[pubcookie-dev] proposed items for pubcookie 3.3.0
Nathan Dors
dors at cac.washington.edu
Wed Oct 12 16:41:12 PDT 2005
Here's a quick update on what I think we should try to accomplish
with the 3.3.0 release. This first batch of items are in progress:
- SSL cert authentication for ldap verifier (Jon)
- pbc_time_t, a better fix for 64-bit systems (Jon?)
- make login cgi iterate thru pubcookie_l cookies (UWisc)
- new eventlog source names for filter instances (UWash)
- use of LDAP_API_VERSION instead of LDAP_VENDOR_VERSION (Jon?)
- solve filter root site protection inheritance problems
- proper documentation for ldap_uri as list of failover uris
- document new features and changes
These items have already been checked into cvs, but may need
further testing, documenting, etc.:
- AES encryption support
- wildcard subdomain key support to login cgi and module
- Klas Lindfors' patch for extending krb5 ticket lifetime
- removed pre-session cookie handling for POST login method
- login cgi support for PUBCOOKIE_LOGIN_CONFIG_FILE variable
- changed minimum LDAP_VENDOR_VERSION for Sun LDAP libs
- minor login cgi fixes: error handling, cookie clearing
- initial fixes for 64-bit systems (time_t to int)
- removed remnants of Enterprise_Domain from MMC extension
- other minor changes and fixes I don't have handy
This seems like a good place to draw the line and get this stuff
released. We can take up the issue of what's next separately.
Agreed? Any other items or comments?
-Nathan
More information about the pubcookie-dev
mailing list