summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* s3: Fix chained sesssetupAndX/tconn messagesTim Prouty2009-05-081-0/+7
| | | | | | | | A sesssetupAndX chained with a tconn will not correctly set the TID in the response header. I'm seeing an XP client send this chained sesssetup/tconn when samba has security = share. Samba's current behavior is to return a TID of 0 in the smb header rather than the actual TID. This patch also updates the UID in the header as well.
* s4-smbtorture: avoid secdesc test on connect handle in RPC-SAMR-USERS for ↵Günther Deschner2009-05-091-1/+3
| | | | | | | | Samba3. With this, I think, we pass RPC-SAMR-USERS. Guenther
* s3-samr: Fix SetUserInfo level 16 and 21 w.r.t. ACB_AUTOLOCK acct_flag.Günther Deschner2009-05-091-0/+10
| | | | | | | | It is not allowed to *set* this flag remotely if it has been not set already. Found by torture test. Guenther
* s3-samr: Fix SetUserInfo level 7 when there has been no name change.Günther Deschner2009-05-091-0/+6
| | | | | | Found by torture test. Guenther
* s3-selftest: enable running RPC-SAMR-USERS against Samba3.Günther Deschner2009-05-081-1/+1
| | | | Guenther
* s4-smbtorture: skip unsupported ACB bits for Samba3 in RPC-SAMR-USER.Günther Deschner2009-05-081-4/+10
| | | | Guenther
* s3-samr: more accurateness in _samr_SetDomainInfo().Günther Deschner2009-05-081-3/+3
| | | | Guenther
* s4-smbtorture: Support timestamp handling for Samba3 in RPC-SAMR-USERS.Günther Deschner2009-05-081-8/+23
| | | | | | Timestamps in passdb (currently) only have second granularity. Guenther
* Fix bug #6330 - DFS doesn't work on AIX. Jeremy.Jeremy Allison2009-05-083-0/+47
|
* Expand the comment explaining why user_in_group_sid isJeremy Allison2009-05-081-1/+6
| | | | | not reliable for winbindd users from foreign domains. Jeremy.
* s3:smbd: fix posix acls when setting an ACL without explicit ACE for the ↵Stefan Metzmacher2009-05-081-3/+18
| | | | | | | | | | | | | | | | owner (bug#2346) The problem of bug #2346 remains for users exported by winbindd, because create_token_from_username() just fakes the token when the user is not in the local sam domain. This causes user_in_group_sid() to give totally wrong results. In uid_entry_in_group() we need to check if we already have the full unix token in the current_user struct. If so we should use the current_user unix token, instead of doing a very complex user_in_group_sid() which doesn't give reliable results anyway. metze
* s3:smbd: fix the fix for mapped IPv4 address handling in release_ip().Michael Adam2009-05-081-2/+2
| | | | | | It was too late... Thanks Metze for noticing. Michael
* s3-selftest: run RPC-LSA-GETUSER against Samba 3.Günther Deschner2009-05-081-1/+2
| | | | Guenther
* s4-smbtorture: Fix printf info-level mismatch in RPC-SAMR.Günther Deschner2009-05-081-1/+1
| | | | Guenther
* s3-samr: implement more info levels in _samr_QueryDomainInfo().Günther Deschner2009-05-081-0/+82
| | | | | | Gets us closer to pass RPC-SAMR. Guenther
* s3-samr: Fix potential memory leak in _samr_ChangePasswordUser().Günther Deschner2009-05-081-1/+2
| | | | Guenther
* s4:loadparm: fix a comment typo. and line wrapping.Michael Adam2009-05-081-1/+2
| | | | Michael
* s4:loadparm: fix brace indentation and add brace for clarityMichael Adam2009-05-081-2/+4
| | | | Michael
* s3: make release_ip() call (ctdb) cope with IPv4 mapped addressesMichael Adam2009-05-081-1/+8
| | | | Michael
* s3-selftest: finally enable RPC-SAMR-PASSWORDS which samba3 now passes.Günther Deschner2009-05-081-1/+1
| | | | Guenther
* s4-smbtorture: avoid acct_flags check at the end of RPC-SAMR-PASSWORDS for ↵Günther Deschner2009-05-081-1/+4
| | | | | | | | Samba3. I don't get this, why would the account suddenly get ACB_PWNOTREQ ? Guenther
* s3-selftest: need to enable lanman auth in order make RPC-SAMR-PASSWORDS pass.Günther Deschner2009-05-083-0/+6
