Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2012-08-28 | s4-classicupgrade: Do the setting of the sysvol ACLs last, after idmap is ↵ | Andrew Bartlett | 2 | -7/+14 | |
configured This will allow files to be correctly owned by the idmap that is imported. This appears to fix an issue that came up after s3fs-compatible ACLs were merged into provision. Andrew Bartlett | |||||
2012-08-28 | s3-passdb: Allow reload of the static passdb from python | Andrew Bartlett | 3 | -2/+23 | |
This is then used in provision when the passdb backend is forced. Andrew Bartlett | |||||
2012-08-28 | auth/credentials: Rework credentials handling to try and find the most ↵ | Andrew Bartlett | 1 | -33/+71 | |
recent machine pw As winbindd will update secrets.tdb but not secrets.ldb, we need to detect this and use secrets.tdb Andrew Bartlett | |||||
2012-08-28 | selftest: Add test of smbclient --machine-pass against and using both s3 and s4 | Andrew Bartlett | 5 | -0/+62 | |
This uses both smbclient binaries to ensure that both work in both environments. Andrew Bartlett | |||||
2012-08-28 | auth/credentials: Expand secrets.tdb fetch of secrets to preserve ↵ | Andrew Bartlett | 1 | -0/+4 | |
workstation and realm These would otherwise be set during the fetch from the secrets.ldb, but are wiped when that fails. Andrew Bartlett | |||||
2012-08-28 | s4-dsdb: Remove double-free in update_keytab module | Andrew Bartlett | 1 | -2/+0 | |
2012-08-28 | s4-dsdb: Add secrets_tdb_sync - an ldb module to keep secrets.tdb in sync | Andrew Bartlett | 6 | -2/+543 | |
secrets_tdb_sync is a new ldb module designed to sync secrets.ldb entries with the secrets.tdb file. While not ideal to keep two copies of this data, this routine will assist in allowing the samba-tool domain join code to operate correctly in most cases where winbindd and smbd are used. Andrew Bartlett | |||||
2012-08-28 | s3-secrets: Use talloc_stackframe() in secrets_init_path() | Andrew Bartlett | 1 | -3/+6 | |
2012-08-28 | s3-secrets: Handle all valid ROLE_ values in get_default_sec_channel() | Andrew Bartlett | 1 | -1/+2 | |
2012-08-28 | s3-secrets: Add helper function to set machine account password from ↵ | Andrew Bartlett | 2 | -0/+92 | |
secrets_tdb_sync secrets_tdb_sync will be a new ldb module designed to sync secrets.ldb entries with the secrets.tdb file. While not ideal to keep two copies of this data, this routine will assist in allowing the samba-tool domain join code to operate correctly in most cases where winbindd and smbd are used. Andrew Bartlett | |||||
2012-08-28 | lib/krb5_wrap: Move enctype conversion functions into a simple helper file | Andrew Bartlett | 5 | -81/+109 | |
2012-08-28 | s4-classicupgrade: Read WINS DB before the provision | Andrew Bartlett | 1 | -6/+7 | |
2012-08-28 | s4-classicupgrade: Do all the queries of data before the provision() | Andrew Bartlett | 1 | -35/+35 | |
This allows provision to change the s3 smb.conf settings if required. Andrew Bartlett | |||||
2012-08-28 | s4-classicupgrade: Use s3param.get_context() instead of result.lp | Andrew Bartlett | 1 | -1/+1 | |
We should not need the guessed values here, but by changing to using the s3 loadparm context we can move this block to before the provision. Andrew Bartlett | |||||
2012-08-28 | lib/krb5_wrap: Move kerberos_enctype_to_bitmap() into krb5_wrap | Andrew Bartlett | 3 | -20/+23 | |
2012-08-28 | lib/krb5_wrap: Bring list of all enc types into krb5_wrap | Andrew Bartlett | 3 | -10/+17 | |
2012-08-28 | s4-libnet: Ensure termination of enctype array in libnet_export_keytab() | Andrew Bartlett | 1 | -1/+2 | |
2012-08-28 | examples: Remove security=share and security=server from example smb.conf | Andrew Bartlett | 1 | -1/+1 | |
2012-08-28 | s3-param: Avoid assert on use of talloc_tos() without stackframe | Andrew Bartlett | 1 | -2/+3 | |
This is hit during samba-tool domain classicupgrade Andrew Bartlett | |||||
2012-08-27 | s4-torture: Test for #9058 | Volker Lendecke | 2 | -0/+73 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> Autobuild-User(master): Stefan Metzmacher <metze@samba.org> Autobuild-Date(master): Mon Aug 27 17:43:09 CEST 2012 on sn-devel-104 | |||||
2012-08-25 | s4:winbind: let wb_update_rodc_dns_send/recv use netlogon_queue (bug #9097) | Stefan Metzmacher | 1 | -3/+30 | |
metze Autobuild-User(master): Stefan Metzmacher <metze@samba.org> Autobuild-Date(master): Sat Aug 25 05:06:18 CEST 2012 on sn-devel-104 | |||||
2012-08-25 | s4:winbind: let wb_sam_logon_send/recv() use the netlogon_queue (bug #9097) | Stefan Metzmacher | 1 | -3/+30 | |
metze | |||||
