28 +0000 (20:49 +0200)]
send a composite name token instead of a sec context to shib

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Tue, 19 Apr 2011 18:22:57 +0000 (20:22 +0200)]
Merge branch 'master' into tlv-mic

13 years agoAllow composite names in GSS_C_NT_EXPORT_NAME
Luke Howard [Tue, 19 Apr 2011 16:58:38 +0000 (18:58 +0200)]
Allow composite names in GSS_C_NT_EXPORT_NAME

13 years agogss_authorize_localname stub
Luke Howard [Sun, 10 Apr 2011 07:47:53 +0000 (17:47 +1000)]
gss_authorize_localname stub

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Thu, 7 Apr 2011 14:56:50 +0000 (00:56 +1000)]
Merge branch 'master' into tlv-mic

13 years agoproperly account for other package directories when building AD plugin
Luke Howard [Thu, 7 Apr 2011 14:55:52 +0000 (00:55 +1000)]
properly account for other package directories when building AD plugin

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Tue, 5 Apr 2011 01:22:27 +0000 (11:22 +1000)]
Merge branch 'master' into tlv-mic

13 years agodon't allow setting of binary SAML attribute values, for now
Luke Howard [Tue, 5 Apr 2011 01:22:13 +0000 (11:22 +1000)]
don't allow setting of binary SAML attribute values, for now

13 years agocheck syntax before decoding base64 encoded SAML attributes
Luke Howard [Mon, 4 Apr 2011 23:49:27 +0000 (09:49 +1000)]
check syntax before decoding base64 encoded SAML attributes

13 years agodon't return GSS_S_CREDENTIALS_EXPIRED if no expiry time
Luke Howard [Mon, 4 Apr 2011 15:50:12 +0000 (01:50 +1000)]
don't return GSS_S_CREDENTIALS_EXPIRED if no expiry time

13 years agodon't return GSS_S_CREDENTIALS_EXPIRED if no expiry time
Luke Howard [Mon, 4 Apr 2011 15:50:12 +0000 (01:50 +1000)]
don't return GSS_S_CREDENTIALS_EXPIRED if no expiry time

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Mon, 4 Apr 2011 15:43:07 +0000 (01:43 +1000)]
Merge branch 'master' into tlv-mic

Conflicts:
mech_eap/util_saml.cpp

13 years agoreturn GSS_S_CREDENTIALS_EXPIRED if credentials expired
Luke Howard [Mon, 4 Apr 2011 15:41:18 +0000 (01:41 +1000)]
return GSS_S_CREDENTIALS_EXPIRED if credentials expired

13 years agoplug leaks in 898862478f9adecfc5580814cf1296464c448b1b
Luke Howard [Mon, 4 Apr 2011 15:20:22 +0000 (01:20 +1000)]
plug leaks in 898862478f9adecfc5580814cf1296464c448b1b

13 years agoautomatically decode base64 encoded SAML values
Luke Howard [Sun, 3 Apr 2011 09:14:42 +0000 (19:14 +1000)]
automatically decode base64 encoded SAML values

13 years agorefactor unknown attribute syntax detection
Luke Howard [Sun, 3 Apr 2011 09:07:14 +0000 (19:07 +1000)]
refactor unknown attribute syntax detection

13 years agoautomatically decode base64 encoded SAML values
Luke Howard [Sun, 3 Apr 2011 09:14:42 +0000 (19:14 +1000)]
automatically decode base64 encoded SAML values

13 years agorefactor unknown attribute syntax detection
Luke Howard [Sun, 3 Apr 2011 09:07:14 +0000 (19:07 +1000)]
refactor unknown attribute syntax detection

13 years agoRevert "Revert "try to guard against multiple shibboleth library initializations""
Luke Howard [Sun, 3 Apr 2011 08:49:59 +0000 (18:49 +1000)]
Revert "Revert "try to guard against multiple shibboleth library initializations""

This reverts commit 0f5d8bdd271ac97fc7d8316fc250d74322c0ca31.

13 years agoRevert "try to guard against multiple shibboleth library initializations"
Luke Howard [Sun, 3 Apr 2011 08:43:43 +0000 (18:43 +1000)]
Revert "try to guard against multiple shibboleth library initializations"

This reverts commit d711bd312deb99a5cb6b9f8b519d3add75292e46.

