Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2011-07-26 | s3 swat: Add XSRF protection to wizard page | Kai Blin | 1 | -0/+7 | |
Signed-off-by: Kai Blin <kai@samba.org> | |||||
2011-07-26 | s3 swat: Add XSRF protection to wizard_params page | Kai Blin | 1 | -0/+7 | |
Signed-off-by: Kai Blin <kai@samba.org> | |||||
2011-07-26 | s3 swat: Add XSRF protection to viewconfig page | Kai Blin | 1 | -0/+7 | |
Signed-off-by: Kai Blin <kai@samba.org> | |||||
2011-07-26 | s3 swat: Add XSRF protection to status page | Kai Blin | 1 | -0/+7 | |
Signed-off-by: Kai Blin <kai@samba.org> | |||||
2011-07-26 | s3 swat: Add support for anti-XSRF token | Kai Blin | 2 | -0/+59 | |
2011-07-26 | s3 swat: Allow getting the user's HTTP auth password | Kai Blin | 2 | -0/+10 | |
Signed-off-by: Kai Blin <kai@samba.org> | |||||
2011-07-26 | s3-swat: Fix typo. | Karolin Seeger | 1 | -1/+1 | |
Thanks to Simo for reporting! Karolin (cherry picked from commit 9f73c1990a19daa899fa5345530a867e69a5be94) (cherry picked from commit bcb052c29212954a3ed10c9f095c51e4e0a96af5) | |||||
2011-07-26 | s3 swat: Fix possible XSS attack (bug #8289) | Kai Blin | 1 | -12/+2 | |
Nobuhiro Tsuji of NTT DATA SECURITY CORPORATION reported a possible XSS attack against SWAT, the Samba Web Administration Tool. The attack uses reflection to insert arbitrary content into the "change password" page. This patch fixes the reflection issue by not printing user-specified content on the website anymore. Signed-off-by: Kai Blin <kai@samba.org> | |||||
2011-07-26 | s3-build: Only define ldb3 when not in standalone build. | Jelmer Vernooij | 1 | -4/+3 | |
This prevents errors about it by 'make SYMBOLCHECK=1' if there is a system ldb present. Autobuild-User: Jelmer Vernooij <jelmer@samba.org> Autobuild-Date: Tue Jul 26 18:21:48 CEST 2011 on sn-devel-104 | |||||
2011-07-26 | s3:lib change default share security access mask | Christian Ambach | 1 | -3/+3 | |
when there is no share SD set, the default share SD that is used e.g. for the output of sharesec -v defaults to a value that is not equivalent to the desired FULL access. This is a more or less a cosmetical follow-up for the patches in Bug #8201 that makes them more consumeable by printing FULL (that is what the user expects) instead of a bitmask in hexadecimal form. previous output: REVISION:1 OWNER:(NULL SID) GROUP:(NULL SID) ACL:S-1-1-0:ALLOWED/0/0x101f01ff with patch: REVISION:1 OWNER:(NULL SID) GROUP:(NULL SID) ACL:S-1-1-0:ALLOWED/0/FULL Autobuild-User: Christian Ambach <ambi@samba.org> Autobuild-Date: Tue Jul 26 15:57:55 CEST 2011 on sn-devel-104 | |||||
2011-07-26 | libsamba-util: Build in libbitmap. | Jelmer Vernooij | 1 | -1/+1 | |
Autobuild-User: Jelmer Vernooij <jelmer@samba.org> Autobuild-Date: Tue Jul 26 14:45:27 CEST 2011 on sn-devel-104 | |||||
2011-07-26 | cli_smb_common: Lowercase name. | Jelmer Vernooij | 1 | -3/+3 | |
2011-07-26 | cli_cldap: Lowercase name. | Jelmer Vernooij | 1 | -1/+1 | |
2011-07-26 | cli_spools: Lowercase name. | Jelmer Vernooij | 1 | -5/+5 | |
2011-07-26 | s3: Fix MIT trusts | Volker Lendecke | 1 | -0/+5 | |
Winbind can't really cope with trusts that don't have a SID associated. This happens with external MIT trusts for example. This filters them out when sending the trust list from child to parent. Autobuild-User: Volker Lendecke <vlendec@samba.org> Autobuild-Date: Tue Jul 26 11:39:53 CEST 2011 on sn-devel-104 | |||||
2011-07-24 | s3-utils/net_rpc_printer.c: fix error message | Björn Baumbach | 1 | -2/+2 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Sun Jul 24 19:01:47 CEST 2011 on sn-devel-104 | |||||
2011-07-24 | s3: Fix Coverity ID 2596, REVERSE_INULL | Volker Lendecke | 1 | -1/+2 | |
Autobuild-User: Volker Lendecke <vlendec@samba.org> Autobuild-Date: Sun Jul 24 16:37:19 CEST 2011 on sn-devel-104 | |||||
2011-07-23 | charset: Make name lowercase everywhere. | Jelmer Vernooij | 1 | -3/+3 | |
2011-07-23 | s3:libsmb: cli_set_secdesc() only needs a const struct security_descriptor | Stefan Metzmacher | 2 | -2/+2 | |
metze Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Sat Jul 23 11:08:19 CEST 2011 on sn-devel-104 | |||||
2011-07-23 | s3:libsmb: remove unused cli_query_secdesc_old() | Stefan Metzmacher | 2 | -50/+0 | |
metze | |||||
2011-07-23 | s3:libsmb_xattr: make use of the new cli_query_secdesc() | Stefan Metzmacher | 1 | -13/+13 | |
metze | |||||
