summaryrefslogtreecommitdiffstats
path: root/source
Commit message (Collapse)AuthorAgeFilesLines
* r1834: prevent infinite recusion in reopen_logs() when expanding the ↵Gerald Carter2007-10-101-1/+7
| | | | smb.conf variable %I
* r1833: patch from James Peach to get swat to look for index.html by default ↵Gerald Carter2007-10-101-4/+24
| | | | when given a trailing directory/
* r1812: Fix from Richard Renard <rrenard@idealx.com> to be able to resetJeremy Allison2007-10-101-3/+30
| | | | | a users logon hours restrictions. Jeremy.
* r1810: Patch from Richard Renard <rrenard@idealx.com> to storeJeremy Allison2007-10-104-2/+74
| | | | | logon hours attributes in an LDAP database. Jeremy.
* r1789: compiler warnings from SuSEGerald Carter2007-10-102-2/+6
|
* r1780: Remove the UTC comment as it isn't.Jeremy Allison2007-10-101-2/+2
| | | | Jeremy.
* r1778: Fix based on code from Richard Renard <rrenard@idealx.com> toJeremy Allison2007-10-101-0/+42
| | | | | enforce logon hours. ldap fixes to follow. Jeremy.
* r1750: This patch allows net ads lookup to rely on command line arguments if ↵Jim McDonough2007-10-102-2/+6
| | | | | | contacting an ADS server fails. This allows net ads lookup to work with clapd (very useful for testing). from aliguori@us.ibm.com
* r1733: Fix hashed password history for LDAP backends.Jeremy Allison2007-10-101-10/+26
| | | | Jeremy.
* r1721: Get rid of compiler-warning.Günther Deschner2007-10-101-0/+1
| | | | Guenther
* r1720: Show correct help for net groupmap commands.Günther Deschner2007-10-101-3/+3
| | | | Guenther
* r1716: Get rid of a compiler warning. "pipe" is a symbol that is defined as ↵Volker Lendecke2007-10-101-2/+2
| | | | | | | | a system call, and gcc -Wall complains about a shadowed definition. Volker
* r1698: fix build.Günther Deschner2007-10-101-2/+3
| | | | guenther
* r1692: first commit :)Günther Deschner2007-10-1012-27/+3053
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * add IA64 to the architecture table of printer-drivers * add new "net"-subcommands: net rpc printer migrate {drivers|printers|forms|security|settings|all} [printer] net rpc share migrate {shares|files|all} [share] this is the first part of the migration suite. this will will (once feature-complete) allow to do 1:1 server-cloning in the best possible way by making heavy use of samba's rpc_client-functions. all migration-steps are implemented as rpc/smb-client-calls; net communicates via rpc/smb with two servers at the same time (a remote, source server and a destination server that currently defaults to the local smbd). this allows e. g. printer-driver migration including driverfiles, recursive mirroring of file-shares including file-acls, etc. almost any migration step can be called with a migrate-subcommand to provide more flexibility during a migration process (at the cost of quite some redundancy :) ). "net rpc printer migrate settings" is still in a bad condition (many open questions that hopefully can be adressed soon). "net rpc share migrate security" as an isolated call to just migrate share-ACLs will be added later. Before playing with it, make sure to use a test-server. Migration is a serious business and this tool-set can perfectly overwrite your existing file/print-shares. * along with the migration functions had to make I the following changes: - implement setprinter level 3 client-side - implement net_add_share level 502 client-side - allow security descriptor to be set in setprinterdata level 2 serverside guenther
* r1684: Patch for bug #1578 based on fix from Alexander E. Patrakov,Jeremy Allison2007-10-101-12/+19
| | | | | | <patrakov@ums.usu.ru>. Main change, hardcode replacement char to '_' as I really don't want a new parameter. Jeremy.
* r1681: Ensure we return the same ACL revision on the wire that W2K3 does.Jeremy Allison2007-10-101-1/+1
| | | | Jeremy.
* r1665: Patch from James Peach @ SGI to stop using sendfile if it isn'tJeremy Allison2007-10-102-2/+18
| | | | | supported by the underlying OS. Jeremy.
* r1661: Changed the password history format so that each history entryJeremy Allison2007-10-105-22/+74
| | | | | | | consists of a 16 byte salt, followed by the 16 byte MD5 hash of the concatination of the salt plus the NThash of the historical password. Allows these to be exposed in LDAP without security issues. Jeremy.
* r1658: Expand aliases for getusersids as well.Volker Lendecke2007-10-101-0/+56
| | | | Volker
* r1656: Patch from James Peach:Vance Lankhaar2007-10-101-0/+2
| | | | | | | | | | | > This patch is (probably) needed for all systems that don't have a > C99/UNIX98 compliant vsnprintf by default. The builtin sm_*printf > were no being called, causing things like talloc_init to fail, with > predictable results. The should fix 6 (solaris/hpux/irix) builds on the build farm. Vance
* r1638: Dont always uppercase "afs username map"Volker Lendecke2007-10-101-1/+1
|
* r1616: Fix user unmount of shares mount with suid mount.cifsSteve French2007-10-101-9/+33
|
* r1613: Patch from Tom Shaw <tomisfaraway@gmail.com> to useJeremy Allison2007-10-101-4/+4
| | | | | winbindd_fill_pwent consistently. Jeremy.
* r1612: Fix bug #1571 found by Guenter Kukkukk <guenter.kukkukk@kukkukk.com>Andrew Bartlett2007-10-101-2/+5
| | | | | | (Botched LANMAN2 session setup code) Andrew Bartlett
* r1610: Patch from Richard Renard <rrenard@idealx.com>. Ensure weJeremy Allison2007-10-101-10/+4
| | | | | | save the password as it is being changed into the password history list. Jeremy.
