s4:pydsdb.c - use "Py_ssize_t" for Python list counters
[obnox/samba/samba-obnox.git] / source4 / dsdb / pydsdb.c
1 /* 
2    Unix SMB/CIFS implementation.
3    Copyright (C) Jelmer Vernooij <jelmer@samba.org> 2007-2010
4    Copyright (C) Matthias Dieter Wallnöfer          2009
5    
6    This program is free software; you can redistribute it and/or modify
7    it under the terms of the GNU General Public License as published by
8    the Free Software Foundation; either version 3 of the License, or
9    (at your option) any later version.
10    
11    This program is distributed in the hope that it will be useful,
12    but WITHOUT ANY WARRANTY; without even the implied warranty of
13    MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14    GNU General Public License for more details.
15    
16    You should have received a copy of the GNU General Public License
17    along with this program.  If not, see <http://www.gnu.org/licenses/>.
18 */
19
20 #include <Python.h>
21 #include "includes.h"
22 #include "libcli/util/pyerrors.h"
23 #include "dsdb/samdb/samdb.h"
24 #include "lib/ldb/pyldb.h"
25 #include "libcli/security/security.h"
26 #include "librpc/ndr/libndr.h"
27 #include "system/kerberos.h"
28 #include "auth/kerberos/kerberos.h"
29 #include "librpc/rpc/pyrpc_util.h"
30
31 /* There's no Py_ssize_t in 2.4, apparently */
32 #if PY_MAJOR_VERSION == 2 && PY_MINOR_VERSION < 5
33 typedef int Py_ssize_t;
34 typedef inquiry lenfunc;
35 typedef intargfunc ssizeargfunc;
36 #endif
37
38 #ifndef Py_RETURN_NONE
39 #define Py_RETURN_NONE return Py_INCREF(Py_None), Py_None
40 #endif
41
42 /* FIXME: These should be in a header file somewhere, once we finish moving
43  * away from SWIG .. */
44 #define PyErr_LDB_OR_RAISE(py_ldb, ldb) \
45 /*      if (!PyLdb_Check(py_ldb)) { \
46                 PyErr_SetString(py_ldb_get_exception(), "Ldb connection object required"); \
47                 return NULL; \
48         } */\
49         ldb = PyLdb_AsLdbContext(py_ldb);
50
51 static PyObject *py_ldb_get_exception(void)
52 {
53         PyObject *mod = PyImport_ImportModule("ldb");
54         if (mod == NULL)
55                 return NULL;
56
57         return PyObject_GetAttrString(mod, "LdbError");
58 }
59
60 static void PyErr_SetLdbError(PyObject *error, int ret, struct ldb_context *ldb_ctx)
61 {
62         if (ret == LDB_ERR_PYTHON_EXCEPTION)
63                 return; /* Python exception should already be set, just keep that */
64
65         PyErr_SetObject(error, 
66                         Py_BuildValue(discard_const_p(char, "(i,s)"), ret,
67                         ldb_ctx == NULL?ldb_strerror(ret):ldb_errstring(ldb_ctx)));
68 }
69
70 static PyObject *py_samdb_server_site_name(PyObject *self, PyObject *args)
71 {
72         PyObject *py_ldb, *result;
73         struct ldb_context *ldb;
74         const char *site;
75         TALLOC_CTX *mem_ctx;
76
77         if (!PyArg_ParseTuple(args, "O", &py_ldb))
78                 return NULL;
79
80         PyErr_LDB_OR_RAISE(py_ldb, ldb);
81
82         mem_ctx = talloc_new(NULL);
83
84         site = samdb_server_site_name(ldb, mem_ctx);
85         if (site == NULL) {
86                 PyErr_SetString(PyExc_RuntimeError, "Failed to find server site");
87                 talloc_free(mem_ctx);
88                 return NULL;
89         }
90
91         result = PyString_FromString(site);
92         talloc_free(mem_ctx);
93         return result;
94 }
95
96 static PyObject *py_dsdb_convert_schema_to_openldap(PyObject *self,
97                                                                                                         PyObject *args)
98 {
