1*c19800e8SDoug Rabson2008-04-07  Love Hörnquist Åstrand  <[email protected]>
2*c19800e8SDoug Rabson
3*c19800e8SDoug Rabson	* kadm_conn.c: Use unsigned where appropriate.
4*c19800e8SDoug Rabson
5*c19800e8SDoug Rabson2007-12-09  Love Hörnquist Åstrand  <[email protected]>
6*c19800e8SDoug Rabson
7*c19800e8SDoug Rabson	* kadmin.c: Use hdb_db_dir().
8*c19800e8SDoug Rabson
9*c19800e8SDoug Rabson	* kadmind.c: Use hdb_db_dir().
10*c19800e8SDoug Rabson
11*c19800e8SDoug Rabson2007-07-26  Love Hörnquist Åstrand  <[email protected]>
12*c19800e8SDoug Rabson
13*c19800e8SDoug Rabson	* util.c: Clear error string, just to be sure.
14*c19800e8SDoug Rabson
15*c19800e8SDoug Rabson2007-05-10  Love Hörnquist Åstrand  <[email protected]>
16*c19800e8SDoug Rabson
17*c19800e8SDoug Rabson	* kadmin-commands.in: modify --pkinit-acl
18*c19800e8SDoug Rabson
19*c19800e8SDoug Rabson	* mod.c: add pk-init command
20*c19800e8SDoug Rabson
21*c19800e8SDoug Rabson2007-02-22  Love Hörnquist Åstrand  <[email protected]>
22*c19800e8SDoug Rabson
23*c19800e8SDoug Rabson	* kadmin.8: document kadmin add_enctype functionallity.
24*c19800e8SDoug Rabson
25*c19800e8SDoug Rabson	* Makefile.am: Add new command, add_enctype.
26*c19800e8SDoug Rabson
27*c19800e8SDoug Rabson	* kadmin-commands.in: Add new command, add_enctype.
28*c19800e8SDoug Rabson
29*c19800e8SDoug Rabson	* add_enctype.c: Add support for adding a random key enctype to a
30*c19800e8SDoug Rabson	principal.
31*c19800e8SDoug Rabson
32*c19800e8SDoug Rabson2007-02-17  Love Hörnquist Åstrand  <[email protected]>
33*c19800e8SDoug Rabson
34*c19800e8SDoug Rabson	* mod.c: add setting and displaying aliases
35*c19800e8SDoug Rabson
36*c19800e8SDoug Rabson	* get.c: add setting and displaying aliases
37*c19800e8SDoug Rabson
38*c19800e8SDoug Rabson	* kadmin-commands.in: add setting and displaying aliases
39*c19800e8SDoug Rabson
40*c19800e8SDoug Rabson2006-12-22  Love Hörnquist Åstrand  <[email protected]>
41*c19800e8SDoug Rabson
42*c19800e8SDoug Rabson	* util.c: Make str2time_t parser more robust.
43*c19800e8SDoug Rabson
44*c19800e8SDoug Rabson	* Makefile.am: Add test_util test program.
45*c19800e8SDoug Rabson
46*c19800e8SDoug Rabson	* test_util.c: Test str2time_t parser.
47*c19800e8SDoug Rabson
48*c19800e8SDoug Rabson2006-12-05  Love Hörnquist Åstrand  <[email protected]>
49*c19800e8SDoug Rabson
50*c19800e8SDoug Rabson	* add-random-users.c: Use strcspn to remove \n from fgets
51*c19800e8SDoug Rabson	result. Prompted by change by Ray Lai of OpenBSD via Björn
52*c19800e8SDoug Rabson	Sandell.
53*c19800e8SDoug Rabson
54*c19800e8SDoug Rabson2006-10-22  Love Hörnquist Åstrand  <[email protected]>
55*c19800e8SDoug Rabson
56*c19800e8SDoug Rabson	* mod.c: Try to not leak memory.
57*c19800e8SDoug Rabson
58*c19800e8SDoug Rabson	* check.c: Try to not leak memory.
59*c19800e8SDoug Rabson
60*c19800e8SDoug Rabson2006-10-07  Love Hörnquist Åstrand  <[email protected]>
61*c19800e8SDoug Rabson
62*c19800e8SDoug Rabson	* Makefile.am: split build files into dist_ and noinst_ SOURCES
63*c19800e8SDoug Rabson
64*c19800e8SDoug Rabson2006-08-28  Love Hörnquist Åstrand <[email protected]>
65*c19800e8SDoug Rabson
66*c19800e8SDoug Rabson	* kadmin.c (help): use sl_slc_help().
67*c19800e8SDoug Rabson
68*c19800e8SDoug Rabson2006-08-24  Love Hörnquist Åstrand  <[email protected]>
69*c19800e8SDoug Rabson
70*c19800e8SDoug Rabson	* util.c: Add KRB5_KDB_ALLOW_DIGEST
71*c19800e8SDoug Rabson
72*c19800e8SDoug Rabson2006-07-14  Love Hörnquist Åstrand  <[email protected]>
73*c19800e8SDoug Rabson
74*c19800e8SDoug Rabson	* get.c (format_field): optionally print issuer and anchor.
75*c19800e8SDoug Rabson
76*c19800e8SDoug Rabson2006-06-21  Love Hörnquist Åstrand  <[email protected]>
77*c19800e8SDoug Rabson
78*c19800e8SDoug Rabson	* check.c: Check if afs@REALM and afs/cellname@REALM both exists.
79*c19800e8SDoug Rabson
80*c19800e8SDoug Rabson2006-06-14  Love Hörnquist Åstrand  <[email protected]>
81*c19800e8SDoug Rabson
82*c19800e8SDoug Rabson	* util.c (kdb_attrs): Add KRB5_KDB_ALLOW_KERBEROS4
83*c19800e8SDoug Rabson
84*c19800e8SDoug Rabson2006-06-07  Love Hörnquist Åstrand  <[email protected]>
85*c19800e8SDoug Rabson
86*c19800e8SDoug Rabson	* mod.c (do_mod_entry): Add setting 1 delegation entry
87*c19800e8SDoug Rabson
88*c19800e8SDoug Rabson2006-06-01  Love Hörnquist Åstrand  <[email protected]>
89*c19800e8SDoug Rabson
90*c19800e8SDoug Rabson	* server.c: Less shadowing.
91*c19800e8SDoug Rabson
92*c19800e8SDoug Rabson2006-05-13  Love Hörnquist Åstrand  <[email protected]>
93*c19800e8SDoug Rabson
94*c19800e8SDoug Rabson	* Makefile.am: kadmin_SOURCES += add check.c
95*c19800e8SDoug Rabson
96*c19800e8SDoug Rabson	* kadmin_locl.h: Avoid shadowing.
97*c19800e8SDoug Rabson
98*c19800e8SDoug Rabson	* kadmin.8: Document the new check command.
99*c19800e8SDoug Rabson
100*c19800e8SDoug Rabson	* kadmin-commands.in: Add check command
101*c19800e8SDoug Rabson
102*c19800e8SDoug Rabson	* check.c: Check database for strange configurations on default
103*c19800e8SDoug Rabson	principals.
104*c19800e8SDoug Rabson
105*c19800e8SDoug Rabson2006-05-08  Love Hörnquist Åstrand  <[email protected]>
106*c19800e8SDoug Rabson
107*c19800e8SDoug Rabson	* server.c (kadm_get_privs): one less "pointer targets in passing
108*c19800e8SDoug Rabson	argument differ in signedness" warning.
109*c19800e8SDoug Rabson
110*c19800e8SDoug Rabson2006-05-05  Love Hörnquist Åstrand  <[email protected]>
111*c19800e8SDoug Rabson
112*c19800e8SDoug Rabson	* dump-format.txt: Moved to info documentation.
113*c19800e8SDoug Rabson
114*c19800e8SDoug Rabson	* Rename u_intXX_t to uintXX_t
115*c19800e8SDoug Rabson
116*c19800e8SDoug Rabson2006-05-01  Love Hörnquist Åstrand  <[email protected]>
117*c19800e8SDoug Rabson
118*c19800e8SDoug Rabson	* kadmin.8: spelling, update .Dd
119*c19800e8SDoug Rabson
120*c19800e8SDoug Rabson2006-04-12  Love Hörnquist Åstrand  <[email protected]>
121*c19800e8SDoug Rabson
122*c19800e8SDoug Rabson	* add-random-users.c: Catch empty file case. From Tobias
123*c19800e8SDoug Rabson	Stoeckmann.
124*c19800e8SDoug Rabson
125*c19800e8SDoug Rabson2006-04-07  Love Hörnquist Åstrand  <[email protected]>
126*c19800e8SDoug Rabson
127*c19800e8SDoug Rabson	* random_password.c (generate_password): memory leak in error
128*c19800e8SDoug Rabson	condition case From Coverity NetBSD CID#1887
129*c19800e8SDoug Rabson
130*c19800e8SDoug Rabson2006-02-19  Love Hörnquist Åstrand  <[email protected]>
131*c19800e8SDoug Rabson
132*c19800e8SDoug Rabson	* cpw.c (cpw_entry): make sure ret have a defined value
133*c19800e8SDoug Rabson
134*c19800e8SDoug Rabson	* del.c (del_entry): make sure ret have a defined value
135*c19800e8SDoug Rabson
136*c19800e8SDoug Rabson	* mod.c: Return error code so that toplevel function can catch
137*c19800e8SDoug Rabson	them.
