summaryrefslogtreecommitdiffstats
path: root/source4
Commit message (Collapse)AuthorAgeFilesLines
...
* Adapted acl module to skip checks if as_system control is provided.Nadezhda Ivanova2009-12-211-7/+17
| | | | Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-drs: Save prefix map using LDB_CONTROL_AS_SYSTEM controlKamen Mazdrashki2009-12-211-1/+1
| | | | Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-dsdb-util: Execute ldb_request using LDB_CONTROL_AS_SYSTEMKamen Mazdrashki2009-12-211-0/+49
| | | | | | | This function is intended to be used when data needs to be modified skipping access checks. Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-dsdb-util: Utility function to process ldb_request in transactionKamen Mazdrashki2009-12-211-0/+26
| | | | | | | This function is to be used later for manually crafted ldb_requests from within dsdb layer Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-schema: Implement msDS-IntId attribute generationKamen Mazdrashki2009-12-211-14/+133
| | | | Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-schema: Constraints on msDS-IntId attributeKamen Mazdrashki2009-12-211-0/+27
| | | | | | | | This attribute can not be modified on existing schema object. msDS-IntId is not allowed during attribute creation also. Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-schema: Set ATTID in schema cache from "msDS-IntId"Kamen Mazdrashki2009-12-211-8/+13
| | | | | | | | | According to http://msdn.microsoft.com/en-us/library/cc223224%28PROT.13%29.aspx some Attributes OIDs may not use prefixMap. Setting ATTID in Schema Cache here should work, although this code snippet should be moved in separate function. Signed-off-by: Andrew Tridgell <tridge@samba.org>
* Revert "s4-drs: cope with bogus empty attributes from w2k8-r2"Kamen Mazdrashki2009-12-211-17/+0
| | | | | | | | This reverts commit 1287c1d115fb7e8f3954bc05ff65007968403a9c. Next patch should fix the "not recognized ATTIDs" problem Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-tort: Tests for "msDS-IntId" attribute implementedKamen Mazdrashki2009-12-211-2/+281
| | | | Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-tort: Move Schema tests from ldap.py into separate moduleKamen Mazdrashki2009-12-213-133/+222
| | | | Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-drs: Fix bug - prefixMap is not updated when adding new OIDs.Kamen Mazdrashki2009-12-211-2/+1
| | | | | | | | The bug is that prefixMap is updated only memory when adding new Classs/Attribute that has and OID not in prefixMap already. Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-drstest: Don't remove temp LDB so it can be reviewed if necessaryKamen Mazdrashki2009-12-211-1/+0
| | | | | | | This test makes temp directory which is not removed so why not just leave LDB also. Signed-off-by: Andrew Tridgell <tridge@samba.org>
* s4-repl: give a reason why the prepare commit failedAndrew Tridgell2009-12-211-1/+2
|
* s4-kcc: don't crash with a NULL ntds connection listAndrew Tridgell2009-12-211-3/+3
|
* s4-repl: only try to replicate for NCs that we are a master forAndrew Tridgell2009-12-211-4/+3
|
* s4-torture: another unsigned comparison bugAndrew Tridgell2009-12-211-1/+1
|
* s4-schema: a unsigned comparison bug in the schema codeAndrew Tridgell2009-12-211-1/+2
|
* s4-drs: another two unsigned comparison bugsAndrew Tridgell2009-12-211-3/+5
|
* s4-repl: lower debug level of a common messageAndrew Tridgell2009-12-211-1/+1
|
* s4-dsdb: don't use a non-constant format string for a printf formatAndrew Tridgell2009-12-211-10/+3
|
* s4-dsdb: added DSDB_MODIFY_RELAX flag to the dsdb_module_*() callsAndrew Tridgell2009-12-212-0/+8
|
* s4-dsdb: added dsdb_get_extended_dn_uint64()Andrew Tridgell2009-12-211-3/+11
|
* s4-dsdb: use varargs expression in dsdb_module_search()Andrew Tridgell2009-12-211-1/+7
| | | | Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: added two new dsdb_get_extended_dn_*() helper functionsAndrew Tridgell2009-12-211-0/+43
| | | | Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-provision: added a note about where invocationIDs come fromAndrew Tridgell2009-12-211-0/+2
| | | | Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: give us an invocationID when in standalone modeAndrew Tridgell2009-12-211-1/+79
| | | | | | | | | To allow us to use the repl_meta_data module in standalone mode (and thus not have two module stacks to test), we need a invocationID stored somewhere when standalone. This creates a random one, and stores it in @SAMBA_DSDB. Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4:kdc: setup the local and remote tsocket_address at accept timeStefan Metzmacher2009-12-191-44/+49
| | | | metze
* s4:kdc: convert UDP based communication to tdgram_contextStefan Metzmacher2009-12-192-177/+138
| | | | metze
* s4 torture: Add test to show archive bit behavior with directoriesZachary Loafman2009-12-181-0/+153
| | | | Signed-off-by: Tim Prouty <tprouty@samba.org>
* s4 torture: Fix RAW-STREAMS-DELETE to pass against samba3Tim Prouty2009-12-181-1/+2
|
* Added freeing a successful req so it doesnt croud the ldb contextNadezhda Ivanova2009-12-181-2/+4
|
* Added oid for AS_SYSTEM control, used to bypass access checks for system ↵Nadezhda Ivanova2009-12-181-0/+6
| | | | operations.
