summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* undoMartin Pool2001-12-047-184/+83
|
* Implement suggestion from tridge to leave the old tdb_open interfaceMartin Pool2001-12-045-13/+22
| | | | | as it was, and add tdb_open_ex() which takes a log callback. I guess this makes more sense since it's a public interface.
* Better error handling:Martin Pool2001-12-046-77/+139
| | | | | | | | | | | | | - tdb_open api changed so that you now pass an error handling callback when opening the file, so that errors detected during opening have somewhere to go. (All calls from the body of Samba to this function go through a wrapper in tdbutil, which has been updated.) - Clean up logic for deciding how to open tdb. Emit log messages if something goes wrong (e.g. bad magic.) - tdbtool now logs errors to stderr.
* allow for passwords other than "samba2"Andrew Tridgell2001-12-041-1/+1
| | | | :)
* moved lookup_usergroups() into the backend structureAndrew Tridgell2001-12-046-72/+83
|
* moved init_account_policy() to the right placeAndrew Tridgell2001-12-042-3/+5
|
* added a query_user backendAndrew Tridgell2001-12-047-97/+169
| | | | fixed a winbindd crash when the group membership can't be looked up
* typo fixAndrew Tridgell2001-12-041-1/+1
|
* const religion in talloc callsAndrew Tridgell2001-12-041-2/+2
|
* smbpasswd is *ugly*!Andrew Bartlett2001-12-041-0/+2
| | | | | | | | However this looks like the best spot to init the account policy db... (fix segfaults on all local smbpasswd ops) Andrew Bartlett
* winbindd friendly user_in_list code. Tested on a 65k user domain.Jeremy Allison2001-12-041-7/+15
| | | | Jeremy.
* Add 'net rpc join' to match the ADS equiv.Andrew Bartlett2001-12-046-308/+327
| | | | | | | | | | | | | | | | This kills off the offending code in smbpasswd -j -Uab%c In the process we have changed from unsing compelatly random passwords to random, 15 char ascii strings. While this does produce a decrese in entropy, it is still vastly greater than we need, considering the application. In the meantime this allows us to actually *type* the machine account password duruign debugging. This code also adds a 'check' step to the join, confirming that the stored password does indeed do somthing of value :-) Andrew Bartlett
* Some changes to the name resolution code in 'net' to allow us to find aAndrew Bartlett2001-12-042-25/+47
| | | | | | PDC, as well as changes for correctness as per tridge. Andrew Bartlett
* Fix up funtion name, as this finds local, not domain master browsers.Andrew Bartlett2001-12-041-2/+2
| | | | (as per tridge's instructions)
* This comment no longer applies.Andrew Bartlett2001-12-041-1/+0
|
* Magic file for TDB databases.Martin Pool2001-12-041-0/+10
|
* Stop using getgrgid() - a very expensive call with winbindd, to look upJeremy Allison2001-12-041-13/+10
| | | | | a group name. Jeremy.
* Moved name_is_local to the correct place. Ooops.Jeremy Allison2001-12-042-10/+10
| | | | Jeremy.
* Set errno in tdb_open in cases where we detect an error in opening theMartin Pool2001-12-042-12/+35
| | | | | | | | database, but no underlying system call sets errno. The particular case I had was a mangled .tdb, but there are others. For this one, set EIO. It's a shame Unix messages aren't more detailed -- "bad data format" would be better.
* Tidyup of lib/username. Add name_is_local fn to determine if name isJeremy Allison2001-12-042-171/+183
| | | | | winbindd. Getting ready for efficiency fix in group lookups. Jeremy.
* Added error message for ERRdiskfull.Tim Potter2001-12-041-0/+1
|
* when using non-encrypted password ignore the ntpass variable toAndrew Tridgell2001-12-041-2/+2
| | | | session setup
* Added prototypes for new fns. Thanks Elrond.Jeremy Allison2001-12-031-0/+7
| | | | Jeremy.
* added a tdb to store the account policy informations.Jean-François Micouleau2001-12-0311-133/+465
| | | | | | | | | | | | | | You can change them with either usermanager->policies->account or from a command prompt on NT/W2K: net accounts /domain we can add a rpc accounts to the net command. As the net_rpc.c is still empty, I did not start. How should I add command to it ? Should I take the rpcclient/cmd_xxx functions and call them from there ? alse changed the SAM_UNK_INFO_3 parser, it's an NTTIME. This one is more for jeremy ;-) J.F.