138*c19800e8SDoug Rabson
139*c19800e8SDoug Rabson2006-01-25  Love Hörnquist Åstrand <[email protected]>
140*c19800e8SDoug Rabson
141*c19800e8SDoug Rabson	* cpw.c (cpw_entry): return 1 on failure.
142*c19800e8SDoug Rabson
143*c19800e8SDoug Rabson	* rename.c (rename_entry): return 1 on failure.
144*c19800e8SDoug Rabson
145*c19800e8SDoug Rabson	* del.c (del_entry): return 1 on failure.
146*c19800e8SDoug Rabson
147*c19800e8SDoug Rabson	* ank.c (add_new_key): return 1 on failure.
148*c19800e8SDoug Rabson
149*c19800e8SDoug Rabson	* get.c: Add printing of pkinit-acls. Don't print password by
150*c19800e8SDoug Rabson	default. Return 1 on failure processing any of the principals.
151*c19800e8SDoug Rabson
152*c19800e8SDoug Rabson	* util.c (foreach_principal): If any of calls to `func' failes,
153*c19800e8SDoug Rabson	the first error is returned when all principals are processed.
154*c19800e8SDoug Rabson
155*c19800e8SDoug Rabson2005-12-01  Love Hörnquist Åstrand <[email protected]>
156*c19800e8SDoug Rabson
157*c19800e8SDoug Rabson	* kadmin-commands.in: Add ank as an alias to add, it lost in
158*c19800e8SDoug Rabson	transition to slc, from Måns Nilsson.
159*c19800e8SDoug Rabson
160*c19800e8SDoug Rabson2005-09-14  Love Hörquist Åstrand  <[email protected]>
161*c19800e8SDoug Rabson
162*c19800e8SDoug Rabson	* dump-format.txt: Add extensions, fill in missing fields.
163*c19800e8SDoug Rabson
164*c19800e8SDoug Rabson2005-09-08  Love Hörquist Åstrand  <[email protected]>
165*c19800e8SDoug Rabson
166*c19800e8SDoug Rabson	* init.c (create_random_entry): create principal with random
167*c19800e8SDoug Rabson	password even though its disabled. From Andrew Bartlet
168*c19800e8SDoug Rabson	<[email protected]>
169*c19800e8SDoug Rabson
170*c19800e8SDoug Rabson2005-09-01  Love Hörquist Åstrand  <[email protected]>
171*c19800e8SDoug Rabson
172*c19800e8SDoug Rabson	* kadm_conn.c: Use socket_set_reuseaddr and socket_set_ipv6only.
173*c19800e8SDoug Rabson
174*c19800e8SDoug Rabson2005-08-11  Love Hörquist Åstrand  <[email protected]>
175*c19800e8SDoug Rabson
176*c19800e8SDoug Rabson	* get.c: Remove structure that is never used (sneaked in the large
177*c19800e8SDoug Rabson	TL_DATA patch).
178*c19800e8SDoug Rabson
179*c19800e8SDoug Rabson	* kadmin-commands.in: Rename password-quality to
180*c19800e8SDoug Rabson	verify-password-quality.
181*c19800e8SDoug Rabson
182*c19800e8SDoug Rabson	* get.c: Indent.
183*c19800e8SDoug Rabson
184*c19800e8SDoug Rabson	* server.c: Avoid shadowing exp().
185*c19800e8SDoug Rabson
186*c19800e8SDoug Rabson	* load.c: Parse extensions.
187*c19800e8SDoug Rabson
188*c19800e8SDoug Rabson	* kadmin_locl.h: Include <hex.h>.
189*c19800e8SDoug Rabson
190*c19800e8SDoug Rabson	* get.c: Extend struct field_name to have a subvalue and a
191*c19800e8SDoug Rabson	extra_mask.  Use that to implement printing of KADM5_TL_DATA
192*c19800e8SDoug Rabson	options and fix a dependency bug (keys needed principal to print
193*c19800e8SDoug Rabson	the salting).
194*c19800e8SDoug Rabson
195*c19800e8SDoug Rabson2005-07-08  Love Hörquist Åstrand  <[email protected]>
196*c19800e8SDoug Rabson
197*c19800e8SDoug Rabson	* lower amount of shadow and const warnings
198*c19800e8SDoug Rabson
199*c19800e8SDoug Rabson2005-06-07  David Love  <[email protected]>
200*c19800e8SDoug Rabson
201*c19800e8SDoug Rabson	* dump-format.txt: Clarify, spelling and add examples.
202*c19800e8SDoug Rabson
203*c19800e8SDoug Rabson2005-05-30  Love Hörquist Åstrand  <[email protected]>
204*c19800e8SDoug Rabson
205*c19800e8SDoug Rabson	* util.c (kdb_attrs): add ok-as-delegate
206*c19800e8SDoug Rabson
207*c19800e8SDoug Rabson	* get.c (getit): init data.mask to 0.  Problem found by Andrew
208*c19800e8SDoug Rabson	Bartlett <[email protected]>
209*c19800e8SDoug Rabson
210*c19800e8SDoug Rabson2005-05-09  Love Hörquist Åstrand  <[email protected]>
211*c19800e8SDoug Rabson
212*c19800e8SDoug Rabson	* kadmin.c (main): catch -2 as EOF
213*c19800e8SDoug Rabson
214*c19800e8SDoug Rabson2005-05-03  Dave Love  <[email protected]>
215*c19800e8SDoug Rabson
216*c19800e8SDoug Rabson	* init.c (init): Don't disable forwardable for kadmin/changepw.
217*c19800e8SDoug Rabson
218*c19800e8SDoug Rabson2005-05-02  Dave Love  <[email protected]>
219*c19800e8SDoug Rabson
220*c19800e8SDoug Rabson	* kadmin.c (help): Don't use non-constant initializer for `fake'.
221*c19800e8SDoug Rabson
222*c19800e8SDoug Rabson2005-04-20  Love Hörquist Åstrand  <[email protected]>
223*c19800e8SDoug Rabson
224*c19800e8SDoug Rabson	* util.c (foreach_principal): initialize ret to make sure it have
225*c19800e8SDoug Rabson	a value
226*c19800e8SDoug Rabson
227*c19800e8SDoug Rabson2005-04-04  Love Hörquist Åstrand  <[email protected]>
228*c19800e8SDoug Rabson
229*c19800e8SDoug Rabson	* kadmind.c: add verifier libraries with
230*c19800e8SDoug Rabson	kadm5_add_passwd_quality_verifier
231*c19800e8SDoug Rabson
232*c19800e8SDoug Rabson	* kadmin.c: add verifier libraries with
233*c19800e8SDoug Rabson	kadm5_add_passwd_quality_verifier
234*c19800e8SDoug Rabson
235*c19800e8SDoug Rabson	* load.c: max-life and max-renew is of unsigned int in asn1
236*c19800e8SDoug Rabson	compiler, use that for the parser too
237*c19800e8SDoug Rabson
238*c19800e8SDoug Rabson2005-03-26  Love Hörquist Åstrand  <[email protected]>
239*c19800e8SDoug Rabson
240*c19800e8SDoug Rabson	* kadmin.8: List of attributes, from James F.  Hranicky
241*c19800e8SDoug Rabson	<[email protected]>
242*c19800e8SDoug Rabson
243*c19800e8SDoug Rabson2005-01-19  Love Hörquist Åstrand  <[email protected]>
244*c19800e8SDoug Rabson
245*c19800e8SDoug Rabson	* dump.c (dump): handle errors
246*c19800e8SDoug Rabson
247*c19800e8SDoug Rabson2005-01-08 Love Hörquist Åstrand <[email protected]>
248*c19800e8SDoug Rabson
249*c19800e8SDoug Rabson	* dump-format.txt: text dump format
250*c19800e8SDoug Rabson
251*c19800e8SDoug Rabson2004-12-08  Love Hörquist Åstrand  <[email protected]>
252*c19800e8SDoug Rabson
253*c19800e8SDoug Rabson	* kadmind.8: use keeps around options, from OpenBSD
254*c19800e8SDoug Rabson
255*c19800e8SDoug Rabson	* kadmin.8: use keeps around options, "improve" spelling, from
