-
Thu Jul 25 2019 Robbie Harwood <rharwood@redhat.com> - 1.15.1-37.el_7_7.2
- Prefer TCP to UDP for password changes
- Resolves: #1732743
-
Thu Jul 25 2019 Robbie Harwood <rharwood@redhat.com> - 1.15.1-37.el7_7.1
- Remove incorrect KDC assertion
- Resolves: #1732339
-
Tue Dec 18 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-37
- Bring back builtin crypto (openssl broke too many FIPS setups)
- Resolves: #1645711
-
Mon Dec 17 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-36
- Clean up MEMORY ccache behavior to match upstream more closely
- Resolves: #1605756
-
Tue Dec 11 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-35
- Fix bugs with concurrent use of MEMORY ccaches
- Resolves: #1605756
-
Wed Aug 01 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-34
- In FIPS mode, add plaintext fallback for RC4 usages and taint
- Resolves: #1570600
-
Tue Jul 10 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-33
- Use SHA-256 instead of MD5 for audit ticket IDs
- Resolves: #1570600
-
Mon Jun 11 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-32
- Include preauth name in trace output if possible
- Update cert generation scripts to work on modern openssl
- Fix per-request preauth scoping
- Add test case for PKINIT DH renegotiation
- Echo KDC cookies in preauth tryagain
- Fall back to other preauth mechanisms after failures
- Resolves: #1540130
-
Fri Jun 08 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-31
- Add German translation
- Resolves: #1497301
-
Fri Jun 08 2018 Robbie Harwood <rharwood@redhat.com> - 1.15.1-30
- Add default pkinit_anchors value to krb5.conf
- Resolves: #1508081