summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
| * | netlogon: add netr_NETLOGON_INFO_4.Günther Deschner2008-12-171-0/+6
| | | | | | | | | | | | Guenther
| * | netlogon: add all documented netlogon control codes.Günther Deschner2008-12-171-5/+16
| | | | | | | | | | | | Guenther
| * | s4:libcli/resolve: specify the port for the resulting socket_addressesStefan Metzmacher2008-12-178-9/+25
| | | | | | | | | | | | metze
| * | s4:libcli/resolve: optionally return the name that belongs to the returned ↵Stefan Metzmacher2008-12-178-23/+82
| | | | | | | | | | | | | | | | | | | | | | | | address E.g. this helps for DNS CNAME and SRV results. metze
| * | s4:libcli/resolve: pass down flags to the resolver backendsStefan Metzmacher2008-12-178-8/+29
| | | | | | | | | | | | metze
| * | s4:libcli/resolve: remove all backend specific sync functionsStefan Metzmacher2008-12-175-85/+0
| | | | | | | | | | | | metze
| * | s4:libcli/resolve: let the "host" module use the dns_ex.c codeStefan Metzmacher2008-12-171-183/+11
| | | | | | | | | | | | | | | | | | That means we now return all ip addresses instead of just the first one. metze
| * | s4:libcli/resolve: add getaddrinfo()/dns_looup() resolvingStefan Metzmacher2008-12-172-0/+485
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This "dns_ex" module provides flexible lookup methods for dns lookups. The getaddrinfo() part looks at /etc/hosts and dns. As it handles CNAME replies badly we fallback to use dns_lookup(name, "A"). The dns_lookup() makes DNS SRV lookups possible. This module is not a real resolve module, it's just a generic helper as the nbtlist.c code is. The next step will be that the "host" module will use the dns_ex.c code. metze
| * | s4:libcli/resolve: don't use __RESOLVE_H__ it might be used by system ↵Stefan Metzmacher2008-12-171-3/+3
| | | | | | | | | | | | | | | | | | headers too metze
| * | s4:lib/socket: we need to lookup the #20 netbios name when we connect to a ↵Stefan Metzmacher2008-12-172-2/+2
| | | | | | | | | | | | | | | | | | remote server metze
| * | s4:lib/socket: remove unused codeStefan Metzmacher2008-12-171-22/+0
| | | | | | | | | | | | metze
| * | s4:headermap: dom_sid.h was renamed to server_id.hStefan Metzmacher2008-12-172-3/+3
| | | | | | | | | | | | metze
| * | Fix a valgrind errorVolker Lendecke2008-12-171-1/+2
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Reported by naga_kishore_kommuri@yahoo.com Derrel, please check! Thanks, Volker (cherry picked from commit 3356b95f72e26ede4ab16a12c334be90b8b1a639)
| * | Tweak with pam defines of older Linux versionsLars Müller2008-12-171-1/+8
| | | | | | | | | | | | | | | | | | | | | PAM_AUTHTOK_RECOVERY_ERR is not defined by older Linux versions (SUSE Linux Enterprise 9 and RedHat Enterprise 4). Patch suggested by Philipp Thomas <pth at suse dot de>.