256*c19800e8SDoug Rabson	openbsd
257*c19800e8SDoug Rabson
258*c19800e8SDoug Rabson2004-11-01  Love Hörquist Åstrand  <[email protected]>
259*c19800e8SDoug Rabson
260*c19800e8SDoug Rabson	* get.c (getit): always free columns
261*c19800e8SDoug Rabson
262*c19800e8SDoug Rabson	* ank.c (add_one_principal): catch error from
263*c19800e8SDoug Rabson	UI_UTIL_read_pw_string
264*c19800e8SDoug Rabson
265*c19800e8SDoug Rabson2004-10-31  Love Hörquist Åstrand  <[email protected]>
266*c19800e8SDoug Rabson
267*c19800e8SDoug Rabson	* del_enctype.c (del_enctype): fix off-by-one error in del_enctype
268*c19800e8SDoug Rabson	From: <[email protected]>
269*c19800e8SDoug Rabson
270*c19800e8SDoug Rabson2004-08-13  Love Hörquist Åstrand  <[email protected]>
271*c19800e8SDoug Rabson
272*c19800e8SDoug Rabson	* get.c: print keytypes on long format
273*c19800e8SDoug Rabson
274*c19800e8SDoug Rabson2004-07-06  Love Hörquist Åstrand  <[email protected]>
275*c19800e8SDoug Rabson
276*c19800e8SDoug Rabson	* get.c (format_field): allow mod_name to be optional
277*c19800e8SDoug Rabson
278*c19800e8SDoug Rabson	* ext.c (do_ext_keytab): if there isn't any keydata, try using
279*c19800e8SDoug Rabson	kadm5_randkey_principal
280*c19800e8SDoug Rabson
281*c19800e8SDoug Rabson2004-07-02  Love Hörquist Åstrand  <[email protected]>
282*c19800e8SDoug Rabson
283*c19800e8SDoug Rabson	* load.c: make merge/load work again
284*c19800e8SDoug Rabson
285*c19800e8SDoug Rabson	* del.c: fix usage string
286*c19800e8SDoug Rabson
287*c19800e8SDoug Rabson	* ank.c: fix slc lossage
288*c19800e8SDoug Rabson
289*c19800e8SDoug Rabson2004-06-28  Love Hörquist Åstrand  <[email protected]>
290*c19800e8SDoug Rabson
291*c19800e8SDoug Rabson	* kadmin.c: use kadm5_ad_init_with_password_ctx
292*c19800e8SDoug Rabson
293*c19800e8SDoug Rabson2004-06-27  Johan Danielsson  <[email protected]>
294*c19800e8SDoug Rabson
295*c19800e8SDoug Rabson	* kadmin.8: document get -o and stash
296*c19800e8SDoug Rabson
297*c19800e8SDoug Rabson	* get.c: implement output column selection, similar to ps -o
298*c19800e8SDoug Rabson
299*c19800e8SDoug Rabson	* kadmin-commands.in: make get -l the default again, and add
300*c19800e8SDoug Rabson	column selection flag; sync list with get
301*c19800e8SDoug Rabson
302*c19800e8SDoug Rabson2004-06-24  Johan Danielsson  <[email protected]>
303*c19800e8SDoug Rabson
304*c19800e8SDoug Rabson	* kadmin-commands.in: mod needs default kvno of -1
305*c19800e8SDoug Rabson
306*c19800e8SDoug Rabson2004-06-21  Johan Danielsson  <[email protected]>
307*c19800e8SDoug Rabson
308*c19800e8SDoug Rabson	* kadmin: convert to use slc; also add stash subcommand
309*c19800e8SDoug Rabson
310*c19800e8SDoug Rabson2004-06-15  Love Hörquist Åstrand  <[email protected]>
311*c19800e8SDoug Rabson
312*c19800e8SDoug Rabson	* kadmin.c (main): keytab mode requires principal name
313*c19800e8SDoug Rabson
314*c19800e8SDoug Rabson2004-06-12  Love Hörquist Åstrand  <[email protected]>
315*c19800e8SDoug Rabson
316*c19800e8SDoug Rabson	* kadmind.c: drop keyfile, not used, found by
317*c19800e8SDoug Rabson	Elrond <[email protected]>
318*c19800e8SDoug Rabson
319*c19800e8SDoug Rabson	* kadmin.c: if keyfile is set, pass in to libkadm5 bug pointed out
320*c19800e8SDoug Rabson	by Elrond <[email protected]>
321*c19800e8SDoug Rabson
322*c19800e8SDoug Rabson2004-05-31  Love Hörquist Åstrand  <[email protected]>
323*c19800e8SDoug Rabson
324*c19800e8SDoug Rabson	* kadmin.c: add --ad flag, XXX rewrite the init kadm5 interface
325*c19800e8SDoug Rabson
326*c19800e8SDoug Rabson2004-05-13  Johan Danielsson  <[email protected]>
327*c19800e8SDoug Rabson
328*c19800e8SDoug Rabson	* nuke kerberos 4 kadmin goo
329*c19800e8SDoug Rabson
330*c19800e8SDoug Rabson2004-05-07  Johan Danielsson  <[email protected]>
3318d4ba808SJacques Vidrine
3328d4ba808SJacques Vidrine	* util.c (str2time_t): fix end-of-day logic, from Duncan
333*c19800e8SDoug Rabson	McEwan/Mark Davies.
334*c19800e8SDoug Rabson
3358d4ba808SJacques Vidrine2004-04-29  Love Hörquist Åstrand  <[email protected]>
336*c19800e8SDoug Rabson
337*c19800e8SDoug Rabson	* version4.c (handle_v4): make sure length is longer then 2,
338*c19800e8SDoug Rabson	Pointed out by Evgeny Demidov <[email protected]>
339*c19800e8SDoug Rabson
340*c19800e8SDoug Rabson	* kadmind.c: make kerberos4 support default turned off
341*c19800e8SDoug Rabson
342*c19800e8SDoug Rabson2004-03-24  Johan Danielsson  <[email protected]>
343*c19800e8SDoug Rabson
344*c19800e8SDoug Rabson	* kadmin.8: update manpage
345*c19800e8SDoug Rabson
346*c19800e8SDoug Rabson	* mod.c: allow wildcarding principals, and make parameters a work
347*c19800e8SDoug Rabson	same as if prompted
348*c19800e8SDoug Rabson
349*c19800e8SDoug Rabson2004-03-08  Love Hörquist Åstrand  <[email protected]>
350*c19800e8SDoug Rabson
351*c19800e8SDoug Rabson	* kadmin.8: document password-quality
352*c19800e8SDoug Rabson
353*c19800e8SDoug Rabson	* kadmin_locl.h: add prototype for password_quality
354*c19800e8SDoug Rabson
355*c19800e8SDoug Rabson	* kadmin.c: add password-quality/pwq command
356*c19800e8SDoug Rabson
357*c19800e8SDoug Rabson	* Makefile.am: kadmin_SOURCES += pw_quality.c
358*c19800e8SDoug Rabson
359*c19800e8SDoug Rabson	* pw_quality.c: test run the password quality function
360*c19800e8SDoug Rabson
361*c19800e8SDoug Rabson2004-03-07  Love Hörquist Åstrand  <[email protected]>
362*c19800e8SDoug Rabson
363*c19800e8SDoug Rabson	* ank.c (add_one_principal): even though the principal is disabled
364*c19800e8SDoug Rabson	(creation of random key/keydata), create it with a random password
365*c19800e8SDoug Rabson
366*c19800e8SDoug Rabson2003-12-07  Love Hörquist Åstrand  <[email protected]>
367*c19800e8SDoug Rabson
368*c19800e8SDoug Rabson	* init.c (create_random_entry): print error message on failure
369*c19800e8SDoug Rabson
370*c19800e8SDoug Rabson	* ank.c (add_one_principal): pass right argument to
371*c19800e8SDoug Rabson	kadm5_free_principal_ent From Panasas, Inc
372*c19800e8SDoug Rabson
373*c19800e8SDoug Rabson2003-11-18  Love Hörquist Åstrand  <[email protected]>
374*c19800e8SDoug Rabson
