Enable SPAKE on clients and servers. In its current form, SPAKE makes brute force attacks on passwords infeasible and makes Kerberos less reliant on time synchronization. More information: https://datatracker.ietf.org/doc/draft-ietf-kitten-krb-spake-preauth/?include_text=1
Improve protections for internal, sensitive buffers.
Improve internal hex-encoding/decoding support.
Please log in to add feedback.
This update has been submitted for testing by rharwood.
This update has obsoleted krb5-1.16-12.fc28, and has inherited its bugs and notes.
This update has been pushed to testing.
This update has been obsoleted by krb5-1.16-18.fc28.