99         char *target_str, *mapping;
100         PyObject *py_ldb;
101         struct ldb_context *ldb;
102         PyObject *ret;
103         char *retstr;
104
105         if (!PyArg_ParseTuple(args, "Oss", &py_ldb, &target_str, &mapping))
106                 return NULL;
107
108         PyErr_LDB_OR_RAISE(py_ldb, ldb);
109
110         retstr = dsdb_convert_schema_to_openldap(ldb, target_str, mapping);
111         if (retstr == NULL) {
112                 PyErr_SetString(PyExc_RuntimeError,
113                                                 "dsdb_convert_schema_to_openldap failed");
114                 return NULL;
115         } 
116
117         ret = PyString_FromString(retstr);
118         talloc_free(retstr);
119         return ret;
120 }
121
122 static PyObject *py_samdb_set_domain_sid(PyLdbObject *self, PyObject *args)
123
124         PyObject *py_ldb, *py_sid;
125         struct ldb_context *ldb;
126         struct dom_sid *sid;
127         bool ret;
128
129         if (!PyArg_ParseTuple(args, "OO", &py_ldb, &py_sid))
130                 return NULL;
131         
132         PyErr_LDB_OR_RAISE(py_ldb, ldb);
133
134         sid = dom_sid_parse_talloc(NULL, PyString_AsString(py_sid));
135
136         ret = samdb_set_domain_sid(ldb, sid);
137         if (!ret) {
138                 PyErr_SetString(PyExc_RuntimeError, "set_domain_sid failed");
139                 return NULL;
140         } 
141         Py_RETURN_NONE;
142 }
143
144 static PyObject *py_samdb_set_ntds_settings_dn(PyLdbObject *self, PyObject *args)
145
146         PyObject *py_ldb, *py_ntds_settings_dn;
147         struct ldb_context *ldb;
148         struct ldb_dn *ntds_settings_dn;
149         TALLOC_CTX *tmp_ctx;
150         bool ret;
151
152         if (!PyArg_ParseTuple(args, "OO", &py_ldb, &py_ntds_settings_dn))
153                 return NULL;
154         
155         PyErr_LDB_OR_RAISE(py_ldb, ldb);
156
157         tmp_ctx = talloc_new(NULL);
158         if (tmp_ctx == NULL) {
159                 PyErr_NoMemory();
160                 return NULL;
161         }
162
163         if (!PyObject_AsDn(tmp_ctx, py_ntds_settings_dn, ldb, &ntds_settings_dn)) {
164                 return NULL;
165         }
166
167         ret = samdb_set_ntds_settings_dn(ldb, ntds_settings_dn);
168         talloc_free(tmp_ctx);
169         if (!ret) {
170                 PyErr_SetString(PyExc_RuntimeError, "set_ntds_settings_dn failed");
171                 return NULL;
172         } 
173         Py_RETURN_NONE;
174 }
175
176 static PyObject *py_samdb_get_domain_sid(PyLdbObject *self, PyObject *args)
177
178         PyObject *py_ldb;
179         struct ldb_context *ldb;
180         const struct dom_sid *sid;
181         PyObject *ret;
182         char *retstr;
183
184         if (!PyArg_ParseTuple(args, "O", &py_ldb))
185                 return NULL;
186         
187         PyErr_LDB_OR_RAISE(py_ldb, ldb);
188
189         sid = samdb_domain_sid(ldb);
190         if (!sid) {
191                 PyErr_SetString(PyExc_RuntimeError, "samdb_domain_sid failed");
192                 return NULL;
193         } 
194         retstr = dom_sid_string(NULL, sid);
195         ret = PyString_FromString(retstr);
196         talloc_free(retstr);
197         return ret;
198 }
199
200 static PyObject *py_samdb_ntds_invocation_id(PyObject *self, PyObject *args)
201 {
202         PyObject *py_ldb, *result;
203         struct ldb_context *ldb;
204         TALLOC_CTX *mem_ctx;
205         const struct GUID *guid;
206
207         mem_ctx = talloc_new(NULL);
208         if (mem_ctx == NULL) {
209                 PyErr_NoMemory();
210                 return NULL;