375*c19800e8SDoug Rabson	* kadmind.c (main): move opening the logfile to after reading
376*c19800e8SDoug Rabson	kdc.conf move the loading of hdb keytab ops closer to where its
377*c19800e8SDoug Rabson	used From: Jeffrey Hutzelman <[email protected]>
378*c19800e8SDoug Rabson
379*c19800e8SDoug Rabson2003-10-04  Love Hörquist Åstrand  <[email protected]>
380*c19800e8SDoug Rabson
381*c19800e8SDoug Rabson	* util.c (str2time_t): allow whitespace between date and time
382*c19800e8SDoug Rabson	From: Bob Beck <[email protected]> and [email protected]
383*c19800e8SDoug Rabson
384*c19800e8SDoug Rabson2003-09-03  Love Hörquist Åstrand  <[email protected]>
385*c19800e8SDoug Rabson
386*c19800e8SDoug Rabson	* ank.c: s/des_read_pw_string/UI_UTIL_read_pw_string/
387*c19800e8SDoug Rabson
388*c19800e8SDoug Rabson	* cpw.c: s/des_read_pw_string/UI_UTIL_read_pw_string/
389*c19800e8SDoug Rabson
390*c19800e8SDoug Rabson2003-08-21  Love Hörquist Åstrand  <[email protected]>
391*c19800e8SDoug Rabson
392*c19800e8SDoug Rabson	* get.c (print_entry_terse): handle error when unparsing name
393*c19800e8SDoug Rabson
394*c19800e8SDoug Rabson2003-08-18  Love Hörquist Åstrand  <[email protected]>
395*c19800e8SDoug Rabson
396*c19800e8SDoug Rabson	* kadmind.c (main): use krb5_prepend_config_files_default, now all
3978d4ba808SJacques Vidrine	options in kdc.conf is parsed, not just [kdc]key-file=
398bbd80c28SJacques Vidrine
399bbd80c28SJacques Vidrine	* kadmin.c (main): use krb5_prepend_config_files_default, now all
400bbd80c28SJacques Vidrine	options in kdc.conf is parsed, not just [kdc]key-file=
401bbd80c28SJacques Vidrine
402bbd80c28SJacques Vidrine2003-04-14  Love Hörquist Åstrand  <[email protected]>
403bbd80c28SJacques Vidrine
404bbd80c28SJacques Vidrine	* util.c: cast argument to tolower to unsigned char, from
405bbd80c28SJacques Vidrine	Christian Biere <[email protected]> via NetBSD
406bbd80c28SJacques Vidrine
407bbd80c28SJacques Vidrine2003-04-06  Love Hörquist Åstrand <[email protected]>
408bbd80c28SJacques Vidrine
409bbd80c28SJacques Vidrine	* kadmind.8: s/kerberos/Kerberos/
410bbd80c28SJacques Vidrine
411bbd80c28SJacques Vidrine2003-03-31  Love Hörquist Åstrand  <[email protected]>
412bbd80c28SJacques Vidrine
413bbd80c28SJacques Vidrine	* kadmin.8: initialises -> initializes, from Perry E. Metzger"
414bbd80c28SJacques Vidrine	<[email protected]>
415bbd80c28SJacques Vidrine
416bbd80c28SJacques Vidrine	* kadmin.c: principal, not pricipal. From Thomas Klausner
417bbd80c28SJacques Vidrine	<[email protected]>
418bbd80c28SJacques Vidrine
419bbd80c28SJacques Vidrine2003-02-04  Love Hörquist Åstrand  <[email protected]>
420bbd80c28SJacques Vidrine
421bbd80c28SJacques Vidrine	* kadmind.8: spelling, from jmc <[email protected]>
422bbd80c28SJacques Vidrine
423bbd80c28SJacques Vidrine	* kadmin.8: spelling, from jmc <[email protected]>
424bbd80c28SJacques Vidrine
425bbd80c28SJacques Vidrine2003-01-29  Love Hörquist Åstrand  <[email protected]>
426bbd80c28SJacques Vidrine
427bbd80c28SJacques Vidrine	* server.c (kadmind_dispatch): kadm_chpass: require the password
428bbd80c28SJacques Vidrine	to pass the password quality check in case the user changes the
429*c19800e8SDoug Rabson	user's own password kadm_chpass_with_key: disallow the user to
430*c19800e8SDoug Rabson	change it own password to a key, since that password might violate
431*c19800e8SDoug Rabson	the password quality check.
432*c19800e8SDoug Rabson
433*c19800e8SDoug Rabson2002-12-03  Johan Danielsson  <[email protected]>
434*c19800e8SDoug Rabson
435*c19800e8SDoug Rabson	* util.c (get_response): print a newline if interrupted
436*c19800e8SDoug Rabson
437*c19800e8SDoug Rabson	* mod.c (mod_entry): check return value from edit_entry
438*c19800e8SDoug Rabson
439*c19800e8SDoug Rabson	* ank.c (add_one_principal): check return value from edit_entry
440*c19800e8SDoug Rabson
441*c19800e8SDoug Rabson	* ank.c (add_one_principal): don't continue if create_principal
442*c19800e8SDoug Rabson	fails
443*c19800e8SDoug Rabson
444*c19800e8SDoug Rabson	* init.c: check return value from edit_deltat
445*c19800e8SDoug Rabson
446*c19800e8SDoug Rabson	* init.c: add --help
447*c19800e8SDoug Rabson
448bbd80c28SJacques Vidrine2002-10-29  Johan Danielsson  <[email protected]>
449bbd80c28SJacques Vidrine
450bbd80c28SJacques Vidrine	* version4.c: speling (from Tomas Olsson)
451bbd80c28SJacques Vidrine
452bbd80c28SJacques Vidrine2002-10-23  Assar Westerlund  <[email protected]>
4535bda878eSJacques Vidrine
4545bda878eSJacques Vidrine	* version4.c (decode_packet): check the length of the version
455bbd80c28SJacques Vidrine	string and that rlen has a reasonable value
4565bda878eSJacques Vidrine
4570cadf2f4SJacques Vidrine2002-10-21  Johan Danielsson  <[email protected]>
4580cadf2f4SJacques Vidrine
4590cadf2f4SJacques Vidrine	* version4.c: check size of rlen
4600cadf2f4SJacques Vidrine
4610cadf2f4SJacques Vidrine2002-09-10  Johan Danielsson  <[email protected]>
4620cadf2f4SJacques Vidrine
4630cadf2f4SJacques Vidrine	* server.c: constify match_appl_version()
4640cadf2f4SJacques Vidrine
4650cadf2f4SJacques Vidrine	* version4.c: change some lingering krb_err_base
4660cadf2f4SJacques Vidrine
4670cadf2f4SJacques Vidrine2002-09-09  Jacques Vidrine  <[email protected]>
4680cadf2f4SJacques Vidrine
4690cadf2f4SJacques Vidrine	* server.c (kadmind_dispatch): while decoding arguments for
4700cadf2f4SJacques Vidrine	kadm_chpass_with_key, sanity check the number of keys given.
4710cadf2f4SJacques Vidrine	Potential problem pointed out by
4720cadf2f4SJacques Vidrine	Sebastian Krahmer <[email protected]>.
4730cadf2f4SJacques Vidrine
4740cadf2f4SJacques Vidrine2002-09-04  Johan Danielsson  <[email protected]>
4758373020dSJacques Vidrine
4768373020dSJacques Vidrine	* load.c (parse_generation): return if there is no generation
4778373020dSJacques Vidrine	(spotted by Daniel Kouril)
4788373020dSJacques Vidrine
4798373020dSJacques Vidrine2002-06-07  Jacques Vidrine <[email protected]>
4808373020dSJacques Vidrine
4818373020dSJacques Vidrine	* ank.c: do not attempt to free uninitialized pointer when
4828373020dSJacques Vidrine	kadm5_randkey_principal fails.
