1
0
mirror of https://github.com/samba-team/samba.git synced 2024-12-23 17:34:34 +03:00
samba-mirror/libcli/security
Andrew Bartlett 724f403d88 libcli/security: Add SID_FRESH_PUBLIC_KEY_IDENTITY
This allows an ACL level check (rather than only an all-or-nothing KDC configuration)
that PKINIT freshness was used during the AS-REQ.

Signed-off-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Jo Sutton <josutton@catalyst.net.nz>
2024-02-28 03:44:37 +00:00
..
tests libcli/security: tests for signed zeros in sddl condtional ACEs 2023-12-21 23:48:46 +00:00
access_check.c libcli/security: Make ‘replace_sid’ parameter const 2024-02-08 02:48:44 +00:00
access_check.h libcli/security: Include missing headers 2024-02-16 02:41:36 +00:00
claims-conversions.c libcli/security: Fix code spelling 2023-12-08 02:28:33 +00:00
claims-conversions.h libcli/security: separate out claim_v1_to_ace_composite_unchecked() 2023-11-27 22:37:32 +00:00
conditional_ace.c libcli/security: don't allow conditional ACE SIDs to have trailing bytes 2023-12-14 03:31:37 +00:00
conditional_ace.h libcli/security: Optionally disallow device‐specific attributes and operators where they are not applicable 2023-11-09 08:00:30 +00:00
create_descriptor.c lbcli/security: callback object ACES fall back with no GUID 2023-09-26 23:45:35 +00:00
display_sec.c libcli:sec:display: use macro for more ace types 2023-09-07 04:53:41 +00:00
display_sec.h
dom_sid.c libcli:security: Prefer explicit initialization to ZERO_STRUCTP() 2023-09-14 21:35:29 +00:00
dom_sid.h libcli/security: Add SID_FRESH_PUBLIC_KEY_IDENTITY 2024-02-28 03:44:37 +00:00
object_tree.c libcli:security: Fix code spelling 2023-04-27 14:25:38 +00:00
privileges_private.h
privileges.c libcli: Convert security_token_debug_privileges() to talloc_asprintf 2023-10-10 23:23:40 +00:00
privileges.h libcli: Convert security_token_debug_privileges() to talloc_asprintf 2023-10-10 23:23:40 +00:00
pysecurity.c Use python.h from libreplace 2023-11-20 15:37:33 +00:00
sddl_conditional_ace.c libcli/security: sddl conditional ACE: write -0 when asked 2023-12-21 23:48:46 +00:00
sddl.c libcli/security: SDDL decode stops earlier with too many ACEs 2023-12-14 03:31:36 +00:00
sddl.h libcli/security: Optionally disallow device‐specific attributes and operators where they are not applicable 2023-11-09 08:00:30 +00:00
secace.c libcli/security: Remove unused macro 2023-09-27 02:43:28 +00:00
secace.h librpc:ndr: Introduce ‘libndr_flags’ type 2023-11-01 20:10:45 +00:00
secacl.c libcli/security: Avoid includes.h 2023-03-09 18:10:33 +00:00
secacl.h libcli: make_sec_acl() copies the ace_list, make that const 2021-01-22 19:54:38 +00:00
secdesc.c lib: Remove a talloc_stackframe() 2023-03-09 18:10:33 +00:00
secdesc.h libcli/security: Remove unused dup_sec_desc_buf() 2019-05-22 05:59:14 +00:00
security_descriptor.c libcli/security: Handle new ACE types with sec_ace_object() 2023-10-01 22:45:38 +00:00
security_descriptor.h libcli/security: Include missing headers 2024-02-16 02:41:36 +00:00
security_token.c libcli: Make security_token_debug() use just one DEBUG statement 2023-10-10 23:23:40 +00:00
security_token.h libcli/security: Rename dup_nt_token() -> security_token_duplicate() 2023-09-26 23:45:36 +00:00
security.h libcli/security: remove PRIMARY_{USER,GROUP}_SID_INDEX defines from security.h 2024-01-09 10:21:34 +00:00
session.c libcli/security: Make ‘session_info’ parameter const 2024-02-16 02:41:36 +00:00
session.h libcli/security: Make ‘session_info’ parameter const 2024-02-16 02:41:36 +00:00
util_sid.c libcli/security: Add SID_FRESH_PUBLIC_KEY_IDENTITY 2024-02-28 03:44:37 +00:00
wscript_build libcli/security: claim_v1_check_and_sort(): add all types 2023-11-27 22:37:32 +00:00