mirror of
git://slackware.nl/current.git
synced 2024-12-28 09:59:53 +01:00
f6348b0bc1
a/aaa_elflibs-15.0-x86_64-19.txz: Rebuilt. Upgraded: libcap.so.2.31, libgmp.so.10.4.0, libgmpxx.so.4.6.0. Added: libgssapi_krb5.so.2.2, libk5crypto.so.3.1, libkrb5.so.3.3, libkrb5support.so.0.1. a/util-linux-2.35-x86_64-1.txz: Upgraded. d/python-pip-20.0.1-x86_64-1.txz: Upgraded. l/Mako-1.1.1-x86_64-1.txz: Upgraded. l/keyutils-1.6.1-x86_64-1.txz: Upgraded. n/krb5-1.17-x86_64-1.txz: Added. Nothing links to this yet, but we'll need it soon enough. :-) n/php-7.4.2-x86_64-1.txz: Upgraded. This update fixes bugs and security issues: Standard: OOB read in php_strip_tags_ex Mbstring: global buffer-overflow in 'mbfl_filt_conv_big5_wchar' For more information, see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7059 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-7060 (* Security fix *) n/samba-4.11.5-x86_64-1.txz: Upgraded. This update fixes the following security issues: Replication of ACLs set to inherit down a subtree on AD Directory not automatic. Crash after failed character conversion at log level 3 or above. Use after free during DNS zone scavenging in Samba AD DC. For more information, see: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14902 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14907 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-19344 (* Security fix *) xap/gparted-1.1.0-x86_64-1.txz: Upgraded.
35 lines
1.1 KiB
Text
35 lines
1.1 KiB
Text
[kdcdefaults]
|
|
kdc_listen = 88
|
|
kdc_tcp_listen = 88
|
|
|
|
[realms]
|
|
ATHENA.MIT.EDU = {
|
|
kadmind_port = 749
|
|
max_life = 12h 0m 0s
|
|
max_renewable_life = 7d 0h 0m 0s
|
|
master_key_type = aes256-cts-hmac-sha1-96
|
|
supported_enctypes = aes256-cts-hmac-sha1-96:normal aes128-cts-hmac-sha1-96:normal
|
|
database_module = openldap_ldapconf
|
|
}
|
|
|
|
[logging]
|
|
kdc = FILE:/var/kerberos/krb5kdc/kdc.log
|
|
admin_server = FILE:/var/kerberos/krb5kdc/kadmin.log
|
|
|
|
[dbdefaults]
|
|
ldap_kerberos_container_dn = cn=krbcontainer,dc=mit,dc=edu
|
|
|
|
[dbmodules]
|
|
openldap_ldapconf = {
|
|
db_library = kldap
|
|
disable_last_success = true
|
|
ldap_kdc_dn = "cn=krbadmin,dc=mit,dc=edu"
|
|
# this object needs to have read rights on
|
|
# the realm container and principal subtrees
|
|
ldap_kadmind_dn = "cn=krbadmin,dc=mit,dc=edu"
|
|
# this object needs to have read and write rights on
|
|
# the realm container and principal subtrees
|
|
ldap_service_password_file = /etc/kerberos/service.keyfile
|
|
ldap_servers = ldaps://kerberos.mit.edu
|
|
ldap_conns_per_server = 5
|
|
}
|