Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2009-07-03 | Restore ABI compatibility for talloc. | Simo Sorce | 1 | -1/+1 | |
2009-07-03 | s4: Don't install epdump, since it no longer exists. | Jelmer Vernooij | 1 | -2/+1 | |
2009-07-03 | s4 docs: Git has revision SHA's, not numbers. | Jelmer Vernooij | 1 | -1/+1 | |
2009-07-03 | s4: Remove stub endpoint mapper script. | Jelmer Vernooij | 1 | -24/+0 | |
2009-07-02 | s4:libcli: move SMB2 lock flags to smb2_constants.h | Stefan Metzmacher | 2 | -7/+8 | |
metze | |||||
2009-07-02 | s4-smbtorture: fix getjob test in RPC-SPOOLSS. | Günther Deschner | 1 | -0/+5 | |
Guenther | |||||
2009-07-02 | show attribute values in sorted order to make comparison easier | Andrew Tridgell | 1 | -0/+5 | |
2009-07-02 | we can't use the unique index code for samAccountName | Andrew Tridgell | 2 | -8/+75 | |
Using ldb unique indexes for samAccountName doesn't work with DRS as the other DC may send us a deleted record (tombstone record), which has the same samAccountName as an existing record. That would then create two records in the same partition with the same samAccountName. So we needed to put back the logic in samldb.c which explicitly checked whether a samAccountName already exists on add | |||||
2009-07-02 | decrypt all objects in a DRS record, not just the first one | Andrew Tridgell | 1 | -2/+5 | |
We found this as an object came across from w2k3 with zero values, which caused a segv when we tried to decrypt the first value | |||||
2009-07-02 | change talloc to 2.0.0 | Andrew Tridgell | 1 | -1/+1 | |
This is needed to prevent samba3 and samba4 from using an ABI incompatible system version of talloc See ongoing discussion on the samba-technical mailing list | |||||
2009-07-02 | Changed ldb.ERR_NO_SUCH_OBJECT to LDB_ERR_NO_SUCH_OBJECT. | Andrew Tridgell | 1 | -5/+5 | |
The LDB_ERR_NO_SUCH_OBJECT varient is not a defined variable. This should improve error handling in our python code on some systems. Unfortunately it still doesn't work on mine. I need to trap Jelmer somewhere where he can't escape some day and force him to divulge the deep druid secrets of python exception handling .... | |||||
2009-07-02 | fixed the pull of drs schema elements | Andrew Tridgell | 3 | -33/+108 | |
The previous code incorrectly assumed that attributes such as subClassOf come over the wire as strings. In fact they come over as 32 bit integers which refer to goversIDs. We have to post-process these as it sometimes happens that a governsID comes over the wire before the record that defines what it means. | |||||
2009-07-02 | the settings structure needs to be initialised | Andrew Tridgell | 1 | -0/+1 | |
2009-07-02 | s4:param use talloc_unlink() to free iconv context holding references | Andrew Bartlett | 1 | -1/+1 | |
2009-07-02 | [SAMBA 4 directory] Changes "forceLogoff" and corrects the "subRefs" | Matthias Dieter Wallnöfer | 1 | -2/+4 | |
- This changes the attribute "forceLogoff" to its' default values according to Windows Server 2003 R2 - Also this corrects the "subRefs" attribute of the base-DN which only refers to direct child partitions (and therefore not to the complete transitive closure) | |||||
2009-07-01 | removed a generated file | Andrew Tridgell | 1 | -74/+0 | |
2009-07-01 | use a talloc_reparent in a very ugly way | Andrew Tridgell | 1 | -2/+11 | |
this works around some terrible use of talloc in the libnet code | |||||
2009-07-01 | use the new talloc_reparent in two places | Andrew Tridgell | 2 | -2/+2 | |
2009-07-01 | gensec_start now steals the auth_context | Andrew Tridgell | 1 | -1/+3 | |
2009-07-01 | A rather strange varient of talloc_unlink | Andrew Tridgell | 1 | -1/+1 | |
A dcerpc request may have a reference from a still completing async callback, but we now consider the request to be complete. We want to lose the main parent, leaving just the reference, if any. | |||||
2009-07-01 | another case that should use py_talloc_reference | Andrew Tridgell | 1 | -1/+1 | |
2009-07-01 | use py_talloc_reference instead of py_talloc_import | Andrew Tridgell | 1 | -1/+1 | |
This is one of the few cases where we want the object to be owned by both the python object and C code | |||||
2009-07-01 | py_talloc_import now uses a steal, so this free is incorrect | Andrew Tridgell | 1 | -1/+0 | |
2009-07-01 | use a talloc_unlink() as ops may have a reference | Andrew Tridgell | 1 | -1/+1 | |
2009-07-01 | fixed the reference to the global_schema | Andrew Tridgell | 1 | -2/+3 | |
2009-07-01 | removed a redundent talloc_steal | Andrew Tridgell | 1 | -2/+0 | |
2009-07-01 | fixed the use of talloc_steal in ntlmssp_server | Andrew Tridgell | 1 | -3/+2 | |
The previous use of talloc_steal could cause a steal of a pointer that had references. This ensures that doesn't happen | |||||
2009-07-01 | fixed rpc smb code to not reply on talloc_free being a function pointer | Andrew Tridgell | 2 | -2/+13 | |
The upcoming talloc_free/talloc_reference changes change talloc_free to be a macro. These two bits of code relied on it being a function pointer | |||||