211         }
212
213         if (!PyArg_ParseTuple(args, "O", &py_ldb)) {
214                 talloc_free(mem_ctx);
215                 return NULL;
216         }
217
218         PyErr_LDB_OR_RAISE(py_ldb, ldb);
219
220         guid = samdb_ntds_invocation_id(ldb);
221         if (guid == NULL) {
222                 PyErr_SetString(PyExc_RuntimeError,
223                                                 "Failed to find NTDS invocation ID");
224                 talloc_free(mem_ctx);
225                 return NULL;
226         }
227
228         result = PyString_FromString(GUID_string(mem_ctx, guid));
229         talloc_free(mem_ctx);
230         return result;
231 }
232
233 static PyObject *py_dsdb_get_oid_from_attid(PyObject *self, PyObject *args)
234 {
235         PyObject *py_ldb;
236         struct ldb_context *ldb;
237         uint32_t attid;
238         struct dsdb_schema *schema;
239         const char *oid;
240         PyObject *ret;
241         TALLOC_CTX *mem_ctx;
242         WERROR status;
243
244         if (!PyArg_ParseTuple(args, "Oi", &py_ldb, &attid))
245                 return NULL;
246
247         mem_ctx = talloc_new(NULL);
248         if (mem_ctx == NULL) {
249            PyErr_NoMemory();
250            return NULL;
251         }
252
253         PyErr_LDB_OR_RAISE(py_ldb, ldb);
254
255         schema = dsdb_get_schema(ldb, NULL);
256
257         if (!schema) {
258                 PyErr_SetString(PyExc_RuntimeError, "Failed to find a schema from ldb \n");
259                 talloc_free(mem_ctx);
260                 return NULL;
261         }
262         
263         status = dsdb_schema_pfm_oid_from_attid(schema->prefixmap, attid,
264                                                 mem_ctx, &oid);
265         PyErr_WERROR_IS_ERR_RAISE(status);
266
267         ret = PyString_FromString(oid);
268
269         talloc_free(mem_ctx);
270
271         return ret;
272 }
273
274
275 static PyObject *py_dsdb_get_attid_from_lDAPDisplayName(PyObject *self, PyObject *args)
276 {
277         PyObject *py_ldb, *is_schema_nc;
278         struct ldb_context *ldb;
279         struct dsdb_schema *schema;
280         const char *ldap_display_name;
281         bool schema_nc = false;
282         const struct dsdb_attribute *a;
283         uint32_t attid;
284
285         if (!PyArg_ParseTuple(args, "OsO", &py_ldb, &ldap_display_name, &is_schema_nc))
286                 return NULL;
287
288         PyErr_LDB_OR_RAISE(py_ldb, ldb);
289
290         if (is_schema_nc) {
291                 if (!PyBool_Check(is_schema_nc)) {
292                         PyErr_SetString(PyExc_TypeError, "Expected boolean is_schema_nc");
293                         return NULL;
294                 }
295                 if (is_schema_nc == Py_True) {
296                         schema_nc = true;
297                 }
298         }
299
300         schema = dsdb_get_schema(ldb, NULL);
301
302         if (!schema) {
303                 PyErr_SetString(PyExc_RuntimeError, "Failed to find a schema from ldb");
304                 return NULL;
305         }
306
307         a = dsdb_attribute_by_lDAPDisplayName(schema, ldap_display_name);
308         if (a == NULL) {
309                 PyErr_Format(PyExc_RuntimeError, "Failed to find attribute '%s'", ldap_display_name);
310                 return NULL;
311         }
312
313         attid = dsdb_attribute_get_attid(a, schema_nc);
314
315         return PyLong_FromUnsignedLong(attid);
316 }
317
318 /*
319   convert a python string to a DRSUAPI drsuapi_DsReplicaAttribute attribute
320  */
321 static PyObject *py_dsdb_DsReplicaAttribute(PyObject *self, PyObject *args)