4838373020dSJacques Vidrine
4848373020dSJacques Vidrine2002-06-07  Johan Danielsson  <[email protected]>
4858373020dSJacques Vidrine
4868373020dSJacques Vidrine	* util.c: remove unused variable; reported by Hans Insulander
4878373020dSJacques Vidrine
4884137ff4cSJacques Vidrine2002-03-05  Johan Danielsson  <[email protected]>
4894137ff4cSJacques Vidrine
4904137ff4cSJacques Vidrine	* kadmind.8: clarify some acl wording, and add an example file
4914137ff4cSJacques Vidrine
4924137ff4cSJacques Vidrine2002-02-11  Johan Danielsson  <[email protected]>
4934137ff4cSJacques Vidrine
4944137ff4cSJacques Vidrine	* ext.c: no need to use the "modify" keytab anymore
4954137ff4cSJacques Vidrine
4964137ff4cSJacques Vidrine2001-09-20  Assar Westerlund  <[email protected]>
4974137ff4cSJacques Vidrine
4984137ff4cSJacques Vidrine	* add-random-users.c: allocate several buffers for the list of
4994137ff4cSJacques Vidrine	words, instead of one strdup per word (running under efence does
5004137ff4cSJacques Vidrine	not work very well otherwise)
5014137ff4cSJacques Vidrine
5024137ff4cSJacques Vidrine2001-09-13  Assar Westerlund  <[email protected]>
5034137ff4cSJacques Vidrine
5044137ff4cSJacques Vidrine	* add-random-users.c: allow specifying the number of users to
5054137ff4cSJacques Vidrine	create
5064137ff4cSJacques Vidrine
5074137ff4cSJacques Vidrine2001-08-24  Assar Westerlund  <[email protected]>
5084137ff4cSJacques Vidrine
5094137ff4cSJacques Vidrine	* Makefile.am: rename variable name to avoid error from current
5104137ff4cSJacques Vidrine	automake
5114137ff4cSJacques Vidrine
5124137ff4cSJacques Vidrine2001-08-22  Assar Westerlund  <[email protected]>
5134137ff4cSJacques Vidrine
5144137ff4cSJacques Vidrine	* kadmin_locl.h: include libutil.h if it exists
5154137ff4cSJacques Vidrine
5164137ff4cSJacques Vidrine2001-08-10  Johan Danielsson  <[email protected]>
5174137ff4cSJacques Vidrine
5184137ff4cSJacques Vidrine	* util.c: do something to handle C-c in prompts
5194137ff4cSJacques Vidrine
5204137ff4cSJacques Vidrine	* load.c: remove unused etypes code, and add parsing of the
5214137ff4cSJacques Vidrine	generation field
5224137ff4cSJacques Vidrine
5234137ff4cSJacques Vidrine	* ank.c: add a --use-defaults option to just use default values
5244137ff4cSJacques Vidrine	without questions
5254137ff4cSJacques Vidrine
5264137ff4cSJacques Vidrine	* kadmin.c: add "del" alias for delete
5274137ff4cSJacques Vidrine
5284137ff4cSJacques Vidrine	* cpw.c: call this operation "passwd" in usage
5294137ff4cSJacques Vidrine
5304137ff4cSJacques Vidrine	* kadmin_locl.h: prototype for set_defaults
5314137ff4cSJacques Vidrine
5324137ff4cSJacques Vidrine	* util.c (edit_entry): move setting of default values to a
5334137ff4cSJacques Vidrine	separate function, set_defaults
5344137ff4cSJacques Vidrine
5354137ff4cSJacques Vidrine2001-08-01  Johan Danielsson  <[email protected]>
5364137ff4cSJacques Vidrine
5374137ff4cSJacques Vidrine	* kadmin.c: print help message on bad options
5384137ff4cSJacques Vidrine
5394137ff4cSJacques Vidrine2001-07-31  Assar Westerlund  <[email protected]>
5404137ff4cSJacques Vidrine
5414137ff4cSJacques Vidrine	* add-random-users.c (main): handle --version
5424137ff4cSJacques Vidrine
5434137ff4cSJacques Vidrine2001-07-30  Johan Danielsson  <[email protected]>
5444137ff4cSJacques Vidrine
5454137ff4cSJacques Vidrine	* load.c: increase line buffer to 8k
5464137ff4cSJacques Vidrine
547adb0ddaeSAssar Westerlund2001-06-12  Assar Westerlund  <[email protected]>
548adb0ddaeSAssar Westerlund
549adb0ddaeSAssar Westerlund	* ext.c (ext_keytab): use the default modify keytab per default
550adb0ddaeSAssar Westerlund
551adb0ddaeSAssar Westerlund2001-05-17  Assar Westerlund  <[email protected]>
552adb0ddaeSAssar Westerlund
553adb0ddaeSAssar Westerlund	* kadm_conn.c (start_server): fix krb5_eai_to_heim_errno call
554adb0ddaeSAssar Westerlund
555adb0ddaeSAssar Westerlund2001-05-15  Assar Westerlund  <[email protected]>
556adb0ddaeSAssar Westerlund
557adb0ddaeSAssar Westerlund	* kadmin.c (main): some error cleaning required
558adb0ddaeSAssar Westerlund
559adb0ddaeSAssar Westerlund2001-05-14  Assar Westerlund  <[email protected]>
560adb0ddaeSAssar Westerlund
561adb0ddaeSAssar Westerlund	* kadmind.c: new krb5_config_parse_file
562adb0ddaeSAssar Westerlund	* kadmin.c: new krb5_config_parse_file
563adb0ddaeSAssar Westerlund	* kadm_conn.c: update to new krb5_sockaddr2address
564adb0ddaeSAssar Westerlund
565adb0ddaeSAssar Westerlund2001-05-07  Assar Westerlund  <[email protected]>
566adb0ddaeSAssar Westerlund
567adb0ddaeSAssar Westerlund	* kadmin_locl.h (foreach_principal): update prototype
568adb0ddaeSAssar Westerlund	* get.c (getit): new foreach_principal
569adb0ddaeSAssar Westerlund	* ext.c (ext_keytab): new foreach_principal
570adb0ddaeSAssar Westerlund	* del.c (del_entry): new foreach_principal
571adb0ddaeSAssar Westerlund	* cpw.c (cpw_entry): new foreach_principal
572adb0ddaeSAssar Westerlund	* util.c (foreach_principal): add `funcname' and try printing the
573adb0ddaeSAssar Westerlund	error string
574adb0ddaeSAssar Westerlund
575adb0ddaeSAssar Westerlund2001-05-04  Johan Danielsson  <[email protected]>
576adb0ddaeSAssar Westerlund
577adb0ddaeSAssar Westerlund	* rename.c: fix argument number test
578adb0ddaeSAssar Westerlund
579adb0ddaeSAssar Westerlund2001-04-19  Johan Danielsson  <[email protected]>
580adb0ddaeSAssar Westerlund
581adb0ddaeSAssar Westerlund	* del_enctype.c: fix argument count check after getarg change;
582adb0ddaeSAssar Westerlund	spotted by [email protected]
583adb0ddaeSAssar Westerlund
584adb0ddaeSAssar Westerlund2001-02-15  Assar Westerlund  <[email protected]>
585adb0ddaeSAssar Westerlund
586adb0ddaeSAssar Westerlund	* kadmind.c (main): use a `struct sockaddr_storage' to be able to
587adb0ddaeSAssar Westerlund	store all types of addresses
588adb0ddaeSAssar Westerlund
589adb0ddaeSAssar Westerlund2001-02-07  Assar Westerlund  <[email protected]>
5905e9cd1aeSAssar Westerlund
5915e9cd1aeSAssar Westerlund	* kadmin.c: add --keytab / _K, from Leif Johansson
5925e9cd1aeSAssar Westerlund	<[email protected]>
5935e9cd1aeSAssar Westerlund
5945e9cd1aeSAssar Westerlund2001-01-29  Assar Westerlund  <[email protected]>
5955e9cd1aeSAssar Westerlund
5965e9cd1aeSAssar Westerlund	* kadm_conn.c (spawn_child): close the newly created socket in the
5975e9cd1aeSAssar Westerlund	packet, it's not used.  from <[email protected]>
5985e9cd1aeSAssar Westerlund	* version4.c (decode_packet): check success of
5995e9cd1aeSAssar Westerlund	krb5_425_conv_principal.  from <[email protected]>
6005e9cd1aeSAssar Westerlund
6015e9cd1aeSAssar Westerlund2001-01-12  Assar Westerlund  <[email protected]>
6025e9cd1aeSAssar Westerlund
6035e9cd1aeSAssar Westerlund	* util.c (parse_attributes): make empty string mean no attributes,
6045e9cd1aeSAssar Westerlund	specifying the empty string at the command line should give you no
6055e9cd1aeSAssar Westerlund	attributes, but just pressing return at the prompt gives you
6065e9cd1aeSAssar Westerlund	default attributes
6075e9cd1aeSAssar Westerlund	(edit_entry): only pick up values from the default principal if they
6085e9cd1aeSAssar Westerlund	aren't set in the principal being edited
6095e9cd1aeSAssar Westerlund
6105e9cd1aeSAssar Westerlund2001-01-04  Assar Westerlund  <[email protected]>
6115e9cd1aeSAssar Westerlund
6125e9cd1aeSAssar Westerlund	* load.c (doit): print an error and bail out if storing an entry
6135e9cd1aeSAssar Westerlund	in the database fails.  The most likely reason for it failing is
6145e9cd1aeSAssar Westerlund	out-of-space.
