summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* s4-ldb: added a bunch more debug for DC joinAndrew Tridgell2009-09-227-2/+26
| | | | | These additional debug messages were added to help us track down w2k8->s4 domain join
* s4-ldb: when tracing, show ldb_set_debug messagesAndrew Tridgell2009-09-221-0/+3
|
* s4-ldbmodules: allow instanceType to be specified by clientsAndrew Tridgell2009-09-221-0/+6
| | | | This is needed for the WSPP ADS testsuite
* s4-util: windows only accepts lowercase hex encodings for extended DNsAndrew Tridgell2009-09-221-1/+4
|
* s4-torture: add some debug info to RPC-HANDLESAndrew Tridgell2009-09-221-0/+5
|
* s4-rpcserver: added support for shared handlesAndrew Tridgell2009-09-223-6/+49
| | | | | | | | This supports shared RPC handles across connections on all RPC interfaces. It turns out that w2k3 and w2k8 don't actually support this on all pipes. We need to test which pipes we should enable this on.
* s4-lsa: added support for QuerySecurity on LSAAndrew Tridgell2009-09-221-2/+85
| | | | This follows the sd pattern from samba3
* s4-rpcserver: added shared association groupsAndrew Tridgell2009-09-223-34/+111
| | | | | | This patch allows us to share association groups and their rpc handles between connections. This is needed for some DRSUAPI behaviour when recent windows clients connect.
* s4-rpcserver: run all RPC operations in a single taskAndrew Tridgell2009-09-221-1/+8
| | | | | | This will make it much easier to implement shared handles with association groups. It also means we can shared the ldb between RPC connections.
* s4-rpc: remove two unused functionsAndrew Tridgell2009-09-221-32/+3
|
* s4-ldb: only show the outer level of ldb ops when tracingAndrew Tridgell2009-09-223-4/+38
|
* s4-ldb: don't show timestamps on every line of ldb tracesAndrew Tridgell2009-09-225-64/+100
| | | | | This adds ldb_debug_add() and ldb_debug_end() to format multiline messages
* build: use AS_HELP_STRING() for --with-localedirMichael Adam2009-09-231-1/+1
| | | | Michael
* build: add switch "--with-codepagedir=DIR" to configure.Michael Adam2009-09-231-0/+16
| | | | | | This is to address bug #6444. Michael
* build: add datadir to "make showlayout"Michael Adam2009-09-231-0/+1
| | | | Michael
* Move the check above the tallocAnatoliy Atanasov2009-09-221-5/+6
|
* s3-winbindd: Fix Bug #6711: trusts to windows 2008 (2008 r2) not working.Günther Deschner2009-09-223-5/+63
| | | | | | | | | | | Winbindd should always try to use LSA via an schannel authenticated ncacn_ip_tcp connection when talking to AD for LSA lookup calls. In Samba <-> W2k8 interdomain trust scenarios, LookupSids3 and LookupNames4 via an schannel ncacn_ip_tcp LSA connection are the *only* options to successfully resolve sids and names. Guenther
* s3-winbindd: add cm_connect_lsa_tcp().Günther Deschner2009-09-223-0/+63
| | | | Guenther
* lib/tevent: a cleaner fix for be4ac227842530d484659f2db683453366326d8b segvRusty Russell2009-09-221-7/+1
| | | | | | | | | | | | | | | | Revert 23abcd2318c69753aa2a144e1dc0f9cf9efdb705 and fix logic bug. The current code loops through the event contexts, when it sees a different one, it notifies the current one (ev) and updates ev to point to the new one. This is dumb, because: (1) ev starts as NULL, so this code crashes, and (2) The final context will not be notified. The correct fix for this is to update ev to the new one, then notify it. Volker's fix works because we currently always have one event context. Signed-off-by: Rusty Russell <rusty@rustcorp.com.au>
* s4:dsdb Fix of double addition of SD-sNadezhda Ivanova2009-09-212-11/+25
| | | | Also add error strings in descriptor module
* s4:ldb Add 'single-value' support to LDB.Andrew Bartlett2009-09-213-2/+56
| | | | This is currently only triggered via Samba4's schema code.
