logo_kerberos.gif

Difference between revisions of "Release 1.15"

From K5Wiki
Jump to: navigation, search
(New page: == Timeline == This is only an approximate timeline. Dates are subject to change. * Jul. 2016 -- cutoff for submitting contributions for review * Aug. 2016 -- make release branch: featur...)
 
 
(One intermediate revision by the same user not shown)
Line 8: Line 8:
   
 
== Code quality ==
 
== Code quality ==
  +
  +
* Clean up numerous compilation warnings
   
 
== Developer experience ==
 
== Developer experience ==
Line 15: Line 17:
 
== Administrator experience ==
 
== Administrator experience ==
   
* systemd integration
 
  +
* Allow extraction of current keys without change (requires a special kadmin permission), with the exception of highly protected keys
* PKINIT auto-detection(?) of client principal via matching rules
 
  +
* Restore recursive dump capability for DB2 back end
* SystemTap and DTrace probes
 
 
* [[Projects/KDC Discovery]] DNS auto-discovery of HTTP proxy
  +
* Implement password history for LDAP back end
  +
* Implement principal renaming in LDAP back end
   
 
== Performance ==
 
== Performance ==
Line 23: Line 27:
 
== Protocol evolution ==
 
== Protocol evolution ==
   
* DNS auto-discovery of HTTP proxy
 
  +
* AES-SHA2 enctypes (Suite B crypto)

Latest revision as of 16:15, 7 October 2016

Timeline

This is only an approximate timeline. Dates are subject to change.

  • Jul. 2016 -- cutoff for submitting contributions for review
  • Aug. 2016 -- make release branch: feature integration freeze
  • Oct. 2016 -- final release

Code quality

  • Clean up numerous compilation warnings

Developer experience

End-user experience

Administrator experience

  • Allow extraction of current keys without change (requires a special kadmin permission), with the exception of highly protected keys
  • Restore recursive dump capability for DB2 back end
  • Projects/KDC Discovery DNS auto-discovery of HTTP proxy
  • Implement password history for LDAP back end
  • Implement principal renaming in LDAP back end

Performance

Protocol evolution

  • AES-SHA2 enctypes (Suite B crypto)