Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2010-07-01 | s3-libads: only include libds flags where needed. | Günther Deschner | 3 | -0/+3 | |
Guenther | |||||
2010-06-28 | s3: More cleanup in winbindd_ads.c:query_user | Volker Lendecke | 1 | -13/+10 | |
We can't ads_msgfree after the ads struct has been killed. Do early returns. | |||||
2010-06-28 | s3: Fix a valgrind error | Volker Lendecke | 1 | -2/+1 | |
nss_get_info_cached does not necessarily fill in gid | |||||
2010-06-28 | s3: Re-arrange winbindd_ads.c:query_user | Volker Lendecke | 1 | -23/+24 | |
We can't access the LDAP message after nss_get_info_cached has potentially destroyed the ads_struct | |||||
2010-06-28 | s3: free -> SAFE_FREE | Volker Lendecke | 1 | -1/+1 | |
2010-06-28 | s3: Do an early TALLOC_FREE | Volker Lendecke | 1 | -2/+5 | |
2010-06-25 | s3: Fix a winbind crash | Volker Lendecke | 1 | -0/+10 | |
nss_get_info_cached might deep inside sequence_number() invalidate the ads_struct without telling its callers. | |||||
2010-06-25 | s3: Fix a winbind crash | Volker Lendecke | 1 | -1/+6 | |
nss_get_info_cached might have invalidated "ads" deep inside. | |||||
2010-06-21 | s3-winbind: Make KRB5_EVENT_REFRESH_TIME a function | Volker Lendecke | 1 | -6/+12 | |
2010-06-21 | s3:idmap_ldap: remove unreached code (and explicit error return code) | Michael Adam | 1 | -5/+1 | |
2010-06-17 | Use #defined constant instead of "false" to be clearer about intent. | Jeremy Allison | 1 | -1/+1 | |
2010-06-10 | s3:winbindd use common server context functions | Simo Sorce | 4 | -54/+3 | |
2010-06-09 | s3-winbind: Fixed setting default sequence number. | Andreas Schneider | 1 | -1/+1 | |
2010-06-03 | s3: remove unused librpc/ndr/sid.c. | Günther Deschner | 1 | -0/+1 | |
Guenther | |||||
2010-06-01 | s3:winbindd: make sure we only call static_init_idmap once | Stefan Metzmacher | 1 | -7/+18 | |
metze Signed-off-by: Michael Adam <obnox@samba.org> | |||||
2010-06-01 | s3:winbind Ensure we always init idmap_passdb before we use it | Andrew Bartlett | 1 | -0/+4 | |
It seems that it is possible for idmap_init_passdb_domain() to be run before idmap_init_domain(), so ensure we run the static init functions in both. Andrew Bartlett Signed-off-by: Michael Adam <obnox@samba.org> | |||||
2010-05-31 | s3:winbindd move reinit_after_fork() back out of winbindd_register_handlers | Andrew Bartlett | 1 | -12/+12 | |
This particular init function needs to be done in a native Samba3 build, but it turns out to be difficult for s3compat, which has other code listening on the sockets. Andrew Bartlett | |||||
2010-05-31 | s3:winbind Make state->mem_ctx a talloc child of state | Andrew Bartlett | 1 | -1/+1 | |
This way everything is destoryed at the conclusion of the connection correctly. Andrew Bartlett Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2010-05-31 | s3:winbind tidy up connecting the winbind sockets. | Andrew Bartlett | 3 | -49/+20 | |
By putting this code inline in winbindd_setup_listeners() we remove 2 static variables and simplify the code. By putting the get_winbind_priv_pipe_dir() in the same file, we allow it to be reimplemented in s3compat. Andrew Bartlett Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2010-05-31 | Revert "s3:winbindd Split helper functions to allow s3compat to call them" | Andrew Bartlett | 2 | -30/+22 | |
I'm experimenting with a different entry point This reverts commit f5c0f90da5f5372ca6b7a72daa8d073a2444a068. | |||||
2010-05-31 | ntlmssp: Make the ntlmssp.h from source3/ a common header | Andrew Bartlett | 1 | -1/+1 | |
The code is not yet in common, but I hope to fix that soon. Andrew Bartlett Signed-off-by: Stefan Metzmacher <metze@samba.org> Signed-off-by: Günther Deschner <gd@samba.org> | |||||
2010-05-31 | s3: only use netlogon/nbt header when needed. | Günther Deschner | 2 | -0/+2 | |
Guenther | |||||
2010-05-31 | s3-build: only use ndr_security.h where needed. | Günther Deschner | 2 | -0/+2 | |
Guenther | |||||
2010-05-28 | s3:winbind Kill amusing but un-used winbindd_kill_all_clients | Andrew Bartlett | 2 | -18/+0 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2010-05-26 | s3-samr: move chgpasswd.c out of smbd and into the samr server. | Günther Deschner | 1 | -0/+1 | |
Guenther | |||||
2010-05-21 | s3:dom_sid Global replace of DOM_SID with struct dom_sid | Andrew Bartlett | 25 | -204/+204 | |
This matches the structure that new code is being written to, and removes one more of the old-style named structures, and the need to know that is is just an alias for struct dom_sid. Andrew Bartlett Signed-off-by: Günther Deschner <gd@samba.org> | |||||
2010-05-20 | s3:winbind:idmap_tdb2_set_mapping: untangle assignment from check | Michael Adam | 1 | -1/+2 | |
