summaryrefslogtreecommitdiffstats
path: root/source4
Commit message (Collapse)AuthorAgeFilesLines
...
| * s4-torture: minor debugging enhancementsAndrew Tridgell2009-10-171-3/+3
| |
| * s4-schema: We should not need Samba4TopExtra nowAndrew Tridgell2009-10-171-23/+0
| | | | | | | | The last attribute this contained was 'privilege' which is now gone
| * s4-pvfs: don't auto-apply privilege bits in unix acl handling eitherAndrew Tridgell2009-10-171-7/+11
| |
| * s4-acl: SEC_FLAG_MAXIMUM_ALLOWED doesn't auto-apply privilege access masksAndrew Tridgell2009-10-171-6/+2
| |
| * s4-torture: the BASE-CREATEX_ACCESS test is broken for non-administratorsAndrew Tridgell2009-10-171-0/+1
| | | | | | | | See my msg to samba-technical about this test and privilege testing.
| * s4-torture: cleanup after the MAXIMUM_ALLOWED testAndrew Tridgell2009-10-171-0/+1
| |
| * s4-pvfs: use privileges rather than "uid == 0" in unix access checkAndrew Tridgell2009-10-171-6/+12
| | | | | | | | This makes the unix access check much closer to the full ACL check
| * s4-security: honor more of the privilege access bitsAndrew Tridgell2009-10-171-4/+12
| |
| * s4-torture: add a special check for administrators and privilegesAndrew Tridgell2009-10-174-18/+57
| | | | | | | | lsa privileges calls don't expand groups. darn.
| * s4-lsasrv: make sure only admins can alter privilegesAndrew Tridgell2009-10-171-0/+6
| |
| * s4-provision: added the default privileges dbAndrew Tridgell2009-10-172-0/+99
| | | | | | | | privileges are now stored in a separate database
| * s4-provision: removed the old privilege attributesAndrew Tridgell2009-10-172-53/+14
| | | | | | | | Our schema is getting a bit cleaner :-)
| * s4-torture: show the sid we are basing privilege tests onAndrew Tridgell2009-10-171-2/+6
| |
| * s4-privileges: moved privileges to private/privilege.ldbAndrew Tridgell2009-10-174-38/+70
| | | | | | | | | | | | | | We were storing privileges in the sam, which was OK when we were a standalone DC, but is no good when we replicate with a windows DC. This moves the privileges to a separate (local) database
| * s4-smbtorture: extend netr_LogonControl test in RPC-NETLOGON.Günther Deschner2009-10-161-3/+109
| | | | | | | | Guenther
| * s4:provision - fixed invalid creationTime formatEndi S. Dewata2009-10-161-2/+2
| |
| * s4:ldb - fixed dangling pointer in ldb_request_add_control()Endi S. Dewata2009-10-161-2/+7
| |
| * s4:auth - fixed problem reading bind DN from secrets databaseEndi S. Dewata2009-10-162-0/+8
| |
| * s4:provision - replaced linked_attributes with FDS pluginsEndi S. Dewata2009-10-167-3/+100
| | | | | | | | | | | | | | When FDS is used as a backend, Samba should not use the linked_attributes LDB module, but instead use the built-in DS plugins for attribute linking, indexing, and referential integrity.
| * s4:auth_sam: Restructure tail in "authsam_get_server_info_principal" and fix ↵Matthias Dieter Wallnöfer2009-10-161-3/+8
| | | | | | | | a memory leak
| * s4:winsdb - Substitute LDB result numbers with constantsMatthias Dieter Wallnöfer2009-10-161-19/+20
| |
| * s4/drs(tort): prefixMap unit test initial implementatoinKamen Mazdrashki2009-10-163-1/+84
| |
| * s4/drs: prefixMap module initial definitionKamen Mazdrashki2009-10-163-1/+69
| |
| * s4/drs(tort): fix compile time warningKamen Mazdrashki2009-10-161-0/+1
| |
| * s4/drs(tort): _drs_util_verify_attids() to verify ATTIDs in objects receivedKamen Mazdrashki2009-10-161-0/+50
| |
| * s4/drs(tort): drs_util_DsAttributeId_to_string() functionKamen Mazdrashki2009-10-161-0/+74
| |
| * s4/drs(tort): _drs_ldap_attr_by_oid() implementationKamen Mazdrashki2009-10-161-0/+49
| | | | | | | | | | Utility function to be used to fetch Attribute name and DN giving attribute OID
| * s4/drs(tort): oid_from_attid() reference implementationKamen Mazdrashki2009-10-162-1/+96
| | | | | | | | | | | | | | Decode Attribute OID using prefixMap and ATTID received during replication Based on MS documentation. See MS-DRSR.pdf - 5.16.4
| * s4/drs(tort): TORTURE_DRS torture module - initial implementationKamen Mazdrashki2009-10-164-0/+95
| | | | | | | | | | | | Drsuapi tests module registers two suites: - DRS-RPC - tests to be executed against remote machine - DRS-UNIT - unit test for internal testing
| * s4/drs: Propagate redefinition of drsuapi_DsReplicaOID into code baseKamen Mazdrashki2009-10-162-69/+134
| | | | | | | | | | | | | | | | | | | | | | | | | | | | The biggest change is that 'oid' field is transmited in binary format. Also the field name is changed to 'binary_oid' so that field format to be clear for callers. After those changes, Samba4 should work the way it works before - i.e. no added value here but we should not fail when partial-oid is part of prefixMap transmited from Win server. Also, thre is a bug in this patch - partial-binary-OIDs are not handled correctly. Partial-binary-OIDs received during replication will be encoded, but not handled correctly.