322 {
323         PyObject *py_ldb, *el_list, *ret;
324         struct ldb_context *ldb;
325         char *ldap_display_name;
326         const struct dsdb_attribute *a;
327         struct dsdb_schema *schema;
328         struct dsdb_syntax_ctx syntax_ctx;
329         struct ldb_message_element *el;
330         struct drsuapi_DsReplicaAttribute *attr;
331         TALLOC_CTX *tmp_ctx;
332         WERROR werr;
333         Py_ssize_t i;
334
335         if (!PyArg_ParseTuple(args, "OsO", &py_ldb, &ldap_display_name, &el_list)) {
336                 return NULL;
337         }
338
339         PyErr_LDB_OR_RAISE(py_ldb, ldb);
340
341         if (!PyList_Check(el_list)) {
342                 PyErr_Format(PyExc_TypeError, "ldif_elements must be a list");
343                 return NULL;
344         }
345
346         schema = dsdb_get_schema(ldb, NULL);
347         if (!schema) {
348                 PyErr_SetString(PyExc_RuntimeError, "Failed to find a schema from ldb");
349                 return NULL;
350         }
351
352         a = dsdb_attribute_by_lDAPDisplayName(schema, ldap_display_name);
353         if (a == NULL) {
354                 PyErr_Format(PyExc_RuntimeError, "Failed to find attribute '%s'", ldap_display_name);
355                 return NULL;
356         }
357
358         dsdb_syntax_ctx_init(&syntax_ctx, ldb, schema);
359         syntax_ctx.is_schema_nc = false;
360
361         tmp_ctx = talloc_new(ldb);
362
363         el = talloc_zero(tmp_ctx, struct ldb_message_element);
364         el->name = ldap_display_name;
365         el->num_values = PyList_Size(el_list);
366         el->values = talloc_array(el, struct ldb_val, el->num_values);
367         for (i = 0; i < el->num_values; i++) {
368                 PyObject *item = PyList_GetItem(el_list, i);
369                 if (!PyString_Check(item)) {
370                         PyErr_Format(PyExc_TypeError, "ldif_elements should be strings");
371                         return NULL;
372                 }
373                 el->values[i].data = (uint8_t *)PyString_AsString(item);
374                 el->values[i].length = PyString_Size(item);
375         }
376
377         attr = talloc_zero(tmp_ctx, struct drsuapi_DsReplicaAttribute);
378
379         werr = a->syntax->ldb_to_drsuapi(&syntax_ctx, a, el, attr, attr);
380         PyErr_WERROR_IS_ERR_RAISE(werr);
381
382         ret = py_return_ndr_struct("samba.dcerpc.drsuapi", "DsReplicaAttribute", attr, attr);
383
384         talloc_unlink(ldb, tmp_ctx);
385
386         return ret;
387 }
388
389 static PyObject *py_dsdb_set_ntds_invocation_id(PyObject *self, PyObject *args)
390 {
391         PyObject *py_ldb, *py_guid;
392         bool ret;
393         struct GUID guid;
394         struct ldb_context *ldb;
395         if (!PyArg_ParseTuple(args, "OO", &py_ldb, &py_guid))
396                 return NULL;
397
398         PyErr_LDB_OR_RAISE(py_ldb, ldb);
399         GUID_from_string(PyString_AsString(py_guid), &guid);
400
401         ret = samdb_set_ntds_invocation_id(ldb, &guid);
402         if (!ret) {
403                 PyErr_SetString(PyExc_RuntimeError, "set_ntds_invocation_id failed");
404                 return NULL;
405         }
406         Py_RETURN_NONE;
407 }
408
409 static PyObject *py_samdb_ntds_objectGUID(PyObject *self, PyObject *args)
410 {
411         PyObject *py_ldb, *result;
412         struct ldb_context *ldb;
413         TALLOC_CTX *mem_ctx;
414         const struct GUID *guid;
415
416         mem_ctx = talloc_new(NULL);
417         if (mem_ctx == NULL) {
418                 PyErr_NoMemory();
419                 return NULL;
420         }
421
