Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | r22904: Fix indent. | Günther Deschner | 2007-10-10 | 1 | -1/+1 | |
| | | | | Guenther | |||||
* | r22903: Now that we have the on-disc trustdomaincache with type flags we can ↵ | Günther Deschner | 2007-10-10 | 1 | -3/+6 | |
| | | | | | | | | | better decide whether it's worth to register a krb5 ticket gain handler while users logon offline. Guenther | |||||
* | r22902: Add an event_context and a messaging_context to nmbd. Not used yet. | Volker Lendecke | 2007-10-10 | 2 | -8/+52 | |
| | ||||||
* | r22901: When an AD account has UF_DONT_REQUIRE_PREAUTH set we need to ↵ | Günther Deschner | 2007-10-10 | 1 | -0/+8 | |
| | | | | | | | | fallback to ntlm in the kerberized PAM_AUTH. Guenther | |||||
* | r22900: Convert profile/ to messaging_send_pid/messaging_register | Volker Lendecke | 2007-10-10 | 3 | -13/+29 | |
| | ||||||
* | r22895: Convert some more calls from message_send_buf to messaging_send_buf | Volker Lendecke | 2007-10-10 | 6 | -36/+68 | |
| | ||||||
* | r22893: Use ldap_rename_s instead of deprecated ldap_rename2_s. | Michael Adam | 2007-10-10 | 1 | -1/+2 | |
| | | | | | | | | This fixes the build on solaris (host sun9). And hopefully doesn't break any other builds... :-) If it does, we need some configure magic. Thanks to Björn Jacke <bj@sernet.de>. | |||||
* | r22879: Tidy the build rules for targets that need the installation paths. | James Peach | 2007-10-10 | 1 | -15/+32 | |
| | ||||||
* | r22878: Warn in $PATH contains /usr/ucb. Bugzilla #4295. | James Peach | 2007-10-10 | 1 | -0/+6 | |
| | ||||||
* | r22872: Add vfs_zfsacl module from Jiri Sasek <Jiri.Sasek@Sun.COM>. | Jeremy Allison | 2007-10-10 | 2 | -0/+192 | |
| | | | | Jeremy. | |||||
* | r22870: Don't create shared objects of nss and tdb modules. | Lars Müller | 2007-10-10 | 1 | -8/+0 | |
| | ||||||
* | r22869: Add bin/{ldap,nss,tdb}.@SHLIBEXT@ rules. | Lars Müller | 2007-10-10 | 1 | -1/+13 | |
| | | | | | Not tested for SAMBA_3_0 as I didn't get autogen.sh or autoreconf to build a configure. | |||||
* | r22868: Replace some message_send_pid calls with messaging_send_pid calls. More | Volker Lendecke | 2007-10-10 | 11 | -117/+196 | |
| | | | | tomorrow. | |||||
* | r22867: With Samba4's IDL, we now have two new flags for share types: ↵ | Alexander Bokovoy | 2007-10-10 | 1 | -1/+1 | |
| | | | | | | | | | STYPE_TEMPORARY and STYPE_HIDDEN Strip them out when referencing share_type[] entries. Apparently, some Windows XP installs create shares set to STYPE_HIDDEN by default, found by Damir Shayhutdinov <damir@altlinux.org>. This also fixes smb4k crashes as it does call 'net share -l'. | |||||
* | r22855: fix the build | Michael Adam | 2007-10-10 | 1 | -7/+5 | |
| | | | | | | (#if inside DEBUG macro not allowed...) Michael | |||||
* | r22852: merge fixes for CVE-2007-2446 and CVE-2007-2447 to all branches | Gerald Carter | 2007-10-10 | 8 | -21/+218 | |
| | ||||||
* | r22850: - Fixes bug 4601. smbc_getxattr() would not, in one case, properly ↵ | Derrell Lipman | 2007-10-10 | 1 | -1/+1 | |
| | | | | | | return the required size of a buffer needed to contain the extended attributes. | |||||
* | r22848: Fix brace alignment. | Michael Adam | 2007-10-10 | 1 | -1/+1 | |
| | ||||||
* | r22847: The new validate_panic function calls exit (instead of setting | Michael Adam | 2007-10-10 | 1 | -19/+0 | |
| | | | | | a global error flag an returning), so cleanups and returns subsequent to calls of smb_panic_fn have become unnecessary. | |||||
* | r22846: Chunk one to replace message_send_pid with messaging_send: Deep inside | Volker Lendecke | 2007-10-10 | 7 | -48/+74 | |
