Age | Commit message (Collapse) | Author | Files | Lines | |
---|---|---|---|---|---|
2012-05-09 | s4:torture/raw/context: test a session setup with a given invalid vuid | Stefan Metzmacher | 1 | -17/+29 | |
On a session setup with EXTENDED_SECURITY we'll get ERRSRV:ERRbaduid, while a session setup without EXTENDED_SECURITY ignores the given vuid. Before this test was doing a reauth of a given vuid, which works for newer Windows versions, but Windows 2000 gives INVALID_PARAMETER. metze | |||||
2012-05-08 | s4:libcli:raw: fix a comment typo in smb_setfileinfo() | Michael Adam | 1 | -1/+1 | |
Autobuild-User: Michael Adam <obnox@samba.org> Autobuild-Date: Tue May 8 20:45:16 CEST 2012 on sn-devel-104 | |||||
2012-05-08 | s4:torture: add a new smb2.session.reauth5 test: rename after reauth to anon ↵ | Michael Adam | 1 | -0/+228 | |
- fails | |||||
2012-05-08 | s4:torture: add a new smb2.session.reauth4 test: setting security descriptor ↵ | Michael Adam | 1 | -0/+122 | |
after reauth to anon - works | |||||
2012-05-08 | s4 dns: unify error handling when bailing out | Kai Blin | 1 | -12/+11 | |
Autobuild-User: Kai Blin <kai@samba.org> Autobuild-Date: Tue May 8 15:48:25 CEST 2012 on sn-devel-104 | |||||
2012-05-08 | krb5samba: Add smb_krb5_make_pac_checksum. | Andreas Schneider | 1 | -0/+1 | |
Signed-off-by: Simo Sorce <idra@samba.org> Autobuild-User: Simo Sorce <idra@samba.org> Autobuild-Date: Tue May 8 08:30:52 CEST 2012 on sn-devel-104 | |||||
2012-05-08 | s4-auth: Use smb_krb5_make_pac_checksum. | Andreas Schneider | 1 | -54/+24 | |
Signed-off-by: Simo Sorce <idra@samba.org> | |||||
2012-05-08 | krb5samba: Add krb5_free_checksum_contents wrapper | Simo Sorce | 1 | -0/+1 | |
2012-05-08 | s4-provision Ensure we have posix ACLs before we permit a s3fs-based Samba4 ↵ | Andrew Bartlett | 1 | -0/+14 | |
to be configured | |||||
2012-05-08 | s4:torture/raw/context: add subtests as torture testcases | Stefan Metzmacher | 1 | -46/+20 | |
TODO: add test_session with 'use spnego = false'. We need a way to do set an option just for one test case. Note: the 'use spnego = false' was ignored before as it's only used on the first session setup on a connection. metze Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Tue May 8 04:50:39 CEST 2012 on sn-devel-104 | |||||
2012-05-08 | s4:torture/raw/context: INVALID_PARAMETER vs. LOGON_FAILURE... | Stefan Metzmacher | 1 | -1/+7 | |
If the try a session setup without EXTENDED_SECURITY after one with EXTENDED_SECURITY Windows 2008 R2 returns INVALID_PARAMETER, while Windows 2000 sp4 returns LOGON_FAILURE... metze | |||||
2012-05-08 | s4:torture/raw: make torture_raw_context a test suite | Stefan Metzmacher | 2 | -3/+12 | |
metze | |||||
2012-05-08 | s4:torture/raw/context: make use of torture_* macros and avoid 'printf' | Stefan Metzmacher | 1 | -100/+87 | |
metze | |||||
2012-05-08 | s4:torture/raw/context: pass tctx to test_pid_exit_only_sees_open() | Stefan Metzmacher | 1 | -1/+3 | |
metze | |||||
2012-05-08 | s4:torture/raw/session: make sure we got a reauth of the existing session | Stefan Metzmacher | 1 | -0/+2 | |
metze | |||||