422         if (!PyArg_ParseTuple(args, "O", &py_ldb)) {
423                 talloc_free(mem_ctx);
424                 return NULL;
425         }
426
427         PyErr_LDB_OR_RAISE(py_ldb, ldb);
428
429         guid = samdb_ntds_objectGUID(ldb);
430         if (guid == NULL) {
431                 PyErr_SetString(PyExc_RuntimeError, "Failed to find NTDS GUID");
432                 talloc_free(mem_ctx);
433                 return NULL;
434         }
435
436         result = PyString_FromString(GUID_string(mem_ctx, guid));
437         talloc_free(mem_ctx);
438         return result;
439 }
440
441 static PyObject *py_dsdb_set_global_schema(PyObject *self, PyObject *args)
442 {
443         PyObject *py_ldb;
444         struct ldb_context *ldb;
445         int ret;
446         if (!PyArg_ParseTuple(args, "O", &py_ldb))
447                 return NULL;
448
449         PyErr_LDB_OR_RAISE(py_ldb, ldb);
450
451         ret = dsdb_set_global_schema(ldb);
452         PyErr_LDB_ERROR_IS_ERR_RAISE(py_ldb_get_exception(), ret, ldb);
453
454         Py_RETURN_NONE;
455 }
456
457 static PyObject *py_dsdb_load_partition_usn(PyObject *self, PyObject *args)
458 {
459         PyObject *py_dn, *py_ldb, *result;
460         struct ldb_dn *dn;
461         uint64_t highest_uSN, urgent_uSN;
462         struct ldb_context *ldb;
463         TALLOC_CTX *mem_ctx;
464         int ret;
465
466         mem_ctx = talloc_new(NULL);
467         if (mem_ctx == NULL) {
468            PyErr_NoMemory();
469            return NULL;
470         }
471
472         if (!PyArg_ParseTuple(args, "OO", &py_ldb, &py_dn)) {
473            talloc_free(mem_ctx);
474            return NULL;
475         }
476
477         PyErr_LDB_OR_RAISE(py_ldb, ldb);
478
479         if (!PyObject_AsDn(mem_ctx, py_dn, ldb, &dn)) {
480            talloc_free(mem_ctx);
481            return NULL;
482         }
483
484         ret = dsdb_load_partition_usn(ldb, dn, &highest_uSN, &urgent_uSN);
485         if (ret != LDB_SUCCESS) {
486            char *errstr = talloc_asprintf(mem_ctx, "Failed to load partition uSN - %s", ldb_errstring(ldb));
487            PyErr_SetString(PyExc_RuntimeError, errstr);
488            talloc_free(mem_ctx);
489            return NULL;
490         }
491
492         talloc_free(mem_ctx);
493
494         result = PyDict_New();
495
496         PyDict_SetItemString(result, "uSNHighest", PyInt_FromLong((uint64_t)highest_uSN));
497         PyDict_SetItemString(result, "uSNUrgent", PyInt_FromLong((uint64_t)urgent_uSN));
498
499
500         return result;
501 }
502
503 static PyObject *py_dsdb_set_am_rodc(PyObject *self, PyObject *args)
504 {
505         PyObject *py_ldb;
506         bool ret;
507         struct ldb_context *ldb;
508         int py_val;
509
510         if (!PyArg_ParseTuple(args, "Oi", &py_ldb, &py_val))
511                 return NULL;
512
513         PyErr_LDB_OR_RAISE(py_ldb, ldb);
514         ret = samdb_set_am_rodc(ldb, (bool)py_val);
515         if (!ret) {
516                 PyErr_SetString(PyExc_RuntimeError, "set_am_rodc failed");
517                 return NULL;
518         }
519         Py_RETURN_NONE;
520 }
521
522 static PyObject *py_dsdb_set_schema_from_ldif(PyObject *self, PyObject *args)
523 {
524         WERROR result;
525         char *pf, *df;
526         PyObject *py_ldb;
527         struct ldb_context *ldb;
528
529         if (!PyArg_ParseTuple(args, "Oss", &py_ldb, &pf, &df))
530                 return NULL;
531
532         PyErr_LDB_OR_RAISE(py_ldb, ldb);
533
534         result = dsdb_set_schema_from_ldif(ldb, pf, df);
535         PyErr_WERROR_IS_ERR_RAISE(result);
536
537         Py_RETURN_NONE;
538 }
