summaryrefslogtreecommitdiff
path: root/source4/heimdal/lib/hx509/cert.c
diff options
context:
space:
mode:
authorStefan Metzmacher <metze@samba.org>2012-12-01 15:10:38 +0100
committerMichael Adam <obnox@samba.org>2012-12-02 18:30:47 +0100
commit8ababf4367eb4faaeeda6cf66191aaf66a3a69da (patch)
tree8a835f38425a46f7b3d5fc594b682a56394b3992 /source4/heimdal/lib/hx509/cert.c
parent057c56ac2443abffbe169b06a72a93f41096fb67 (diff)
downloadsamba-8ababf4367eb4faaeeda6cf66191aaf66a3a69da.tar.gz
samba-8ababf4367eb4faaeeda6cf66191aaf66a3a69da.tar.bz2
samba-8ababf4367eb4faaeeda6cf66191aaf66a3a69da.zip
s4:dsdb/descriptor: NULL out user_descriptor elements depending on the sd_flags
A client can send a full security_descriptor while just passing sd_flags of SECINFO_DACL. We need to NULL out elements which will be ignored depending on the sd_flags and may set the old owner/group sids. Otherwise the calculation of the DACL/SACL can replace CREATOR_OWNER with the wrong sid. Signed-off-by: Stefan Metzmacher <metze@samba.org> Reviewed-by: Michael Adam <obnox@samba.org>
Diffstat (limited to 'source4/heimdal/lib/hx509/cert.c')
0 files changed, 0 insertions, 0 deletions