6155e9cd1aeSAssar Westerlund
6165e9cd1aeSAssar Westerlund2000-12-31  Assar Westerlund  <[email protected]>
6175e9cd1aeSAssar Westerlund
6185e9cd1aeSAssar Westerlund	* kadmind.c (main): handle krb5_init_context failure consistently
6195e9cd1aeSAssar Westerlund	* kadmin.c (main): handle krb5_init_context failure consistently
6205e9cd1aeSAssar Westerlund	* add-random-users.c (add_user): handle krb5_init_context failure
6215e9cd1aeSAssar Westerlund	consistently
6225e9cd1aeSAssar Westerlund
6235e9cd1aeSAssar Westerlund	* kadm_conn.c (spawn_child): use a struct sockaddr_storage
6245e9cd1aeSAssar Westerlund
6255e9cd1aeSAssar Westerlund2000-12-15  Johan Danielsson  <[email protected]>
6265e9cd1aeSAssar Westerlund
6275e9cd1aeSAssar Westerlund	* get.c: avoid asprintf'ing NULL strings
6285e9cd1aeSAssar Westerlund
6295e9cd1aeSAssar Westerlund2000-12-14  Johan Danielsson  <[email protected]>
6305e9cd1aeSAssar Westerlund
6315e9cd1aeSAssar Westerlund	* load.c: fix option parsing
6325e9cd1aeSAssar Westerlund
6335e9cd1aeSAssar Westerlund2000-11-16  Assar Westerlund  <[email protected]>
6345e9cd1aeSAssar Westerlund
6355e9cd1aeSAssar Westerlund	* kadm_conn.c (wait_for_connection): check for fd's being too
6365e9cd1aeSAssar Westerlund	large to select on
6375e9cd1aeSAssar Westerlund
6385e9cd1aeSAssar Westerlund2000-11-09  Johan Danielsson  <[email protected]>
6395e9cd1aeSAssar Westerlund
6405e9cd1aeSAssar Westerlund	* get.c: don't try to print modifier name if it isn't set (from
6415e9cd1aeSAssar Westerlund	Jacques A. Vidrine" <[email protected]>)
6425e9cd1aeSAssar Westerlund
6435e9cd1aeSAssar Westerlund2000-09-19  Assar Westerlund  <[email protected]>
6445e9cd1aeSAssar Westerlund
6455e9cd1aeSAssar Westerlund	* server.c (kadmind_loop): send in keytab to v4 handling function
6465e9cd1aeSAssar Westerlund	* version4.c: allow the specification of what keytab to use
6475e9cd1aeSAssar Westerlund
6485e9cd1aeSAssar Westerlund	* get.c (print_entry_long): actually print the actual saltvalue
6495e9cd1aeSAssar Westerlund	used if it's not the default
6505e9cd1aeSAssar Westerlund
6515e9cd1aeSAssar Westerlund2000-09-10  Johan Danielsson  <[email protected]>
6525e9cd1aeSAssar Westerlund
6535e9cd1aeSAssar Westerlund	* kadmin.c: add option parsing, and add `privs' as an alias for
6545e9cd1aeSAssar Westerlund	`privileges'
6555e9cd1aeSAssar Westerlund
6565e9cd1aeSAssar Westerlund	* init.c: complain if there's no realm name specified
6575e9cd1aeSAssar Westerlund
6585e9cd1aeSAssar Westerlund	* rename.c: add option parsing
6595e9cd1aeSAssar Westerlund
6605e9cd1aeSAssar Westerlund	* load.c: add option parsing
6615e9cd1aeSAssar Westerlund
6625e9cd1aeSAssar Westerlund	* get.c: make `get' and `list' aliases to each other, but with
6635e9cd1aeSAssar Westerlund	different defaults
6645e9cd1aeSAssar Westerlund
6655e9cd1aeSAssar Westerlund	* del_enctype.c: add option parsing
6665e9cd1aeSAssar Westerlund
6675e9cd1aeSAssar Westerlund	* del.c: add option parsing
6685e9cd1aeSAssar Westerlund
6695e9cd1aeSAssar Westerlund	* ank.c: calling the command `add' make more sense from an english
6705e9cd1aeSAssar Westerlund	pov
6715e9cd1aeSAssar Westerlund
6725e9cd1aeSAssar Westerlund	* Makefile.am: add kadmin manpage
6735e9cd1aeSAssar Westerlund
6745e9cd1aeSAssar Westerlund	* kadmin.8: short manpage
6755e9cd1aeSAssar Westerlund
6765e9cd1aeSAssar Westerlund	* kadmin.c: `quit' should be a alias for `exit', not `help'
6775e9cd1aeSAssar Westerlund
6785e9cd1aeSAssar Westerlund2000-08-27  Assar Westerlund  <[email protected]>
6795e9cd1aeSAssar Westerlund
6805e9cd1aeSAssar Westerlund	* server.c (handle_v5): do not try to perform stupid stunts when
6815e9cd1aeSAssar Westerlund	printing errors
6825e9cd1aeSAssar Westerlund
6835e9cd1aeSAssar Westerlund2000-08-19  Assar Westerlund  <[email protected]>
6845e9cd1aeSAssar Westerlund
6855e9cd1aeSAssar Westerlund	* util.c (str2time_t): add alias for `now'.
6865e9cd1aeSAssar Westerlund
6875e9cd1aeSAssar Westerlund2000-08-18  Assar Westerlund  <[email protected]>
6885e9cd1aeSAssar Westerlund
6895e9cd1aeSAssar Westerlund	* server.c (handle_v5): accept any kadmin/admin@* principal as the
6905e9cd1aeSAssar Westerlund	server
6915e9cd1aeSAssar Westerlund	* kadmind.c: remove extra prototype of kadmind_loop
6925e9cd1aeSAssar Westerlund	* kadmin_locl.h (kadmind_loop): add prototype
6935e9cd1aeSAssar Westerlund
6945e9cd1aeSAssar Westerlund	* init.c (usage): print init-usage and not add-dito
6955e9cd1aeSAssar Westerlund
6965e9cd1aeSAssar Westerlund2000-08-07  Johan Danielsson  <[email protected]>
6975e9cd1aeSAssar Westerlund
6985e9cd1aeSAssar Westerlund	* kadmind.c: use roken_getsockname
6995e9cd1aeSAssar Westerlund
7005e9cd1aeSAssar Westerlund2000-08-07  Assar Westerlund  <[email protected]>
7015e9cd1aeSAssar Westerlund
7025e9cd1aeSAssar Westerlund	* kadmind.c, kadm_conn.c: use socklen_t instead of int where
7035e9cd1aeSAssar Westerlund	appropriate.  From <[email protected]>
7045e9cd1aeSAssar Westerlund
7055e9cd1aeSAssar Westerlund2000-08-04  Johan Danielsson  <[email protected]>
7065e9cd1aeSAssar Westerlund
7075e9cd1aeSAssar Westerlund	* Makefile.am: link with pidfile library
7085e9cd1aeSAssar Westerlund
7095e9cd1aeSAssar Westerlund	* kadmind.c: write a pid file, and setup password quality
7105e9cd1aeSAssar Westerlund	functions
7115e9cd1aeSAssar Westerlund
7125e9cd1aeSAssar Westerlund	* kadmin_locl.h: util.h
7135e9cd1aeSAssar Westerlund
7145e9cd1aeSAssar Westerlund2000-07-27  Assar Westerlund  <[email protected]>
7155e9cd1aeSAssar Westerlund
7165e9cd1aeSAssar Westerlund	* version4.c (decode_packet): be totally consistent with the
7175e9cd1aeSAssar Westerlund	prototype of des_cbc_cksum
7185e9cd1aeSAssar Westerlund	* kadmind.c: use sa_size instead of sa_len, some systems define
7195e9cd1aeSAssar Westerlund	this to emulate anonymous unions
7205e9cd1aeSAssar Westerlund	* kadm_conn.c: use sa_size instead of sa_len, some systems define
7215e9cd1aeSAssar Westerlund	this to emulate anonymous unions
7225e9cd1aeSAssar Westerlund
7235e9cd1aeSAssar Westerlund2000-07-24  Assar Westerlund  <[email protected]>
7245e9cd1aeSAssar Westerlund
7255e9cd1aeSAssar Westerlund	* kadmin.c (commands): add quit
7265e9cd1aeSAssar Westerlund	* load.c (doit): truncate the log since there's no way of knowing
7275e9cd1aeSAssar Westerlund	what changes are going to be added
7285e9cd1aeSAssar Westerlund
7295e9cd1aeSAssar Westerlund2000-07-23  Assar Westerlund  <[email protected]>
7305e9cd1aeSAssar Westerlund
7315e9cd1aeSAssar Westerlund	* util.c (str2time_t): be more careful with strptime that might
7325e9cd1aeSAssar Westerlund	zero out the `struct tm'
7335e9cd1aeSAssar Westerlund
7345e9cd1aeSAssar Westerlund2000-07-22  Johan Danielsson  <[email protected]>
7355e9cd1aeSAssar Westerlund
7365e9cd1aeSAssar Westerlund	* kadm_conn.c: make the parent process wait for children and
7375e9cd1aeSAssar Westerlund	terminate after receiving a signal, also terminate on SIGINT
7385e9cd1aeSAssar Westerlund
7395e9cd1aeSAssar Westerlund2000-07-22  Assar Westerlund  <[email protected]>
7405e9cd1aeSAssar Westerlund
7415e9cd1aeSAssar Westerlund	* version4.c: map both princ_expire_time and pw_expiration to v4
