When MS-PAC structure is created, we get passed the time of authentication from KDC. Use this to record logon time in MS-PAC structure.
Set allow password change time to the last password change. We need to refer to the actual password policy here in future.
Also use INT64_MAX to represent the resulting value for logoff and kickoff times according to MS-PAC 2.6.
Metadata Update from @abbra: - Issue assigned to abbra
Metadata Update from @abbra: - Issue tagged with: trust
master:
ipa-4-9:
Metadata Update from @rcritten: - Issue close_status updated to: fixed - Issue status updated to: Closed (was: Open)
Metadata Update from @abbra: - Custom field changelog adjusted to Trust to Active Directory support was improved to be more compatible with AD DC queries: lookup groups via LSA RPCs, allow user principal name lookups, more complete PAC record generation.