2012-05-07 | heimdal: Cope with newer Heimdal versions accepting a keyset argument to | Jelmer Vernooij | 2 | -4/+26 | |
hdb_enctype2key. Autobuild-User: Jelmer Vernooij <jelmer@samba.org> Autobuild-Date: Mon May 7 18:33:10 CEST 2012 on sn-devel-104 | |||||
2012-05-07 | s4-dns: Build BIND DLZ modules with correct private library | Amitay Isaacs | 1 | -2/+2 | |
This fixes rpath for samdb-common private library after make install. Autobuild-User: Amitay Isaacs <amitay@samba.org> Autobuild-Date: Mon May 7 07:40:29 CEST 2012 on sn-devel-104 | |||||
2012-05-06 | s4:libcli/smb2: use PROTOCOL_LATEST | Stefan Metzmacher | 1 | -1/+1 | |
metze | |||||
2012-05-06 | s4-s3-upgrade: Max/min password age policy is in seconds, not days | Andrew Bartlett | 1 | -2/+2 | |
This cases upgraded domains to have a too-long password expiry, which in extreme cases can cause the KDC to misfunction. Andrew Bartlett Autobuild-User: Andrew Bartlett <abartlet@samba.org> Autobuild-Date: Sun May 6 14:49:39 CEST 2012 on sn-devel-104 | |||||
2012-05-06 | s4-schema: Validate more class attribute when adding a new class in the schema | Matthieu Patou | 1 | -0/+29 | |
Autobuild-User: Matthieu Patou <mat@samba.org> Autobuild-Date: Sun May 6 04:17:56 CEST 2012 on sn-devel-104 | |||||
2012-05-05 | s4: use intermediate var, increase lisibility | Matthieu Patou | 1 | -6/+5 | |
2012-05-05 | olschema2ldif: be more strict where checking for open/closed braces | Matthieu Patou | 1 | -3/+15 | |
2012-05-04 | s4:auth/kerberos: don't do tracing in MIT build | Alexander Bokovoy | 1 | -17/+0 | |
Signed-off-by: Simo Sorce <idra@samba.org> | |||||
2012-05-04 | s4:torture: auth/pac.c: use Kerberos wrapper for krb5_keyblock_init | Alexander Bokovoy | 1 | -4/+4 | |
Signed-off-by: Simo Sorce <idra@samba.org> | |||||
2012-05-04 | Avoid using Heimdal-specific tests in MIT build | Alexander Bokovoy | 3 | -3/+14 | |
2012-05-04 | s4:ntvfs: add missing headers to vfs_ipc | Alexander Bokovoy | 1 | -0/+2 | |
vfs_ipc.c had system/kerberos.h and system/filesys.h missing Signed-off-by: Simo Sorce <idra@samba.org> | |||||
2012-05-04 | Fix direct access to krb5_principal structure | Simo Sorce | 1 | -2/+4 | |
2012-05-04 | auth-session: MIT doesn't have import/export cred yet | Simo Sorce | 2 | -3/+7 | |
For now let's just loose this functionality with the MIT build. gss_import/export_cred should be availa ble when MIT 1.11 is released and this code is used only in some proxy scenario. Not normally needed for common configurations. | |||||
2012-05-04 | krb5samba: Add a smb_krb5_cc_get_lifetime() function. | Andreas Schneider | 1 | -0/+1 | |
Signed-off-by: Simo Sorce <idra@samba.org> | |||||
2012-05-04 | s4-auth-krb: Make srv_keytab.c build against MIT Kerberos | Simo Sorce | 1 | -8/+11 | |
2012-05-04 | Fix incompatible assignment warning | Simo Sorce | 1 | -1/+1 | |
2012-05-04 | krb5samba: Add compat krb5_make_principal for MIT build | Simo Sorce | 1 | -0/+1 | |
2012-05-04 | Fix compiler warning | Simo Sorce | 1 | -1/+1 | |
2012-05-04 | s4-auth-krb: Use compat code to initialize keyblock contents | Simo Sorce | 1 | -1/+1 | |
