summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
| * Add the beginings of sam_ads to the tree.Andrew Bartlett2002-09-2811-32/+1161
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | This module, primarilly the work of "Stefan (metze) Metzmacher" <metze@metzemix.de>, uses the Active Directory schema to store the user/group/other information. I've been testing it against a real AD server, and it is intended to work with OpenLDAP as well. I've moved a few functions around in our other libads code, which has made it easier to tap into that existing code. Also, I've made some changes to the SAM interface, I hope there are not too many objections... To ensure we don't get silly bugs in the skel module, it is now in the default compile. This way you should not forget to update it :-) Andrew Bartlett
| * Thanks to abartlet I looked at that function a bit closer. What didVolker Lendecke2002-09-281-5/+0
| | | | | | | | | | | | | | the first cli_push_string do? I suspect that it's a leftover from times when the password length was needed at some point. Volker
| * Add const.Andrew Bartlett2002-09-282-2/+2
| |
| * Commit a fix to smbclient so that it will connect to EMCs and NetApp's machines.Richard Sharpe2002-09-281-3/+18
| |
| * This needs to be #ifdef HAVE_LDAP.Andrew Bartlett2002-09-281-0/+3
| |
| * Add const.Andrew Bartlett2002-09-281-4/+4
| |
| * Back our volker's patch as was breaking the build.Andrew Bartlett2002-09-271-7/+2
| | | | | | | | | | | | | | | | | | Volker, I would like to understand what you are trying to do here... I'll trust that it's broken (this code is certainly not well tested) but I do want to keep a close eye on the fixes... Andrew Bartlett
| * It turns out that Windows allows delete printer on a handleJeremy Allison2002-09-271-0/+14
| | | | | | | | | | | | opened by an admin user, then used on a pipe handle created by an anonymous user..... but they're working on security.... riiight ! Jeremy.
| * Check for security on delete printer was reversed...Jeremy Allison2002-09-271-5/+5
| | | | | | | | Jeremy.
| * HEAD and APP-HEAD spoolss parsing was out of sync. This MUST NOT HAPPEN !Jeremy Allison2002-09-271-20/+17
| | | | | | | | Jeremy.
| * Touching somebody else's code again... Sorry, Richard.Volker Lendecke2002-09-271-2/+9
| | | | | | | | | | | | | | | | | | smbclient would announce that it can send UNICODE, but would send the plain text password in ASCII. This confused Samba HEAD somewhat. This change has been tested against Samba HEAD of today and Samba 2.2.1a. I do not have any other servers that do plain text passwords. Anybody? Volker
| * Apply Vance Lankhaars' cifs2002 documentation patch - mostly grammar andJelmer Vernooij2002-09-2719-262/+138
| | | | | | | | English typo fixes and updates of documentation
| * Sorry to touch such an internal function. But I was quite surprised thatVolker Lendecke2002-09-271-2/+7
| | | | | | | | | | | | | | | | | | | | | | | | 'security = user', 'encrypt passwords = no' did not work anymore. This is on quite a standard SuSE 7.3, ./configure.developer --with-tdbsam. I can provide a config.log / config.h on demand. Please re-check for consequences, I don't really oversee that file. Thanks, Volker
| * Move a number of ADS related functions out into utility libs, so that thingsAndrew Bartlett2002-09-277-218/+345
| | | | | | | | | | | | | | | | like metze's sam_ads can also use them. Also add error checking etc to a few more functions. Andrew Bartlett
| * An example of a group creation command that can handle failuresVolker Lendecke2002-09-271-0/+27
| | | | | | | | | | | | of groupadd. Volker
| * Do not update manpages directly...Volker Lendecke2002-09-271-1/+10
| |
| * Doco patch from metze. This reformats the 'ldap ssl' docs, and add doco forAndrew Bartlett2002-09-271-9/+35
| | | | | | | | | | | | the new 'ldap passwd sync' option. Andrew Bartlett
| * Vance picked up a pile of typos etc at the CIFS confernce, and finally got themAndrew Bartlett2002-09-274-15/+15
| | | | | | | | | | | | off his laptop :-) Andrew Bartlett
| * Minor updates:Andrew Bartlett2002-09-273-10/+24
| | | | | | | | | | | | | | | | | | | | Add const to some more functions, and reintroduce 'net rpc join oldstyle' as *only* trying an old-style join. This means that we can rely on it not prompting for a password on the build farm. Andrew Bartlett
| * Some small cleanups to the libads code (mainly error checking), and give aAndrew Bartlett2002-09-273-7/+30
| | | | | | | | | | | | sane prototype for the push_utf8_allocate code. Andrew Bartlett
| * I missed committing this - all updates to configure.in adding --with-fooAndrew Bartlett2002-09-271-1/+1
| | | | | | | | | | | | options need a matching entry in acconfig.h to actually do anything... Andrew Bartlett
| * Fix typoAndrew Bartlett2002-09-271-1/+1
| |
| * When compiled --with-ldapsam, make ldapsam the default passdb backend.Andrew Bartlett2002-09-271-1/+3
| | | | | | | | | | | | | | | | | | | | This is to allow painless upgrades from 2.2, and so people don't get a shock when they follow old docs. If ldap has been detected on the system, ldapsam is always available, just not the default. Andrew Bartlett
| * Readd the 2.2 --with-ldapsam paramaters so as to allow a smooth upgrade path toAndrew Bartlett2002-09-275-835/+912
| | | | | | | | | | | | | | | | a 3.0 based PDC. Change defaults to use SSL, so that this also matches. Andrew Bartlett
| * Make explicit the difference between a tdb key with no data attached, andJeremy Allison2002-09-261-2/+11
| | | | | | | | | | a non existent entry. Stop a malloc(0) being called in the first case. Jeremy.
