Age | Commit message (Expand) | Author | Files | Lines |
2012-11-30 | s4:dsdb/acl: require SEC_ADS_DELETE_TREE if the TREE_DELETE control is given ... | Stefan Metzmacher | 1 | -0/+12 |
2012-11-30 | s4:dsdb/dirsync: remove unused 'deletedattr' variable | Stefan Metzmacher | 1 | -2/+0 |
2012-11-30 | s4:dsdb/common: add pekList and msDS-ExecuteScriptPassword to DSDB_SECRET_ATT... | Stefan Metzmacher | 1 | -0/+2 |
2012-11-30 | s4:dsdb/acl: also add DSDB_SECRET_ATTRIBUTES into the password attributes | Stefan Metzmacher | 1 | -5/+36 |
2012-11-30 | s4:dsdb/descriptor: the old nTSecurityDescriptor is always expected there on ... | Stefan Metzmacher | 1 | -0/+3 |
2012-11-30 | s4:dsdb/descriptor: make explicit that we don't support MOD_DELETE on nTSecur... | Stefan Metzmacher | 1 | -0/+11 |
2012-11-30 | s4:dsdb/descriptor: remove some nesting from descriptor_modify | Stefan Metzmacher | 1 | -10/+10 |
2012-11-30 | s4:dsdb/descriptor: remove some unnecessary nesting | Stefan Metzmacher | 1 | -10/+8 |
2012-11-30 | s4:dsdb/descriptor: add some error checks to descriptor_{add,modify} | Stefan Metzmacher | 1 | -0/+12 |
2012-11-30 | s4:dsdb/descriptor: remove support for unused LDB_CONTROL_RECALCULATE_SD_OID | Stefan Metzmacher | 1 | -26/+1 |
2012-11-30 | s4:dsdb/descriptor: move special dn check to the start of descriptor_{add,mod... | Stefan Metzmacher | 1 | -19/+21 |
2012-11-30 | s4:dsdb/descriptor: if the caller specifies no DACL/SACL the objects gets a d... | Stefan Metzmacher | 1 | -1/+28 |
2012-11-30 | s4:dsdb/descriptor: give SYSTEM the correct default owner (group) sid | Stefan Metzmacher | 1 | -0/+6 |
2012-11-30 | s4:dsdb/acl_read: enable acl checking on search by default (bug #8620) | Stefan Metzmacher | 2 | -2/+2 |
2012-11-30 | s4:dsdb/acl_read: specify the correct access_mask for nTSecurityDescriptor | Stefan Metzmacher | 1 | -1/+19 |
2012-11-30 | s4:dsdb/acl_read: do search for instanceType AS_SYSTEM and with SHOW_RECYCLED | Stefan Metzmacher | 1 | -1/+3 |
2012-11-30 | s4:dsdb/acl: calculate the correct access_mask when modifying nTSecurityDescr... | Stefan Metzmacher | 1 | -1/+14 |
2012-11-30 | s4:dsdb/acl: don't protect confidential attributes when "acl:search = yes" is... | Stefan Metzmacher | 1 | -0/+11 |
2012-11-30 | s4:dsdb/acl: remove unused "acl:perform" option | Stefan Metzmacher | 1 | -3/+0 |
2012-11-30 | s4:dsdb/acl: do helper searches AS_SYSTEM and with SHOW_RECYCLED | Stefan Metzmacher | 1 | -5/+15 |
2012-11-30 | s4:dsdb/descriptor: make it clear that the SD Flags are ignored on add | Stefan Metzmacher | 1 | -1/+7 |
2012-11-30 | s4:dsdb/descriptor: make use of dsdb_request_sd_flags() | Stefan Metzmacher | 1 | -47/+15 |
2012-11-30 | s4:dsdb/descriptor: always use descriptor_search_callback if we return nTSecu... | Stefan Metzmacher | 1 | -1/+12 |
