Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2010-11-15 | auth/ntlm: Use name consistent with other service names. | Jelmer Vernooij | 1 | -1/+1 | |
2010-11-15 | auth/gensec Handle incorrect username or password in Kerberos client code | Andrew Bartlett | 2 | -0/+3 | |
Andrew Bartlett Autobuild-User: Andrew Bartlett <abartlet@samba.org> Autobuild-Date: Mon Nov 15 02:09:40 UTC 2010 on sn-devel-104 | |||||
2010-11-15 | s4-kdc update startup routines after heimdal update | Andrew Bartlett | 1 | -1/+13 | |
We should check the errors from krb5_kdc_windc_init and we now need to additionally run krb5_kdc_pkinit_config() Andrew Bartlett | |||||
2010-11-15 | s4-kdc Remove use of heimdal private headers in kpasswd server. | Andrew Bartlett | 1 | -16/+3 | |
This remains an abuse, because it relies on setting into the krb5_principal structure, but at least it causes less trouble for the server. Andrew Bartlett | |||||
2010-11-15 | heimdal Extra files required for merge up to current heimdal | Andrew Bartlett | 31 | -23/+6724 | |
2010-11-15 | heimdal regenate lex and yacc files | Andrew Bartlett | 9 | -3475/+2672 | |
2010-11-15 | Add attribute macros for Heimdal to use | Andrew Bartlett | 3 | -1/+480 | |
Heimdal uses HEIMDAL_NORETURN_ATTRIBUTE and HEIMDAL_PRINTF_ATTRIBUTE, and we need to provide a link between these and Samba's function attribute handling. Andrew Bartlett | |||||
2010-11-15 | s4:heimdal: import lorikeet-heimdal-201011102149 (commit ↵ | Andrew Bartlett | 47 | -11222/+1373 | |
5734d03c20e104c8f45533d07f2a2cbbd3224f29) | |||||
2010-11-15 | s4/dns: Build as shared module. | Jelmer Vernooij | 1 | -2/+3 | |
Autobuild-User: Jelmer Vernooij <jelmer@samba.org> Autobuild-Date: Mon Nov 15 00:57:27 UTC 2010 on sn-devel-104 | |||||
2010-11-15 | s4-kdc: if "bind interfaces only" is false, then also listen on wildcard | Andrew Tridgell | 1 | -20/+44 | |
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> Autobuild-User: Andrew Tridgell <tridge@samba.org> Autobuild-Date: Mon Nov 15 00:13:59 UTC 2010 on sn-devel-104 | |||||
2010-11-15 | s4-server: make server sockets a child of the task context | Andrew Tridgell | 14 | -39/+52 | |
We previously allocated sockets as direct children of the event context. That led to crashes if a service called task_server_terminate(), as it left the socket open and handling events for a dead protocol. Making them a child of the task allows the task to terminate and take all its sockets with it. Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> | |||||
2010-11-15 | samba-tool: fixed crash in "samba-tool drs showrepl" | Andrew Tridgell | 1 | -5/+11 | |
the source_dsa_obj_dn can be NULL Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> | |||||
2010-11-14 | web_server: Build as module. | Jelmer Vernooij | 4 | -9/+16 | |
Autobuild-User: Jelmer Vernooij <jelmer@samba.org> Autobuild-Date: Sun Nov 14 17:58:05 UTC 2010 on sn-devel-104 | |||||
2010-11-14 | kcc/drepl: Build as service. | Jelmer Vernooij | 1 | -4/+6 | |
2010-11-14 | winbind: Build as shared module. | Jelmer Vernooij | 1 | -2/+3 | |
2010-11-14 | Build wrepl server as service by default. | Jelmer Vernooij | 3 | -3/+4 | |
2010-11-14 | Re-enable ldb-cmdline for the moment, as it is used by oLschema2ldif. | Jelmer Vernooij | 1 | -5/+5 | |
2010-11-14 | Don't build ldb tools when there is a system provided ldb. | Jelmer Vernooij | 1 | -13/+13 | |
2010-11-14 | s4-auth: fixed infinite loop in krb5 auth | Andrew Tridgell | 1 | -1/+1 | |
we were continually trying the first address returned, instead of moving to the next address Autobuild-User: Andrew Tridgell <tridge@samba.org> Autobuild-Date: Sun Nov 14 04:11:28 UTC 2010 on sn-devel-104 | |||||
2010-11-14 | s4-auth: fixed crash in krb5 auth | Andrew Tridgell | 1 | -2/+1 | |
remote_addr was used after free | |||||
2010-11-13 | s4:password_hash LDB module - return "ERR_CONSTRAINT_VIOLATION" on password ↵ | Matthias Dieter Wallnöfer | 1 | -6/+9 | |
conversion errors This errors can happen also on a regular basis - then we shouldn't return ERR_OPERATIONS_ERROR (this error code is reserved for very serious failures). Autobuild-User: Matthias Dieter Wallnöfer <mdw@samba.org> Autobuild-Date: Sat Nov 13 12:37:36 UTC 2010 on sn-devel-104 | |||||
2010-11-13 | s4:upgradeprovision - why not directly use "provision:0"? | Matthias Dieter Wallnöfer | 1 | -4/+4 | |
2010-11-13 | s4:objectclass LDB module - multiple "objectClass" change elements are ↵ | Matthias Dieter Wallnöfer | 2 | -173/+178 | |
unfortunately still allowed The test message has been compressed - therefore I've now used "modify_ldif". | |||||
2010-11-13 | s4-drs: fixed a crash in writspn | Andrew Tridgell | 1 | -2/+8 | |
sam_ctx_system may be NULL for non-privileged users Autobuild-User: Andrew Tridgell <tridge@samba.org> Autobuild-Date: Sat Nov 13 08:52:53 UTC 2010 on sn-devel-104 | |||||
