Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2009-07-28 | s4:gensec/spnego: only generate the mechListMic when the server expects it | Stefan Metzmacher | 1 | -1/+2 | |
This fixes the ntvfs.cifs tests. metze | |||||
2009-07-28 | Fix compile of py_net.c | Andrew Bartlett | 1 | -1/+3 | |
2009-07-28 | s4:libnet Add in a 'credentials' parameter for python libnet_Join | Andrew Bartlett | 1 | -7/+20 | |
2009-07-28 | s4:tls Enable GnuTLS back to version 1.4 (an into the future) | Andrew Bartlett | 1 | -1/+1 | |
We think we have the bug fixed. Andrew Bartlett | |||||
2009-07-28 | s4:kerberos Add support for user principal names in certificates | Andrew Bartlett | 8 | -42/+161 | |
This extends the PKINIT code in Heimdal to ask the HDB layer if the User Principal Name name in the certificate is an alias (perhaps just by case change) of the name given in the AS-REQ. (This was a TODO in the Heimdal KDC) The testsuite is extended to test this behaviour, and the other PKINIT certficate (using the standard method to specify a principal name in a certificate) is updated to use a Administrator (not administrator). (This fixes the kinit test). Andrew Bartlett | |||||
2009-07-28 | s4:kerberos Add 'net export keytab' command for wireshark decryption | Andrew Bartlett | 16 | -39/+419 | |
It is much easier to do decryption with wireshark when the keytab is available for every host in the domain. Running 'net export keytab <keytab name>' will export the current (as pointed to by the supplied smb.conf) local Samba4 doamin. (This uses Heimdal's 'hdb' keytab and then the existing hdb-samba4, and so has a good chance of keeping working in the long term). Andrew Bartlett | |||||
2009-07-27 | Fix the build breakage by #including modules/vfs_acl_common.c | Jeremy Allison | 5 | -50/+33 | |
into acl_tdb and acl_xattr. Duplicates the code size, but keeps the code in common so I don't have to do bug fixes in two places (which is what I really cared about). Jeremy. | |||||
2009-07-27 | s3: net ads user info should print primary group as well (bug #2658) | Kai Blin | 1 | -15/+57 | |
Thanks to Pavel V. Rochnyack <rpv@muma.tusur.ru> for reporting this and offering an initial patch. | |||||
2009-07-27 | umount.cifs: do not attempt to update /etc/mtab if it is symbolic link | Shirish Pargaonkar | 1 | -3/+4 | |
If /etc/mtab is a symbolic link to e.g. /proc/mounts, do not update it. This is a fix for a bug reported in 4675 on samba bugzilla Signed-off-by: Shirish Pargaonkar <shirishpargaonkar@gmail.com> | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_InitializeFileTransferAsync() | Stefan Metzmacher | 1 | -1/+79 | |
metze | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_AsyncPoll() | Stefan Metzmacher | 1 | -1/+32 | |
metze | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_RequestVersionVector() | Stefan Metzmacher | 1 | -1/+19 | |
metze | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_RequestUpdates() | Stefan Metzmacher | 1 | -1/+54 | |
metze | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_EstablishSession | Stefan Metzmacher | 1 | -1/+4 | |
metze | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_EstablishConnection() | Stefan Metzmacher | 1 | -1/+17 | |
metze | |||||
2009-07-27 | frstrans.idl: add definition of frstrans_CheckConnectivity() | Stefan Metzmacher | 1 | -1/+4 | |
metze | |||||
2009-07-27 | librpc: rerun "make idl_full" | Stefan Metzmacher | 6 | -14/+14 | |
metze | |||||
2009-07-27 | pidl: allow foo being on the wire after [length_is(foo)] uint8 *buffer | Stefan Metzmacher | 1 | -0/+4 | |
metze | |||||
2009-07-27 | pidl: add support for [string] on fixed size arrays. | Stefan Metzmacher | 3 | -2/+117 | |
midl also supports this: struct { long l1; [string] wchar_t str[16]; long l2; }; Where the wire size of str is encoded like a length_is() header: 4-byte offset == 0; 4-byte array length; The strings are zero terminated. metze | |||||
2009-07-27 | Revert "s4:kerberos Add 'net export keytab' command for wireshark decryption" | Stefan Metzmacher | 10 | -361/+8 | |
This reverts commit a40ce5d0d9d06f592a8885162bbaf644006b9f0f. This breaks the build... Andrew, please repush it, when it's fixed:-) metze | |||||
2009-07-27 | Lift the event loop in rpc_api_pipe_req() one level into cli_do_rpc_ndr | Volker Lendecke | 4 | -72/+126 | |
2009-07-27 | Fix a valgrind error in chain_reply | Volker Lendecke | 2 | -3/+12 | |
construct_reply() references the request after chain_reply has freed it. | |||||
2009-07-27 | Fix a typo | Volker Lendecke | 1 | -1/+1 | |
2009-07-27 | Fix a valgrind error in winbind | Volker Lendecke | 1 | -1/+2 | |