* r1608: Fix from Nick THOMPSON <nickthompson@agere.com> to protect smbdJeremy Allison2007-10-101-3/+8
| | | | | against broken filesystems which return zero blocksize. Jeremy.
* r1599: Use -Bsymbolic when creating shared libraries to avoid conflicts withTim Potter2007-10-101-1/+1
| | | | | identical symbols in the global namespace when loading libnss_wins.so. Bugzilla #1360.
* r1590: Small fixes from Günther DeschnerVolker Lendecke2007-10-101-7/+3
|
* r1588: This is one of the more pathetic patches I ever checked in. Many hours ofVolker Lendecke2007-10-102-96/+73
| | | | | | | | | | | | | coding have passed, but I could not find a way to get the OpenLDAP libraries to reliably time out on any of the queries we make, *and* get correct error returns. No, async calls and ldap_result does NOT work, or I was simply too stupid to correctly interpret the OpenLDAP manpage and source. We can not allow to hang indefinitely in an ldap query, especially not for winbindd. "ldap timeout" now specifies the overall timeout for the complete operation, that's why I increased that to 15 seconds. Volker
* r1583: Patch by Fabien Chevalier <fabien.chevalier@supelec.fr>Andrew Bartlett2007-10-101-1/+1
| | | | | | | | We may not have any interfaces up at all, so initialise the return variable. Fixes Debian bug #252591 Andrew Bartlett
* r1582: On failure, print the length of the right variable.Andrew Bartlett2007-10-101-1/+1
| | | | Andrew Bartlett
* r1581: 'NULL' NTLMSSP is both a pain to get right, and compleatly and utterlyAndrew Bartlett2007-10-101-0/+2
| | | | | | | | | | | pointless. With a well-known session key, we may as well put the password change directly on the wire, with it's own 'crypted with old password' as the protection. This should fix some 'long password change' issues, against Samba in particular. Andrew Bartlett
* r1572: setting version to 3.0.7pre1; I will pull back changes into 3.0.6rc2 ↵Gerald Carter2007-10-101-2/+2
| | | | manually
* r1570: merging changes from 3.0.5Gerald Carter2007-10-107-22/+28
|
* r1562: Make winbind for -S (sid->uid) and -Y (sid->gid) check whether the sidVolker Lendecke2007-10-101-0/+41
| | | | | | | | | requested actually is of type asked for. I've come across more than one installation where a group sid had ended up as a uid in idmap and vice versa. This just closes one possible for this misconfiguration, people are actually using wbinfo. Volker
* r1561: iconv detection fix from James Peach <jpeach@sgi.com>Gerald Carter2007-10-101-13/+19
|
* r1560: Not that anybody uses this stuff (yet...), but at least get it ↵Volker Lendecke2007-10-101-1/+1
| | | | | | | | correct :-) When sending a mailslot datagram, get the packet length correction correct. Volker
* r1557: Add sigchld handling to winbindd. Next step is to have the child ↵Richard Sharpe2007-10-101-0/+13
| | | | | | restarted if need be. We should also make sure the main line know we no longer have a child.
* r1553: Good patch from Guenther Deschner <gd@sernet.de> to display share ACLJeremy Allison2007-10-102-0/+59
| | | | | entries from rpcclient. Jeremy.
* r1539: If a account was locked out by an admin (and has a bad password count ↵Jeremy Allison2007-10-101-6/+19
| | | | | | | of zero) leave it locked out until an admin unlocks it (but log a message). Jeremy.
* r1537: Fix to stop printing accounts from resetting the bas passwordJeremy Allison2007-10-101-15/+10
| | | | | | and account lockout flags. This is set when an account is updated only from smbd or pdbedit. Bug found by "Dunn, Drew A." <Drew.Dunn@jhuapl.edu>. Jeremy.
* r1532: Remove unused structure elementVolker Lendecke2007-10-101-1/+0
|
* r1531: smbd/tdbutil.c isn't used anymore. Bug 1443 is suspected to be a tdbVolker Lendecke2007-10-102-86/+1
| | | | | | corruption problem, and smbd_log_tdb happily destoyed the evidence .... Volker
* r1506: Fix inspired by patches from Michael Collin Nielsen ↵Jeremy Allison2007-10-101-11/+15
| | | | | | | <michael@hum.aau.dk> - ensure home directory service number is correctly reused. Jeremy.
* r1504: Remove insane use of "user password" on the COMMAND LINE !Jeremy Allison2007-10-101-25/+6
| | | | | in smbpasswd. Use -s if you want to script this. Jeremy.
* r1501: One more check for option != 0.Jeremy Allison2007-10-101-1/+5
| | | | Jeremy.
* r1500: BUG 1516: manually declare ldap_open_with_timeout() to workaround ↵Gerald Carter2007-10-101-0/+9
| | | | compiler errors on IRIX
* r1492: Rework our random number generation system.Andrew Bartlett2007-10-1019-71/+82
| | | | | | | | | | On systems with /dev/urandom, this avoids a change to secrets.tdb for every fork(). For other systems, we now only re-seed after a fork, and on startup. No need to do it per-operation. This removes the 'need_reseed' parameter from generate_random_buffer(). Andrew Bartlett
* r1487: Remove unused parameter for the client-side signing functions.Andrew Bartlett2007-10-103-4/+4
| | | | Andrew Bartlett
* r1484: BUG 1520: work around bug in xp sp2 rc2 where the client sends a ↵Gerald Carter2007-10-101-0/+12
| | | | fnpcn() request without previously sending a ffpcn(). Return what win2k sp4 does