summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* Fix bad string in debug message (remove it).Jeremy Allison2012-09-141-4/+2
|
* Add bool use_privs parameter to smbd_check_access_rights()Jeremy Allison2012-09-145-4/+18
| | | | | If this is set we should use it in preference to blindly assuming root can do anything. Currently set to 'false' in (most) callers.
* Add "backup_intent" bool.Jeremy Allison2012-09-141-1/+2
|
* Don't call can_write_to_file() if we already have 'fsp->can_write' set.Jeremy Allison2012-09-141-0/+2
|
* build: Fix build on systems without ldap development headersAndrew Bartlett2012-09-141-0/+1
| | | | | Autobuild-User(master): Andrew Bartlett <abartlet@samba.org> Autobuild-Date(master): Fri Sep 14 22:53:30 CEST 2012 on sn-devel-104
* docs: update for modern kerberos libsAndrew Bartlett2012-09-141-50/+2
|
* docs: remove references to security=serverAndrew Bartlett2012-09-141-66/+0
|
* docs: Remove distinction between server and domain accountsAndrew Bartlett2012-09-141-30/+0
| | | | | | | Accounts on a server become accounts on the DC when upgraded. If they do not then this is simply a bug (in say tdbsam), not a feature to be documented. Andrew Bartlett
* docs: Update docs to the modern age of Samba 4.0Andrew Bartlett2012-09-142-267/+15
| | | | | | | | This removes references to security=share, security=server and other outdated things. It also updates to a world where encrypted passwords are the norm. Andrew Bartlett
* s4:torture: fix error reporting in the raw.oplock-brl3 testMichael Adam2012-09-141-2/+1
| | | | | | | Error was assigned to a variable that was not returned. Autobuild-User(master): Michael Adam <obnox@samba.org> Autobuild-Date(master): Fri Sep 14 14:05:20 CEST 2012 on sn-devel-104
* s3: fix the hpux acl moduleBjörn Jacke2012-09-141-5/+5
| | | | | | | This was not adopted to the recent VFS acl structure changes. Autobuild-User(master): Björn Jacke <bj@sernet.de> Autobuild-Date(master): Fri Sep 14 12:23:23 CEST 2012 on sn-devel-104
* s3: fix the tru64 acl moduleBjörn Jacke2012-09-141-5/+5
| | | | This was not adopted to the recent VFS acl structure changes.
* s3: fix the aix acl moduleBjörn Jacke2012-09-141-9/+9
| | | | This was not adopted to the recent VFS acl structure changes.
* WHATSNEW: Fix some issues in the release notes.Karolin Seeger2012-09-141-12/+11
| | | | | | | Karolin Autobuild-User(master): Karolin Seeger <kseeger@samba.org> Autobuild-Date(master): Fri Sep 14 10:40:02 CEST 2012 on sn-devel-104
* s3: Fix the vfs_solarisacl module to compile.Ira Cooper2012-09-141-5/+5
| | | | | | | This got broken with the recent VFS acl structure changes. Autobuild-User(master): Ira Cooper <ira@samba.org> Autobuild-Date(master): Fri Sep 14 05:21:29 CEST 2012 on sn-devel-104
* packaging: apply some solaris packaging fixesBjörn Jacke2012-09-142-17/+17
| | | | | | | | Actually this might be outdated already. See bug #5670. Thanks to Michal Ludvig. Autobuild-User(master): Björn Jacke <bj@sernet.de> Autobuild-Date(master): Fri Sep 14 02:42:53 CEST 2012 on sn-devel-104
* autoconf: fix --with(out)-sendfile-support option handlingBjörn Jacke2012-09-141-15/+20
| | | | this fixes bug #8344
* s3: make smbldaphelper subsystem an internal libraryAlexander Bokovoy2012-09-143-11/+10
| | | | | | | | | | | | | | | | | Break pdb_ldap -> smbldaphelper -> pdb -> pdb_ldap loop by making smbldaphelp intentionally underlinked internal library. It means that libsmbldaphelp is not usable unless its user is also linked to libpdb (that is the case for both its users, idmap_ldap and pdb_ldap, already) but gives us a break of the circular dependency in case pdb_ldap statically linked into pdb (default). This should solve case when idmap_ldap and pdb_ldap are dynamically loaded modules Autobuild-User(master): Alexander Bokovoy <ab@samba.org> Autobuild-Date(master): Fri Sep 14 01:02:21 CEST 2012 on sn-devel-104
* Sigh :-(. Removing optimization prematurely is the root of all evil :-(.Jeremy Allison2012-09-133-0/+15