2011-07-23 | s3-utils/net_rpc.c: replace cli_query_secdesc_old() | Björn Baumbach | 1 | -1/+1 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-utils/net_rpc_printer.c: replace cli_query_secdesc_old() | Björn Baumbach | 1 | -4/+4 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-utils/smbcacls.c: replace cli_query_secdesc_old() | Björn Baumbach | 1 | -3/+4 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-client/client.c: replace cli_query_secdesc_old() | Björn Baumbach | 1 | -5/+5 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture: run_nttrans_create(): replace cli_query_secdesc_old() | Björn Baumbach | 1 | -1/+1 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-libsmb: introduce new cli_query_secdesc() which returns NTSTATUS | Björn Baumbach | 2 | -0/+52 | |
Replacement for cli_query_secdesc_old() Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-libsmb: rename cli_query_secdesc() to cli_query_secdesc_old() | Björn Baumbach | 8 | -9/+9 | |
Will introduce new cli_query_secdesc() function Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-libsmb: finally remove cli_read_old() | Björn Baumbach | 2 | -16/+0 | |
Replaced by new cli_read() which returns NTSTATUS instead of ssize_t. Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-libsmb/libsmb_file.c: replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -5/+5 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture/nbio.c: replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -4/+15 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture/utable.c: replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -1/+1 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-utils/net_rpc_printer.c: print more info on write error | Björn Baumbach | 1 | -2/+5 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-utils/net_rpc_printer.c: return on read error in net_copy_file() | Björn Baumbach | 1 | -4/+13 | |
replace cli_read_old() with cli_read() Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture/denytest.c: replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -6/+14 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-libgpo/gpo_filesync.c: return on read error | Björn Baumbach | 1 | -2/+6 | |
replace cli_read_old() with cli_read() Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-client/clitar.c: replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -5/+4 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture: run_oplock2(): replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -5/+10 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture: run_fdsesstest(): replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -8/+7 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture: run_fdpasstest(): replace cli_read_old() with cli_read() | Björn Baumbach | 1 | -4/+3 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture: run_locktest7(): replace cli_read_old() with cli_read() | Stefan Metzmacher | 1 | -11/+34 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | s3-torture: run_locktest7(): goto fail on read error | Stefan Metzmacher | 1 | -0/+1 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2011-07-23 | Fix bug 8314] - smbd crash with unknown user. | Jeremy Allison | 1 | -4/+11 | |
All other auth modules code with being called with auth_method->private_data being NULL, make the auth_server module cope with this too. Autobuild-User: Jeremy Allison <jra@samba.org> Autobuild-Date: Sat Jul 23 02:55:01 CEST 2011 on sn-devel-104 | |||||
2011-07-22 | s3:libsmb: move cli_state->desthost to cli_state->conn.remote_name | Stefan Metzmacher | 3 | -7/+6 | |
metze Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Fri Jul 22 18:17:41 CEST 2011 on sn-devel-104 | |||||
2011-07-22 | s3:winbindd_cm: use controller instead of cli->desthost | Stefan Metzmacher | 1 | -2/+2 | |
The should have the same value. metze | |||||
2011-07-22 | s3:net_util: use server_name instead of cli->desthost | Stefan Metzmacher | 1 | -1/+1 | |
They should be the same. metze | |||||
2011-07-22 | s3:net_rpc_registry: use pipe_hnd->desthost instead of cli->desthost | Stefan Metzmacher | 1 | -2/+2 | |
metze | |||||
2011-07-22 | s3:net_rpc_printer: make use of cli_state_remote_name() | Stefan Metzmacher | 1 | -4/+6 | |
metze | |||||
2011-07-22 | s3:net_rpc_join: make use of cli_state_remote_name() | Stefan Metzmacher | 1 | -3/+3 | |
metze | |||||
2011-07-22 | s3:net_rpc_join: use pipe_hnd->desthost instead of cli->desthost | Stefan Metzmacher | 1 | -1/+1 | |
metze |