2012-05-04 | krb5samba: Add compat code to initialize keyblock contents | Simo Sorce | 1 | -0/+1 | |
2012-05-04 | s4-auth-krb: Disable code in MIT build | Simo Sorce | 1 | -1/+4 | |
Unfortunately these functions are not available in MIT and there is no easy workaround or compat funciton I can see at this stage. Will fix properly once MIT gets the necessary functions or if another workaround can be found. | |||||
2012-05-04 | Move keytab_copy to krb5samba lib | Simo Sorce | 2 | -231/+1 | |
This is a helper fucntion that uses purely krb5 code, so it belongs to krb5samba which is the krb5 wrapper for samba. | |||||
2012-05-04 | Fix keytab_copy to compile with MIT librariues too | Simo Sorce | 1 | -10/+12 | |
2012-05-04 | keytab_copy: Fix style, whitespaces | Simo Sorce | 1 | -8/+17 | |
2012-05-04 | kerberos_pac: Fix code to work with MIT too | Simo Sorce | 1 | -3/+3 | |
2012-05-04 | s4-auth-krb: smb_rd_req_return_stuff is used only in gensec_krb5 | Simo Sorce | 5 | -2/+13 | |
Make it clearly a gensec_krb5 accessory file. This function should never be used anywhere else. This function was copied out from the Heimdal tree and is kept in a separate file for clarity and to keep the original license boilerplate. | |||||
2012-05-04 | Split normal kinit from s4u2 flavored kinit | Simo Sorce | 1 | -7/+21 | |
This makes it simpler to slowly integrate MIT support and also amkes it somewhat clearer what operation is really requested. The 24u2 part is really only used by the cifs proxy code so we can temporarily disable it in the MIT build w/o major consequences. | |||||
2012-05-04 | Move kerberos_kinit_password_cc to krb5samba lib | Simo Sorce | 3 | -427/+1 | |
2012-05-04 | Move kerberos_kinit_keyblock_cc to krb5samba lib | Simo Sorce | 3 | -55/+1 | |
Make it also work with MIT where krb5_get_in_tkt_with_keyblock is not available. | |||||
2012-05-04 | krb-init: define out heimdal specific stuff in mitkrb build | Simo Sorce | 1 | -3/+12 | |
2012-05-04 | s4-auth-krb: avoid useless condition | Simo Sorce | 1 | -1/+1 | |
Code bails out with ENOMEM 2 lines a bove if config_file is NULL anyways | |||||
2012-05-04 | s4:torture: add a check for talloc success in test_session_reauth | Volker Lendecke | 1 | -0/+1 | |
Autobuild-User: Volker Lendecke <vl@samba.org> Autobuild-Date: Fri May 4 16:50:59 CEST 2012 on sn-devel-104 | |||||
2012-05-04 | s4-dsdb: Use data_blob_string_const and add explaination for open-coded ↵ | Andrew Bartlett | 1 | -4/+6 | |
function in samldb Autobuild-User: Andrew Bartlett <abartlet@samba.org> Autobuild-Date: Fri May 4 02:34:41 CEST 2012 on sn-devel-104 | |||||
2012-05-04 | s4-dsdb: Use strcasecmp_m() to compare possibly multibyte strings in samldb | Andrew Bartlett | 1 | -5/+5 | |
2012-05-04 | s4:samldb LDB module - make sure to not add identical ↵ | Matthias Dieter Wallnöfer | 2 | -16/+88 | |
"servicePrincipalName"s more than once The service principal names need to be case-insensitively unique, otherwise we end up in a LDB ERR_ATTRIBUTE_OR_VALUE_EXISTS error. This issue has been discovered on the technical mailing list (thread: cannot rename windows xp machine in samba4) when trying to rename a AD client workstation. |