| | | | | | | locking/locking.c we have to send retry messages to timed lock holders. The majority of this patch passes a "struct messaging_context" down there. No functional change, survives make test. | |||||
* | r22845: Modified and extended the winbindd cache validation code: | Michael Adam | 2007-10-10 | 1 | -137/+283 | |
| | | | | | | | | | | | | | | | | | | | | | | * Replaced signal catching/longjmp magic by a fork: Let the child do the actual validation of the entries. Exit code and signals are intercepted by waitpid. * Fix logic so that also encounter of an unknown key in the tdb leads to an error. * Extended status of validation is kept in a (as yet simple) stuct and communicated over a pipe from child to parent. * Added two validation_ functions for two new keys. The call of winbindd_validate_cache is still commented out in the winbindd main loop. But I am currently testing it and so far it seems to work fine. The next step in my plan is to generalize the validation mechanism to a tdb_open_log_validate function in lib/util_tdb.c. There ist nothing very special about the cache tdb here, and this might be useful elsewhere... Michael | |||||
* | r22844: Introduce const DATA_BLOB data_blob_null = { NULL, 0, NULL }; and | Volker Lendecke | 2007-10-10 | 31 | -156/+160 | |
| | | | | replace all data_blob(NULL, 0) calls. | |||||
* | r22841: Add comment to endif statement. | Lars Müller | 2007-10-10 | 1 | -1/+1 | |
| | ||||||
* | r22840: Add -pie support to Python's setup.py. This should fix build of ↵ | Alexander Bokovoy | 2007-10-10 | 1 | -0/+2 | |
| | | | | python libs on recent distributions that take care of security. | |||||
* | r22839: Fix endif comment. | Lars Müller | 2007-10-10 | 1 | -1/+1 | |
| | ||||||
* | r22828: Fix typo. Bugzilla #4589. | James Peach | 2007-10-10 | 1 | -1/+1 | |
| | ||||||
* | r22826: Fix the gettimeofday test that I broke in rev 22821. | James Peach | 2007-10-10 | 1 | -3/+2 | |
| | ||||||
* | r22821: Replace unnecessary AC_TRY_RUN with AC_TRY_LINK. Fixes bug #2287. | James Peach | 2007-10-10 | 1 | -3/+4 | |
| | ||||||
* | r22820: Move FAM libraries from smbd to vfs_fam_notify. Should fix bugzilla ↵ | James Peach | 2007-10-10 | 2 | -4/+6 | |
| | | | | #4426. | |||||
* | r22819: Fix Bug 4613. We just dumped the must change & friends. With the | Volker Lendecke | 2007-10-10 | 1 | -0/+24 | |
| | | | | | pass_last_changed == 0 we now return "Change now!" instead of "Change never" | |||||
* | r22812: Fix bug #3024 (and also the group varient). Patch from | Jeremy Allison | 2007-10-10 | 2 | -6/+17 | |
| | | | | | Johann Hanne <jhml@gmx.net> and also Kaya Bekiro?lu <kaya.bekiroglu@isilon.com> Jeremy. | |||||
* | r22803: Add some more flesh to the GPO security filtering (still very basic). | Günther Deschner | 2007-10-10 | 1 | -1/+151 | |
| | | | | Guenther | |||||
* | r22802: Add dummy gpo_apply_security_filtering() call. | Günther Deschner | 2007-10-10 | 3 | -4/+41 | |
| | | | | Guenther | |||||
* | r22801: Pass down the token to add_gplink_to_gpo_list(). | Günther Deschner | 2007-10-10 | 1 | -4/+14 | |
| | | | | Guenther | |||||
* | r22800: Add GPO_SID_TOKEN and an LDAP function to get tokensids from the ↵ | Günther Deschner | 2007-10-10 | 4 | -2/+180 | |
| | | | | | | tokenGroup attribute. Guenther | |||||
* | r22799: Fix the build. | Günther Deschner | 2007-10-10 | 1 | -1/+1 | |
| | | | | Guenther | |||||
* | r22798: Add the "apply group policy" access bit (as seen in type 0x05 ↵ | Günther Deschner | 2007-10-10 | 2 | -1/+5 | |
| | | | | | | | | ALLOWED OBJECT ACEs). Guenther | |||||
* | r22797: We are only interested in the DACL of the security descriptor, so ↵ | Günther Deschner | 2007-10-10 | 5 | -23/+69 | |
| | | | | | | | | search with the SD_FLAGS control. Guenther | |||||
