tests/krb5: Add KDCOptions flag for constrained delegation
authorJoseph Sutton <josephsutton@catalyst.net.nz>
Wed, 1 Sep 2021 04:05:39 +0000 (16:05 +1200)
committerAndrew Bartlett <abartlet@samba.org>
Mon, 13 Sep 2021 23:11:35 +0000 (23:11 +0000)
Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Isaac Boukris <iboukris@samba.org>
python/samba/tests/krb5/rfc4120.asn1
python/samba/tests/krb5/rfc4120_pyasn1.py

index a37011ae932aaceccfc5697c0108cd5f9624df0f..e0831e1f86fc0e3a8c60d9dec048d961173d39a1 100644 (file)
@@ -632,6 +632,7 @@ KDCOptionsValues      ::= BIT STRING { -- KerberosFlags
         opt-hardware-auth(11),
         unused12(12),
         unused13(13),
+        cname-in-addl-tkt(14),
 -- Canonicalize is used by RFC 6806
         canonicalize(15),
 -- 26 was unused in 1510
index a9e4bcbb18ffc1892c1144dd7e33cb018a953e9c..348dd8c63fb5d7ac1f65de512dfa6e677c47e1b8 100644 (file)
@@ -649,6 +649,7 @@ KDCOptionsValues.namedValues = namedval.NamedValues(
     ('opt-hardware-auth', 11),
     ('unused12', 12),
     ('unused13', 13),
+    ('cname-in-addl-tkt', 14),
     ('canonicalize', 15),
     ('disable-transited-check', 26),
     ('renewable-ok', 27),