| * | docs: Fix typo in man idmap_hash.Karolin Seeger2008-12-171-1/+1
| | | | | | | | | | | | Karolin
| * | s3/smb.h: Remove unused LDAP_SSL_ON.Karolin Seeger2008-12-171-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | LDAP_SSL_ON is not defined at all. Ldaps can be used by specifying an ldaps URL using the "passdb backend" parameter. Karolin
| * | docs: Update section "ldap ssl" in man smb.conf.Karolin Seeger2008-12-171-11/+8
| | | | | | | | | | | | | | | | | | | | | | | | Remove non-existent value "on". Change default value to "no". Add hint about ldaps. Karolin
| * | s3/loadparm.c: Change default value for "ldap ssl".Karolin Seeger2008-12-171-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | LDAP_SSL_ON is not defined at all. That's why the actual default value was "" for a long time. Set a more sensible default value without chnging the default behaviour. -----8<------------------snip--------------8<-------------- user@host:/data/git/samba/v3-0-test/source> git grep LDAP_SSL_ON | cat include/smb.h:enum ldap_ssl_types {LDAP_SSL_ON, LDAP_SSL_OFF, LDAP_SSL_START_TLS}; param/loadparm.c: Globals.ldap_ssl = LDAP_SSL_ON; ----->8------------------snap-------------->8-------------- It's the same in 3.2 and 3.3 series. Karolin
| * | docs: Fix some formatting issues in the "ldap ssl" section of man smb.conf.Karolin Seeger2008-12-171-15/+17
| | | | | | | | | | | | Karolin
| * | s4:headermap: we need the pathes for gen_ndr headers with and without ../Stefan Metzmacher2008-12-171-25/+52
| | | | | | | | | | | | | | | | | | This should fix the OpenChange build metze
| * | lib/util: make it possible to use debug.h with using xfile.hStefan Metzmacher2008-12-172-2/+3
| | | | | | | | | | | | metze
| * | s4:lib/tevent: add lib/events/ compat and let things compileStefan Metzmacher2008-12-1728-106/+125
| | | | | | | | | | | | metze
| * | s4:lib/events: move to toplevel directory as lib/tevent/Stefan Metzmacher2008-12-1730-0/+0
| | | | | | | | | | | | | | | | | | This commit will not compile on its own. metze
| * | net luaVolker Lendecke2008-12-174-4/+401
| | | | | | | | | | | | | | | | | | | | | | | | This adds a lua command line interpreter with some sample code how to build your own data types based on our internal data types. Not meant as the final word, but as a playground for experiments for people. Might be removed later when we find this turns out to be too awkward.
| * | Compile libluaVolker Lendecke2008-12-173-0/+82
| | |
| * | Add the Lua distibution from http://www.lua.org/ftp/lua-5.1.4.tar.gzVolker Lendecke2008-12-17100-0/+28089
| | | | | | | | | | | | | | | | | | | | | | | | Available under the MIT license. Adding it to see how the build farm likes it. They claim to be 100% pure ANSI C and compile everywhere. Lets see. If it breaks badly, we can remove it again.
| * | s4: fix LIBEVENTS dependencies and use more forward declarationsStefan Metzmacher2008-12-1722-16/+23
| | | | | | | | | | | | | | | | | | | | | We should only include events.h where we really need it and prefer forward declarations of 'struct event_context' metze
| * | docs: Fix TOC of generated HTML docs.Karolin Seeger2008-12-171-6/+2
| | | | | | | | | | | | | | | | | | | | | This fixes bug #5968. Thanks to Christian Perrier <bubulle@debian.org> for reporting! Karolin
| * | s3/s4: Fix DCOM idl bugTim Prouty2008-12-161-1/+1
| | | | | | | | | | | | | | | A build warning uncovered a bug where a pointer was being passed in instead of the dereferenced value of the pointer.
| * | s4:testprogs: improve extended dn testing of the ldb blackbox testsAndrew Bartlett2008-12-171-6/+8
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldb: add some python tests for extended dnsAndrew Bartlett2008-12-171-27/+60
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:dsdb: remove normalise moduleAndrew Bartlett2008-12-172-206/+0
| | | | | | | | | | | | | | | | | | The extended_dn_out module provides the functionality now. Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:provision: use extended_dn_out_ldb or extended_dn_out_dereference ↵Andrew Bartlett2008-12-172-4/+7
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | depending on the backend This just changes the existing stratagy of loading different modules for the OpenLDAP backend to also include extended_dn_out_* When we provision the OpenLDAP backend, we make sure to include the 'deref' overlay (which must be made available by the OpenLDAP build) Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:dsdb: split extended_dn into extended_dn_in, extended_dn_out and ↵Andrew Bartlett2008-12-177-673/+1517
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | extended_dn_store. By splitting the module, the extended_dn_in and extended_dn_store moudles can use extended_dn_out to actually get the extended DN. This avoids code duplication. The extended_dn_out module also contains a client implementation of the OpenLDAP dereference control (draft-masarati-ldap-deref-00). This also introduces a new control 'DSDB_CONTROL_DN_STORAGE_FORMAT_OID' to ask the extended_dn_out module to return whatever the 'storage format' is. This allows us to work with both OpenLDAP (which performs a dereference at run time) and LDB (which stores the GUID and SID on disk). Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:dsdb: Make the linked_attributes module set an extended dnAndrew Bartlett2008-12-171-192/+325
