summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* s4-provision permit server role to be the ROLE_ strings from s3Andrew Bartlett2011-11-173-18/+20
| | | | | | | | Also convert between the aliases in one single place. Andrew Bartlett Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* param: Add tests for automatic server role guessingAndrew Bartlett2011-11-171-0/+81
| | | | Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* py-param: Add python interface to get server_roleAmitay Isaacs2011-11-171-0/+15
|
* param: Move enum values into a common (included) .c fileAndrew Bartlett2011-11-173-164/+114
| | | | | | | | | This #include hack is required as it is not possible to declare a compile-time sized array in a header file. Andrew Bartlett Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* param: move server role helpers into loadparm.hAndrew Bartlett2011-11-175-34/+5
| | | | Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* s4-s3-upgrade Add test of net getlocalsid after the upgradeAndrew Bartlett2011-11-171-0/+4
| | | | Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* param: calculate server role from security, and security from server roleAndrew Bartlett2011-11-1711-39/+132
| | | | | | | | | | | | | This allows smb.conf files from either the samba3 or samba4 tradition to come to the same value of server role, using the information in the smb.conf file. This is important so that tools like 'net getlocalsid' work against a Samba4 AD installation (yes, users have tried this). Andrew Bartlett Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* s3-param remove lp_domain_logons(), always use IS_DCAndrew Bartlett2011-11-176-6/+4
| | | | | | | | This makes the code internally consistant. Andrew Bartlett Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* param: make server role list common and include auto (for the new default)Andrew Bartlett2011-11-172-4/+17
| | | | Pair-Programmed-With: Amitay Isaacs <amitay@samba.org>
* roles: Add ROLE_AUTO to indicate that the server role is calculatedAmitay Isaacs2011-11-171-1/+4
|
* s3-param: Add "server role" as global parameterAmitay Isaacs2011-11-173-10/+31
| | | | | This will help extracting server role processing code in common library.
* param: Add "domain logons" and "domain master" parametersAmitay Isaacs2011-11-172-0/+22
| | | | | This makes parsing of config files with s3 loadparm code and s4 loadparm code consistent.
* s3-libsmb/passchange.c: remove some cli_nt_error() callsBjörn Baumbach2011-11-161-2/+0
| | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org> Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Wed Nov 16 20:36:11 CET 2011 on sn-devel-104
* s3-winbindd/winbindd_cm.c: remove cli_nt_error()Björn Baumbach2011-11-161-8/+2
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s3-libsmb/clidfs.c: remove cli_nt_error()Björn Baumbach2011-11-161-2/+2
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s3:winbindd_cm: remove unused ads_statusStefan Metzmacher2011-11-161-3/+0
| | | | metze
* s3-torture: remove all cli_nt_error() calls in tortureBjörn Baumbach2011-11-161-12/+11
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s3-torture: replace cli_errstr() with nt_errstr()Björn Baumbach2011-11-161-6/+10
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s3-libsmb: introduce option to disable dos error mappingBjörn Baumbach2011-11-163-1/+4
| | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
* s3:smbd: calculate the negprot signing flags from the signing_stateStefan Metzmacher2011-11-161-3/+10
| | | | | | | | | | | We should map from lp_server_signing() just once in srv_init_signing(). metze Signed-off-by: Günther Deschner <gd@samba.org> Autobuild-User: Günther Deschner <gd@samba.org> Autobuild-Date: Wed Nov 16 18:59:49 CET 2011 on sn-devel-104
* s3: Fix wbinfo socket dir path.Andreas Schneider2011-11-161-0/+7
| | | | | Autobuild-User: Andreas Schneider <asn@cryptomilk.org> Autobuild-Date: Wed Nov 16 17:19:56 CET 2011 on sn-devel-104
* Revert "Fix bug #8453 - smbclient segfaults when dialect option -m is used ↵Stefan Metzmacher2011-11-161-13/+0
| | | | | | | | | | | | | for legacy dialects" This reverts commit f261ac1932ecdae925b27301aa3e907757845a85. We now handle that in cli_state_create(). metze Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Wed Nov 16 15:44:05 CET 2011 on sn-devel-104
* s3:libsmb: always init cli->{server_os,server_domain,server_type}Stefan Metzmacher2011-11-161-0/+13
| | | | | | We should do that at creation time of cli_state. metze
* s3-waf: create a smbldap.so library.Günther Deschner2011-11-164-6/+10
| | | | | | | Guenther Autobuild-User: Günther Deschner <gd@samba.org> Autobuild-Date: Wed Nov 16 14:03:05 CET 2011 on sn-devel-104