* Merge branch 'master' of git://git.samba.org/sambaNadezhda Ivanova2009-09-2114-25/+358
|\
| * Add support in the ldb_dn.c code for MS-ADTS:3.1.1.5.1.2 Naming ConstraintsAnatoliy Atanasov2009-09-211-0/+13
| |
| * Add tests for MS-ADTS:3.1.1.5.1.2 Naming ConstraintsAnatoliy Atanasov2009-09-211-0/+29
| |
| * s4:dsdb Run the new 'descriptor' module by default.Andrew Bartlett2009-09-211-6/+0
| | | | | | | | | | | | | | This code was derived from the objectclass module, and we need the new code in the default provision, or else no ACL is set on each object. Andrew Bartlett
| * s4-ldb: bit prettier outputAndrew Tridgell2009-09-211-7/+15
| |
| * s4-ldb: fixed O(n^2) string handling in ldif debug printAndrew Tridgell2009-09-211-3/+3
| |
| * s4-samdb: enable ldb tracing when log level >= 10Andrew Tridgell2009-09-211-0/+4
| |
| * s4-schema: don't trace the schema load (too verbose)Andrew Tridgell2009-09-211-12/+24
| |
| * s4-ldb: add --trace command line option to ldb toolsAndrew Tridgell2009-09-212-0/+6
| | | | | | | | This enabled LDB_FLG_ENABLE_TRACING
| * s4-ldb: add a LDB_FLG_ENABLE_TRACING for full ldb tracingAndrew Tridgell2009-09-214-1/+135
| | | | | | | | | | When LDB_FLG_ENABLE_TRACING is set ldb will send full traces of all operations and results
| * s4-ldap: default edn type is 0Andrew Tridgell2009-09-211-1/+1
| |
| * s4-ldb: add support for extended DNs in the rootDSEAndrew Tridgell2009-09-211-2/+135
| | | | | | | | | | W2K8 join as a DC relies on being able to ask for the sid component of extended DNs from the rootDSE DNs
| * s4-dsdb: fixed a printf format warningAndrew Tridgell2009-09-211-1/+1
| |
* | Initial Implementation of the DS objects access checks.Nadezhda Ivanova2009-09-219-1/+1441
| | | | | | | | | | Currently disabled. The search will be greatly modified, also the object tree stuff will be simplified.
* | Merge branch 'master' of git://git.samba.org/sambaNadezhda Ivanova2009-09-2129-541/+839
|\|
| * s4:kerberos Fix the salt to match Windows 2008.Andrew Bartlett2009-09-212-2/+2
| | | | | | | | | | | | | | The previous commit changed the wrong end - we must fix our server, not our client. Andrew Bartlett
| * s4:provision Make our default salt match our server behaviourAndrew Bartlett2009-09-211-1/+1
| | | | | | | | | | | | We need to look into salting algorithms further. Andrew Bartlett
| * tdb:tdbtool: fix indentation.Michael Adam2009-09-211-178/+177
| | | | | | | | Michael
| * tdb:tdbtool: add transaction_start/_commit/_cancel commands.Michael Adam2009-09-211-0/+21
| | | | | | | | | | | | So one can perform tdbtool operations protected by transactions. Michael
| * tdb:tdbtool: add the "speed" command to the help text.Michael Adam2009-09-211-0/+1
| | | | | | | | Michael
| * s4:provision - Fix up ProvisioningError class as suggested by JelmerMatthias Dieter Wallnöfer2009-09-211-5/+5
| |
| * s4:samdb/tools - That should fix now the last failuresMatthias Dieter Wallnöfer2009-09-213-3/+5
| |
| * s4:libnet_become_dc - bump down the level requested by abartletMatthias Dieter Wallnöfer2009-09-211-1/+1
| |
| * s4:scripts - Reintroduce "-H" parameterMatthias Dieter Wallnöfer2009-09-216-12/+46
| | | | | | | | | | | | I removed it since on some scripts it was present, on others not - so I thought it wouldn't be really needed. This was a bad decision (pointed out by abartlet). So I reintroduce it on all scripts (to have consistent parameters).
| * Revert "blackbox:test_kinit - Remove the "-H" (hive) parameter"Matthias Dieter Wallnöfer2009-09-211-1/+1
| | | | | | | | | | | | | | This reverts commit d4389a230b6aea5a0b2a98e255b14a59c8248b0b. This revert changed the behaviour which I didn't expect. Thanks abartlet to point this out!
| * s4:provision Make us Windows 2008 level by defualt againAndrew Bartlett2009-09-201-4/+5
| | | | | | | | | | | | | | | | | | Also add a note to clarify that this should not be changed without discussion and consensus. We don't want this bouncing around. Paramater support to allow optional selection of Win2003 mode welcomed. Andrew Bartlett
| * s3:secrets_schannel: revert to using version 1Stefan Metzmacher2009-09-211-3/+9
| | | | | | | | | | | | | | | | | | | | | | | | | | It doesn't really matter if the entries have invalid context in it. Older versions of samba refuse to open the file if the version doesn't match. If we can't parse individual records, we'll fail schannel binds, but the clients are supposed to reestablish the netlogon secure channel by doing ServerReqChallenge/ServerAuthenticate* again. This will just overwrite the old record. metze
| * s3:winbindd: avoid writing to a closed connection and generate SIGPIPEStefan Metzmacher2009-09-211-12/+13
| | | | | | | | metze
| * async_sock: return -1/EPIPE if we're getting an end of file on read.Stefan Metzmacher2009-09-211-0/+4
| | | | | | | | | | | | This makes the error handling in the callers easier. metze