summaryrefslogtreecommitdiff
path: root/source3/winbindd
AgeCommit message (Collapse)AuthorFilesLines
2010-08-14s3:idmap_tdb2: fix a debug messageMichael Adam1-1/+1
2010-08-12s3:winbindd: add wbint dcerpc_binding_handle backendStefan Metzmacher1-0/+262
metze
2010-08-09s3-winbind: Fix Bug #7568: Make sure cm_connect_lsa_tcp does not reset the ↵Günther Deschner1-7/+13
secure channel. This is an important fix as the following could and is happening: * winbind authenticates a user via schannel secured netlogon samlogonex call, current secure channel cred state is stored in winbind state, winbind sucessfully decrypts session key from the info3 * winbind sets up a new schannel ncacn_ip_tcp lsa pipe (and thereby resets the secure channel on the dc) * subsequent samlogonex calls use the new secure channel creds on the dc to encrypt info3 session key, while winbind tries to use old schannel creds for decryption Guenther
2010-08-08s3: Lift the smbd_messaging_context from rpc_pipe_open_internalVolker Lendecke1-0/+2
2010-08-06s3-krb5: include krb5pac.h where needed.Günther Deschner1-0/+1
Guenther
2010-08-05s3-popt: Only include popt-common.h when needed.Andreas Schneider1-0/+1
2010-08-05s3-secrets: only include secrets.h when needed.Günther Deschner9-0/+9
Guenther
2010-08-05s3: avoid global include of ads.h.Günther Deschner16-1/+17
Guenther
2010-07-29We should be using the winbindd separator in this case, not hardcoding a \\ ↵Jeremy Allison1-1/+3
value. Jeremy.
2010-07-29Fix bug #7589 - ntlm_auth fails to use cached credentials.Jeremy Allison1-7/+5
In handling the WINBINDD_PAM_AUTH message winbindd canonicalizes a *copy* of the mapped username, but fails to canonicalize the actual username sent to the backend domain process. When "winbind default domain" is set this can lead to credentials being cached with an index of user: user, not DOMAIN\user. All other code paths that use canonicalize_username() (WINBINDD_PAM_CHAUTHTOK, WINBINDD_PAM_LOGOFF) correctly canonicalize the data sent to the backend. All calls the can cause credentials to be looked up (PAM_CHAUTHTOK etc.) correctly call canonicalize_username() to create the credential lookup key. Jeremy.
2010-07-28s3-winbind: Use struct pipes_struct.Andreas Schneider2-25/+28
2010-07-27Second part of fix for bug 7578 - 'net idmap restore' fails to set HWM, ↵Jeremy Allison1-1/+1
causing duplicates. Jeremy.
2010-07-27s3: Fix bug 7578Justin Maggard1-1/+1
Uninitialized variable read in _wbint_SetHWM
2010-07-19s3-rpc_server: Added callbacks for init and shutdown of a rpc service.Andreas Schneider1-2/+2
This adds two callback function for each rpc service. One is for initialisation and the other for shutdown. rpc_<service>_unregister() needs to be called to execute the shutdown function.
2010-07-19s3-ntlmssp: Remove ntlmssp_end and let the talloc hierarchy handle it.Simo Sorce1-1/+1
All the members are children of ntlmssp_state anyway. Signed-off-by: Andrew Bartlett <abartlet@samba.org>
2010-07-18s3: Remove a direct use of procid_self()Volker Lendecke1-3/+5
2010-07-16s3-dcerpc: Use DATA_BLOB for pipes_struct input dataSimo Sorce1-2/+2
Signed-off-by: Günther Deschner <gd@samba.org>
2010-07-16s3-dcerpc: Convert rdata from prs_struct to a simple DATA_BLOBSimo Sorce1-6/+7
Signed-off-by: Günther Deschner <gd@samba.org>
2010-07-13s3-winbind: Don't cache queries to builtin and own sam domain.Andreas Schneider1-3/+29
2010-07-13s3-winbind: Set status before we leave in some msrpc functions.Andreas Schneider1-0/+4
2010-07-08s3-rpc: when using rpc_pipe_open_internal, make sure to go through NDR.Günther Deschner2-2/+5
Otherwise a lot of information that is usually generated in the ndr_push remains in an uninitialized state. Guenther
2010-07-07s3:winbindd_samr Do not use static contextsSimo Sorce1-4/+4
It is a very bad idea to use a static context within the open function. Use the memory hierarchy to keep track of a client connection.
