1 | /*
|
---|
2 | * Unix SMB/CIFS implementation.
|
---|
3 | * kerberos utility library
|
---|
4 | *
|
---|
5 | * Copyright (C) Andrew Tridgell 2001
|
---|
6 | * Copyright (C) Remus Koos (remuskoos@yahoo.com) 2001
|
---|
7 | * Copyright (C) Luke Howard 2002-2003
|
---|
8 | * Copyright (C) Jim McDonough <jmcd@us.ibm.com> 2003
|
---|
9 | * Copyright (C) Guenther Deschner 2003-2008
|
---|
10 | * Copyright (C) Andrew Bartlett <abartlet@samba.org> 2004-2005
|
---|
11 | * Copyright (C) Jeremy Allison 2004,2007
|
---|
12 | * Copyright (C) Stefan Metzmacher 2004-2005
|
---|
13 | * Copyright (C) Nalin Dahyabhai <nalin@redhat.com> 2004
|
---|
14 | * Copyright (C) Gerald Carter 2006
|
---|
15 | *
|
---|
16 | * This program is free software; you can redistribute it and/or modify
|
---|
17 | * it under the terms of the GNU General Public License as published by
|
---|
18 | * the Free Software Foundation; either version 3 of the License, or
|
---|
19 | * (at your option) any later version.
|
---|
20 | *
|
---|
21 | * This program is distributed in the hope that it will be useful,
|
---|
22 | * but WITHOUT ANY WARRANTY; without even the implied warranty of
|
---|
23 | * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
---|
24 | * GNU General Public License for more details.
|
---|
25 | *
|
---|
26 | * You should have received a copy of the GNU General Public License
|
---|
27 | * along with this program. If not, see <http://www.gnu.org/licenses/>.
|
---|
28 | */
|
---|
29 |
|
---|
30 | #ifndef _LIBADS_KERBEROS_PROTO_H_
|
---|
31 | #define _LIBADS_KERBEROS_PROTO_H_
|
---|
32 |
|
---|
33 | struct PAC_LOGON_INFO;
|
---|
34 |
|
---|
35 | #include "libads/ads_status.h"
|
---|
36 |
|
---|
37 | /* The following definitions come from libads/kerberos_verify.c */
|
---|
38 |
|
---|
39 | NTSTATUS ads_verify_ticket(TALLOC_CTX *mem_ctx,
|
---|
40 | const char *realm,
|
---|
41 | time_t time_offset,
|
---|
42 | const DATA_BLOB *ticket,
|
---|
43 | char **principal,
|
---|
44 | struct PAC_LOGON_INFO **logon_info,
|
---|
45 | DATA_BLOB *ap_rep,
|
---|
46 | DATA_BLOB *session_key,
|
---|
47 | bool use_replay_cache);
|
---|
48 |
|
---|
49 | /* The following definitions come from libads/kerberos.c */
|
---|
50 |
|
---|
51 | int kerberos_kinit_password_ext(const char *principal,
|
---|
52 | const char *password,
|
---|
53 | int time_offset,
|
---|
54 | time_t *expire_time,
|
---|
55 | time_t *renew_till_time,
|
---|
56 | const char *cache_name,
|
---|
57 | bool request_pac,
|
---|
58 | bool add_netbios_addr,
|
---|
59 | time_t renewable_time,
|
---|
60 | NTSTATUS *ntstatus);
|
---|
61 | int ads_kdestroy(const char *cc_name);
|
---|
62 | char* kerberos_standard_des_salt( void );
|
---|
63 | bool kerberos_secrets_store_des_salt( const char* salt );
|
---|
64 | char* kerberos_secrets_fetch_des_salt( void );
|
---|
65 | char *kerberos_get_default_realm_from_ccache( void );
|
---|
66 | char *kerberos_get_realm_from_hostname(const char *hostname);
|
---|
67 |
|
---|
68 | bool kerberos_secrets_store_salting_principal(const char *service,
|
---|
69 | int enctype,
|
---|
70 | const char *principal);
|
---|
71 | int kerberos_kinit_password(const char *principal,
|
---|
72 | const char *password,
|
---|
73 | int time_offset,
|
---|
74 | const char *cache_name);
|
---|
75 | bool create_local_private_krb5_conf_for_domain(const char *realm,
|
---|
76 | const char *domain,
|
---|
77 | const char *sitename,
|
---|
78 | struct sockaddr_storage *pss,
|
---|
79 | const char *kdc_name);
|
---|
80 |
|
---|
81 | /* The following definitions come from libads/authdata.c */
|
---|
82 |
|
---|
83 | NTSTATUS kerberos_return_pac(TALLOC_CTX *mem_ctx,
|
---|
84 | const char *name,
|
---|
85 | const char *pass,
|
---|
86 | time_t time_offset,
|
---|
87 | time_t *expire_time,
|
---|
88 | time_t *renew_till_time,
|
---|
89 | const char *cache_name,
|
---|
90 | bool request_pac,
|
---|
91 | bool add_netbios_addr,
|
---|
92 | time_t renewable_time,
|
---|
93 | const char *impersonate_princ_s,
|
---|
94 | struct PAC_LOGON_INFO **logon_info);
|
---|
95 |
|
---|
96 | /* The following definitions come from libads/krb5_setpw.c */
|
---|
97 |
|
---|
98 | ADS_STATUS ads_krb5_set_password(const char *kdc_host, const char *princ,
|
---|
99 | const char *newpw, int time_offset);
|
---|
100 | ADS_STATUS kerberos_set_password(const char *kpasswd_server,
|
---|
101 | const char *auth_principal, const char *auth_password,
|
---|
102 | const char *target_principal, const char *new_password,
|
---|
103 | int time_offset);
|
---|
104 |
|
---|
105 | #endif /* _LIBADS_KERBEROS_PROTO_H_ */
|
---|