2012-08-25 | s4:winbind: add a netlogon_queue (tevent_queue) | Stefan Metzmacher | 2 | -0/+12 | |
This will protect the netlogon_creds later. metze | |||||
2012-08-25 | s4:winbind: convert wb_update_rodc_dns_send/recv to tevent_req | Stefan Metzmacher | 2 | -78/+122 | |
metze | |||||
2012-08-25 | s4:winbind: convert wb_sam_logon_send/recv to tevent_req | Stefan Metzmacher | 3 | -93/+140 | |
metze | |||||
2012-08-25 | s4:winbind: convert wb_sid2domain to tevent_req internally | Stefan Metzmacher | 1 | -74/+174 | |
The public wrapper still uses composite_context, because I don't have time to fix all the callers... metze | |||||
2012-08-25 | s4:librpc/rpc: don't do async requests if gensec doesn't support async ↵ | Stefan Metzmacher | 1 | -0/+32 | |
replies (bug #9097) metze | |||||
2012-08-25 | s4:librpc/rpc: also call dcerpc_schedule_io_trigger() after bind and ↵ | Stefan Metzmacher | 1 | -0/+7 | |
alter_context responses metze | |||||
2012-08-25 | s4:librpc/rpc: use dcerpc_req_dequeue() in dcerpc_request_recv_data() | Stefan Metzmacher | 1 | -1/+1 | |
metze | |||||
2012-08-25 | s4:librpc/rpc: use talloc_zero for 'struct rpc_request' | Stefan Metzmacher | 1 | -11/+1 | |
metze | |||||
2012-08-25 | libcli/smb: split out a smb_transport private library | Stefan Metzmacher | 1 | -3/+15 | |
metze | |||||
2012-08-25 | libcli/smb: wscript_build => wscript | Stefan Metzmacher | 1 | -1/+2 | |
We'll need some configure checks in future. metze | |||||
2012-08-24 | Remove useless bool "upper_case_domain" parameter from ntv2_owf_gen(). | Jeremy Allison | 3 | -13/+3 | |
The code in SMBNTLMv2encrypt_hash() should not be requesting case changes on the domain name. Autobuild-User(master): Jeremy Allison <jra@samba.org> Autobuild-Date(master): Fri Aug 24 21:39:42 CEST 2012 on sn-devel-104 | |||||
2012-08-24 | Remove useless bool "upper_case_domain" parameter. | Jeremy Allison | 1 | -13/+2 | |
2012-08-24 | Move uppercasing the domain out of smb_pwd_check_ntlmv2() | Jeremy Allison | 1 | -9/+21 | |
Allows us to remove a silly bool parameter. Based on work done by "Blohm, Guntram (I/FP-37, extern)" <extern.guntram.blohm@audi.de>. | |||||
2012-08-24 | s3:lib: make sure we don't try to send messages to server_id's marked as ↵ | Stefan Metzmacher | 1 | -0/+4 | |
disconnected metze Autobuild-User(master): Stefan Metzmacher <metze@samba.org> Autobuild-Date(master): Fri Aug 24 15:54:48 CEST 2012 on sn-devel-104 | |||||
2012-08-24 | s3:lib: remove unused processes_exist() | Stefan Metzmacher | 1 | -70/+0 | |
metze | |||||
2012-08-24 | s3:lib: readd the CTDB_CONTROL_CHECK_SRVIDS optimization to serverids_exist() | Stefan Metzmacher | 1 | -0/+45 | |
metze | |||||
2012-08-24 | s3:lib: only loop over the server_ids we need to verify in serverids_exist() | Stefan Metzmacher | 1 | -11/+23 | |
metze | |||||
2012-08-24 | s3:lib: use server_id_is_disconnected() in serverids_exist() | Stefan Metzmacher | 1 | -0/+4 | |
metze | |||||
2012-08-24 | s3:lib: inline processes_exist() into serverids_exist() | Stefan Metzmacher | 1 | -14/+99 | |
metze | |||||
2012-08-24 | s3:lib: SERVERID_UNIQUE_ID_NOT_TO_VERIFY only means not to verify the ↵ | Stefan Metzmacher | 1 | -3/+4 | |
'unique_id' part It doesn't mean the the server_id is always valid. metze | |||||
2012-08-24 | lib/util: don't SMB_ASSERT() in process_exists_by_pid() | Stefan Metzmacher | 1 | -1/+3 | |
Just return false... metze | |||||
2012-08-24 | s3:lib: implement process_exists() as wrapper of serverid_exists() | Stefan Metzmacher | 1 | -14/+2 | |
The changes the behavior of process_exists() it checks the pid.unique_id now, if it's not SERVERID_UNIQUE_ID_NOT_TO_VERIFY. metze | |||||
2012-08-24 | s3:g_lock: use serverid_exists() with SERVERID_UNIQUE_ID_NOT_TO_VERIFY | Stefan Metzmacher | 1 | -1/+10 | |
metze | |||||
2012-08-24 | s3:lib: implement serverid_exists() as wrapper of serverids_exist() | Stefan Metzmacher | 1 | -30/+5 | |
metze | |||||
2012-08-24 | s3:lib: remove CTDB_CONTROL_CHECK_SRVIDS optimization in serverids_exist() ↵ | Stefan Metzmacher | 1 | -6/+0 | |
for now This will be readded... metze | |||||
2012-08-24 | lib/param: fix usage of 'write list = +Group' | Stefan Metzmacher | 1 | -2/+8 | |
metze Autobuild-User(master): Björn Jacke <bj@sernet.de> Autobuild-Date(master): Fri Aug 24 11:28:17 CEST 2012 on sn-devel-104 | |||||
2012-08-23 | s3: fix compile warning on openindiana | Björn Jacke | 1 | -5/+5 | |
Autobuild-User(master): Björn Jacke <bj@sernet.de> Autobuild-Date(master): Thu Aug 23 18:22:13 CEST 2012 on sn-devel-104 | |||||
2012-08-23 | crypto/aes_ccm_128: fix compile warning on openindiana | Björn Jacke | 1 | -1/+1 | |