539
540 static PyObject *py_dsdb_set_schema_from_ldb(PyObject *self, PyObject *args)
541 {
542         PyObject *py_ldb;
543         struct ldb_context *ldb;
544         PyObject *py_from_ldb;
545         struct ldb_context *from_ldb;
546         struct dsdb_schema *schema;
547         int ret;
548         if (!PyArg_ParseTuple(args, "OO", &py_ldb, &py_from_ldb))
549                 return NULL;
550
551         PyErr_LDB_OR_RAISE(py_ldb, ldb);
552
553         PyErr_LDB_OR_RAISE(py_from_ldb, from_ldb);
554
555         schema = dsdb_get_schema(from_ldb, NULL);
556         if (!schema) {
557                 PyErr_SetString(PyExc_RuntimeError, "Failed to set find a schema on 'from' ldb!\n");
558                 return NULL;
559         }
560
561         ret = dsdb_reference_schema(ldb, schema, true);
562         PyErr_LDB_ERROR_IS_ERR_RAISE(py_ldb_get_exception(), ret, ldb);
563
564         Py_RETURN_NONE;
565 }
566
567 static PyObject *py_dsdb_write_prefixes_from_schema_to_ldb(PyObject *self, PyObject *args)
568 {
569         PyObject *py_ldb;
570         struct ldb_context *ldb;
571         WERROR result;
572         struct dsdb_schema *schema;
573
574         if (!PyArg_ParseTuple(args, "O", &py_ldb))
575                 return NULL;
576
577         PyErr_LDB_OR_RAISE(py_ldb, ldb);
578
579         schema = dsdb_get_schema(ldb, NULL);
580         if (!schema) {
581                 PyErr_SetString(PyExc_RuntimeError, "Failed to set find a schema on ldb!\n");
582                 return NULL;
583         }
584
585         result = dsdb_write_prefixes_from_schema_to_ldb(NULL, ldb, schema);
586         PyErr_WERROR_IS_ERR_RAISE(result);
587
588         Py_RETURN_NONE;
589 }
590
591
592 static PyObject *py_dsdb_get_partitions_dn(PyObject *self, PyObject *args)
593 {
594         struct ldb_context *ldb;
595         struct ldb_dn *dn;
596         PyObject *py_ldb, *ret;
597         TALLOC_CTX *tmp_ctx;
598         PyObject *mod;
599
600         mod = PyImport_ImportModule("ldb");
601
602         if (!PyArg_ParseTuple(args, "O", &py_ldb))
603                 return NULL;
604
605         PyErr_LDB_OR_RAISE(py_ldb, ldb);
606
607         tmp_ctx = talloc_new(NULL);
608
609         dn = samdb_partitions_dn(ldb, tmp_ctx);
610
611         if (dn == NULL) {
612                 talloc_free(tmp_ctx);
613                 Py_RETURN_NONE;
614         }
615         ret = PyLdbDn_FromDn(dn);
616         talloc_free(tmp_ctx);
617         return ret;
618 }
619
620
621 /*
622   call into samdb_rodc()
623  */
624 static PyObject *py_dsdb_am_rodc(PyObject *self, PyObject *args)
625 {
626         PyObject *py_ldb;
627         struct ldb_context *ldb;
628         int ret;
629         bool am_rodc;
630
631         if (!PyArg_ParseTuple(args, "O", &py_ldb))
632                 return NULL;
633
634         PyErr_LDB_OR_RAISE(py_ldb, ldb);
635
636         ret = samdb_rodc(ldb, &am_rodc);
637         if (samdb_rodc(ldb, &am_rodc) != LDB_SUCCESS) {
638                 PyErr_SetString(PyExc_RuntimeError, ldb_errstring(ldb));
639                 return NULL;
640         }
641
642         return PyBool_FromLong(am_rodc);
643 }
644
645
646 static PyMethodDef py_dsdb_methods[] = {
647         { "_samdb_server_site_name", (PyCFunction)py_samdb_server_site_name,
648                 METH_VARARGS, "Get the server site name as a string"},
649         { "_dsdb_convert_schema_to_openldap",
650                 (PyCFunction)py_dsdb_convert_schema_to_openldap, METH_VARARGS, 
651                 "dsdb_convert_schema_to_openldap(ldb, target_str, mapping) -> str\n"
652                 "Create an OpenLDAP schema from a schema." },
