summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
| * s4:provision_users.ldif - Fix memberships regarding the denied password RODC ↵Matthias Dieter Wallnöfer2010-01-101-0/+8
| | | | | | | | replication group
| * s3: Remove some unused variablesVolker Lendecke2010-01-101-7/+0
| |
| * s3: Fix some nonempty blank linesVolker Lendecke2010-01-103-42/+42
| |
| * s3: Use sid_check_is_domain instead of a direct sid_equalVolker Lendecke2010-01-101-3/+6
| |
| * s3: Use sid_check_is_in_our_domain instead of a direct sid_peek_check_ridVolker Lendecke2010-01-101-4/+2
| |
| * s3: Replace most calls to sid_append_rid() by sid_compose()Volker Lendecke2010-01-1023-93/+64
| |
| * s3: Remove unused samr_make_sam_obj_sdVolker Lendecke2010-01-102-41/+0
| |
| * s3: Remove the typedef for "auth_serversupplied_info"Volker Lendecke2010-01-1017-51/+55
| |
| * s3: Remove the typedef for "auth_usersupplied_info"Volker Lendecke2010-01-1016-44/+44
| |
| * s3: Trim libnss_wins.soVolker Lendecke2010-01-101-2/+1
| |
| * s3: Trim down some utilities a bitVolker Lendecke2010-01-101-11/+11
| |
| * s4:provision_users.ldif - Remove foreign security principal S-1-5-17 for nowMatthias Dieter Wallnöfer2010-01-101-5/+0
| | | | | | | | This belongs to the AD IIS stuff where I don't know yet if we should import it.
| * s4:provision_users.ldif - Import all essential groups for Windows Server ↵Matthias Dieter Wallnöfer2010-01-101-85/+113
| | | | | | | | | | | | | | 2008 mode Additionally I had to fix some bugs (especially wrong "groupTypes") and reordered the objects using the SID (this is easier when enhancing the file).
| * s4-ldb: display security descriptors with correct SDL for known SIDsAndrew Tridgell2010-01-102-1/+7
| | | | | | | | This makes it much easier to compare SDs
| * s4-dsdb: added samdb_domain_sid_cache_only()Andrew Tridgell2010-01-101-1/+8
| |
| * s3: Remove a pointless "else" branch from add_ccache_to_list()Volker Lendecke2010-01-091-4/+3
| |
| * s3: Slightly simplify winbindd_store_credsVolker Lendecke2010-01-091-4/+2
| |
| * s3: Fix a segfault in winbindd_dual_ccache_ntlm_auth()Volker Lendecke2010-01-091-1/+1
| | | | | | | | | | | | ntlmssp_update allocates the reply_blob as a child of ntlmssp_state. This means with ntlmss_end() it will be gone. winbindd_dual_ccache_ntlm_auth used the blob after the ntlmssp_end().
| * s4-drs: instanceType is always sent, regardless of UDV valuesAndrew Tridgell2010-01-091-4/+6
| |
| * s4-debug: lower the verbosity of a couple of common log messagesAndrew Tridgell2010-01-092-2/+2
| |
| * s4-samldb: fixed primaryGroupID when promoting a machine to a DCAndrew Tridgell2010-01-091-17/+30
| | | | | | | | | | The machine gets a primaryGroupID of DOMAIN_RID_DCS. This is done without changing the member attributes of its groups.
| * s4-schema: fixed the SDDL for the schema root security descriptorAndrew Tridgell2010-01-091-10/+14
| | | | | | | | | | This was preventing a DCPROMO client from allowing outgoing replication
| * s4-drs: add a local UDV entry even when no replUpToDateVector present on NCAndrew Tridgell2010-01-091-3/+3
| | | | | | | | | | This allows us to filter correctly for a NC that we have created but not pulled from anyone.
| * s4-drs: give DN of failed replication partitionAndrew Tridgell2010-01-091-4/+5
| |
| * s4-drs: base is_nc_prefix on instanceTypeAndrew Tridgell2010-01-091-1/+3
| | | | | | | | for extended operations comparing to the ncRoot_dn is not correct
| * s4-drs: having no SPNs to change is not an errorAndrew Tridgell2010-01-091-0/+7
| |
| * s4-drs: fixed writespn to ignore add/delete errorsAndrew Tridgell2010-01-091-3/+40
| | | | | | | | | | When a SPN is added and already exists, it is ignored. Similarly, when a SPN is deleted and doesn't exist, it is ignored.