| | | | Guenther
* s3-samr: Do not leak information whether a user exist or not in pwd change ↵Günther Deschner2009-05-081-0/+11
| | | | | | | | calls. Found by torture test. Guenther
* s3-samr: implement _samr_ChangePasswordUser().Günther Deschner2009-05-081-10/+106
| | | | | | This is vastly copied from samba4 samr server. Guenther
* s3-samr: implement _samr_OemChangePasswordUser2().Günther Deschner2009-05-081-10/+48
| | | | Guenther
* s3-samr: disable check for ACB_DISABLED in check_oem_password().Günther Deschner2009-05-081-1/+4
| | | | | | | | | It is a bad idea to just tell everyone that an account is disabled without really having checked the password first. Found by torture test. Guenther
* s3-samr: rework check_oem_password() to take a struct samu, not to return one.Günther Deschner2009-05-081-39/+27
| | | | Guenther
* s4-smbtorture: prepare for running RPC-SAMR-USERS against samba3.Günther Deschner2009-05-081-16/+24
| | | | | | | In Samba 3 there are no pdb calls to store comments, codepages and countrycodes (yet). Guenther
* s3-samr: Let _samr_TestPrivateFunctionsUser() return not supported.Günther Deschner2009-05-081-1/+0
| | | | | | This is to get us closer to pass RPC-SAMR-USERS. Guenther
* s3-samr: Do not return users in _samr_QueryDisplayInfo() for builtin domain.Günther Deschner2009-05-081-0/+5
| | | | | | Found by torture test. Guenther
* s3-samr: let set_user_info_16 and 20 follow the same pattern as all other ↵Günther Deschner2009-05-083-29/+40
| | | | | | levels. Guenther
* s3-samr: support some more info levels in samr_SetUserInfo calls.Günther Deschner2009-05-083-0/+468
| | | | Guenther
* s3-samr: support some more info levels in samr_QueryUser calls.Günther Deschner2009-05-081-0/+266
| | | | Guenther
* s3/ldap: also handle DirX return codesBjörn Jacke2009-05-081-0/+2
|
* s3:configure: "test" only takes one "="Björn Jacke2009-05-081-1/+1
|
* Fix some type-punned warningsVolker Lendecke2009-05-073-7/+13
|
* Remove a misleading commentVolker Lendecke2009-05-071-2/+0
|
* Fix some nonempty blank linesVolker Lendecke2009-05-071-11/+10
|
* Convert lib/wb_reqtrans.c to unix calling conventionsVolker Lendecke2009-05-073-97/+113
|
* Adapt wb_reqtrans to "recent" coding conventionsVolker Lendecke2009-05-071-44/+28
|
* s3-auth: use full 16byte session key in make_user_info_netlogon_interactive().Günther Deschner2009-05-072-3/+2
| | | | | | | | | | | | | | | | | | | Patch from Jeremy. With this patch, I was able to join Windows 7 RC to a Samba3 DC, and login into a Samba 3 Domain. There are still two registry settings required: HKLM\System\CCS\Services\LanmanWorkstation\Parameters DWORD DomainCompatibilityMode = 1 DWORD DNSNameResolutionRequired = 0 Do *not* modify the other netlogon registry parameters that were passed around, they weaken security. Guenther (cherry picked from commit b5097d54cb74ca0ea328f9e029562f65f4a01134)
* Async API needs all parameters to be kept around until sent,Jeremy Allison2009-05-071-55/+15
| | | | | | ensure they're attached to the state structure. Thanks to Metze for pointing this out. Jeremy.
* Fix a typoVolker Lendecke2009-05-071-1/+1
|
* Add simple test chaining up sesssetup and tconVolker Lendecke2009-05-071-0/+53
|
* Make cli_tcon_andx chainableVolker Lendecke2009-05-072-15/+48
|
* Make cli_session_setup_guest chainableVolker Lendecke2009-05-072-9/+35
|
* s3-samr: Fix _samr_Connect5(). In error case it still needs to return empty ↵Günther Deschner2009-05-071-1/+2
| | | | | | info1. Guenther
* Fix missing backtick.Praveen Arimbrathodiyil2009-05-071-1/+1
|
* s3-rpcclient: rework enumdrivers call a bit to allow queries like win7 does.Günther Deschner2009-05-071-69/+97
| | | | Guenther
* s3-credentials: protect netlogon_creds_server_step() against NULL creds.Günther Deschner2009-05-071-0/+4
| | | | | | Found by SCHANNEL torture tests. Guenther