653         { "_samdb_set_domain_sid", (PyCFunction)py_samdb_set_domain_sid,
654                 METH_VARARGS,
655                 "samdb_set_domain_sid(samdb, sid)\n"
656                 "Set SID of domain to use." },
657         { "_samdb_get_domain_sid", (PyCFunction)py_samdb_get_domain_sid,
658                 METH_VARARGS,
659                 "samdb_get_domain_sid(samdb)\n"
660                 "Get SID of domain in use." },
661         { "_samdb_ntds_invocation_id", (PyCFunction)py_samdb_ntds_invocation_id,
662                 METH_VARARGS, "get the NTDS invocation ID GUID as a string"},
663         { "_samdb_set_ntds_settings_dn", (PyCFunction)py_samdb_set_ntds_settings_dn,
664                 METH_VARARGS,
665                 "samdb_set_ntds_settings_dn(samdb, ntds_settings_dn)\n"
666                 "Set NTDS Settings DN for this LDB (allows it to be set before the DB fully exists)." },
667         { "_dsdb_get_oid_from_attid", (PyCFunction)py_dsdb_get_oid_from_attid,
668                 METH_VARARGS, NULL },
669         { "_dsdb_get_attid_from_lDAPDisplayName", (PyCFunction)py_dsdb_get_attid_from_lDAPDisplayName,
670                 METH_VARARGS, NULL },
671         { "_dsdb_set_ntds_invocation_id",
672                 (PyCFunction)py_dsdb_set_ntds_invocation_id, METH_VARARGS,
673                 NULL },
674         { "_samdb_ntds_objectGUID", (PyCFunction)py_samdb_ntds_objectGUID,
675                 METH_VARARGS, "get the NTDS objectGUID as a string"},
676         { "_dsdb_set_global_schema", (PyCFunction)py_dsdb_set_global_schema,
677                 METH_VARARGS, NULL },
678         { "_dsdb_load_partition_usn", (PyCFunction)py_dsdb_load_partition_usn,
679                 METH_VARARGS,
680                 "get uSNHighest and uSNUrgent from the partition @REPLCHANGED"},
681         { "_dsdb_set_am_rodc",
682                 (PyCFunction)py_dsdb_set_am_rodc, METH_VARARGS,
683                 NULL },
684         { "_am_rodc",
685                 (PyCFunction)py_dsdb_am_rodc, METH_VARARGS,
686                 NULL },
687         { "_dsdb_set_schema_from_ldif", (PyCFunction)py_dsdb_set_schema_from_ldif, METH_VARARGS,
688                 NULL },
689         { "_dsdb_set_schema_from_ldb", (PyCFunction)py_dsdb_set_schema_from_ldb, METH_VARARGS,
690                 NULL },
691         { "_dsdb_write_prefixes_from_schema_to_ldb", (PyCFunction)py_dsdb_write_prefixes_from_schema_to_ldb, METH_VARARGS,
692                 NULL },
693         { "_dsdb_get_partitions_dn", (PyCFunction)py_dsdb_get_partitions_dn, METH_VARARGS, NULL },
694         { "_dsdb_DsReplicaAttribute", (PyCFunction)py_dsdb_DsReplicaAttribute, METH_VARARGS, NULL },
695         { NULL }
696 };
697
698 void initdsdb(void)
699 {
700         PyObject *m;
701
702         m = Py_InitModule3("dsdb", py_dsdb_methods, 
703                            "Python bindings for the directory service databases.");
704         if (m == NULL)
705                 return;
706
707         /* "userAccountControl" flags */
708         PyModule_AddObject(m, "UF_NORMAL_ACCOUNT",
709                                            PyInt_FromLong(UF_NORMAL_ACCOUNT));
710         PyModule_AddObject(m, "UF_TEMP_DUPLICATE_ACCOUNT",
711                                            PyInt_FromLong(UF_TEMP_DUPLICATE_ACCOUNT));
712         PyModule_AddObject(m, "UF_SERVER_TRUST_ACCOUNT",
713                                            PyInt_FromLong(UF_SERVER_TRUST_ACCOUNT));
714         PyModule_AddObject(m, "UF_WORKSTATION_TRUST_ACCOUNT",
715                                            PyInt_FromLong(UF_WORKSTATION_TRUST_ACCOUNT));
716         PyModule_AddObject(m, "UF_INTERDOMAIN_TRUST_ACCOUNT",