13 years agotry to guard against multiple shibboleth library initializations
Luke Howard [Sun, 3 Apr 2011 08:32:44 +0000 (18:32 +1000)]
try to guard against multiple shibboleth library initializations

13 years agotry to guard against multiple shibboleth library initializations
Luke Howard [Sun, 3 Apr 2011 08:32:44 +0000 (18:32 +1000)]
try to guard against multiple shibboleth library initializations

13 years agoDon't crash if there are zero valued attributes
Luke Howard [Sun, 3 Apr 2011 07:57:09 +0000 (17:57 +1000)]
Don't crash if there are zero valued attributes

13 years agoDon't crash if there are zero valued attributes
Luke Howard [Sun, 3 Apr 2011 07:57:09 +0000 (17:57 +1000)]
Don't crash if there are zero valued attributes

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Sun, 3 Apr 2011 07:38:16 +0000 (17:38 +1000)]
Merge branch 'master' into tlv-mic

13 years agoXML string memory management cleanups
Luke Howard [Sat, 2 Apr 2011 01:05:31 +0000 (12:05 +1100)]
XML string memory management cleanups

13 years agoreturn assertion also in display_value; do not assume value
Luke Howard [Sat, 2 Apr 2011 13:06:33 +0000 (00:06 +1100)]
return assertion also in display_value; do not assume value
and display_value parameters are non-NULL

13 years agoreturn assertion also in display_value; do not assume value
Luke Howard [Sat, 2 Apr 2011 13:06:33 +0000 (00:06 +1100)]
return assertion also in display_value; do not assume value
and display_value parameters are non-NULL

13 years agoXML string memory management cleanups
Luke Howard [Sat, 2 Apr 2011 01:05:31 +0000 (12:05 +1100)]
XML string memory management cleanups

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Fri, 1 Apr 2011 08:35:19 +0000 (19:35 +1100)]
Merge branch 'master' into tlv-mic

13 years agofix incorrect usage of XMLString::transcode, assumes strings NUL termianted
Luke Howard [Fri, 1 Apr 2011 02:24:44 +0000 (13:24 +1100)]
fix incorrect usage of XMLString::transcode, assumes strings NUL termianted

13 years agoset name type to GSS_C_NT_USER_NAME if NAI
Luke Howard [Fri, 1 Apr 2011 01:15:08 +0000 (12:15 +1100)]
set name type to GSS_C_NT_USER_NAME if NAI

This allows us to canonicalize the name easily to another mechanism, so it
can be used for protocol transition.

13 years agoset name type to GSS_C_NT_USER_NAME if NAI
Luke Howard [Fri, 1 Apr 2011 01:15:08 +0000 (12:15 +1100)]
set name type to GSS_C_NT_USER_NAME if NAI

This allows us to canonicalize the name easily to another mechanism, so it
can be used for protocol transition.

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Thu, 31 Mar 2011 09:07:15 +0000 (20:07 +1100)]
Merge branch 'master' into tlv-mic

13 years agoremove cyrus-sasl for now (again)
Luke Howard [Thu, 31 Mar 2011 07:55:56 +0000 (18:55 +1100)]
remove cyrus-sasl for now (again)

13 years agoIf RADIUS returns a present but empty PW_USER_NAME, treat as anonymous.
Luke Howard [Thu, 31 Mar 2011 07:55:25 +0000 (18:55 +1100)]
If RADIUS returns a present but empty PW_USER_NAME, treat as anonymous.

13 years agoset GSS_C_NT_ANONYMOUS only for completely anonymous
Luke Howard [Thu, 31 Mar 2011 07:54:20 +0000 (18:54 +1100)]
set GSS_C_NT_ANONYMOUS only for completely anonymous

13 years agoindentation fix
Luke Howard [Thu, 31 Mar 2011 07:47:09 +0000 (18:47 +1100)]
indentation fix

13 years agoUse empty name for anonymous name
Luke Howard [Thu, 31 Mar 2011 07:30:26 +0000 (18:30 +1100)]
Use empty name for anonymous name

13 years agoupdate cyrus-sasl
Luke Howard [Wed, 30 Mar 2011 12:26:44 +0000 (23:26 +1100)]
update cyrus-sasl

13 years agorevert cyrus-sasl to no autogenerated file version, add to build again
Luke Howard [Wed, 30 Mar 2011 12:10:46 +0000 (23:10 +1100)]
revert cyrus-sasl to no autogenerated file version, add to build again

13 years agoremove cyrus-sasl from build, it doesn't build now autogenerated
Luke Howard [Wed, 30 Mar 2011 11:59:49 +0000 (22:59 +1100)]
remove cyrus-sasl from build, it doesn't build now autogenerated
files are checked in

13 years agoupdate cyrus-sasl with more autogenerated files
Luke Howard [Wed, 30 Mar 2011 11:32:03 +0000 (22:32 +1100)]
update cyrus-sasl with more autogenerated files

13 years agoupdate cyrus-sasl, again.
Luke Howard [Wed, 30 Mar 2011 11:14:19 +0000 (22:14 +1100)]
update cyrus-sasl, again.