7425e9cd1aeSAssar Westerlund	principal expiration
7435e9cd1aeSAssar Westerlund
7445e9cd1aeSAssar Westerlund2000-07-22  Johan Danielsson  <[email protected]>
7455e9cd1aeSAssar Westerlund
7465e9cd1aeSAssar Westerlund	* version4.c (handle_v4): check for termination
7475e9cd1aeSAssar Westerlund
7485e9cd1aeSAssar Westerlund	* server.c (v5_loop): check for termination
7495e9cd1aeSAssar Westerlund
7505e9cd1aeSAssar Westerlund	* kadm_conn.c (wait_term): if we're doing something, set just set
7515e9cd1aeSAssar Westerlund	a flag otherwise exit rightaway
7525e9cd1aeSAssar Westerlund
7535e9cd1aeSAssar Westerlund	* server.c: use krb5_read_priv_message; (v5_loop): check for EOF
7545e9cd1aeSAssar Westerlund
7555e9cd1aeSAssar Westerlund2000-07-21  Assar Westerlund  <[email protected]>
7565e9cd1aeSAssar Westerlund
7575e9cd1aeSAssar Westerlund	* kadm_conn.c: remove sys/select.h.  make signal handlers
7585e9cd1aeSAssar Westerlund	type-correct and static
7595e9cd1aeSAssar Westerlund
7605e9cd1aeSAssar Westerlund	* kadmin_locl.h: add limits.h and sys/select.h
7615e9cd1aeSAssar Westerlund
7625e9cd1aeSAssar Westerlund2000-07-20  Assar Westerlund  <[email protected]>
7635e9cd1aeSAssar Westerlund
7645e9cd1aeSAssar Westerlund	* init.c (init): also create `kadmin/hprop'
7655e9cd1aeSAssar Westerlund	* kadmind.c: ports is a string argument
7665e9cd1aeSAssar Westerlund	* kadm_conn.c (start_server): fix printf format
7675e9cd1aeSAssar Westerlund
7685e9cd1aeSAssar Westerlund	* kadmin_locl.h: add <sys/select.h>
7695e9cd1aeSAssar Westerlund	* kadm_conn.c: remove sys/select.h.  make signal handlers
7705e9cd1aeSAssar Westerlund	type-correct and static
7715e9cd1aeSAssar Westerlund
7725e9cd1aeSAssar Westerlund	* kadmin_locl.h: add limits.h and sys/select.h
7735e9cd1aeSAssar Westerlund
7745e9cd1aeSAssar Westerlund2000-07-17  Johan Danielsson  <[email protected]>
7755e9cd1aeSAssar Westerlund
7765e9cd1aeSAssar Westerlund	* kadm_conn.c: put all processes in a new process group
7775e9cd1aeSAssar Westerlund
7785e9cd1aeSAssar Westerlund	* server.c (v5_loop): use krb5_{read,write}_priv_message
7795e9cd1aeSAssar Westerlund
7805e9cd1aeSAssar Westerlund2000-07-11  Johan Danielsson  <[email protected]>
7815e9cd1aeSAssar Westerlund
7825e9cd1aeSAssar Westerlund	* version4.c: change log strings to match the v5 counterparts
7835e9cd1aeSAssar Westerlund
7845e9cd1aeSAssar Westerlund	* mod.c: allow setting kvno
7855e9cd1aeSAssar Westerlund
7865e9cd1aeSAssar Westerlund	* kadmind.c: if stdin is not a socket create and listen to sockets
7875e9cd1aeSAssar Westerlund
7885e9cd1aeSAssar Westerlund	* kadm_conn.c: socket creation functions
7895e9cd1aeSAssar Westerlund
7905e9cd1aeSAssar Westerlund	* util.c (deltat2str): treat 0 and INT_MAX as never
7915e9cd1aeSAssar Westerlund
7925e9cd1aeSAssar Westerlund2000-07-08  Assar Westerlund  <[email protected]>
7935e9cd1aeSAssar Westerlund
7945e9cd1aeSAssar Westerlund	* Makefile.am (INCLUDES): add ../lib/krb5
7955e9cd1aeSAssar Westerlund	* kadmin_locl.h: add krb5_locl.h (since we just use some stuff
7965e9cd1aeSAssar Westerlund	from there)
7975e9cd1aeSAssar Westerlund
7985e9cd1aeSAssar Westerlund2000-06-07  Assar Westerlund  <[email protected]>
7995e9cd1aeSAssar Westerlund
8005e9cd1aeSAssar Westerlund	* add-random-users.c: new testing program that adds a number of
8015e9cd1aeSAssar Westerlund	randomly generated users
8025e9cd1aeSAssar Westerlund
8035e9cd1aeSAssar Westerlund2000-04-12  Assar Westerlund  <[email protected]>
8045e9cd1aeSAssar Westerlund
8055e9cd1aeSAssar Westerlund	* cpw.c (do_cpw_entry): call set_password if no argument is given,
8065e9cd1aeSAssar Westerlund	it will prompt for the password.
8075e9cd1aeSAssar Westerlund	* kadmin.c: make help only print the commands that are actually
8085e9cd1aeSAssar Westerlund	available.
8095e9cd1aeSAssar Westerlund
8105e9cd1aeSAssar Westerlund2000-04-03  Assar Westerlund  <[email protected]>
8115e9cd1aeSAssar Westerlund
8125e9cd1aeSAssar Westerlund	* del_enctype.c (del_enctype): set ignore correctly
8135e9cd1aeSAssar Westerlund
8145e9cd1aeSAssar Westerlund2000-04-02  Assar Westerlund  <[email protected]>
8155e9cd1aeSAssar Westerlund
8165e9cd1aeSAssar Westerlund	* kadmin.c (main): make parse errors a fatal error
8175e9cd1aeSAssar Westerlund	* init.c (init): create changepw/kerberos with disallow-tgt and
8185e9cd1aeSAssar Westerlund	pwchange attributes
8195e9cd1aeSAssar Westerlund
8205e9cd1aeSAssar Westerlund2000-03-23  Assar Westerlund  <[email protected]>
8215e9cd1aeSAssar Westerlund
8225e9cd1aeSAssar Westerlund	* util.c (hex2n, parse_des_key): add
823d61f1c79SMark Murray	* server.c (kadmind_dispatch): add kadm_chpass_with_key
824d61f1c79SMark Murray	* cpw.c: add --key
825d61f1c79SMark Murray	* ank.c: add --key
826d61f1c79SMark Murray
827d61f1c79SMark Murray2000-02-16  Assar Westerlund  <[email protected]>
82813e3f4d6SMark Murray
82913e3f4d6SMark Murray	* load.c (doit): check return value from parse_hdbflags2int
83013e3f4d6SMark Murray	correctly
83113e3f4d6SMark Murray
83213e3f4d6SMark Murray2000-01-25  Assar Westerlund  <[email protected]>
833b528cefcSMark Murray
834b528cefcSMark Murray	* load.c: checking all parsing for errors and all memory
835b528cefcSMark Murray	allocations also
836b528cefcSMark Murray
837b528cefcSMark Murray2000-01-02  Assar Westerlund  <[email protected]>
838b528cefcSMark Murray
839b528cefcSMark Murray	* server.c: check initial flag in ticket and allow users to change
840b528cefcSMark Murray	their own password if it's set
841b528cefcSMark Murray	* ext.c (do_ext_keytab): set timestamp
842b528cefcSMark Murray
843b528cefcSMark Murray1999-12-14  Assar Westerlund  <[email protected]>
844b528cefcSMark Murray
845b528cefcSMark Murray	* del_enctype.c (usage): don't use arg_printusage
846b528cefcSMark Murray
847b528cefcSMark Murray1999-11-25  Assar Westerlund  <[email protected]>
848b528cefcSMark Murray
849b528cefcSMark Murray	* del_enctype.c (del_enctype): try not to leak memory
850b528cefcSMark Murray
851b528cefcSMark Murray	* version4.c (kadm_ser_mod): use kadm5_s_modify_principal (no
852b528cefcSMark Murray 	_with_key)
853b528cefcSMark Murray
854b528cefcSMark Murray	* kadmin.c: add `del_enctype'
855b528cefcSMark Murray
856b528cefcSMark Murray	* del_enctype.c (del_enctype): new function for deleting enctypes
857b528cefcSMark Murray	from a principal
858b528cefcSMark Murray
859b528cefcSMark Murray	* Makefile.am (kadmin_SOURCES): add del_enctype.c
860b528cefcSMark Murray
861b528cefcSMark Murray1999-11-09  Johan Danielsson  <[email protected]>
862b528cefcSMark Murray
863b528cefcSMark Murray	* server.c: cope with old clients
864b528cefcSMark Murray
865b528cefcSMark Murray	* kadmin_locl.h: remove version string
866b528cefcSMark Murray
867b528cefcSMark Murray1999-10-17  Assar Westerlund  <[email protected]>
868b528cefcSMark Murray
869b528cefcSMark Murray	* Makefile.am (kadmin_LDADD): add LIB_dlopen
870b528cefcSMark Murray
871b528cefcSMark Murray1999-10-01  Assar Westerlund  <[email protected]>
872b528cefcSMark Murray
873b528cefcSMark Murray	* ank.c (add_one_principal): `password' can cactually be NULL in
874b528cefcSMark Murray 	the overwrite code, check for it.