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This means that linked attributes will always have the same case form as the actaul entry, as we search for that entry. We then also use the GUID and SID found on that entry to fill in the extended DN on disk. Andrew Bartlett Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:rootdse: fix the logic to indentify a rootdse searchAndrew Bartlett2008-12-171-2/+1
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldb: make it possible to return per entry controlsAndrew Bartlett2008-12-1725-27/+62
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:selftest: lower debug level for slapdAndrew Bartlett2008-12-171-1/+1
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:setup: fix cut-n-paste error Builtin-Domain => Samba4-Local-DomainAndrew Bartlett2008-12-171-1/+1
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:setup: don't set objectCategory: CN=Domain-DNS,${SCHEMADN}Andrew Bartlett2008-12-171-3/+0
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:torture: add ldb testsAndrew Bartlett2008-12-173-1/+751
| | | | | | | | | | | | | | | | | | | | | | | | These tests are for both the new extended DN functionality (and were vital in finding bugs during implementation) and for the normal DN parsing and comparison routines. Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldap_server: return the extended dn to the LDAP client if availableAndrew Bartlett2008-12-171-1/+16
| | | | | | | | | | | | | | | | | | | | | This uses an early peek at the extended_dn_control (in the request) to see what output format to use. Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldb-samba: register samba specific extended dn handlersAndrew Bartlett2008-12-171-51/+138
| | | | | | | | | | | | | | | | | | | | | | | | | | | This provides the two extended DN handlers for the GUID and SID types, and makes the parsing more strict (where possible, it uses ndr_pull_struct_blob_all(), to cause an error if trailing data is found). Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:samldb: make use of dom_sid_split_rid()Andrew Bartlett2008-12-171-4/+3
| | | | | | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:samldb: improve error stringsAndrew Bartlett2008-12-171-6/+8
| | | | | | | | | | | | | | | | | | | | | | | | When things go wrong with LDB, this routine seems to be particularly sensitive to it. This extra debugging should help the next poor soul who breaks LDB. Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldb.i: hang the dn on the NULL context as the python destructor will free itAndrew Bartlett2008-12-171-0/+2
| | | | | | | | | | | | | | | | | | This fixes a bug in the ldb.i python wrapper, that showed up under valgrind. Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldb: use try to print the extended dn in the ldif outputAndrew Bartlett2008-12-171-2/+4
| | | | | | | | | | | | | | | | | | | | | | | | This allows searches with the extended DN control to still print the extended DN in ldif output (it would otherwise be parsed and hidden in the structure). Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:dsdb: add support for DSDB_OPENLDAP_DEREFERENCE_CONTROLAndrew Bartlett2008-12-172-0/+137
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Encode and decode the OpenLDAP dereference control (draft-masarati-ldap-deref-00) At this time, the ldb_controls infrustructure does not handle request and reply controls having different formats, so this is purely the client implementation (ie, there is no decode of the client->server packet, and no encode of the server->client packet). Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:libcli/ldap: split out a ldap_decode_attribs_bare() functionAndrew Bartlett2008-12-171-8/+18
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The OpenLDAP dereference control (draft-masarati-ldap-deref-00) uses an attribute list, as found in the search reply, but without one enclosing ASN1_SEQUENCE(0) This allows the dereference control parsing code to use this as a helper function. Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * | s4:ldb_ildap: try to pass extended DNs to the serverAndrew Bartlett2008-12-171-5/+5
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Whenever we pass a DN to the LDAP server, we now use ldb_dn_get_extended_linearized(). This allows us to send the extended DN if set, and therefore allows searches of the form '<GUID=aaa45ea0-94cd-45e9-8753-abe455d9a8f1>'. We actually use the '0' format (GUID=aaa45ea094cd45e98753abe455d9a8f1) because it is more widely supported (by Win2k in particular). Signed-off-by: Stefan Metzmacher <metze@samba.org>