diff options
author | Stefan Metzmacher <metze@samba.org> | 2012-12-01 15:10:38 +0100 |
---|---|---|
committer | Michael Adam <obnox@samba.org> | 2012-12-02 18:30:47 +0100 |
commit | 8ababf4367eb4faaeeda6cf66191aaf66a3a69da (patch) | |
tree | 8a835f38425a46f7b3d5fc594b682a56394b3992 /source4/heimdal/lib/hx509/ocsp.asn1 | |
parent | 057c56ac2443abffbe169b06a72a93f41096fb67 (diff) | |
download | samba-8ababf4367eb4faaeeda6cf66191aaf66a3a69da.tar.gz samba-8ababf4367eb4faaeeda6cf66191aaf66a3a69da.tar.bz2 samba-8ababf4367eb4faaeeda6cf66191aaf66a3a69da.zip |
s4:dsdb/descriptor: NULL out user_descriptor elements depending on the sd_flags
A client can send a full security_descriptor while just passing
sd_flags of SECINFO_DACL.
We need to NULL out elements which will be ignored depending on
the sd_flags and may set the old owner/group sids. Otherwise
the calculation of the DACL/SACL can replace CREATOR_OWNER with
the wrong sid.
Signed-off-by: Stefan Metzmacher <metze@samba.org>
Reviewed-by: Michael Adam <obnox@samba.org>
Diffstat (limited to 'source4/heimdal/lib/hx509/ocsp.asn1')
0 files changed, 0 insertions, 0 deletions