summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
* s4/dn: handle case 'base' dn has no componentsKamen Mazdrashki2010-05-101-1/+1
| | | | This could if the 'base' dn is special for example.
* s4-smbtorture: add smbcli_rap_netoemchangepassword().Günther Deschner2010-05-101-0/+49
| | | | Guenther
* rap: add rap_NetOEMChangePassword() to IDL.Günther Deschner2010-05-101-0/+8
| | | | Guenther
* Fix the processing of unlocks followed by locks. We now pass SMB2-LOCK test.Jeremy Allison2010-05-101-9/+5
| | | | Jeremy.
* Fix more of the SMB2-LOCK tests. Correctly unlock locks on error.Jeremy Allison2010-05-101-3/+19
| | | | Jeremy.
* s4:password_hash LDB module - quiet a warningMatthias Dieter Wallnöfer2010-05-101-1/+1
|
* s4:password hash LDB module - check that password hashes are != NULL before ↵Matthias Dieter Wallnöfer2010-05-101-6/+10
| | | | copying them
* s4:password_hash LDB module - don't break the provisionMatthias Dieter Wallnöfer2010-05-101-0/+3
| | | | | This is to don't break the provision process at the moment. We need to find a better solution.
* s4:passwords.py - add a python unittest for additional testing of my ↵Matthias Dieter Wallnöfer2010-05-102-0/+580
| | | | | | | | passwords work This performs checks on direct password changes over LDB/LDAP. Indirect password changes over the RPCs are already tested by some torture suite (SAMR passwords). So no need to do this again here.
* s4:samdb_set_password - adapt it for the user password change handlingMatthias Dieter Wallnöfer2010-05-101-0/+12
| | | | Make use of the new "change old password checked" control.
* s4:samdb_set_password/samdb_set_password_sid - ReworkMatthias Dieter Wallnöfer2010-05-104-383/+159
| | | | | | | | Adapt the two functions for the restructured "password_hash" module. This means that basically all checks are now performed in the mentioned module. An exception consists in the SAMR password change calls since they need very precise NTSTATUS return codes on wrong constraints ("samr_password.c") file
* s4:password_hash - Implement password restrictionsStefan Metzmacher2010-05-101-0/+195
| | | | | | Based on the Patch from Matthias Dieter Wallnöfer <mwallnoefer@yahoo.de>. metze
* s4:password_hash - Rework to handle password changesMatthias Dieter Wallnöfer2010-05-101-138/+450
| | | | | | | | - Implement the password restrictions as specified in "samdb_set_password" (complexity, minimum password length, minimum password age...). - We support only (administrative) password reset operations at the moment - Support password (administrative) reset and change operations (consider MS-ADTS 3.1.1.3.1.5)
* s4:password_hash - Rework unique value checksMatthias Dieter Wallnöfer2010-05-101-49/+71
| | | | | Windows Server performs the constraint checks in a different way than we do. All testing has been done using "passwords.py".
* s4:password_hash - Various (mostly cosmetic) preworkMatthias Dieter Wallnöfer2010-05-101-176/+240
| | | | | | | | - Enhance comments - Get some more attributes from the domain and user object (needed later) - Check for right objectclass on change/set operations (instances of "user" and/or "inetOrgPerson") - otherwise forward the request - (Cosmetic) cleanup in asynchronous results regarding return values
* s4:dsdb: add new controlsMatthias Dieter Wallnöfer2010-05-102-0/+24
| | | | | | | - Add a new control for getting status informations (domain informations, password change status) directly from the module - Add a new control for allowing direct hash changes - Introduce an addtional control "change_old password checked" for the password
* s4:setup: mark DSDB_CONTROL_DN_STORAGE_FORMAT_OID 1.3.6.1.4.1.7165.4.3.4 as ↵Stefan Metzmacher2010-05-101-2/+4
| | | | | | allocated metze
* v2 Latest enhancements in ldapcmp toolZahari Zahariev2010-05-101-140/+262
| | | | | | | | | | | - Added support for replicating hosts versus hosts in different domains - Added switches for the following modes: = two - ignores additional attributes that cannot be the same in two different provisions (domains) = quiet - display nothing, only return code = verbose - display all dn objects through compare fase = default - display only objects with differences - Added more placeholders for nETBIOSDomainName and ServerName
* s4-rodc: Fix provision warnings by creating ntds objectGUID in provisionAnatoliy Atanasov2010-05-103-1/+32
|
* s3-rpcclient: fix two more invalid typecasts in spoolss commands.Günther Deschner2010-05-101-9/+47
| | | | Guenther
* s3: Work around dependency bug in Samba 4 waf build in merged build.Jelmer Vernooij2010-05-101-3/+4
|
* libwbclient: Fix a fd-leak at dlclose-timeVolker Lendecke2010-05-101-0/+3
| | | | | | | | | | | __attribute__((destructor)) makes winbind_close_sock() being called at dlclose() time. Found while testing apache on Linux with mod_auth_pam. Other platforms will have to find a different fix. One possibility would be to always close the socket after each operation, but this badly sucks performance-wise.