* changed query_dispinfo to query_user_listAndrew Tridgell2001-12-034-23/+23
|
* put sid_to_name behind the winbindd backend interfaceAndrew Tridgell2001-12-037-44/+85
| | | | | | | I spent quite a while trying to work out how to make this call via ldap and failed. I then found that MS servers seem use rpc for sid_to_name, and it works even when in native mode, I ended up just implementing it via rpc
* added name_to_sid to the backendAndrew Tridgell2001-12-0310-111/+186
|
* const religionAndrew Tridgell2001-12-032-3/+3
|
* added another ATYPE_Andrew Tridgell2001-12-031-1/+2
|
* make proto should build winbindd_proto.h as wellAndrew Tridgell2001-12-031-1/+1
|
* This change reworkes the connection code for both rpcclient and net newAndrew Bartlett2001-12-034-160/+164
| | | | | | | | | | | 'net' untility. This should make it easier to port rpcclient code across to net. It also allows SPNEGO (the NTLMSSP subsystem in particular) to work, becouse it kills off the early destruction of the clear-text password. Andrew Bartlett
* Forgot this one with the last commit...Andrew Bartlett2001-12-031-0/+36
| | | | Andrew Bartlett
* added a basic ADS backend to winbind. More work needed, but atAndrew Tridgell2001-12-037-22/+335
| | | | least basic operations work
* This is another major rework of the 'net' command.Andrew Bartlett2001-12-034-1058/+1274
| | | | | | | | | | | | | | | | | | | | | | | | | | This time, all the existing functionality has been moved into 'net rap', ready for new commands in the 'net ads' and 'net rpc' categories. In particular, we hope to have the abilty to autoselect the appropriate backend to use based on smb.conf or other paramaters. This will allow 'net user' to work no matter what the remote server. The new 'net rpc' command will soon gain a 'net rpc join' and a 'net rpc user' based on the existing samba code. Also in this commit, the connection establishment code has been almost entirly reworked, and now has some minor sense of sainity to it. In particular, we can now connect to hosts *other* than localhost! We also have the ability to state on a per-command basis whether the 'localhost' is a sane default value. (A net join, for example, would not be sane against localhost). Unfortunetly we have had to make the basic paramaters global variables, but the 'cli' is not opened and closed on a per-command basis. Andrew Bartlett
* Don't display any data if tdb_fetch() failed in the tdbtool "fetch"Tim Potter2001-12-031-1/+4
| | | | command.
* added nsstest targetAndrew Tridgell2001-12-031-1/+7
| | | | fixed winbindd_rpc.o typo
* fixed default location of libnss_winbind.soAndrew Tridgell2001-12-031-1/+1
|
* fixed the nsswitch initgroups codeAndrew Tridgell2001-12-032-8/+312
| | | | | added a nsstest test program that directly tests all the nss interfaces using dlopen()
* Writing decimal constants as "02" has been shown to cause cancer inMartin Pool2001-12-032-4/+4
| | | | rats.
* split winbindd_enum_dom_groups into the new backend structureAndrew Tridgell2001-12-036-95/+144
| | | | | | also created winbindd_rpc.c which contains the functions that have been converted to the new structure. There will soon be a winbindd_ads.c for the ldap backend
* Updated definition of fstring.Tim Potter2001-12-031-4/+11
| | | | | print_asc(): Don't try to print a trailing NULL character print_key(), print_rec(): Display key in ASCII
* re-enabled insure backtrace, calling /usr/bin/backtraceAndrew Tridgell2001-12-031-2/+4
|
* init group db before useAndrew Tridgell2001-12-031-0/+12
| | | | this fixes the smbpasswd segvs
* added queryuseraliases to rpcclientJean-François Micouleau2001-12-023-0/+150
| | | | | | | and some comments to the samr server code, to explain what we should return here. J.F.
* there was a bug in samr_lookup_names (my fault)Jean-François Micouleau2001-12-021-42/+77
| | | | | | and added comments and some debugs. J.F.
* added mapping of primary gid to rid thru the group mapping code.Jean-François Micouleau2001-12-025-29/+143
| | | | | | | and cleanup and comments in passdb/passdb.c J.F.
* added samr_query_sec_obj. and put back some code to display a securityJean-François Micouleau2001-12-021-8/+201
| | | | | | | | | descriptor. added to samr_lookup_name the choice to select the either the builtin (s-1-5-32) domain or our current domain (s-1-5-21-x-y-z) J.F.
* added samr_query_sec_obj for rpcclientJean-François Micouleau2001-12-011-0/+46
| | | | J.F.
* groups in the Builtin domain S-5-32 are alias and not well-known groupsJean-François Micouleau2001-12-011-11/+15
| | | | J.F.
* removed the #ifdef USING_GROUPNAME_MAP/#endif blocksJean-François Micouleau2001-12-011-10/+0
| | | | | | | | that GROUPNAME_MAP has never been used. I'll delete the smbd/groupname.c file too J.F.