875b528cefcSMark Murray
876b528cefcSMark Murray1999-09-20  Assar Westerlund  <[email protected]>
877b528cefcSMark Murray
878b528cefcSMark Murray	* mod.c (mod_entry): print the correct principal name in error
879b528cefcSMark Murray 	messages.  From Love <[email protected]>
880b528cefcSMark Murray
881b528cefcSMark Murray1999-09-10  Assar Westerlund  <[email protected]>
882b528cefcSMark Murray
883b528cefcSMark Murray	* init.c (init): also create `changepw/kerberos'
884b528cefcSMark Murray
885b528cefcSMark Murray	* version4.c: only create you loose packets when we fail decoding
886b528cefcSMark Murray 	and not when an operation is not performed for some reason
887b528cefcSMark Murray	(decode_packet): read the service key from the hdb
888b528cefcSMark Murray	(dispatch, decode_packet): return proper error messages
889b528cefcSMark Murray
890b528cefcSMark Murray	* version4.c (kadm_ser_cpw): add password quality functions
891b528cefcSMark Murray
892b528cefcSMark Murray1999-08-27  Johan Danielsson  <[email protected]>
893b528cefcSMark Murray
894b528cefcSMark Murray	* server.c (handle_v5): give more informative message if
895b528cefcSMark Murray	KRB5_KT_NOTFOUND
896b528cefcSMark Murray
897b528cefcSMark Murray1999-08-26  Johan Danielsson  <[email protected]>
898b528cefcSMark Murray
899b528cefcSMark Murray	* kadmind.c: use HDB keytabs
900b528cefcSMark Murray
901b528cefcSMark Murray1999-08-25  Assar Westerlund  <[email protected]>
902b528cefcSMark Murray
903b528cefcSMark Murray	* cpw.c (set_password): use correct variable.  From Love
904b528cefcSMark Murray 	<[email protected]>
905b528cefcSMark Murray
906b528cefcSMark Murray	* server.c (v5_loop): use correct error code
907b528cefcSMark Murray
908b528cefcSMark Murray	* ank.c (add_one_principal): initialize `default_ent'
909b528cefcSMark Murray
910b528cefcSMark Murray1999-08-21  Assar Westerlund  <[email protected]>
911b528cefcSMark Murray
912b528cefcSMark Murray	* random_password.c: new file, stolen from krb4
913b528cefcSMark Murray
914b528cefcSMark Murray	* kadmin_locl.h: add prototype for random_password
915b528cefcSMark Murray
916b528cefcSMark Murray	* cpw.c: add support for --random-password
917b528cefcSMark Murray
918b528cefcSMark Murray	* ank.c: add support for --random-password
919b528cefcSMark Murray
920b528cefcSMark Murray	* Makefile.am (kadmin_SOURCES): add random_password.c
921b528cefcSMark Murray
922b528cefcSMark Murray1999-08-19  Assar Westerlund  <[email protected]>
923b528cefcSMark Murray
924b528cefcSMark Murray	* util.c (edit_timet): break when we manage to parse the time not
925b528cefcSMark Murray 	the inverse.
926b528cefcSMark Murray
927b528cefcSMark Murray	* mod.c: add parsing of lots of options.  From Love
928b528cefcSMark Murray 	<[email protected]>
929b528cefcSMark Murray
930b528cefcSMark Murray	* ank.c: add setting of expiration and password expiration
931b528cefcSMark Murray
932b528cefcSMark Murray	* kadmin_locl.h: update util.c prototypes
933b528cefcSMark Murray
934b528cefcSMark Murray	* util.c: move-around.  clean-up, rename, make consistent (and
935b528cefcSMark Murray 	some other weird stuff).  based on patches from Love
936b528cefcSMark Murray 	<[email protected]>
937b528cefcSMark Murray
938b528cefcSMark Murray	* version4.c (kadm_ser_cpw): initialize password
939b528cefcSMark Murray	(handle_v4): remove unused variable `ret'
940b528cefcSMark Murray
941b528cefcSMark Murray1999-08-16  Assar Westerlund  <[email protected]>
942b528cefcSMark Murray
943b528cefcSMark Murray	* version4.c (handle_v4): more error checking and more correct
944b528cefcSMark Murray 	error messages
945b528cefcSMark Murray
946b528cefcSMark Murray	* server.c (v5_loop, kadmind_loop): more error checking and more
947b528cefcSMark Murray 	correct error messages
948b528cefcSMark Murray
949b528cefcSMark Murray1999-07-24  Assar Westerlund  <[email protected]>
950b528cefcSMark Murray
951b528cefcSMark Murray	* util.c (str2timeval, edit_time): functions for parsing and
952b528cefcSMark Murray 	editing times.  Based on patches from Love <[email protected]>.
953b528cefcSMark Murray	(edit_entry): call new functions
954b528cefcSMark Murray
955b528cefcSMark Murray	* mod.c (mod_entry): allow modifying expiration times
956b528cefcSMark Murray
957b528cefcSMark Murray	* kadmin_locl.h (str2timeval): add prototype
958b528cefcSMark Murray
959b528cefcSMark Murray	* ank.c (add_one_principal): allow setting expiration times
960b528cefcSMark Murray
961b528cefcSMark Murray1999-07-03  Assar Westerlund  <[email protected]>
962b528cefcSMark Murray
963b528cefcSMark Murray	* server.c (v5_loop): handle data allocation with krb5_data_alloc
964b528cefcSMark Murray 	and check return value
965b528cefcSMark Murray
966b528cefcSMark Murray1999-06-23  Assar Westerlund  <[email protected]>
967b528cefcSMark Murray
968b528cefcSMark Murray	* version4.c (kadm_ser_cpw): read the key in the strange order
969b528cefcSMark Murray 	it's sent
970b528cefcSMark Murray
971b528cefcSMark Murray	* util.c (edit_entry): look at default
972b528cefcSMark Murray	(edit_time): always set mask even if value == 0
973b528cefcSMark Murray
974b528cefcSMark Murray	* kadmin_locl.h (edit_entry): update
975b528cefcSMark Murray
976b528cefcSMark Murray	* ank.c: make ank use the values of the default principal for
977b528cefcSMark Murray 	prompting
978b528cefcSMark Murray
979b528cefcSMark Murray	* version4.c (values_to_ent): convert key data correctly
980b528cefcSMark Murray
981b528cefcSMark Murray1999-05-23  Assar Westerlund  <[email protected]>
982b528cefcSMark Murray
983b528cefcSMark Murray	* init.c (create_random_entry): more correct setting of mask
984b528cefcSMark Murray
985b528cefcSMark Murray1999-05-21  Assar Westerlund  <[email protected]>
986b528cefcSMark Murray
987b528cefcSMark Murray	* server.c (handle_v5): read sendauth version correctly.
988b528cefcSMark Murray
989b528cefcSMark Murray1999-05-14  Assar Westerlund  <[email protected]>
990b528cefcSMark Murray
991b528cefcSMark Murray	* version4.c (error_code): try to handle really old krb4
992b528cefcSMark Murray 	distributions
993b528cefcSMark Murray
994b528cefcSMark Murray1999-05-11  Assar Westerlund  <[email protected]>
995b528cefcSMark Murray
996b528cefcSMark Murray	* init.c (init): initialize realm_max_life and realm_max_rlife
997b528cefcSMark Murray
998b528cefcSMark Murray1999-05-07  Assar Westerlund  <[email protected]>
999b528cefcSMark Murray
1000b528cefcSMark Murray	* ank.c (add_new_key): initialize more variables
1001b528cefcSMark Murray
1002b528cefcSMark Murray1999-05-04  Assar Westerlund  <[email protected]>
1003b528cefcSMark Murray
1004b528cefcSMark Murray	* version4.c (kadm_ser_cpw): always allow a user to change her
1005b528cefcSMark Murray 	password
1006b528cefcSMark Murray	(kadm_ser_*): make logging work
1007b528cefcSMark Murray	clean-up and restructure
1008b528cefcSMark Murray
1009b528cefcSMark Murray	* kadmin_locl.h (set_entry): add prototype
1010b528cefcSMark Murray
1011b528cefcSMark Murray	* kadmin.c (usage): update usage string
1012b528cefcSMark Murray
1013b528cefcSMark Murray	* init.c (init): new arguments realm-max-ticket-life and
1014b528cefcSMark Murray 	realm-max-renewable-life
1015b528cefcSMark Murray
1016b528cefcSMark Murray	* util.c (edit_time, edit_attributes): don't do anything if it's
1017b528cefcSMark Murray 	already set
1018b528cefcSMark Murray	(set_entry): new function
1019b528cefcSMark Murray
1020b528cefcSMark Murray	* ank.c (add_new_key): new options for setting max-ticket-life,
1021b528cefcSMark Murray 	max-renewable-life, and attributes
1022b528cefcSMark Murray
1023b528cefcSMark Murray	* server.c (v5_loop): remove unused variable
1024b528cefcSMark Murray
1025b528cefcSMark Murray	* kadmin_locl.h: add prototypes
1026b528cefcSMark Murray
1027b528cefcSMark Murray	* version4.c: re-insert krb_err.h and other miss
1028b528cefcSMark Murray
1029b528cefcSMark Murray	* server.c (kadmind_loop): break-up and restructure
1030b528cefcSMark Murray
1031b528cefcSMark Murray	* version4.c: add ACL checks more error code checks restructure
1032b528cefcSMark Murray
1033b528cefcSMark Murray1999-05-03  Johan Danielsson  <[email protected]>
1034b528cefcSMark Murray
1035b528cefcSMark Murray	* load.c: check for (un-)encrypted keys
1036b528cefcSMark Murray
1037b528cefcSMark Murray	* dump.c: use hdb_print_entry
1038b528cefcSMark Murray
1039b528cefcSMark Murray	* version4.c: version 4 support
1040b528cefcSMark Murray
1041b528cefcSMark Murray	* Makefile.am: link with krb4
1042b528cefcSMark Murray
1043b528cefcSMark Murray	* kadmin_locl.h: include <sys/un.h>
1044b528cefcSMark Murray
1045	* server.c: move from lib/kadm5, and add basic support for krb4
1046	kadmin protocol
1047
1048	* kadmind.c: move recvauth to kadmind_loop()
1049