Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2010-03-25 | s4:kdc Add support for changing password of a servicePrincipalName | Andrew Bartlett | 1 | -10/+32 | |
Apparently AD supports setting a password on a servicePrincipalName, not just a user principal name. This should fix (part of) the join of OpenSolaris's internal CIFS server to Samba4 as reported by Bug #7273 Andrew Bartlett | |||||
2010-02-26 | s4-kdc: Fixed the memory context of tstream_bsd_existing() | Andreas Schneider | 1 | -1/+1 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2010-02-25 | s4:kdc add mit plugin code | Simo Sorce | 3 | -0/+459 | |
2010-02-25 | s4:kdc make function static | Simo Sorce | 2 | -6/+1 | |
2010-02-22 | More spelling fixes across source4/ | Brad Hards | 1 | -1/+1 | |
Signed-off-by: Matthias Dieter Wallnöfer <mwallnoefer@yahoo.de> | |||||
2010-02-22 | Various source4 spelling fixes. | Brad Hards | 1 | -1/+1 | |
Signed-off-by: Matthias Dieter Wallnöfer <mwallnoefer@yahoo.de> | |||||
2010-02-16 | s4-dsdb: removed gendb_search_single_extended_dn() | Andrew Tridgell | 1 | -13/+16 | |
Use dsdb_search_one() instead, which allows for arbitrary controls Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> | |||||
2010-02-16 | s4-dsdb: change samdb_replace() to dsdb_replace() and allow for dsdb_flags | Andrew Tridgell | 1 | -1/+1 | |
This allows for controls to be added easily where they are needed. | |||||
2010-02-12 | s4:kdc Fill in created_by principal field | Simo Sorce | 1 | -4/+7 | |
2010-02-12 | s4:kdc Fix double free and uninitialized memory. | Simo Sorce | 1 | -2/+13 | |
In samba_kdc_trust_message2entry() on error, hdb_free_entry() may end up trying to access uninitialized memory or double free the hdb_entry. | |||||
2010-01-31 | s4:kdc Streamline client access verification call | Simo Sorce | 3 | -70/+129 | |
Move the core to pac-glue so that other plugins can use it. | |||||
2010-01-31 | s4:kdc Fix netbios name retrieval | Simo Sorce | 1 | -2/+2 | |
The code was looping but always checking only the first address. | |||||
2010-01-28 | s4:kdc remove dead code and comments | Simo Sorce | 1 | -5/+0 | |
2010-01-28 | s4:kdc Fill in more data fields | Simo Sorce | 1 | -4/+8 | |
2010-01-28 | s4:kdc move db functions in their own file | Simo Sorce | 7 | -1467/+1618 | |
Keep all heimdal related plugin code within hdb_samba4.c Move interfaces needed by multiple plugins in db-glue.c Move sequence context in main db context so that we do not depend on db->hdb_dbc in the common code. Remove unnecessary paremeters from function prototypes | |||||
2010-01-28 | s4:kdc Use a clearer name for the samba kdc entry | Simo Sorce | 4 | -32/+30 | |
Renames hdb_samba4_private to samba_kdc_entry Streamlines members of the entry and the kdc db contextto avoid unnecessary duplication. | |||||
2010-01-28 | s4:kdc Use better db context structure | Simo Sorce | 5 | -88/+109 | |
This allows to use a common structure not tied to hdb_samba4 Also allows to avoid many casts within hdb_samba4 functions This is the first step to abstract samba kdc databse functions so they can be used by the MIT forthcoming plugin. | |||||
2010-01-27 | s4:windc move windc plugin in its own file | Simo Sorce | 5 | -191/+228 | |
Keep all heimdal related plugin code within wdc-samba4.c Leave only interfaces common to multiple plugins in pac-glue.c | |||||
2010-01-27 | s4:PAC make common functions public | Simo Sorce | 2 | -25/+70 | |
2010-01-27 | s4:PAC Streamline pac-glue step 2 | Simo Sorce | 1 | -55/+113 | |
Split functions so that no assumption is made about which plugin is using them | |||||
2010-01-27 | s4:PAC Streamline pac-glue | Simo Sorce | 1 | -19/+40 | |
First step, preparing to share the code between multiple plugins. | |||||
2010-01-22 | s4:kdc Simplify header files | Simo Sorce | 4 | -39/+14 | |
2010-01-11 | Fix comment/debug messages | Simo Sorce | 1 | -4/+4 | |
2010-01-08 | Fix comment | Simo Sorce | 1 | -1/+1 | |
2010-01-08 | s4-kdc: Migrate tcp connections to tsocket. | Andreas Schneider | 1 | -89/+188 | |
Signed-off-by: Stefan Metzmacher <metze@samba.org> | |||||
2010-01-08 | s4:kdc: use LIBSAMBA_TSOCKET | Stefan Metzmacher | 1 | -1/+1 | |
metze | |||||
2010-01-08 | s4:kdc: the ->process function returns "bool" | Stefan Metzmacher | 1 | -9/+9 | |