13 years agoadd cyrus-sasl to build
Luke Howard [Wed, 30 Mar 2011 11:09:46 +0000 (22:09 +1100)]
add cyrus-sasl to build

13 years agoupdate cyrus-sasl, saslauthd flags
Luke Howard [Wed, 30 Mar 2011 11:00:34 +0000 (22:00 +1100)]
update cyrus-sasl, saslauthd flags

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Wed, 30 Mar 2011 08:16:25 +0000 (19:16 +1100)]
Merge branch 'master' into tlv-mic

13 years agoupdate cyrus-sasl
Luke Howard [Wed, 30 Mar 2011 08:16:08 +0000 (19:16 +1100)]
update cyrus-sasl

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Wed, 30 Mar 2011 04:39:37 +0000 (15:39 +1100)]
Merge branch 'master' into tlv-mic

13 years agoexception handling-related cleanup
Luke Howard [Wed, 30 Mar 2011 04:36:02 +0000 (15:36 +1100)]
exception handling-related cleanup

13 years agofix shib reentrancy regression in recent commit
Luke Howard [Wed, 30 Mar 2011 04:30:37 +0000 (15:30 +1100)]
fix shib reentrancy regression in recent commit

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Wed, 30 Mar 2011 04:03:42 +0000 (15:03 +1100)]
Merge branch 'master' into tlv-mic

13 years agoallow gssEapSaveStatusInfo to reset status to NULL
Luke Howard [Wed, 30 Mar 2011 04:03:11 +0000 (15:03 +1100)]
allow gssEapSaveStatusInfo to reset status to NULL

13 years agosave Shibboleth exception code in GSS per-thread status
Luke Howard [Wed, 30 Mar 2011 04:01:43 +0000 (15:01 +1100)]
save Shibboleth exception code in GSS per-thread status

13 years agorefactory: s/initFrom/initWith/g
Luke Howard [Wed, 30 Mar 2011 04:01:11 +0000 (15:01 +1100)]
refactory: s/initFrom/initWith/g

13 years agofix exception to GSS error code mapping
Luke Howard [Wed, 30 Mar 2011 04:00:04 +0000 (15:00 +1100)]
fix exception to GSS error code mapping

13 years agofix an incorrect assertion in unknown RADIUS attribute handling
Luke Howard [Wed, 30 Mar 2011 00:18:39 +0000 (11:18 +1100)]
fix an incorrect assertion in unknown RADIUS attribute handling

13 years agoupdate OpenSSH to keyex branch
Luke Howard [Wed, 30 Mar 2011 00:13:25 +0000 (11:13 +1100)]
update OpenSSH to keyex branch

13 years agoupdate OpenSSH to keyex branch
Luke Howard [Wed, 30 Mar 2011 00:13:25 +0000 (11:13 +1100)]
update OpenSSH to keyex branch

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Wed, 30 Mar 2011 00:00:52 +0000 (11:00 +1100)]
Merge branch 'master' into tlv-mic

13 years agofix uninitialized variable major
Luke Howard [Tue, 29 Mar 2011 15:57:48 +0000 (02:57 +1100)]
fix uninitialized variable major

13 years agoreorder variables in shib client
Luke Howard [Tue, 29 Mar 2011 15:52:13 +0000 (02:52 +1100)]
reorder variables in shib client

13 years agomark all Shib attributes as authenticated
Luke Howard [Tue, 29 Mar 2011 15:51:08 +0000 (02:51 +1100)]
mark all Shib attributes as authenticated

13 years agoallow unknown attributes to be binary or string
Luke Howard [Tue, 29 Mar 2011 15:41:15 +0000 (02:41 +1100)]
allow unknown attributes to be binary or string

13 years agoadd better JSON type checking to RADIUS decoder
Luke Howard [Tue, 29 Mar 2011 15:28:47 +0000 (02:28 +1100)]
add better JSON type checking to RADIUS decoder

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Tue, 29 Mar 2011 14:59:33 +0000 (01:59 +1100)]
Merge branch 'master' into tlv-mic

13 years agofix various bugs in DDF/JSON bridge
Luke Howard [Tue, 29 Mar 2011 14:58:32 +0000 (01:58 +1100)]
fix various bugs in DDF/JSON bridge

13 years agopersist RADIUS attr provider authentication status exported context
Luke Howard [Tue, 29 Mar 2011 14:01:38 +0000 (01:01 +1100)]
persist RADIUS attr provider authentication status exported context

13 years agotag security context token with mechanism OID for feeding to mechglue
Luke Howard [Tue, 29 Mar 2011 13:53:35 +0000 (00:53 +1100)]
tag security context token with mechanism OID for feeding to mechglue