| * tagging version as post3.0-HEAD to differentiate from the SAMBA_3_0Gerald Carter2002-09-261-1/+1
| | | | | | | | branch.
| * add -r to usage outputGerald Carter2002-09-261-0/+1
| |
| * preparing for release of 3.0alpha20Samba Release Account2002-09-262-10/+10
| |
| * sync with SAMBA_3_0Gerald Carter2002-09-261-0/+162
| |
| * Fix segfault in sam_context_enum_domains - reported by KaiJelmer Vernooij2002-09-261-0/+1
| |
| * Don't define PASS_MUST_CHANGE_AT_NEXT_LOGON twice..Jelmer Vernooij2002-09-261-3/+0
| |
| * Change pdb_xml functions to return NTSTATUSJelmer Vernooij2002-09-261-14/+15
| |
| * Change pdb_mysql function to return NTSTATUSJelmer Vernooij2002-09-261-65/+76
| |
| * Make functions return NTSTATUS instead of BOOLJelmer Vernooij2002-09-261-14/+14
| |
| * Add -r parameter to smbgroupedit. With -r you can manually chooseVolker Lendecke2002-09-261-21/+26
| | | | | | | | | | | | a rid. Volker
| * Patch from "Kai Krueger" <kai@kruegernetz.de> to get some more of our accessAndrew Bartlett2002-09-262-47/+58
| | | | | | | | | | | | control bits right on the SAMR pipe. Andrew Bartlett
| * forgot include file, sorrySimo Sorce2002-09-261-14/+14
| |
| * Patch from "Stefan (metze) Metzmacher" <metze@metzemix.de> to do a *much*Andrew Bartlett2002-09-266-85/+419
| | | | | | | | | | | | | | | | | | | | | | | | better job of working with usrmgr. Previously we were blanking out entires, and all sort of mischif. The new patch (which I've now had a chance to test/modify) also takes care not to expand % values (ie we go \\%L\%U -> \\server\user, we don't want to store \\server\user back) and to correctly notice 'not set' compared to 'null string' etc. Andrew Bartlett
| * move all the passdb internal interface to NTSTATUSSimo Sorce2002-09-267-269/+320
| | | | | | | | | | | | | | | | | | only the interface has been fully moved to NTSTATUS not all the plugins make full use of it, but have been all converted. My testings passed completely, however a bit of more testing is welcome Simo.
| * notify user when no {domains,accounts} were foundJelmer Vernooij2002-09-251-0/+10
| |
| * Add samtest command 'enum_accounts' + few typo fixes in sam/interface.cJelmer Vernooij2002-09-252-4/+30
| |
| * add samtest commands:Jelmer Vernooij2002-09-251-1/+134
| | | | | | | | | | - show_domain - context
| * fix getpass replacement check (i thought I fixed this a few daysGerald Carter2002-09-251-0/+2
| | | | | | | | ago....)
| * Make it clear what this if statement applies to, and what it doesn'tAndrew Bartlett2002-09-251-0/+1
| |
| * remove extern for AllowDebugChange since we don't use itJelmer Vernooij2002-09-251-1/+0
| |
| * Fix the circular dependency that was preventing 'domain master = auto' (theAndrew Bartlett2002-09-251-1/+1
| | | | | | | | | | | | default) from working. Andrew Bartlett
| * Metze claims that without this his win2k server gets horribly confused lookingAndrew Bartlett2002-09-251-2/+2
| | | | | | | | | | | | | | | | | | for all sorts of AD things in lp_realm(). We need to get some non-Win2k NTLMSSP and chase this up a bit, but this will do for now. (Hmm, this might affect NTLMv2 as well) Andrew Bartlett
| * Whenever we deal with adding machine/trusted domain accounts, always reset theAndrew Bartlett2002-09-251-20/+23
| | | | | | | | | | | | | | flag to what we expect. This handles the 'upgrade' from unixsam beter (where all $ terminated accounts are machines). Andrew Bartlett
| * Don't crash when a backend doesn't have a setsampwent function available - ↵Jelmer Vernooij2002-09-251-2/+2
| | | | | | | | bug reported by metze
| * This patch from "Stefan (metze) Metzmacher" <metze@metzemix.de> cleans upAndrew Bartlett2002-09-255-128/+231
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | pdb_ldap and adds a 'ldap passwd sync' option. The idea with this option is to do allow an ldap backend to do all the fancy password hashing etc - and to tell smbd no to try and double-up. Using 'ldap passwd sync = only' will do this, but is not recommended unless such a backend is in place... Running 'ldap passwd sync = yes' just gets you the same as doing 'pam passwd sync = yes' and having both PAM and pam_ldap correctly configured for 'magic root' behaviour, but only using ldap connection, and one set of credentials. This also gets us closer to allowing ldap to say 'password too short' etc, which might assist in maintaining a consistant password policy. Andrew Bartlett