Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2010-09-11 | s3-privs Make privilege_enum_sids() take an LUID, not a bitmap | Andrew Bartlett | 1 | -1/+1 | |
This moves one more privileges call away from direct bitmap manipuation. Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-privs Rework access_check_object() to take two privileges | Andrew Bartlett | 1 | -3/+4 | |
This allows the privileges bitmap to be used only when setting privileges, and uses an the LUID constant for all 'does this user have this privilege' operations. The advantage is that we now only need one API to determine if a token has a privilege, and much less code needs to know what type is used for the underlying bitmap. Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-privs Remove a pointer from grant_privilege() | Andrew Bartlett | 1 | -1/+1 | |
Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-privs Remove a pointer indirection from revoke_privilege() | Andrew Bartlett | 1 | -1/+1 | |
Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-privs Move manual prototypes to common privileges.h | Andrew Bartlett | 1 | -20/+0 | |
Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3:auth Remove NT_USER_TOKEN | Andrew Bartlett | 1 | -22/+22 | |
The all UPPER case typedef is no longer the preferred Samba style and this makes it easier to see that this is the IDL-derivied structure Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-auth Change struct nt_user_token -> struct security_token | Andrew Bartlett | 1 | -10/+10 | |
This common structure is defined in security.idl Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-auth Change type of num_sids to uint32_t | Andrew Bartlett | 1 | -3/+3 | |
size_t is overkill here, and in struct security_token in the num_sids is uint32_t. This includes a change to the prototype of add_sid_to_array() and add_sid_to_array_unique(), which has had a number of consequnetial changes as I try to sort out all the callers using a pointer to the number of sids. Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-11 | s3-privs Further changes to remove SE_PRIV | Andrew Bartlett | 1 | -19/+19 | |
Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-09-10 | s3-spoolss: Don't leak memory on the session counter list. | Andreas Schneider | 1 | -0/+1 | |
Thanks Günther, please check. | |||||
2010-09-09 | s3-msdfs: Make auth_serversupplied_info const. | Andreas Schneider | 1 | -1/+1 | |
2010-09-09 | s3-rpcint: Make auth_serversupplied_info const. | Andreas Schneider | 1 | -2/+2 | |
2010-09-09 | s3-auth: Added get_server_info_system function. | Andreas Schneider | 1 | -0/+1 | |
2010-09-04 | s3:rpc_server: make it possible to use rpcint_binding_handle() directly | Stefan Metzmacher | 1 | -0/+6 | |
metze | |||||
2010-09-02 | s3-param: added lp_set_cmdline() and --option= parameter | Andrew Tridgell | 1 | -0/+2 | |
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> | |||||
2010-08-31 | s3-auth: remove global include of krb5pac.h. | Günther Deschner | 1 | -1/+1 | |
Guenther | |||||
2010-08-30 | s3-auth: add helper to get server_info out of kerberos info | Simo Sorce | 1 | -0/+8 | |
Signed-off-by: Günther Deschner <gd@samba.org> | |||||
2010-08-30 | s3-auth: Add helper function to retrieve the unix user from a kerberos ticket | Simo Sorce | 1 | -1/+14 | |
Signed-off-by: Günther Deschner <gd@samba.org> | |||||
2010-08-29 | s3: Remove smbd_server_fd() | Volker Lendecke | 1 | -1/+0 | |
This breaks the perfcol_onefs() build. Tim, Steve, this use of smbd_server_fd is replacable by calls into substitute.c. I don't have a onefs environment around to build a fix, so I've decided to insert an #error, making it not compile. The fix should be pretty obvious, you can get the socket data via "%I" and "%i" substitutions. | |||||
2010-08-29 | s3: Set the client_id in substitute.c once | Volker Lendecke | 1 | -0/+2 | |