metze | |||||
2009-12-24 | s4:kdc: use the remote and local address from the stream_connection struct | Stefan Metzmacher | 1 | -41/+2 | |
metze | |||||
2009-12-23 | s4:cleanups More trailing spaces and tabs | Simo Sorce | 6 | -181/+181 | |
2009-12-23 | s4:cleanups remove trailing spaces and tabs | Simo Sorce | 1 | -119/+120 | |
2009-12-19 | s4:kdc: setup the local and remote tsocket_address at accept time | Stefan Metzmacher | 1 | -44/+49 | |
metze | |||||
2009-12-19 | s4:kdc: convert UDP based communication to tdgram_context | Stefan Metzmacher | 2 | -177/+138 | |
metze | |||||
2009-12-16 | s4-gensec: Replace gensec_set_peer_addr with new tsocket based fn. | Andreas Schneider | 1 | -1/+1 | |
2009-12-16 | s4-gensec: Replace gensec_set_my_addr() with new tsocket based fn. | Andreas Schneider | 1 | -17/+1 | |
2009-12-15 | s4-kdc: Migrate to tsocket_address. | Andreas Schneider | 3 | -18/+80 | |
2009-12-01 | s4:kdc - Merged kdc_tcp_accept() and kpasswdd_tcp_accept(). | Endi S. Dewata | 1 | -26/+6 | |
Signed-off-by: Andrew Bartlett <abartlet@samba.org> | |||||
2009-12-01 | s4:kdc - Merged kdc_add_kdc_socket() and kdc_add_kpasswd_socket(). | Endi S. Dewata | 1 | -75/+27 | |
Signed-off-by: Andrew Bartlett <abartlet@samba.org> | |||||
2009-12-01 | s4:kdc - Disable KDC port when it's set to 0. | Endi S. Dewata | 1 | -42/+63 | |
Signed-off-by: Andrew Bartlett <abartlet@samba.org> | |||||
2009-11-09 | s4-hdb: go back to a separate samdb for the KDC | Andrew Tridgell | 1 | -1/+16 | |
The change to use a common system_session broke replication as the KDC forces CRED_DONT_USE_KERBEROS on session->credentials, which is shared with other parts of the system. This should be fixed once we confirm whether the ldap backend actually relies on CRED_DONT_USE_KERBEROS | |||||
2009-11-05 | s4:kdc: remove unused struct kpasswd_socket | Stefan Metzmacher | 1 | -10/+0 | |
metze | |||||
2009-10-30 | s4:kdc/hdb-samba4 - Remove unused variable | Matthias Dieter Wallnöfer | 1 | -1/+0 | |
2009-10-25 | s4-samdb: reduce the number of samdb opens at startup | Andrew Tridgell | 1 | -3/+3 | |
Using common parameters means that the ldb_wrap code can return a reference rather than a new database | |||||
2009-10-23 | s4-dsdb: create a static system_session context | Andrew Tridgell | 1 | -1/+1 | |
This patch adds a system_session cache, preventing us from having to recreate it on every ldb open, and allowing us to detect when the same session is being used in ldb_wrap | |||||
2009-10-14 | s4: Changes the old occurences of "lp_realm" in "lp_dnsdomain" where needed | Matthias Dieter Wallnöfer | 1 | -1/+1 | |
For KERBEROS applications the realm should be upcase (function "lp_realm") but for DNS ones it should be used lowcase (function "lp_dnsdomain"). This patch implements the use of both in the right way. | |||||
2009-10-14 | Revert "s4:hdb-samba4 - Don't double-free "db"" | Andrew Bartlett | 1 | -0/+1 | |
This reverts commit 11a8a54c825a52d7dd6ab78bc7aeff2d719327d2. The actual fix for bug 6801 is in hdb_end_seq_get() - this attempt leaks 'db' instead. Andrew Bartlett | |||||
2009-10-13 | s4:hdb-samba4 - Don't double-free "db" | Matthias Dieter Wallnöfer | 1 | -1/+0 | |
"db" is freed anyway after the destructor terminates so this does really make no sense here (rather it makes code crash). Should fix bug #6801. | |||||
2009-10-08 | s3/s4 - Adapt the IDL changes on various locations | Matthias Dieter Wallnöfer | 1 | -9/+8 | |
2009-09-18 | s4-server: kill main daemon if a task fails to initialise | Andrew Tridgell | 1 | -14/+14 | |
When one of our core tasks fails to initialise it can now ask for the server as a whole to die, rather than limping along in a degraded state. | |||||
2009-09-18 | s4-kdc: ignore unknown keytypes | Andrew Tridgell | 1 | -0/+6 | |
don't fail hdb operations if one of the key types is unknown | |||||
2009-09-16 | s4:kdc In the kpasswd server, don't use the client address in mk_priv | Andrew Bartlett | 1 | -0/+8 | |
This code eventually calls into mk_priv in the Heimdal code, and if the client is behind NAT, or somehow has an odd idea about it's own network addresses, it will fail to accept this packet if we set an address. It seems easiser not to. (Found by testing with NetAPP at plugfest) Andrew Bartlett |