* s3-smbldap: remove dependency to secrets subsystem.Günther Deschner2011-11-161-17/+4
| | | | Guenther
* s3-smbldap: extend smbldap_init() with binddn/bindsecret arguments.Günther Deschner2011-11-165-6/+39
| | | | Guenther
* s3-smbldap: remove duplicate prototype of smbldap_init().Günther Deschner2011-11-161-3/+0
| | | | Guenther
* s3-net: use better state variable name for smbldap_state.Günther Deschner2011-11-161-9/+9
| | | | Guenther
* s3-passdb: split out passdb/pdb_ldap_schema.cGünther Deschner2011-11-1613-327/+385
| | | | Guenther
* s3: move smbldap_util to pdb_ldap_util.Günther Deschner2011-11-168-21/+52
| | | | Guenther
* s3-smbldap: use include/smb_ldap.h in smbldap.hGünther Deschner2011-11-161-1/+1
| | | | Guenther
* lib/util/debug: with log level = 10 we should be more verboseStefan Metzmacher2011-11-161-3/+9
| | | | | | | | | | | | | | log level = 10 already impacts performance, so we can turn on more details and print the pid, [e][u|g]id and class information. So it implies "debug pid = yes", "debug uid = yes" and "debug class = yes". This generates a lot more useful log files. metze Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Wed Nov 16 12:25:02 CET 2011 on sn-devel-104
* provision: Set the security descriptor while creating partitionsAmitay Isaacs2011-11-162-12/+4
| | | | | | | | With Matthieu's patch, the setting of security descriptor on partition dn at create time works correctly. Autobuild-User: Amitay Isaacs <amitay@samba.org> Autobuild-Date: Wed Nov 16 08:54:25 CET 2011 on sn-devel-104
* s4-dsdb: rework the NC detection for the descriptor calculationMatthieu Patou2011-11-161-12/+31
| | | | | | | | | This checks if instanceType attribute is available, and if INSTANCE_TYPE_IS_NC_HEAD bit is set. If the bit is set, then the DN is NC root and security descriptor is not inherited from parent SD. Signed-off-by: Amitay Isaacs <amitay@gmail.com>
* s3-s4-upgrade: do not add description if it is empty string or noneAmitay Isaacs2011-11-161-6/+12
| | | | | Autobuild-User: Amitay Isaacs <amitay@samba.org> Autobuild-Date: Wed Nov 16 05:53:41 CET 2011 on sn-devel-104
* Final part of patchset to fix bug #8556 - ACL permissions ignored when ↵Jeremy Allison2011-11-163-16/+51
| | | | | | | | | SMBsetatr is requested. This now plumbs access checks through all setattr calls. Autobuild-User: Jeremy Allison <jra@samba.org> Autobuild-Date: Wed Nov 16 04:20:04 CET 2011 on sn-devel-104
* Remove the check for FILE_WRITE_ATTRIBUTES from smb_set_file_time(). ItJeremy Allison2011-11-153-8/+17
| | | | | | | is called from places like fileio.c that need to update the write time on a file handle only open for write, without neccessarily having FILE_WRITE_ATTRIBUTES permission. Move all checks to before the smb_set_file_time() callers.
* Always set the attribute first, before the time.Jeremy Allison2011-11-151-7/+7
|
* Move handle-based access check into handle codepath.Jeremy Allison2011-11-151-4/+4
|
* We've already checked fsp must be non-null here.Jeremy Allison2011-11-151-1/+1
|
* Remove unneeded access check. This is done inside smb_set_file_time().Jeremy Allison2011-11-151-4/+0
|
* Remove unneeded access check. This is done inside smb_set_file_size().Jeremy Allison2011-11-151-4/+0
|
* Move handle based access check into handle code path.Jeremy Allison2011-11-151-4/+4
|
* HEIMDAL:lib/krb5: add utf8 support to build_logon_name() for the PACStefan Metzmacher2011-11-161-18/+49
| | | | | | | | | Pair-Programmed-With: Arvid Requate <requate@univention.de> metze Autobuild-User: Stefan Metzmacher <metze@samba.org> Autobuild-Date: Wed Nov 16 02:00:12 CET 2011 on sn-devel-104
* HEIMDAL:lib/wind: export wind_ucs2write()Stefan Metzmacher2011-11-161-0/+1
| | | | | | Pair-Programmed-With: Arvid Requate <requate@univention.de> metze
* HEIMDAL:lib/winbd: fix wind_ucs2write with WIND_RW_LEStefan Metzmacher2011-11-161-4/+4
| | | | | | Pair-Programmed-With: Arvid Requate <requate@univention.de> metze
* HEIMDAL:lib/wind: fix wind_ucs4utf8() and wind_ucs2utf8()Stefan Metzmacher2011-11-161-5/+5
| | | | | | Pair-Programmed-With: Arvid Requate <requate@univention.de> metze
* Fix bug #8561 - Password change settings not fully observed.Jeremy Allison2011-11-163-5/+36
| | | | | Autobuild-User: Jeremy Allison <jra@samba.org> Autobuild-Date: Wed Nov 16 00:22:41 CET 2011 on sn-devel-104
* Ensure we correctly calculate reply credits over all returnedJeremy Allison2011-11-151-4/+13
| | | | | | SMB2 replies, and do as Windows does and return the total in the last SMB2 reply. Fixes an issue found by Christian M Ambach <christian.ambach@de.ibm.com> (and thanks to Christian for the initial patch this was based on).
* Remove unneeded NULL check.Jeremy Allison2011-11-151-4/+0
|