Changelog for
krb5-plugin-preauth-pkinit-nss-debuginfo-0.7.7-1.2.x86_64.rpm :
Thu Sep 4 14:00:00 2008 mcAATTsuse.de
- update to version 0.7.7
* Learn to match certificates on email addresses, and to handle references to
parts of the relevant principal name in matching rules.
* Let the KDC use the matching rules to determine if a certificate matches the
user for whom a TGT is being requested.
Fri Aug 29 14:00:00 2008 mcAATTsuse.de
- update to version 0.7.6
* Correctly initialize NSS so that we continue to be able to read the database
with NSS 3.12.
* Make the version number we use when generating Signed-Data tunable for the
sake of other implementations which only accept one version or another.
* Teach the server side about a \"server_pin_file\", so that databases with a
PIN set can be used.
* Add some brief notes on setting up for testing.
* Fix wire-level incompatibilities with WS2008.
* Recognize and support \"pkinit_kdc_hostname\" and \"pkinit_eku_checking\"
settings.
* Recognize and support \"pkinit_dh_min_bits\", and allow it to override the
configured preference of which Oakley group to use.
* Recognize and support \"pkinit_cert_match\" rules.
Wed Feb 13 13:00:00 2008 mcAATTsuse.de
- modify pkinit-nss-0.6.1-match-default-realms.patch
to call krb5_get_host_realm() correct.
[bnc#298362]
Wed Oct 24 14:00:00 2007 mcAATTsuse.de
- update to version 0.7.4
* Implement interfaces for krb5 1.6.3.
Tue Oct 23 14:00:00 2007 mcAATTsuse.de
- add Conflicts to krb5-plugin-preauth-pkinit
Thu Jul 12 14:00:00 2007 mcAATTsuse.de
- update to version 0.7.3
* initialize \"name\" to avoid displaying a garbage pointer
when using software certs
Tue Jul 3 14:00:00 2007 mcAATTsuse.de
- add pkinit-nss-0.6.1-match-default-realms.patch
- fix documentation
Fri Jun 22 14:00:00 2007 mcAATTsuse.de
- update to version 0.7.2
* Bug fixes
Tue Jun 19 14:00:00 2007 mcAATTsuse.de
- initial release (Version 0.7.1)