heimdal-kcm - Heimdal Kerberos - KCM daemon

Heimdal is a free implementation of Kerberos 5 that aims to be
compatible with MIT Kerberos.
This package includes the KCM daemon which can hold the credentials
for all users in the system. Access control is done with Unix-like
permissions. The daemon checks the access on all operations based on
the UID and GID of the user. The tickets are renewed as long as is
permitted by the KDC's policy.


2018-10-28 - Hilko Bengen <bengen@debian.org>
heimdal (7.5.0+dfsg-2.1) unstable; urgency=medium
* Non-maintainer upload
* Add patch to create headers before building (Closes: 906623)
2018-06-02 - Brian May <bam@debian.org>
heimdal (7.5.0+dfsg-2) unstable; urgency=medium
* Replace "MAXHOSTNAMELEN" with "MaxHostNameLen" in kdc/kx509.c for The
Hurd. Closes: #900079.
2017-12-15 - Dominik George <nik@naturalnet.de>
heimdal (7.5.0+dfsg-1) unstable; urgency=high
* New upstream version. (Closes: #850723)
+ CVE-2017-17439: Remote unauthenticated DoS in Heimdal-KDC 7.4
(Closes: #878144, #868157)
+ Refresh patches.
* Bump Standards-Version to 4.1.2 and compat level to 10.
+ Remove explicit reference to dh-autoreconf.
* Use uscan to get orig source.
+ Refrain from mangling some bundled RFC texts;
just exclude the mas they are not installed into any binary anyway.
+ Update d/copyright to DEP-5.
+ Can now use standard uscan/gbp/pristine-tar workflow.
* Fix some lintian errors/warnings.
+ Strip trailing whitespace from changelog.
+ Fix some duplicate long descriptions.
+ Use optional priority everywhere.
+ Update/remove some overrides.
+ Enforce set -e in maintainer scripts.
+ Enable hardening.
* Migrate to -dbgsym.
* Add myself to uploaders.
2017-07-23 - Brian May <bam@debian.org>
heimdal (7.4.0.dfsg.1-2) unstable; urgency=medium
[ Jelmer Vernooij ]
* Remove myself from uploaders.
[ Brian May ]
* Be explicit with heimdal.mkey filename in postinst. Closes: #868638.
* Tests should respect DEB_BUILD_OPTIONS=nocheck.  Closes: #868842.
2017-07-15 - Brian May <bam@debian.org>
heimdal (7.4.0.dfsg.1-1) unstable; urgency=high
* New upstream version.
* Update standards version to 4.0.0.
* CVE-2017-11103: Fix Orpheus' Lyre KDC-REP service name validation.
(Closes: #868208).
2017-04-26 - Brian May <bam@debian.org>
heimdal (7.1.0+dfsg-13) unstable; urgency=medium
* Add missing symbols base64_decode and base64_encode back into
libroken. Closes: #848694.
2017-04-10 - Brian May <bam@debian.org>
heimdal (7.1.0+dfsg-12) unstable; urgency=high
* Fix transit path validation CVE-2017-6594.
2017-04-08 - Brian May <bam@debian.org>
heimdal (7.1.0+dfsg-11) unstable; urgency=medium
* Remove legacy provides/conflicts/replaces headers. Old daemons
such as ftp have been removed. Closes: #236902, #859664.
2017-01-08 - Jelmer Vernooij <jelmer@debian.org>
heimdal (7.1.0+dfsg-9) unstable; urgency=medium
* Switch back to collab-maint URL until pkg-heimdal permissions are
fixed, switch to HTTPS Git URL. Closes: #850652
* Fix regression in krb5-config introduced by canonical_host patch.
Closes: #850653
2017-01-08 - Jelmer Vernooij <jelmer@debian.org>
heimdal (7.1.0+dfsg-8) experimental; urgency=medium
* Re-enable build on MIPS.