When looking for idle clients, we dereferenced state->response. As this is dynamically allocated now, the proper test is whether state->response exists at all. This is the case when an async operation is in process at that moment. | |||||
2009-07-27 | s4:kerberos Add test to show that we actually export the keytab | Andrew Bartlett | 3 | -1/+69 | |
While it is hard to prove it is correct, at least the new 'nettestuser' principal and the Administrator principal are correct. We had to fix the case of 'Administrator' in the selftest code to match the DB, as the keytab lookup is case sensitive. Andrew Bartlett | |||||
2009-07-27 | s4:kerberos Add 'net export keytab' command for wireshark decryption | Andrew Bartlett | 10 | -8/+361 | |
It is much easier to do decryption with wireshark when the keytab is available for every host in the domain. Running 'net export keytab <keytab name>' will export the current (as pointed to by the supplied smb.conf) local Samba4 doamin. (This uses Heimdal's 'hdb' keytab and then the existing hdb-samba4, and so has a good chance of keeping working in the long term). Andrew Bartlett | |||||
2009-07-27 | s4:kdc Push context to hdb_samba4 by way of the 'name' of the DB | Andrew Bartlett | 6 | -29/+39 | |
This overloads the 'name' part of the keytab name to supply a context pointer, and so avoids 3 global variables! To do this, we had to stop putting the entry for kpasswd into the secrets.ldb. (I don't consider this a big loss, and any entry left there by an upgrade will be harmless). Andrew Bartlett | |||||
2009-07-27 | s4:setup add 'cn' attribute to Samba4 local schema | Andrew Bartlett | 1 | -0/+4 | |
(We recently made the ms_schema.py script also add this attribute) | |||||
2009-07-27 | s4:heimdal Extend the 'hdb as a keytab' code | Andrew Bartlett | 1 | -4/+145 | |
This extends the hdb_keytab code to allow enumeration of all the keys. The plan is to allow ktutil's copy command to copy from Samba4's hdb_samba4 into a file-based keytab used in wireshark. One day, with a few more hacks, we might even make this a loadable module that can be used directly... Andrew Bartlett | |||||
2009-07-27 | s4:kdc Tidy up hdb_samba4 some more | Andrew Bartlett | 5 | -63/+90 | |
This removes the last use of the prefix hdb_ldb and makes it clear that we pass in 3 global variables to get state information into hdb_samba4 when used as a keytab. (And that they belong to hdb_samba4, not to the KDC) Andrew Bartlett | |||||
2009-07-27 | docs: fix typos in the net man page. | Michael Adam | 1 | -3/+3 | |
Noted by Oota Toshiya <t-oota@dh.jp.nec.com> . Michael | |||||
2009-07-27 | Fix some nonempty blank lines | Volker Lendecke | 1 | -105/+103 | |
2009-07-27 | Fix a valgrind error in cli_ctemp_done | Volker Lendecke | 1 | -1/+3 | |
For performance reasons cli_smb_recv does not make copies of the buffers we received from the client, so both "vwv" and "bytes" vanish with TALLOC_FREE(subreq). I know this is a bit counter-intuitive, but I think in this case it's justified not to make copies. Comments? | |||||
2009-07-26 | Fix valgrind errors in DeleteDomainGroup and DeleteDomAlias | Volker Lendecke | 1 | -4/+4 | |
2009-07-26 | Fix a valgrind error in _samr_DeleteUser | Volker Lendecke | 1 | -2/+2 | |
The close_handle invalidates uinfo | |||||
2009-07-25 | Fix a 32/64bit stack corruption bug | Volker Lendecke | 1 | -1/+1 | |
2009-07-25 | Cleanup patch after "new VFS" | Volker Lendecke | 1 | -1/+1 | |
2009-07-25 | Cleanup patch after "struct stat_ex" | Volker Lendecke | 1 | -2/+2 | |
2009-07-25 | Remove a pointless static fstring | Volker Lendecke | 1 | -5/+3 | |
2009-07-25 | No explicit initialization necessary for a zero blob | Volker Lendecke | 1 | -3/+1 | |
2009-07-25 | Move 16 bytes from data to r/o text segment | Volker Lendecke | 1 | -1/+1 | |
2009-07-25 | Fix a winbind memleak | Volker Lendecke | 1 | -0/+1 | |
2009-07-25 | Use a switch statement in charset_name() | Volker Lendecke | 1 | -8/+24 | |
2009-07-25 | Fix some nonempty blank lines | Volker Lendecke | 1 | -17/+17 | |
2009-07-25 | First patch for "new VFS" portability | Volker Lendecke | 1 | -5/+5 | |
2009-07-24 | s3: Convert a few callers of unix_convert() over to filename_convert() | Tim Prouty | 8 | -112/+90 | |
This patch also changes the unix convert flags to make sure the correct semantics are preservered for allowing/disallowing wildcards in the last component of the path. | |||||
2009-07-24 | s3: Remove a few callers of get_full_smb_filename() | Tim Prouty | 2 | -45/+81 | |
2009-07-24 | s3 onefs: Fix the onefs modules after the big refactoring | Tim Prouty | 5 | -22/+22 | |
2009-07-24 | Factor out common code into vfs_acl_common.c. | Jeremy Allison | 5 | -1274/+682 | |
Jeremy. | |||||
2009-07-24 | s3: Simplify rename_internals() by passing in smb_filename structs | Tim Prouty | 4 | -157/+127 | |