| | | | | | | | | | | | | | | | | Sorry for the mistake, but the LastDir singleton cache in vfs_ChDir() actually plays an important role. When we're processing a stream of SMB1/SMB2/SMB3 requests we don't want to add a chdir()/getcwd() system call pair on every request if they're all on the same connection and dealing with the same base path. I did some testing with a program that times 1,000,000 chdir() requests vs. 1,000,000 strcmp requests and it's a penalty of 10x doing the system calls. Just because it's old code, doesn't mean it's bad :-(. Autobuild-User(master): Jeremy Allison <jra@samba.org> Autobuild-Date(master): Thu Sep 13 21:31:42 CEST 2012 on sn-devel-104
* docs: Fix generating idmap manpages.Andreas Schneider2012-09-131-0/+8
| | | | | Autobuild-User(master): Andreas Schneider <asn@cryptomilk.org> Autobuild-Date(master): Thu Sep 13 19:52:53 CEST 2012 on sn-devel-104
* s3: make ldapsam-related functions a smbldaphelper subsystemAlexander Bokovoy2012-09-133-4/+7
| | | | | | | | | | | | | | | Since these functions are used in pdb_ldap and idmap_ldap, and pdb_ldap might be statically linked to libpdb (default), it is better to keep them as separate subsystem to avoid polluting libpdb namespace. This is first step in refactoring libpdb. Right now I cannot move these functions into proper libsmbldaphelper as it uses more of libpdb-included functions and linking pdb_ldap against libsmbldaphelper library would have created a loop if pdb_ldap is included into libpdb. Autobuild-User(master): Alexander Bokovoy <ab@samba.org> Autobuild-Date(master): Thu Sep 13 17:36:07 CEST 2012 on sn-devel-104
* VERSION: Bump version up to 4.1.0pre1Michael Adam2012-09-131-4/+4
| | | | | | | Pair-Programmed-With: Stefan Metzmacher <metze@samba.org> Autobuild-User(master): Stefan Metzmacher <metze@samba.org> Autobuild-Date(master): Thu Sep 13 01:35:33 CEST 2012 on sn-devel-104
* VERSION: Release Samba 4.0.0rc1Michael Adam2012-09-121-3/+3
| | | | Pair-Programmed-With: Stefan Metzmacher <metze@samba.org>
* WHATSNEW: prepare release notes for 4.0.0rc1Michael Adam2012-09-121-63/+42
| | | | Pair-Programmed-With: Stefan Metzmacher <metze@samba.org>
* build:dist: call source3/autogen.sh and packaged generated filesMichael Adam2012-09-121-0/+7
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* build:dist: call build-manpages-nogit for make dist and package generated filesMichael Adam2012-09-121-0/+3
| | | | | | | so that we always have generated manpages under docs/manpages in the release tarball Signed-off-by: Stefan Metzmacher <metze@samba.org>
* build:dist: extend meaning of DIST_FILES to also recurse into directoriesMichael Adam2012-09-121-2/+16
| | | | Pair-Programmed-With: Stefan Metzmacher <metze@samba.org>
* build:dist: make use of file / distfile more obvious in handling of ↵Michael Adam2012-09-121-5/+2
| | | | | | DIST_FILES in "make dist" Signed-off-by: Stefan Metzmacher <metze@samba.org>
* build:dist: for snapshot builds, call DIST_DIRS with extend=TrueMichael Adam2012-09-121-1/+1
| | | | | | to allow the distversion file to be an addition to the list Signed-off-by: Stefan Metzmacher <metze@samba.org>
* build:dist: extend samba_dist.DIST_FILES() to take optional parameter ↵Michael Adam2012-09-121-1/+3
| | | | | | | | | extend(=False) This allows to do multpile DIST_FILES() calls that will extend the list rather than only setting it initially. Signed-off-by: Stefan Metzmacher <metze@samba.org>
* build:waf dist: factor out function to add list of files to the tarballMichael Adam2012-09-121-22/+29
| | | | Pair-Programmed-With: Stefan Metzmacher <metze@samba.org>
* s3:build: rewrite autogen.sh to be called from any directoryMichael Adam2012-09-121-5/+20
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* release-scripts: run build-manpages-nogit with bashMichael Adam2012-09-121-1/+1
| | | | | | | On debian/ubuntu, the "dash" which is sh, does not provide pushd/popd... Signed-off-by: Stefan Metzmacher <metze@samba.org>