* s3: Test for "__attribute__((destructor))"Volker Lendecke2010-05-101-0/+16
|
* s4:acl ldb module - fix typosMatthias Dieter Wallnöfer2010-05-101-3/+3
|
* s4:dsdb/util.c - Add a new function for retrieving password change attributesMatthias Dieter Wallnöfer2010-05-101-0/+41
| | | | | | | | | This is needed since we have not only reset operations on password fields (attributes marked with REPLACE flag) but also change operations which can be performed by users itself. They have one attribute with the old value marked with the REMOVE flag and one with the new one marked with the ADD flag. This function helps to retrieve them (argument "new" is used for the new password on both reset and change).
* s4:blackbox password tests - more complex passwordsStefan Metzmacher2010-05-102-5/+5
|
* s4:selftest - change test passwordsMatthias Dieter Wallnöfer2010-05-101-3/+3
| | | | The passwords need to be more complex to meet the new complexity criteria.
* s4:selftest: add --socket-wrapper[-keep]-pcap options to "waf test"Stefan Metzmacher2010-05-101-0/+10
| | | | metze
* testprogs: update Makefile.mingw (although mingw current cant build it).Günther Deschner2010-05-101-4/+4
| | | | Guenther
* testprogs: update README to reflect the util rename.Günther Deschner2010-05-101-9/+9
| | | | Guenther
* testprogs: add readme for testspoolss.exe.Günther Deschner2010-05-102-1/+65
| | | | | | Patch from Kurt Pfeifle <Kurt.Pfeifle@ricoh.de>. Guenther
* testprogs: add vcproj and sln files for testspoolss.exe.Günther Deschner2010-05-102-0/+244
| | | | | | Patch from Kurt Pfeifle <Kurt.Pfeifle@ricoh.de>. Guenther
* testprogs: rename spoolss.exe to testspoolss.exe.Günther Deschner2010-05-105-7/+7
| | | | | | Patch from Kurt Pfeifle <Kurt.Pfeifle@ricoh.de>. Guenther
* s3-net: Fix Bug #7417. 'net rpc user password' can set the wrong password.Günther Deschner2010-05-101-1/+4
| | | | Guenther
* tevent: Added a description for tevent queue.Andreas Schneider2010-05-101-0/+9
|
* tevent: Added an introduction to the tevent_queue tutorial.Andreas Schneider2010-05-101-4/+38
| | | | Thanks Volker.
* tevent: Fixed a doxygen problem with PRINTF_ATTRIBUTE.Andreas Schneider2010-05-101-3/+3
|
* talloc: Fixed a doxygen problem with PRINTF_ATTRIBUTE.Andreas Schneider2010-05-101-3/+3
|
* build: Update the waf build to fix python header checksKai Blin2010-05-101-0/+0
|
* s3:provision_basedn_modify.ldif - add "msDS-NcType" attribute and fix commentsMatthias Dieter Wallnöfer2010-05-101-1/+5
|
* s3-proto: add missing protoype for dcerpc_fault_to_nt_status().Günther Deschner2010-05-091-0/+1
| | | | Guenther
* s3-lanman: use srvsvc for api_RNetServerGetInfo().Günther Deschner2010-05-091-45/+47
| | | | | | Following MS-RAP 3.2.5.3 NetServerGetInfo Command. Guenther
* s3-spoolss: Make spoolss_Time_to_time_t public.Simo Sorce2010-05-093-15/+16
| | | | Signed-off-by: Günther Deschner <gd@samba.org>
* s4:samldb LDB module - make "samldb_member_check" synchronous againMatthias Dieter Wallnöfer2010-05-091-64/+33
|
* s4:samldb LDB module - make "samldb_prim_group_users_check" synchronous againMatthias Dieter Wallnöfer2010-05-091-235/+24
|
* s4:samldb LDB module - update the copyright noticeMatthias Dieter Wallnöfer2010-05-091-1/+1
|
* s4:blackbox/test_kinit.sh - Test the new "net user add <user> [<password>]" ↵Matthias Dieter Wallnöfer2010-05-091-1/+1
| | | | syntax
* s4:net utility - make outprinted description comments more consistentMatthias Dieter Wallnöfer2010-05-0914-16/+16
| | | | | I've added a [server connection needed] when commands won't work on the local SamDB.
* s4:net utility - remove unixname parameter of samdb.newuserMatthias Dieter Wallnöfer2010-05-091-9/+4
| | | | We don't handle the id mapping stuff manually anymore.
* s4:samdb python bindings - remove idmap creation stuff from this callMatthias Dieter Wallnöfer2010-05-091-22/+1
| | | | The id mapping should now be handled automatically by the s4 daemon.