| * s4-dsdb: added samdb_ldb_val_case_cmp()Andrew Tridgell2010-01-091-0/+16
| |
| * s4-drs: moved the DsWriteAccountSpn call to its own fileAndrew Tridgell2010-01-094-75/+104
| |
| * s4-libnet: dsdb_wellknown_dn() in vampire codeAndrew Tridgell2010-01-091-60/+17
| |
| * s4-drs: need to set the getncchanges extended_ret on success tooAndrew Tridgell2010-01-091-0/+3
| |
| * s4-drs: calculate and send a uptodateness_vector with replication requestsAndrew Tridgell2010-01-092-7/+82
| | | | | | | | | | This stops us getting objects changes twice if they came via an indirect path.
| * s4-drs: be less verbose when we filter objects by UDVAndrew Tridgell2010-01-091-5/+5
| |
| * s4-drs: added filtering by udv in getncchangesAndrew Tridgell2010-01-092-9/+63
| | | | | | | | | | | | When a client supplied an uptodateness_vector, we can use it to filter what objects we return. This greatly reduces the amount of replication traffic between DCs.
| * s4-idl: give a enum for attribute cn and a 'NONE' attributeAndrew Tridgell2010-01-093-2/+10
| | | | | | | | | | | | The 'NONE' attribute has value 0xFFFFFFFF. Adding this ensures the compiler will complain if it is set to use 16 bit enums. We rely on being able to store 32 bits in an attid enum.
| * s4-drs: fixed the NC in the getncchanges RID alloc replyAndrew Tridgell2010-01-091-11/+13
| | | | | | | | | | the search happens on a different DN to the NC of the request, but the reply is with the original NC
| * s4-debug: removed debug_ctx(). It didn't catch on :-)Andrew Tridgell2010-01-091-4/+0
| | | | | | | | There was only one user, which isn't worth it for the overhead.
| * s4-messaging: remove only usage of debug_ctx()Andrew Tridgell2010-01-091-2/+4
| |
| * s4-messaging: fixed a memory leak in messaging_path()Andrew Tridgell2010-01-091-2/+9
| | | | | | | | | | It is a bit convoluted to fix, as cluster_id_string() may return a const string.
| * s4-drs: fixed usage of ldb_dn_new()Andrew Tridgell2010-01-091-1/+1
| |
| * s4-ldb: validate the type of the ldb argument to ldb_dn_new()Andrew Tridgell2010-01-091-1/+7
| | | | | | | | | | It has been a common bug to get the first two arguments the wrong way around
| * Fix commentSimo Sorce2010-01-081-1/+1
| |
| * Re-fix bug 5202 - cannot change ACLs on writable file with "dos filemode=yes"Jeremy Allison2010-01-081-0/+3
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This bug re-occurred for 3.3.x and above. The reason is that to change a NT ACL we now have to open the file requesting WRITE_DAC and WRITE_OWNER access. The mapping from POSIX "w" to NT permissions in posix_acls doesn't add these bits when "dos filemode = yes", so even though the permission or owner change would be allowed by the POSIX ACL code, the NTCreateX call fails with ACCESS_DENIED now we always check NT permissions first. Added in the mapping from "w" to WRITE_DAC and WRITE_OWNER access. Jeremy.
| * s4:provision_self_join.ldif - Adapt comment after implementation of ↵Matthias Dieter Wallnöfer2010-01-081-2/+2
| | | | | | | | distributed RIDs
| * s4-kdc: Migrate tcp connections to tsocket.Andreas Schneider2010-01-081-89/+188
| | | | | | | | Signed-off-by: Stefan Metzmacher <metze@samba.org>
| * s4:kdc: use LIBSAMBA_TSOCKETStefan Metzmacher2010-01-081-1/+1
| | | | | | | | metze
| * s4:kdc: the ->process function returns "bool"Stefan Metzmacher2010-01-081-9/+9
| | | | | | | | metze
| * libcli/util: add tstream_read_pdu_blob_send/recvStefan Metzmacher2010-01-083-0/+251
| | | | | | | | | | | | | | This will take the some full_request callback function as the Samba4 packet code. metze
| * s3-time: fix build warnings after we moved to shared time functions.Günther Deschner2010-01-081-6/+6
| | | | | | | | | | | | Bjoern, please check. Guenther
| * s3-docs: mention -K option in pdbedit manpage.Günther Deschner2010-01-081-0/+1
| | | | | | | | Guenther