Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | We now have client-side SMB signing support! | Andrew Bartlett | 2003-02-01 | 5 | -12/+23 | |
| | | | | | | | | | | | | | | | | | | | | | | This checking allows us to connect to Microsoft servers the use SMB signing, within a few restrictions: - I've not get the NTLMSSP stuff going - it appears to work, but if you break the sig - say by writing a zero in it - it still passes... - We don't currently verfiy the server's reply - It works against one of my test servers, but not the other... However, it provides an excellent basis to work from. Enable it with 'client signing' in your smb.conf. Doc to come (tomorrow) and this is not for 3.0, till we get it complete. The CIFS Spec is misleading - the session key (for NTLMv1 at least) is the standard session key, ie MD4(NT#). Thanks to jra for the early work on this. Andrew Bartlett | |||||
* | NetBSD also supports dynamic libs | Jelmer Vernooij | 2003-02-01 | 2 | -789/+792 | |
| | ||||||
* | Bitmap offsets and counts are always positive. | Andrew Bartlett | 2003-02-01 | 2 | -2/+2 | |
| | ||||||
* | Makefile.in change for ldap escaping fixes | Andrew Bartlett | 2003-02-01 | 1 | -1/+2 | |
| | ||||||
* | One more signed/unsigned fix | Andrew Bartlett | 2003-02-01 | 1 | -1/+1 | |
| | ||||||
* | Non-error connection numbers are always positive | Andrew Bartlett | 2003-02-01 | 1 | -2/+2 | |
| | ||||||
* | Prompted by RedHat bugzilla bug #77999, convert the user's username and | Andrew Bartlett | 2003-02-01 | 1 | -4/+11 | |
| | | | | | | password from 'display' to 'unix' before we check them. Andrew Bartlett | |||||
* | More ldap parinoia - if we ever get more than one result, bail. The order we | Andrew Bartlett | 2003-02-01 | 1 | -5/+23 | |
| | | | | | | | get them in should be indeterminate, so just picking the first one would be bad... Andrew Bartlett | |||||
* | Always escape ldap filter strings. Escaping code was from pam_ldap, but I'm to | Andrew Bartlett | 2003-02-01 | 7 | -15/+163 | |
| | | | | | | | | blame for the realloc() stuff. Plus a couple of minor updates to libads. Andrew Bartlett | |||||
* | Make it clear that the magic value is (size_t)-1. | Andrew Bartlett | 2003-02-01 | 1 | -2/+2 | |
| | | | | Andrew Bartlett | |||||
* | A couple more signed/unsigned issues. | Andrew Bartlett | 2003-02-01 | 1 | -2/+2 | |
| | ||||||
* | Added first part of attribute matrix tests. Not run and compiled in right now... | Jeremy Allison | 2003-01-31 | 1 | -0/+101 | |
| | | | | Jeremy. | |||||
* | Ensure Luke Howard's (C) is added. | Jeremy Allison | 2003-01-31 | 1 | -1/+21 | |
| | | | | Jeremy. | |||||
* | Add 3 second timeout when terminating server and sending print notify | Jeremy Allison | 2003-01-30 | 6 | -16/+65 | |
| | | | | | | messages. Stops build-up of large numbers of smbd's waiting to terminate on large print throughput. Jeremy. | |||||
* | More scalable print tdb fixes. | Jeremy Allison | 2003-01-30 | 1 | -13/+23 | |
| | | | | Jeremy. | |||||
* | Sync up with 3.0 heimdal. | Jeremy Allison | 2003-01-30 | 1 | -0/+8 | |
| | | | | Jeremy. | |||||
* | Fix kerberos compile after the tpot massicre :-). | Jeremy Allison | 2003-01-30 | 3 | -1229/+1740 | |
| | | | | Jeremy | |||||
* | Stop tpot from trampling over my Heimdal fixes by moving some of them | Jeremy Allison | 2003-01-30 | 1 | -0/+122 | |
| | | | | | to HEAD :-). Jeremy. | |||||
* | Straus VOS detection patches from Paul Green | Gerald Carter | 2003-01-30 | 2 | -848/+905 | |
| | ||||||
* | The REQ_DEBUGLEVEL message returns a string not a list of integers. | Tim Potter | 2003-01-30 | 1 | -4/+1 | |
| | ||||||
* | Move debug level message handling into debug.c from messages.c | Tim Potter | 2003-01-30 | 2 | -11/+14 | |
| | | | | Removed duplicate message_register() for REQ_DEBUGLEVEL message. | |||||
* | Fix for interesting resource constraint condition. When all opens are | Jeremy Allison | 2003-01-30 | 3 | -17/+22 | |
| | | | | | | | | | | level 2 and a request for open with no oplock is received then the smbd should send *synchronous* break messages, not asynchronous, otherwise it spins very rapidly, releasing the lock, sending the 'break to none' messages and then re-acquiring the lock before any other process has a chance to get the lock and remove it's own oplock (at least on linux). Jeremy. | |||||
* | Fix to findsmb by Waider | Andrew Bartlett | 2003-01-29 | 1 | -1/+1 | |
| | ||||||
* | Make the vampire code use just pdb calls - allowing better operation on systems | Andrew Bartlett | 2003-01-29 | 1 | -22/+15 | |
| | | | | | | | | | that are not configured with an add user script, and have an _nua backend for storage. We really need to get the PDB backends out of the IDMAP game... Andrew Bartlett | |||||
* | Use new interface for cli_samr_query_dispinfo(). | Tim Potter | 2003-01-29 | 3 | -13/+41 | |
| | ||||||