2012-11-30 | s4:dsdb/descriptor: do searches for nTSecurityDescriptor AS_SYSTEM and with S... | Stefan Metzmacher | 1 | -11/+12 |
2012-11-30 | s4:dsdb/acl_util: add dsdb_request_sd_flags() helper function | Stefan Metzmacher | 1 | -0/+37 |
2012-11-30 | s4:dsdb/acl_util: do helper searches AS_SYSTEM | Stefan Metzmacher | 1 | -0/+1 |
2012-11-30 | s4:dsdb/extended_dn_store: do helper searches AS_SYSTEM | Stefan Metzmacher | 1 | -1/+3 |
2012-11-30 | s4:dsdb/extended_dn_in: do helper searches AS_SYSTEM and with SHOW_RECYCLED | Stefan Metzmacher | 1 | -12/+13 |
2012-11-30 | s4:dsdb/objectclass: do helper searches AS_SYSTEM and with SHOW_RECYCLED | Stefan Metzmacher | 1 | -3/+31 |
2012-11-30 | s4:dsdb/rootdse: do helper searches AS_SYSTEM | Stefan Metzmacher | 1 | -7/+29 |
2012-11-30 | s4:dsdb/rootdse: remove unused variable | Stefan Metzmacher | 1 | -1/+0 |
2012-11-30 | s4:dsdb/dirsync: explicitly ask for sdctr->secinfo_flags = 0xF | Stefan Metzmacher | 1 | -2/+2 |
2012-11-30 | s4:dsdb/dirsync: use the correct nc_root to fetch replUpToDateVector | Stefan Metzmacher | 1 | -3/+1 |
2012-11-30 | s4:dsdb/dirsync: check result of replUpToDateVector fetch on nc_root | Stefan Metzmacher | 1 | -0/+4 |
2012-11-30 | s4:dsdb/schema_data: fix debug message in schema_data_modify() | Stefan Metzmacher | 1 | -1/+1 |
2012-11-16 | dsdb: Make secrets_tdb_sync cope with -H secrets.ldb | Andrew Bartlett | 1 | -2/+3 |
2012-11-12 | s4:dsdb/acl_read: make sure confidential attributes require CONTROL_ACCESS (b... | Stefan Metzmacher | 1 | -0/+4 |
2012-11-12 | s4:dsdb/acl_read: fix whitespace formatting errors | Stefan Metzmacher | 1 | -124/+128 |
2012-11-12 | s4:dsdb/acl: only give administrators access to attributes marked as confiden... | Stefan Metzmacher | 1 | -0/+87 |
2012-11-12 | s4:dsdb/acl: reorganize the logic flow in the password filtering checks | Stefan Metzmacher | 1 | -54/+92 |
2012-11-12 | s4:dsdb/acl: fix search filter cleanup for password attributes | Stefan Metzmacher | 1 | -1/+1 |
2012-11-06 | ldb_secrets_tdb_sync: Add dependency on gssapi. | Jelmer Vernooij | 1 | -1/+1 |
2012-11-06 | dsdb: Rename _res argument to _result. | Jelmer Vernooij | 1 | -6/+6 |
2012-11-06 | dsdb: Simplify DsCrackNameOneFilter a bit | Volker Lendecke | 1 | -1/+4 |
2012-10-25 | dsdb-cracknames: Return DRSUAPI_DS_NAME_STATUS_NO_MAPPING when there is no SID | Andrew Bartlett | 1 | -3/+7 |
2012-10-24 | dsdb-cracknames: Always use talloc_zero() | Andrew Bartlett | 1 | -1/+1 |
2012-10-07 | s4-repl: make dreplsrv_partition_find_for_nc return BAD_NC only | Matthieu Patou | 1 | -2/+7 |
2012-10-07 | drs-replica-info: level_not_supported is wrong when we do support (partialy t... | Matthieu Patou | 1 | -9/+13 |
2012-10-07 | drs-crackname: if there is no sid do not return the domain | Matthieu Patou | 1 | -0/+2 |
2012-10-07 | Implement the LIST_INFO_FOR_SERVER input format | Matthieu Patou | 1 | -0/+107 |