2010-11-13 | s4-test: we need to import testtools before subunit/python | Andrew Tridgell | 1 | -1/+1 | |
subunit/python depends on testtools Autobuild-User: Andrew Tridgell <tridge@samba.org> Autobuild-Date: Sat Nov 13 02:02:45 UTC 2010 on sn-devel-104 | |||||
2010-11-12 | ktpass: also use userPrincipalName for locating the principal | Matthieu Patou | 1 | -1/+2 | |
Autobuild-User: Matthieu Patou <mat@samba.org> Autobuild-Date: Fri Nov 12 20:24:23 UTC 2010 on sn-devel-104 | |||||
2010-11-12 | ktpass: fix the search path for when running in samba's source dir | Matthieu Patou | 1 | -0/+3 | |
2010-11-12 | python: use the ldbMessage + modify notation instead of modify_ldif that we ↵ | Matthieu Patou | 1 | -7/+6 | |
try to avoid | |||||
2010-11-12 | Fix typo | Matthieu Patou | 1 | -1/+1 | |
2010-11-12 | unit tests: add testing for dns account password change | Matthieu Patou | 1 | -0/+4 | |
2010-11-12 | upgradeprovision: use relaxed control while adding missing object container | Matthieu Patou | 1 | -1/+3 | |
2010-11-12 | upgradeprovision: fix pb with dns-hostname, regenerate a correct keytab | Matthieu Patou | 2 | -1/+75 | |
2010-11-12 | upgradeprovision: use the relax/(upgrade)provision when modifying object | Matthieu Patou | 1 | -1/+8 | |
For certain attribute we use the relax/provision control so that we try to respect checks as this is not a good idea to always force unwanted behavior. | |||||
2010-11-12 | upgradeprovision: use the (upgrade)provision control also | Matthieu Patou | 1 | -2/+2 | |
2010-11-12 | upgradeprovision: update revision for forestupdate and domainupdate objects | Matthieu Patou | 1 | -1/+4 | |
2010-11-12 | samldb: relax groupType modification checks | Matthieu Patou | 1 | -27/+32 | |
Allow programs with the PROVISION control to bypass groupType checks. This is needed by upgradeprovision for older alpha (11, 10 ...) | |||||
2010-11-12 | Add a script to make backup of samba provision | Matthieu Patou | 1 | -0/+65 | |
2010-11-12 | s4:objectclass LDB module - we should not simply ignore additional ↵ | Matthias Dieter Wallnöfer | 2 | -2/+29 | |
"objectClass" attribute changes There first one we perform all other tentatives are terminated with ERR_ATTRIBUTE_OR_VALUE_EXISTS (tested against Windows). Autobuild-User: Matthias Dieter Wallnöfer <mdw@samba.org> Autobuild-Date: Fri Nov 12 19:39:07 UTC 2010 on sn-devel-104 | |||||
2010-11-12 | s4:repl_meta_data LDB module - convert two debug messages into error messages | Matthias Dieter Wallnöfer | 1 | -4/+4 | |
These regarding "objectGUID". | |||||
2010-11-12 | s4:samldb/objectclass_attrs LDB modules - move "description" logic from ↵ | Matthias Dieter Wallnöfer | 4 | -198/+245 | |
"objectclass_attrs" into "samldb" This according to an answer from dochelp is SAM specific behaviour. | |||||
2010-11-12 | s4: Remove obsolete mkversion.sh | Jelmer Vernooij | 1 | -133/+0 | |
2010-11-12 | samba_version: When working from git checkout, display git revision SHA1 rather | Jelmer Vernooij | 1 | -1/+1 | |
than Bazaar revision ids. | |||||
2010-11-12 | torture: Only add in tests for socket_wrapper/nss_wrapper when they have ↵ | Jelmer Vernooij | 2 | -2/+18 | |
been enabled. | |||||
2010-11-12 | unix_privs: Add missing dependency on libreplace. | Jelmer Vernooij | 1 | -1/+1 | |
2010-11-12 | heimdal_build: Add missing dependency on replace, necessary because ↵ | Jelmer Vernooij | 1 | -1/+1 | |
replace.h is included. | |||||
2010-11-12 | Lowercase DNS_UPDATE_SRV name. | Jelmer Vernooij | 1 | -1/+1 | |
2010-11-12 | s4-kdc: added proxying of kdc requests for RODCs | Andrew Tridgell | 5 | -66/+782 | |
when we are an RODC and we get a request for a principal that we don't have the right secrets for, we need to proxy the request to a writeable DC. This happens for both TCP and UDP requests, for both krb5 and kpasswd Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> Autobuild-User: Andrew Tridgell <tridge@samba.org> Autobuild-Date: Fri Nov 12 08:03:20 UTC 2010 on sn-devel-104 | |||||
2010-11-12 | s4-kdc Return HDB_ERR_NOT_FOUND_HERE on un-revealed accounts on an RODC | Andrew Bartlett | 1 | -1/+7 | |
This means that when we are an RODC, and an account does not have the password attributes, we can now indicate to the kdc code that it should forward the request to a real DC. (The proxy code itself is not in this commit). Andrew Bartlett | |||||
2010-11-12 | heimdal Return HDB_ERR_NOT_FOUND_HERE to the caller | Andrew Bartlett | 3 | -11/+34 | |
This means that no reply packet should be generated, but that instead the user of the libkdc API should forward the packet to a real KDC, that has a full database. Andrew Bartlett | |||||
2010-11-12 | s4-kdc: split the kdc process return into a tri-state | Andrew Tridgell | 3 | -53/+59 | |
this is in preparation for doing forwarding of packets for RODCs Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org> |