13 years agoallow complete/authenticated params to be NULL
Luke Howard [Tue, 29 Mar 2011 13:49:59 +0000 (00:49 +1100)]
allow complete/authenticated params to be NULL

13 years agoupdate resolver to SVN r305 (merge in GSS fixes)
Luke Howard [Tue, 29 Mar 2011 12:49:49 +0000 (23:49 +1100)]
update resolver to SVN r305 (merge in GSS fixes)

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Tue, 29 Mar 2011 05:22:54 +0000 (16:22 +1100)]
Merge branch 'master' into tlv-mic

Conflicts:
shibboleth/sp

13 years agoupdate for more portable GSS Library build fixes
Luke Howard [Tue, 29 Mar 2011 04:59:39 +0000 (15:59 +1100)]
update for more portable GSS Library build fixes

13 years agobetter propagation of bad name token errors
Luke Howard [Tue, 29 Mar 2011 02:18:53 +0000 (13:18 +1100)]
better propagation of bad name token errors

13 years agocleanup shib attr provider a little
Luke Howard [Tue, 29 Mar 2011 01:01:18 +0000 (12:01 +1100)]
cleanup shib attr provider a little

13 years agoupdate to r303 of SVN (GSS context patch)
Luke Howard [Tue, 29 Mar 2011 00:48:46 +0000 (11:48 +1100)]
update to r303 of SVN (GSS context patch)

13 years agofix linkage error in sp
Luke Howard [Tue, 29 Mar 2011 00:39:27 +0000 (11:39 +1100)]
fix linkage error in sp

13 years agoAllow Shibboleth initialization failure to be non-fatal
Luke Howard [Tue, 29 Mar 2011 00:25:32 +0000 (11:25 +1100)]
Allow Shibboleth initialization failure to be non-fatal

13 years agoset opensaml2 to 2.4.1 tag
Luke Howard [Mon, 28 Mar 2011 23:40:00 +0000 (10:40 +1100)]
set opensaml2 to 2.4.1 tag

13 years agoupdate to version that compiles with GSS
Luke Howard [Mon, 28 Mar 2011 23:16:57 +0000 (10:16 +1100)]
update to version that compiles with GSS

13 years agocorrect importing of partial attribute contexts
Luke Howard [Mon, 28 Mar 2011 23:01:18 +0000 (10:01 +1100)]
correct importing of partial attribute contexts

Conflicts:

mech_eap/import_sec_context.c

13 years agocorrect importing of partial attribute contexts
Luke Howard [Mon, 28 Mar 2011 22:59:17 +0000 (09:59 +1100)]
correct importing of partial attribute contexts

13 years agofix a few compile nits
Luke Howard [Mon, 28 Mar 2011 22:46:01 +0000 (09:46 +1100)]
fix a few compile nits

13 years agoMerge branch 'master' into tlv-mic
Luke Howard [Mon, 28 Mar 2011 22:37:38 +0000 (09:37 +1100)]
Merge branch 'master' into tlv-mic

Conflicts:
mech_eap/export_sec_context.c
mech_eap/import_sec_context.c

13 years agoadd --with-gssapi for shibresolver
Luke Howard [Mon, 28 Mar 2011 22:27:16 +0000 (09:27 +1100)]
add --with-gssapi for shibresolver

13 years agoRefactor export reentrancy fix to be less intrusive
Luke Howard [Mon, 28 Mar 2011 22:06:48 +0000 (09:06 +1100)]
Refactor export reentrancy fix to be less intrusive

13 years agodon't assert !CTX_FLAG_KRB_REAUTH when exporting partial contexts,
Luke Howard [Mon, 28 Mar 2011 15:26:52 +0000 (02:26 +1100)]
don't assert !CTX_FLAG_KRB_REAUTH when exporting partial contexts,
we may need this path for local attribute provider reentrancy

13 years agoupdate resolver
Luke Howard [Mon, 28 Mar 2011 15:15:33 +0000 (02:15 +1100)]
update resolver

13 years agosend exported GSS context token to shibresolver
Luke Howard [Mon, 28 Mar 2011 15:10:42 +0000 (02:10 +1100)]
send exported GSS context token to shibresolver

13 years agoadd export_sec_context variant that does not reenter local attribute path
Luke Howard [Mon, 28 Mar 2011 14:58:03 +0000 (01:58 +1100)]
add export_sec_context variant that does not reenter local attribute path

13 years agouse gss_eap_util namespace for utility functions until we
Luke Howard [Mon, 28 Mar 2011 14:32:38 +0000 (01:32 +1100)]
use gss_eap_util namespace for utility functions until we
put everything in its own namespace