* release-scripts: run build-manpages-git with bashMichael Adam2012-09-121-1/+1
| | | | | | | On debian/ubuntu, the "dash" which is sh, does not provide pushd/popd... Signed-off-by: Stefan Metzmacher <metze@samba.org>
* release-scripts: let build-manpages-nogit store generated docs under ./bin/docsMichael Adam2012-09-121-1/+1
| | | | | | not under ./docs Signed-off-by: Stefan Metzmacher <metze@samba.org>
* release-scripts: let build-manpages-git store generated docs under bin/docs/Michael Adam2012-09-121-1/+1
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* In vfs modules, don't use 'conn->origpath' when we really mean 'conn->cwd'.Jeremy Allison2012-09-124-10/+10
| | | | | | | | This allows VFS modules to work even when we've changed directory under the connect path in order to do root-safe calls. Autobuild-User(master): Jeremy Allison <jra@samba.org> Autobuild-Date(master): Wed Sep 12 23:45:23 CEST 2012 on sn-devel-104
* Move cached cwd onto conn struct.Jeremy Allison2012-09-123-1/+17
| | | | | This enables us to make VFS modules safe for use in root called code when we've changed directory under conn->connectpath.
* Remove ancient "optimization" global LastDir.Jeremy Allison2012-09-123-18/+3
|
* Avoid overriding default ccache for ads operations.Simo Sorce2012-09-128-14/+102
| | | | | | | | | | | | | | | | | | | | | | | | Avoid overriding default ccache for ads operations. Nowadays various samba components may need to use GSSAPI and a default cred cache to perform their tasks. This code was completely overriding the whole process default ccache name, thus altering the current credentials and sometimes hijacking them (or getting preemptively hijaked). By using gss_krb5_import_cred we can instead use a private ccache (necessary sometimes to use a different set of credentials fromt he default cifs/fqdn@realm one, for example when contacting foreign DCs using trust credentials) that does not affect the rest of the process. For the kerberos versions which don't have gss_krb5_import_cred we fallback to temp override of KRB5CCNAME and gss_acquire_cred. Signed-off-by: Alexander Bokovoy <ab@samba.org> Signed-off-by: Günther Deschner <gd@samba.org> Autobuild-User(master): Alexander Bokovoy <ab@samba.org> Autobuild-Date(master): Wed Sep 12 21:18:09 CEST 2012 on sn-devel-104
* selftest: let provision_plugin_s4_dc use SMB3Stefan Metzmacher2012-09-121-1/+1
| | | | | | | metze Autobuild-User(master): Stefan Metzmacher <metze@samba.org> Autobuild-Date(master): Wed Sep 12 18:30:48 CEST 2012 on sn-devel-104
* wintest: Fix --use-ntvfs handlingAndrew Bartlett2012-09-121-1/+3
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* wintest: Rework support for the internal DNS serverAndrew Bartlett2012-09-123-38/+54
| | | | | | | | | | | We still have to run BIND, the change is if BIND is run to support our own zone, or if we forward to as well as to windows. This also adapts to the new defaults. Andrew Bartlett Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s4 provision: Ask for the dns forwarder IP address during interactive provisionKai Blin2012-09-122-10/+50
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* dns_server: Remove parameter 'dns recursive queries' and base this on 'dns ↵Andrew Bartlett2012-09-124-12/+3
| | | | | | | | | | forwarder' This simplifies a very common configuration. Andrew Bartlett Signed-off-by: Stefan Metzmacher <metze@samba.org>
* wintest: try to fix settings for the internal dns serverStefan Metzmacher2012-09-121-3/+3
| | | | metze
* lib/param: change the default for 'allow dns updates' to 'secure only'Stefan Metzmacher2012-09-123-4/+4
| | | | metze
* lib/param: add some more alias for 'allow dns updates' options.Stefan Metzmacher2012-09-121-0/+12
| | | | metze
* WHATSNEW.txt: Update DNS server descriptionKai Blin2012-09-121-7/+17
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s4:dns_server: remove wrong and unused dsdb_check_access_on_dn() checkStefan Metzmacher2012-09-121-16/+0
| | | | metze