From dcb5720ad01fabac300da478368c140e2b6313d2 Mon Sep 17 00:00:00 2001 From: Björn Jacke Date: Mon, 15 Aug 2011 14:46:12 +0200 Subject: s3/ldap: don't continue if we couldn't get the domain info on startup MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit while some things work without the domain info, some important things don't, which is highly irritating. As even calls like EnumTrustDom fail and thus clients' domain logins fail we are sufficiently broken to refuse to go on. Autobuild-User: Björn Jacke Autobuild-Date: Thu Aug 18 12:48:37 CEST 2011 on sn-devel-104 --- source3/passdb/pdb_ldap.c | 11 ++++------- 1 file changed, 4 insertions(+), 7 deletions(-) (limited to 'source3') diff --git a/source3/passdb/pdb_ldap.c b/source3/passdb/pdb_ldap.c index 74dcceca4e..8b6f07c025 100644 --- a/source3/passdb/pdb_ldap.c +++ b/source3/passdb/pdb_ldap.c @@ -6576,13 +6576,10 @@ NTSTATUS pdb_init_ldapsam(struct pdb_methods **pdb_method, const char *location) ldap_state->domain_name, True); if ( !NT_STATUS_IS_OK(nt_status) ) { - DEBUG(2, ("pdb_init_ldapsam: WARNING: Could not get domain " - "info, nor add one to the domain\n")); - DEBUGADD(2, ("pdb_init_ldapsam: Continuing on regardless, " - "will be unable to allocate new users/groups, " - "and will risk BDCs having inconsistent SIDs\n")); - sid_copy(&ldap_state->domain_sid, get_global_sam_sid()); - return NT_STATUS_OK; + DEBUG(0, ("pdb_init_ldapsam: WARNING: Could not get domain " + "info, nor add one to the domain. " + "We cannot work reliably without it.\n")); + return NT_STATUS_CANT_ACCESS_DOMAIN_INFO; } /* Given that the above might fail, everything below this must be -- cgit