2010-07-07s3-winbindd: Fix child logfile handling which broke with c67cff0372.Günther Deschner1-1/+1
Andreas, please check. Guenther
2010-07-07s3-winbindd: route samr chgpwd ops for own domain over internal samr pipe as ↵Günther Deschner4-69/+45
well. Guenther
2010-07-06s3-winbind: Handle aliases in rpc_lookup_groupmem().Andreas Schneider1-29/+74
2010-07-06s3-winbind: Fixed the winbind caching.Günther Deschner2-5/+10
2010-07-06s3-winbind: Use same format for all msrpc debug messages.Andreas Schneider1-9/+10
2010-07-06s3-winbind: Fixed debug messages of open_internal_lsa_pipe().Andreas Schneider1-2/+2
2010-07-06s3-winbind: Make sure that the policy handles are closed.Andreas Schneider1-0/+12
2010-07-06s3-winbind: Make sure we close all policy handles in sam.Andreas Schneider1-0/+83
2010-07-06s3-winbind: Create all logfiles in the same directory.Andreas Schneider1-1/+22
If log file is set in the config file, we should create the log files of the winbind child processes in the same directory.
2010-07-06s3: Fix another winbind crashVolker Lendecke1-35/+48
This is similar to 09a9cc3, this re-arranges winbindd_ads.c:query_user_list() so that "ads" is not accessed anymore across a call to nss_get_info_cached() call which can destroy it behind the scenes.
2010-07-05s3-winbind: Rename lookup_groupmem to msrpc_lookup_groupmem.Andreas Schneider1-8/+9
2010-07-05s3-winbind: Use rpc_trusted_domains in msrpc.Andreas Schneider1-56/+35
2010-07-05s3-winbind: Use rpc_trusted_domains in samr.Andreas Schneider1-61/+20
2010-07-05s3-winbind: Added a common rpc_trusted_domains function.Andreas Schneider2-0/+76
2010-07-05s3-winbind: Rename common_password_policy to sam_password_policy.Andreas Schneider1-6/+6
2010-07-05s3-winbind: Rename common_lockout_policy to sam_lockout_policy.Andreas Schneider1-6/+6
2010-07-05s3-winbind: Use rpc_sequence_number in msrpc.Andreas Schneider1-61/+46
2010-07-05s3-winbind: Use rpc_sequence_number in samr.Andreas Schneider1-52/+24
2010-07-05s3-winbind: Added a common rpc_sequence_number function.Andreas Schneider2-0/+56
2010-07-05s3-winbind: Use rpc_lookup_groupmem in samr.Andreas Schneider1-105/+22
2010-07-05s3-winbind: Added a common rpc_lookup_groupmem function.Andreas Schneider2-0/+141
2010-07-05s3-winbind: Use rpc_lookup_useraliases in msrpc.Andreas Schneider1-79/+41
2010-07-05s3-winbind: Use rpc_lookup_useraliases in samr.Andreas Schneider1-82/+26
2010-07-05s3-winbind: Added a common rpc_lookup_useraliases function.Andreas Schneider2-0/+92
2010-07-05s3-winbind: Use rpc_lookup_usergroups in msrpc.Andreas Schneider1-55/+51
2010-07-05s3-winbind: Use rpc_lookup_usergroups in samr.Andreas Schneider1-56/+21
2010-07-05s3-winbind: Added a common rpc_lookup_usergroups function.Andreas Schneider2-0/+71
2010-07-05s3-winbind: Use rpc_query_user in samr.Andreas Schneider1-56/+13