This never changes during a client connection's life, so we can set it once. | |||||
2010-08-28 | s3: Lift smbd_server_fd() from pass_check() | Volker Lendecke | 1 | -1/+4 | |
2010-08-28 | s3: Fix smb_pam_passcheck | Volker Lendecke | 1 | -2/+2 | |
2010-08-27 | s3: Lift smbd_server_fd() from smb_pam_passcheck | Volker Lendecke | 1 | -1/+2 | |
2010-08-27 | s3: Pass rhost through to smb_pam_passchange | Volker Lendecke | 1 | -1/+2 | |
2010-08-26 | s3-proto: remove obsolete prototypes. | Günther Deschner | 1 | -14/+0 | |
Guenther | |||||
2010-08-26 | s3-build: use dbwrap.h only where needed. | Günther Deschner | 1 | -38/+0 | |
Guenther | |||||
2010-08-26 | s3-idmap: only include idmap headers where needed. | Günther Deschner | 1 | -49/+0 | |
Guenther | |||||
2010-08-26 | s3-nmbd: move nmbd proto out of main proto.h | Günther Deschner | 1 | -357/+0 | |
Guenther | |||||
2010-08-25 | s3-lsa: separate out init_lsa headers. | Günther Deschner | 1 | -7/+0 | |
Guenther | |||||
2010-08-25 | s3:smbd: add a nfs backend for sysquotas. | Michael Adam | 1 | -0/+7 | |
This module is based on the Solaris/FreeBSD implementation of NFS quotas in the quotas.c module. It implements the SMB_USER_QUOTA_TYPE query of the get_quotas call. The other types and the set_quota call are not implemented. | |||||
2010-08-24 | s3: Make srv_send_smb take an sconn instead of a sock fd | Volker Lendecke | 1 | -1/+1 | |
2010-08-22 | s3: Pass the rhost through smb_pam_accountcheck | Volker Lendecke | 1 | -2/+1 | |
2010-08-22 | s3: Move check_access to cgi.c, its only user | Volker Lendecke | 1 | -1/+0 | |
2010-08-20 | Fix const warning. | Jeremy Allison | 1 | -1/+1 | |
2010-08-20 | s3:loadparm: make lp_load_ex static. We have wrappers for external callers. | Michael Adam | 1 | -7/+0 | |
2010-08-18 | s3: async cli_list | Volker Lendecke | 1 | -6/+18 | |
2010-08-18 | s3: Add cli_flush | Volker Lendecke | 1 | -0/+7 | |
2010-08-18 | s3: Add "client_id" to pipes_struct | Volker Lendecke | 1 | -1/+3 | |
2010-08-18 | s3: Lift smbd_server_fd from reload_services() | Volker Lendecke | 1 | -1/+2 | |
2010-08-17 | s3: Remove smbd_server_fd() from session_claim | Volker Lendecke | 1 | -1/+1 | |
2010-08-17 | s3: Move read_smb_length() to smbd/reply.c | Volker Lendecke | 1 | -2/+0 | |
2010-08-17 | s3-dcerpc: make a few local functions as static | Simo Sorce | 1 | -4/+0 | |
2010-08-16 | s3:rpc_client: remove unused rpc_pipe_open_local() | Stefan Metzmacher | 1 | -4/+0 | |
metze | |||||
2010-08-16 | s3: Remove get_client_fd() | Volker Lendecke | 1 | -1/+0 | |
2010-08-16 | s3-auth: Remove obsolete 'update encrypted' option. | Andreas Schneider | 1 | -2/+1 | |
2010-08-15 | s3: Remove some unused code | Volker Lendecke | 1 | -1/+0 | |
2010-08-14 | s3:auth Change winbindd -> auth interface to more standard structures | Andrew Bartlett | 1 | -0/+4 | |
This removes conversions to and from the source3 varient of the server_info structure when replaced in s3compat, and presents a tidier interface to winbindd in any case. Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-08-14 | s3:auth Make Samba3 use the new common struct auth_usersupplied_info | Andrew Bartlett | 1 | -12/+14 | |
This common structure will make it much easier to produce an auth module for s3compat that calls Samba4's auth subsystem. In order the make the link work properly (and not map twice), we mark both that we did try and map the user, as well as if we changed the user during the mapping. Andrew Bartlett Signed-off-by: Andrew Tridgell <tridge@samba.org> | |||||
2010-08-14 | s3:idmap: add idmap_unix_id_is_in_range() for checking an id against an ↵ | Michael Adam | 1 | -0/+1 | |
idmap range | |||||
2010-08-14 | s3:loadparm: add new boolean parameter "idmap read only" | Michael Adam | 1 | -0/+1 | |
This will be used to be able to put the default idmap config read only. This can make sense for instance with the tdb2 idmap backend and using the idmap script feature. |