* | r22796: Add security descriptor to GROUP_POLICY_OBJECT structure (in ↵ | Günther Deschner | 2007-10-10 | 3 | -2/+6 | |
| | | | | | | | | preparation of adding GPO security filtering for libgpo). Guenther | |||||
* | r22794: Add "debug_state" and "silent" to pam_winbind.conf template. Honor ↵ | Günther Deschner | 2007-10-10 | 1 | -0/+2 | |
| | | | | | | | | the silent argument when parsing pam configuration file options. Guenther | |||||
* | r22787: More from Karolin: Make map_unix_group() static to net_sam.c, add "net | Volker Lendecke | 2007-10-10 | 2 | -64/+118 | |
| | | | | sam unmapunixgroup" | |||||
* | r22786: Some cleanup by Karolin Seeger: Remove unused pdb_find_alias, and change | Volker Lendecke | 2007-10-10 | 5 | -58/+29 | |
| | | | | | | return values of some alias-releated pdb functions from BOOL to NTSTATUS Thanks :-) | |||||
* | r22784: fixed change notify for delete on close | Andrew Tridgell | 2007-10-10 | 1 | -0/+4 | |
| | ||||||
* | r22779: Patch for not prompting for password on cifs mounts when "sec=none" | Steve French | 2007-10-10 | 1 | -10/+61 | |
| | | | | specified | |||||
* | r22777: Fix for [Bug 4543] - POSIX ACL support on FreeBSD. | Michael Adam | 2007-10-10 | 2 | -0/+7 | |
| | | | | | | | | | | | | | This adds vfs_posixacl to the list of static modules and makes use of HAVE_ACL_GET_PERM_NP. This is just a quick fix. FreeBSD acl support is still hardcoded in configure.in, but actually this could be detected in a unified test for freebsd, linux, *, as suggested in the bugreport. This has still to be checked and elaborated. Michael | |||||
* | r22775: For the cluster code I've developed a wrapper around tdb to put ↵ | Volker Lendecke | 2007-10-10 | 6 | -1/+755 | |
| | | | | | | | | | | | | | | | | | | | | | | | | different database backends in place dynamically. The main abstractions are db_context and db_record, it should be mainly self-describing, see include/dbwrap.h. You open the db just as you would open a tdb, this time with db_open(). If you want to fetch a record, just do the db->fetch() call, if you want to do operations on it, you need to get it with fetch_locked(). I added dbwrap_file.c (not heavily tested lately) as an example for what can be done with that abstraction, uses a file per key. So if anybody is willing to shape that up, we might have a chance on reiserfs again.... :-) This abstraction works fine for brlock.tdb, locking.tdb, connections.tdb and sessionid.tdb. It should work fine for the others as well, I just did not yet get around to convert them. If nobody loudly screams NO, then I will import the code that uses this soon. Volker | |||||
* | r22773: - Clean up the the rest of the cruft from my earlier work on the ↵ | Derrell Lipman | 2007-10-10 | 1 | -11/+1 | |
| | | | | | | readahead() missing declaration problem. | |||||
* | r22772: - Still working on the fact that readahead() is not declared (on at ↵ | Derrell Lipman | 2007-10-10 | 4 | -13/+11 | |
| | | | | | | | | | | least one OS) but is available for linking. Instead of running configure tests with -Werror-implicit-function-declaration in developer mode (which may lead to different library functions being used in developer mode than when not in developer mode), add tests for whether readahead is declared. If not, provide a replacement declaration in lib/replace. | |||||
* | r22771: One liner fix for idmap_ldap | Simo Sorce | 2007-10-10 | 1 | -0/+1 | |
| | | | | | | | Fixes the strange behavior we were seeing about idmap_ldap creating a new connection for each query. Jerry we need this in for 3.0.25 | |||||
* | r22767: Argl. Typed in 'svn ci' in the wrong branch. Revert. | Volker Lendecke | 2007-10-10 | 3 | -29/+38 | |
| |