[16183] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: Password quality pluggable interface scope

daemon@ATHENA.MIT.EDU (Sam Hartman)
Fri Aug 27 14:14:36 2010

From: Sam Hartman <hartmans@mit.edu>
To: Russ Allbery <rra@stanford.edu>
Date: Fri, 27 Aug 2010 14:14:12 -0400
In-Reply-To: <878w3s3pkr.fsf@windlord.stanford.edu> (Russ Allbery's message of
	"Fri, 27 Aug 2010 10:58:28 -0700")
Message-ID: <tslaao7ord7.fsf@mit.edu>
MIME-Version: 1.0
Cc: "krbdev@MIT.EDU" <krbdev@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu

>>>>> "Russ" == Russ Allbery <rra@stanford.edu> writes:

    Russ> Greg Hudson <ghudson@MIT.EDU> writes:
    >> Plugin modules can read profile associations; consider PKINIT
    >> configuration variables, for example, or LDAP back-end configuration.

    Russ> What interface does this use now?  This was one of the biggest problems
    Russ> that I ran into when I wrote the plugins originally, since there wasn't
    Russ> any interface available other than krb5_appdefault* (which is a horrible
    Russ> interface).

I think you can call krb5_get_profile on a context.  Now that the KDC
and other profiles  are folded together, I think that gives you enough
rope (TM).
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post