2009-07-01 | [SAMBA 4 directory] Corrects the "systemFlags" attributes | Matthias Dieter Wallnöfer | 7 | -32/+39 | |
Set the values like Windows Server 2003 R2. | |||||
2009-07-01 | [SAMBA 4 directory] Adds the complete "objectclass path" to our self-created ↵ | Matthias Dieter Wallnöfer | 1 | -0/+4 | |
DC object Found after some comparisons against Windows Server 2003 R2. | |||||
2009-07-01 | [SAMBA 4 directory] Adds the object version and "systemFlags" attribute to ↵ | Matthias Dieter Wallnöfer | 1 | -0/+2 | |
the display specifiers The object version showed up in the Windows 2003 Server R2 AD. The "systemFlags" attribute has been set to the right value. | |||||
2009-06-30 | s4-smbtorture: Test for newly added form with enum call in RPC-SPOOLSS. | Günther Deschner | 1 | -0/+45 | |
Guenther | |||||
2009-06-30 | s4-smbtorture: remove trailing whitespace from RPC-SPOOLSS. | Günther Deschner | 1 | -98/+98 | |
Guenther | |||||
2009-06-30 | Rework the kerberos-notes.txt in order and format | Don Davis | 1 | -0/+803 | |
This reworks the notes file to be less stream-of-consciousness and more task for porting, with a very particular focus on a potential port of Samba4 to use MIT Kerberos. Signed-off-by: Andrew Bartlett <abartlet@samba.org> | |||||
2009-06-30 | s4:ldb Allow rootdse module to build without ldb_private.h | Andrew Bartlett | 3 | -2/+4 | |
It seems quite reasonable to allow modules to re-initialise the set of cached DNs on the ldb context. Andrew Bartlett | |||||
2009-06-30 | s4: dsdb Avoid using the internal ldb_private.h header | Andrew Bartlett | 5 | -118/+122 | |
This job is not complete (the partition module remains a unfinished task), but now we do use the private ldb headers much less. Andrew Bartlett | |||||
2009-06-30 | s4:heimdal Allow KRB5_NT_ENTERPRISE names in all DB lookups | Andrew Bartlett | 4 | -24/+33 | |
The previous code only allowed an KRB5_NT_ENTERPRISE name (an e-mail list user principal name) in an AS-REQ. Evidence from the wild (Win2k8 reportadely) indicates that this is instead valid for all types of requests. While this is now handled in heimdal/kdc/misc.c, a flag is now defined in Heimdal's hdb so that we can take over this handling in future (once we start using a system Heimdal, and if we find out there is more to be done here). Andrew Bartlett | |||||
2009-06-30 | s4:kdc Only get the lp_ctx once for a LDB_fetch() | Andrew Bartlett | 1 | -11/+18 | |
2009-06-30 | Rework hdb-samba4 to remove useless abstractions. | Andrew Bartlett | 1 | -84/+44 | |
The function LDB_lookup_principal() has been eliminated, and it's contents spread back to it's callers. Removing the abstraction makes the code clearer. Also ensure we never pass unescaped user input to a LDB search function. Andrew Bartlett | |||||
2009-06-30 | s4:dsdb Explain the parsing steps for userPrincipalName cracknames calls | Andrew Bartlett | 1 | -0/+4 | |
2009-06-29 | s4-smbtorture: use torture_comment & torture_warning in RPC samr tests. | Günther Deschner | 1 | -205/+206 | |
Guenther | |||||
2009-06-29 | s4-smbtorture: correctly test comment behaviour in RPC-SAMR-USERS against s3. | Günther Deschner | 1 | -7/+4 | |
Guenther | |||||
2009-06-29 | s4-smbtorture: add RPC-SAMR-MACHINE-AUTH test. | Günther Deschner | 2 | -1/+486 | |
This test talks to a DC as a joined workstation member - in the same way winbindd does, in particular the calls used in this test's query pattern will all request for SEC_FLAG_MAXIMUM_ALLOWED access_mask (which pretty much all of samba's client code does as well). In fact this test verifies that winbind can correctly talk to a samba dc using samr dcerpc calls. Guenther | |||||
2009-06-29 | s4-smbtorture: add torture_suite_add_machine_workstation_rpc_iface_tcase. | Günther Deschner | 5 | -10/+65 | |
Unlike torture_suite_add_machine_bdc_rpc_iface_tcase() which joins as a BDC (ACB_SRVTRUST) this joins as a member workstation (ACB_WSTRUST). Guenther | |||||
2009-06-29 | Adds the impersonation level in ntcreatex requests to SAMBA 3 misc torture test | Matthias Dieter Wallnöfer | 1 | -0/+4 | |
Specifies the impersonation level according to the reporter commit in bug #6283 | |||||
2009-06-29 | Correct some typos in the LDB partition module | Matthias Dieter Wallnöfer | 1 | -5/+5 | |
2009-06-29 | SAMDB: Don't check for "sAMAccountName" twice | Matthias Dieter Wallnöfer | 1 | -1/+0 | |
2009-06-29 | Enhancement of "simple ldap map" with "systemFlags" attribute | Matthias Dieter Wallnöfer | 1 | -0/+22 | |
Enhance the simple ldap map to support also the "systemFlags" attribute in the correct way. | |||||
2009-06-29 | ldb: Properly handle NULL when copying attr lists. | Andrew Kroeger | 1 | -4/+4 | |
When copying an attribute list, ensure the list itself is not NULL before attempting to access elements of the list. | |||||
2009-06-29 | Correct the headers of some SAMBA 4 setup python scripts | Matthias Dieter Wallnöfer | 3 | -3/+3 | |