2000-01-09 20:58:00 +00:00
|
|
|
-*- indented-text -*-
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
$Id: TODO,v 1.55 2001/01/30 22:51:32 assar Exp $
|
2000-01-09 20:58:00 +00:00
|
|
|
|
|
|
|
* configure
|
|
|
|
|
|
|
|
use more careful checking before starting to use berkeley db. it only
|
|
|
|
makes sense to do so if we have the appropriate library and the header
|
|
|
|
file.
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
handle readline hiding in readline/readline.h
|
2000-01-09 20:58:00 +00:00
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
* appl
|
2000-01-09 20:58:00 +00:00
|
|
|
|
|
|
|
** appl/popper
|
|
|
|
|
|
|
|
Implement RFC1731 and 1734, pop over GSS-API
|
|
|
|
|
|
|
|
* doc
|
|
|
|
|
|
|
|
* kdc
|
|
|
|
|
|
|
|
* kadmin
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
make it happy with reading and parsing kdc.conf
|
|
|
|
|
2000-01-09 20:58:00 +00:00
|
|
|
is in need of a major cleanup
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
* kpasswdd
|
|
|
|
|
|
|
|
figure out what's the deal with do_sequence and the MIT client
|
|
|
|
|
2000-01-09 20:58:00 +00:00
|
|
|
* lib
|
|
|
|
|
|
|
|
** lib/asn1
|
|
|
|
|
|
|
|
prepend a prefix on all generated symbols
|
|
|
|
|
|
|
|
** lib/auth
|
|
|
|
|
|
|
|
PAM
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
** lib/com_err
|
|
|
|
|
|
|
|
write a man-page
|
|
|
|
|
2000-01-09 20:58:00 +00:00
|
|
|
** lib/des
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
make everything work with openssl and make prototypes compatible
|
|
|
|
|
2000-01-09 20:58:00 +00:00
|
|
|
** lib/gssapi
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
process_context_token, add_cred, inquire_cred_by_mech,
|
|
|
|
inquire_names_for_mech, and
|
2000-01-09 20:58:00 +00:00
|
|
|
inquire_mechs_for_name not implemented.
|
|
|
|
|
|
|
|
set minor_status in all functions
|
|
|
|
|
|
|
|
anonymous credentials not implemented
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
add rc4
|
|
|
|
|
2000-01-09 20:58:00 +00:00
|
|
|
** lib/hdb
|
|
|
|
|
|
|
|
** lib/kadm5
|
|
|
|
|
|
|
|
add policies?
|
|
|
|
|
|
|
|
fix to use rpc?
|
|
|
|
|
|
|
|
** lib/krb5
|
|
|
|
|
2000-02-24 11:07:16 +00:00
|
|
|
rewrite the lookup of KDCs to handle kerberos-<n> and not do any DNS
|
|
|
|
requests if the information can be found locally. this requires stop
|
|
|
|
using krb5_get_krbhst.
|
|
|
|
|
2000-01-09 20:58:00 +00:00
|
|
|
the replay cache is, in its current state, not very useful
|
|
|
|
|
|
|
|
always generates a new subkey in an authenticator
|
|
|
|
|
|
|
|
should the sequence numbers be XORed?
|
|
|
|
|
|
|
|
OTP?
|
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
make checksum/encryption type configuration more realm-specific. make
|
|
|
|
some simple way of handling the w2k situtation
|
|
|
|
|
|
|
|
crypto: allow scather/gather creation of checksums
|
2000-01-09 20:58:00 +00:00
|
|
|
|
2001-02-13 16:46:19 +00:00
|
|
|
** lib/roken
|