* s4-dsdb: stop warnings about unknown struct GUID in prototypesAndrew Tridgell2009-12-181-0/+1
| | | | Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-ldb: fixed a valgrind error in ldbtestAndrew Tridgell2009-12-181-0/+2
| | | | | | we were using msg->dn after the ldb it contained had been freed Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: greatly simplify the subtree_delete moduleAndrew Tridgell2009-12-181-117/+20
| | | | | | We can use dsdb_module_search() to make this much simpler Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: declare ldb_dn_update_components()Andrew Tridgell2009-12-181-0/+1
|
* s4-dsdb: added ldb_dn_update_components()Andrew Tridgell2009-12-181-0/+23
| | | | | | | | This is used to udpate just the DN components of a ldb_dn, leaving the other extended fields alone. It is needed to prevent linked attribute updates from removing other extended components. Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: fixed the sort in dsdb_find_nc_root()Andrew Tridgell2009-12-181-1/+6
|
* s4-ldb: display msDS-OptionalFeatureGUID as a GUIDAndrew Tridgell2009-12-181-0/+1
| | | | Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-scripts: add a enablerecyclebin scriptAndrew Tridgell2009-12-181-0/+54
| | | | | | This can be used to enable the recyclebin on a windows box. Once we properly implement this feature in samba we will use this to enable the feature on ourselves as well.
* s4-ldb: canonicalise the message on ldb_addAndrew Tridgell2009-12-181-0/+9
| | | | | | | | | This canonicalise avoids a problem with an add that has multiple elements with the same el->name. That is allowed by MS servers, and by ldb, but it breaks things like the tdb backend and the repl_meta_data RPMD handling. Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: Add a test for adding, deleting, and appending a posixAccount ↵Brendan Powers2009-12-181-0/+30
| | | | | | objectClass to a user Signed-off-by: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: fix handling of AUX classes in objectclass_sortBrendan Powers2009-12-181-146/+133
| | | | | | | | | | | | | | This is done by sorting the classes by subClass_order, which will check if the last structural class is valid to add (in objectclass_do_add instead checking the last class in the list). They were being sorted by building a class tree, and adding the classes to the list in that order. However, AUX classes usually don't fit into that tree, so LDB_ERR_OBJECT_CLASS_VIOLATION was returned. I have changed the behavior to sort the classes by subClass_order instead. Signed-off-by: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: return an error if samAccountName is not specified when creating a ↵Brendan Powers2009-12-181-0/+7
| | | | | | | | | | | user. Makes sure samAccountName has been specified before adding a user. This happened while I was trying to add a user with the posixAccount objectclass. I forgot to specify the user objectClass, and samba segfaulted. It now returns LDB_ERR_CONSTRAINT_VIOLATION. Signed-off-by: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: Move get_last_structural class from descriptor.c to util.cBrendan Powers2009-12-183-16/+30
| | | | | | | | | It can now also be used by objectclass.c get_last_structural_class now ignores AUX classes, because they are not structural Signed-off-by: Andrew Bartlett <abartlet@samba.org>
* s4-dsdb: Add a check to prevent acl_modify from debuging a NULL messageBrendan Powers2009-12-181-1/+5
| | | | | | | | Check to see if there were any messages passed to acl_modify before debugging the first one. I think I caused this by some malformed LDIF. Signed-off-by: Andrew Bartlett <abartlet@samba.org>
* s4:provision Give a more useful error message in guess_namesAndrew Bartlett2009-12-181-3/+11
| | | | | | | | | The problem here is that as we start to get 'real users' they still decide to do silly things, like load empty but existing smb.conf files. Let's give them a better chance to discover what they did wrong. Andrew Bartlett
* s4 torture: RAW-STREAMS-NAMES Make sure the create time of the streams are ↵Tim Prouty2009-12-171-0/+24
| | | | different from the base file
* s4 torture: Add RAW-STREAMS-RENAME3 to show error when trying to overwrite a ↵Tim Prouty2009-12-171-0/+92
| | | | | | | stream with an open handle A normal file overwrite in this case would return NT_STATUS_ACCESS_DENIED, but if a stream is the target NT_STATUS_INVALID_PARAMETER is returned.
* s4 torture: Parameterize streams delete behavior rather than commenting out ↵Tim Prouty2009-12-171-3/+7
| | | | the check.