From 4be3f7665c6fe17b782098d74a4b02c4555269b8 Mon Sep 17 00:00:00 2001 From: Jeremy Allison Date: Fri, 6 Oct 2006 02:04:57 +0000 Subject: r19105: Ok - this is currently untested (but I'm testing it at the moment) but winbindd isn't run in the build farm so hopefully won't break anything too badly - I don't want to lose this. If winbindd starts offline then it falls back to using MS-RPC backend. On going online it needs to reset the backend and try and go to using the AD backend code if possible, as the MS-RPC sequence number fetch just returns 1 as the sequence number if run against an AD DC. In addition, the winbindd async child may end up with the AD backend whilst the main winbindd - which still contacts the DC for some non-async calls, is left using MS-RPC. This can cause some trouble (as you can imagine :-). Attempt to ensure both main winbindd and async children us AD backends on going online. Jeremy. (This used to be commit 5efd4b04b89ace4b264e9ac37a90e202749792be) --- source3/nsswitch/winbindd_rpc.c | 46 ++++++----------------------------------- 1 file changed, 6 insertions(+), 40 deletions(-) (limited to 'source3/nsswitch/winbindd_rpc.c') diff --git a/source3/nsswitch/winbindd_rpc.c b/source3/nsswitch/winbindd_rpc.c index dcf9b9b26e..06f0d2cb60 100644 --- a/source3/nsswitch/winbindd_rpc.c +++ b/source3/nsswitch/winbindd_rpc.c @@ -770,48 +770,14 @@ static int get_ldap_seq(const char *server, int port, uint32 *seq) static int get_ldap_sequence_number(struct winbindd_domain *domain, uint32 *seq) { int ret = -1; - int i, port = LDAP_PORT; - struct ip_service *ip_list = NULL; - int count; - - if ( !NT_STATUS_IS_OK(get_sorted_dc_list(domain->name, &ip_list, &count, - False)) ) { - DEBUG(3, ("Could not look up dc's for domain %s\n", domain->name)); - return False; - } - - /* Finally return first DC that we can contact */ - - for (i = 0; i < count; i++) { - fstring ipstr; - - /* since the is an LDAP lookup, default to the LDAP_PORT is - * not set */ - port = (ip_list[i].port!= PORT_NONE) ? - ip_list[i].port : LDAP_PORT; - - fstrcpy( ipstr, inet_ntoa(ip_list[i].ip) ); - - if (is_zero_ip(ip_list[i].ip)) - continue; + fstring ipstr; - if ( (ret = get_ldap_seq( ipstr, port, seq)) == 0 ) - goto done; - - /* add to failed connection cache */ - winbind_add_failed_connection_entry( domain, ipstr, - NT_STATUS_UNSUCCESSFUL ); - } - -done: - if ( ret == 0 ) { + fstrcpy( ipstr, inet_ntoa(domain->dcaddr.sin_addr)); + if ((ret = get_ldap_seq( ipstr, LDAP_PORT, seq)) == 0) { DEBUG(3, ("get_ldap_sequence_number: Retrieved sequence " - "number for Domain (%s) from DC (%s:%d)\n", - domain->name, inet_ntoa(ip_list[i].ip), port)); - } - - SAFE_FREE(ip_list); - + "number for Domain (%s) from DC (%s)\n", + domain->name, ipstr)); + } return ret; } -- cgit