| * s4-winsrepl: don't put in attributes with no elementsAndrew Tridgell2009-10-161-2/+2
| | | | | | | | | | | | | | Empty attributes are no longer allowed by ldb. This also fixes the error checking in winsdb_message() This fixes the samba4.nbt.winsreplication test
| * s4-smbtorture: add very basic libwbclient testsuite.Günther Deschner2009-10-162-2/+3
| | | | | | | | Guenther
| * s4-pvfs: fixed mask handling for SEC_FLAG_MAXIMUM_ALLOWEDAndrew Tridgell2009-10-161-2/+2
| | | | | | | | This matches the sec_access_check() code
| * s4-torture: take privileges into account in BASE-MAXIMUM_ALLOWEDAndrew Tridgell2009-10-161-10/+48
| | | | | | | | The correct answer depends on the users privileges.
| * s4:dcerpc_server - Read the generic session key out from ↵Matthias Dieter Wallnöfer2009-10-151-5/+2
| | | | | | | | | | | | | | | | "dcerpc_generic_session_key" I don't think that this code needs to exist identically on the server and on the client side. This patch leaves it on the client side (dcerpc lib) and calls it from the server.
| * s4:w32err_code.py script - put it under "scripting/bin"Matthias Dieter Wallnöfer2009-10-151-0/+0
| | | | | | | | | | | | I think this is a better location for this script. Since the subdirectory "script" of "source4" contains only scripts for "make install" and "make uninstall".
| * s4-smb: fill in fnum as well for root_fidAndrew Tridgell2009-10-152-1/+3
| | | | | | | | This helps with the CIFS NTVFS backend, but doesn't solve all problems
| * s4-selftest: mark some CIFS backend tests as known failAndrew Tridgell2009-10-151-0/+4
| | | | | | | | The CIFS passthru NTVFS doesn't handle some options yet (eg. root_fid)
| * s4-smbserver: fixed root_fid in nttrans createAndrew Tridgell2009-10-151-1/+1
| |
| * s4-libcli: fixed structure element bug in ntcreatexreadxAndrew Tridgell2009-10-151-1/+1
| | | | | | | | | | This one didn't matter until the root_fid changed the alignment of the two structures.
| * s4-torture: catch bad command line optionsAndrew Tridgell2009-10-151-0/+3
| | | | | | | | It is annoying when you mistype a command line option and aren't told.
| * s4-pvfs: implement root_fid support in posix backendAndrew Tridgell2009-10-151-0/+15
| | | | | | | | Construct the filename from the old handle and the new name.
| * s4-smb: declare root_fid as a file handleAndrew Tridgell2009-10-1529-139/+139
| | | | | | | | | | | | In order to implement root_fid in the s4 SMB server we need to declare it as a handle type, just as for other fnum values in SMB. This required some extensive (but simple) changes in many bits of code.
| * s4-pvfs: fixed handling of SEC_FLAG_MAXIMUM_ALLOWEDAndrew Tridgell2009-10-151-1/+1
| | | | | | | | | | The CREATEX_ACCESS test shows that this is used as a bit test, not a equality test
| * s4-ldaptest: "testgroup" is a bit too commonAndrew Tridgell2009-10-151-2/+2
| | | | | | | | | | This failed on one of my test boxes that has a group called "testgroup". using "testgroupXX" should be a bit better.
| * s4:ntlmssp server - use also here the new "lp_dnsdomain()" callMatthias Dieter Wallnöfer2009-10-151-2/+1
| |
| * s4:auth/credentials/credentials - fix uninitalised pointersMatthias Dieter Wallnöfer2009-10-151-7/+35
| | | | | | | | This should fix bug #6755.
| * s4-ldap: test the rDN size limitAndrew Tridgell2009-10-151-0/+25
| |
| * s4-dsdb: implement limit on rDN lengthAndrew Tridgell2009-10-151-3/+11
| | | | | | | | w2k8 imposes a limit of 64 characters on the rDN
| * s4-ldb: removed incorrect rDN length testAndrew Tridgell2009-10-151-13/+0
| | | | | | | | | | This is a property of AD, not ldb, so should be in our ldb modules.