2010-05-18 | s3-rpc_client: move protos to cli_lsarpc.h | Günther Deschner | 2 | -0/+2 | |
Guenther | |||||
2010-05-18 | s3-rpc_client: move protos to cli_netlogon.h | Günther Deschner | 2 | -0/+2 | |
Guenther | |||||
2010-05-18 | s3-rpc_client: move protos to cli_samr.h | Günther Deschner | 2 | -0/+2 | |
Guenther | |||||
2010-05-18 | s3:winbind use no_srv_register to avoid needing rpc_srv_register | Andrew Bartlett | 1 | -10/+0 | |
This pidl attribute avoids the need for this dummy function, which helps s3compat. Andrew Bartlett Signed-off-by: Günther Deschner <gd@samba.org> | |||||
2010-05-18 | s3: Remove use of iconv_convenience. | Jelmer Vernooij | 3 | -4/+4 | |
2010-05-18 | s3-crypto: only include crypto headers when crypto is done. | Günther Deschner | 1 | -0/+1 | |
Guenther | |||||
2010-05-18 | s3-rpc_misc: clean out include/rpc_misc.h. | Günther Deschner | 4 | -4/+4 | |
Well known rids don't really belong into an rpc header, just use the ones defined in security.idl. Guenther | |||||
2010-05-17 | s3-kerberos: pass down kdc_name to create_local_private_krb5_conf_for_domain(). | Günther Deschner | 1 | -2/+4 | |
Guenther | |||||
2010-05-17 | s3-winbind: make the getpeername() checks in cm_prepare_connection IPv6 aware. | Günther Deschner | 1 | -5/+25 | |
Note that this failure was hard to track, as winbind did only log a super helpful "cm_prepare_connection: Success" debug message. IPv6 gurus, please check Successfully tested in two independent IPv6 networks now. Guenther | |||||
2010-05-17 | s3:winbind:idmap_tdb: don't check ranges when an invalid entry was found. | Michael Adam | 1 | -0/+1 | |
There is no point in checking the ranges this if the record found had an invalid/unknown type: the mapping is not filled in. If it were initialized to some defaults before, the check just might replace the status NT_STATUS_INTERNAL_DB_ERROR with a NT_STATUS_NONE_MAPPED, which is not as precise. | |||||
2010-05-13 | s3:winbindd Provide a winbindd_register_handlers() helper function for s3compat | Andrew Bartlett | 2 | -95/+102 | |
This function provides a useful entry point for s3compat to set things up in winbindd. Andrew Bartlett | |||||
2010-05-13 | s3:winbindd Split helper functions to allow s3compat to call them | Andrew Bartlett | 2 | -22/+30 | |
This provides a more useful entry point for s3compat. Andrew Bartlett | |||||
2010-05-13 | s3:Winbindd Move winbindd_event_context to a different file | Andrew Bartlett | 3 | -12/+40 | |
This allows this function to be easily replaced in s3compat Andrew Bartlett | |||||
2010-05-13 | s3:winbindd Rename 'children' to 'winbindd_children' and make static | Andrew Bartlett | 1 | -9/+9 | |
2010-05-13 | s3:winbindd Remove call to namecache_enable(). | Andrew Bartlett | 1 | -4/+0 | |
This call only prints a DEBUG() Andrew Bartlett | |||||
2010-05-11 | s3:kerberos Return PAC_LOGON_INFO rather than the full PAC_DATA | Andrew Bartlett | 1 | -14/+15 | |
All the callers just want the PAC_LOGON_INFO, so search for that in ads_verify_ticket(), and don't bother the callers with the rest of the PAC. This change makes sense on it's own (removing boilerplate wrappers that just confuse the code), but it also makes it much easier to implement a matching ads_verify_ticket() function in Samba4 for the s3compat proposal. Andrew Bartlett Signed-off-by: Günther Deschner <gd@samba.org> | |||||
2010-05-06 | s3: only include gen_ndr headers where needed. | Günther Deschner | 5 | -0/+5 | |
This shrinks include/includes.h.gch by the size of 7 MB and reduces build time as follows: ccache build w/o patch real 4m21.529s ccache build with patch real 3m6.402s pch build w/o patch real 4m26.318s pch build with patch real 3m6.932s Guenther | |||||
2010-05-02 | s3: Unify DEBUG_KRB5_TKT_REGAIN and DEBUG_KRB5_TKT_RENEWAL | Volker Lendecke | 1 | -1/+1 | |
I don't think it makes sense to #ifdef this one case separately. Metze, Bo Yang, please check! | |||||
2010-05-02 | s3: Fix a typo | Volker Lendecke | 1 | -1/+1 | |
2010-05-02 | s3: Fix the code order in append_auth_data | Volker Lendecke | 1 | -7/+7 | |
This is to comply with the comment "currently, anything from here on potentially overwrites extra_data." Günther, please check! | |||||
2010-04-29 | s3: range-check idmap script output | Volker Lendecke | 1 | -0/+13 | |
Not doing so results in the id mapping succeeding once unchecked and later on being refused, because when reading from the tdb we do the checks. | |||||
2010-04-29 | s3: Fix an uninitialized variable in idmap_tdb2_sid_to_id() | Volker Lendecke | 1 | -0/+1 | |
When we find an invalid record in the database, there's no point in checking the non-existing value against the range limits. | |||||
2010-04-29 | s3: Fix some nonempty blank lines | Volker Lendecke | 1 | -14/+14 | |