* | Pass down max_size parameter to cli_samr_query_dispinfo() instead of | Tim Potter | 2003-01-29 | 1 | -2/+35 | |
| | | | | | | | | | | using a hardcoded value later on. Added a helper function that returns the observed values for max_entries and max_size for each cli_samr_query_dispinfo() call. These values were obtained from watching the NT4 user manager application with ethereal and are the only ones that can enumerate a 60k user domain reliably under Windows 2000. | |||||
* | Pass down max_size parameter to init_samr_q_query_dispinfo() instead | Tim Potter | 2003-01-29 | 1 | -2/+2 | |
| | | | | of hardcoding it to 0xffff. | |||||
* | Removed duplicate fn to avoid compiler warning. | Tim Potter | 2003-01-29 | 1 | -19/+0 | |
| | ||||||
* | Remove NULL buffer checks before rpcstr_pull() as they're now done | Tim Potter | 2003-01-29 | 1 | -63/+38 | |
| | | | | inside this function. | |||||
* | Return 0 instead of crashing when a NULL source string is passed | Tim Potter | 2003-01-29 | 1 | -0/+1 | |
| | | | | to rpcstr_pull() | |||||
* | Quieten debug about gencache.tdb not being able to be opened. | Tim Potter | 2003-01-29 | 1 | -1/+1 | |
| | | | | Perhaps we should try to open O_RDONLY if O_RDWR fails? | |||||
* | added LsaRemoveAccountRights | Andrew Tridgell | 2003-01-28 | 4 | -4/+163 | |
| | | | | | this now gives us complete remove privileges control in the client libs, so we are in good shape for starting on the server side. | |||||
* | patch from Paul Green to only build libsmbclient.so on platforms that ↵ | Gerald Carter | 2003-01-28 | 3 | -907/+934 | |
| | | | | support shared libraries | |||||
* | cleaned up the lsa_enum_acct_rights function and added a | Andrew Tridgell | 2003-01-28 | 6 | -20/+208 | |
| | | | | | | lsa_add_acct_rights function. This allows us to add privileges remotely to accounts using rpcclient. | |||||
* | As per a comment by herb a little while back, this should be >=, not == to keep | Andrew Bartlett | 2003-01-28 | 1 | -1/+1 | |
| | | | | identical behaviour with previous versions | |||||
* | Make this an fstrcat(), as this seems to fix some weird issue with the server | Andrew Bartlett | 2003-01-28 | 1 | -2/+2 | |
| | | | | | | name being truncated... (either way, it's the correct thing to do). Andrew Bartlett | |||||
* | The previous patch (NTLMSSP common code factoring) was missing a minor detail - | Andrew Bartlett | 2003-01-28 | 1 | -28/+35 | |
| | | | | | | | | | testing :-). This gets the 'signiture' after the extended security blob, rather than over the top of it. Also move that code to the top of the file, with some of the other util functions. Andrew Bartlett | |||||
* | Factor out common code in the NTLMSSP/SPNEGO code. | Andrew Bartlett | 2003-01-28 | 4 | -173/+80 | |
| | | | | | | | | | | | | The idea here is to seperate, as much as possible, the SPNEGO layer from the NTLMSSP layer. This not only helps us with protocol correctness, but also should allow further mechinisms to be added with relitive ease. I indend to make the kerberos code use this shortly. I've never seen the 'zero length blob' form of the anonymous login, so I've removed that case. Andrew Bartlett | |||||
* | performance patch from HP-UX folks (cant remember who) | Gerald Carter | 2003-01-28 | 1 | -3/+14 | |
| | ||||||
* | CUPS-PRINTER_CLASS patch from Michael Sweet | Gerald Carter | 2003-01-28 | 1 | -2/+101 | |
| | ||||||
* | reran autoconf | Gerald Carter | 2003-01-27 | 1 | -912/+952 | |
| | ||||||
* | One more try to fix the GNU Make dependency | Richard Sharpe | 2003-01-27 | 1 | -16/+51 | |
| | ||||||
* | One more fix ... Things link now if you don't use dynamic RPC stuff | Richard Sharpe | 2003-01-27 | 1 | -2/+2 | |
| | ||||||
* | One more try to get rid of the dependency on GNU MAKE | Richard Sharpe | 2003-01-27 | 1 | -21/+22 | |
| | ||||||
* | Fix the dependency on GNU Make introduced by the DYNAMIC RPC stuff. | Richard Sharpe | 2003-01-27 | 1 | -42/+21 | |
| | | | | I have not tested this in a GNU MAKE environment yet. | |||||
* | Fix memory leak found my Leo Qiu <leoxqiu@yahoo.com>. | Jeremy Allison | 2003-01-24 | 1 | -1/+4 | |
| | | | | Jeremy. | |||||
* | Commit just a little more infrastructure for HAVE_GETDIRENTRIES | Richard Sharpe | 2003-01-24 | 3 | -19298/+9213 | |
| | ||||||
* | At the prompting, start to add infrastructure to detect the presence of | Richard Sharpe | 2003-01-24 | 1 | -0/+3 | |
| | | | | | getdirentries. We would also detect getdents if present. This has some rudimentary support already. | |||||
* | Merge of increment_smbd_process_count() fix from appliance. | Tim Potter | 2003-01-24 | 1 | -1/+1 | |
| | ||||||
* | Merge of max log file fixes from appliance: | Tim Potter | 2003-01-23 | 2 | -1/+15 | |
| | | | | | | | | - smbd/process.c: check log file sizes more often than in timeout_processing() - lib/debug.c: increment debug_count inside Debug1() instead of when log file sizes are checked. |