717                                            PyInt_FromLong(UF_INTERDOMAIN_TRUST_ACCOUNT));
718         PyModule_AddObject(m, "UF_PASSWD_NOTREQD",
719                                            PyInt_FromLong(UF_PASSWD_NOTREQD));
720         PyModule_AddObject(m, "UF_ACCOUNTDISABLE",
721                                            PyInt_FromLong(UF_ACCOUNTDISABLE));
722
723         PyModule_AddObject(m, "UF_SCRIPT", PyInt_FromLong(UF_SCRIPT));
724         PyModule_AddObject(m, "UF_ACCOUNTDISABLE", PyInt_FromLong(UF_ACCOUNTDISABLE));
725         PyModule_AddObject(m, "UF_00000004", PyInt_FromLong(UF_00000004));
726         PyModule_AddObject(m, "UF_HOMEDIR_REQUIRED", PyInt_FromLong(UF_HOMEDIR_REQUIRED));
727         PyModule_AddObject(m, "UF_LOCKOUT", PyInt_FromLong(UF_LOCKOUT));
728         PyModule_AddObject(m, "UF_PASSWD_NOTREQD", PyInt_FromLong(UF_PASSWD_NOTREQD));
729         PyModule_AddObject(m, "UF_PASSWD_CANT_CHANGE", PyInt_FromLong(UF_PASSWD_CANT_CHANGE));
730         PyModule_AddObject(m, "UF_ENCRYPTED_TEXT_PASSWORD_ALLOWED", PyInt_FromLong(UF_ENCRYPTED_TEXT_PASSWORD_ALLOWED));
731         PyModule_AddObject(m, "UF_TEMP_DUPLICATE_ACCOUNT", PyInt_FromLong(UF_TEMP_DUPLICATE_ACCOUNT));
732         PyModule_AddObject(m, "UF_NORMAL_ACCOUNT", PyInt_FromLong(UF_NORMAL_ACCOUNT));
733         PyModule_AddObject(m, "UF_00000400", PyInt_FromLong(UF_00000400));
734         PyModule_AddObject(m, "UF_INTERDOMAIN_TRUST_ACCOUNT", PyInt_FromLong(UF_INTERDOMAIN_TRUST_ACCOUNT));
735         PyModule_AddObject(m, "UF_WORKSTATION_TRUST_ACCOUNT", PyInt_FromLong(UF_WORKSTATION_TRUST_ACCOUNT));
736         PyModule_AddObject(m, "UF_SERVER_TRUST_ACCOUNT", PyInt_FromLong(UF_SERVER_TRUST_ACCOUNT));
737         PyModule_AddObject(m, "UF_00004000", PyInt_FromLong(UF_00004000));
738         PyModule_AddObject(m, "UF_00008000", PyInt_FromLong(UF_00008000));
739         PyModule_AddObject(m, "UF_DONT_EXPIRE_PASSWD", PyInt_FromLong(UF_DONT_EXPIRE_PASSWD));
740         PyModule_AddObject(m, "UF_MNS_LOGON_ACCOUNT", PyInt_FromLong(UF_MNS_LOGON_ACCOUNT));
741         PyModule_AddObject(m, "UF_SMARTCARD_REQUIRED", PyInt_FromLong(UF_SMARTCARD_REQUIRED));
742         PyModule_AddObject(m, "UF_TRUSTED_FOR_DELEGATION", PyInt_FromLong(UF_TRUSTED_FOR_DELEGATION));
743         PyModule_AddObject(m, "UF_NOT_DELEGATED", PyInt_FromLong(UF_NOT_DELEGATED));
744         PyModule_AddObject(m, "UF_USE_DES_KEY_ONLY", PyInt_FromLong(UF_USE_DES_KEY_ONLY));
745         PyModule_AddObject(m, "UF_DONT_REQUIRE_PREAUTH", PyInt_FromLong(UF_DONT_REQUIRE_PREAUTH));
746         PyModule_AddObject(m, "UF_PASSWORD_EXPIRED", PyInt_FromLong(UF_PASSWORD_EXPIRED));
747         PyModule_AddObject(m, "UF_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION", PyInt_FromLong(UF_TRUSTED_TO_AUTHENTICATE_FOR_DELEGATION));
748         PyModule_AddObject(m, "UF_NO_AUTH_DATA_REQUIRED", PyInt_FromLong(UF_NO_AUTH_DATA_REQUIRED));
749         PyModule_AddObject(m, "UF_PARTIAL_SECRETS_ACCOUNT", PyInt_FromLong(UF_PARTIAL_SECRETS_ACCOUNT));
750
751         /* "groupType" flags */
752         PyModule_AddObject(m, "GTYPE_SECURITY_BUILTIN_LOCAL_GROUP",
753                                            PyInt_FromLong(GTYPE_SECURITY_BUILTIN_LOCAL_GROUP));
754         PyModule_AddObject(m, "GTYPE_SECURITY_GLOBAL_GROUP",
755                                            PyInt_FromLong(GTYPE_SECURITY_GLOBAL_GROUP));
756         PyModule_AddObject(m, "GTYPE_SECURITY_DOMAIN_LOCAL_GROUP",
757                                            PyInt_FromLong(GTYPE_SECURITY_DOMAIN_LOCAL_GROUP));
758         PyModule_AddObject(m, "GTYPE_SECURITY_UNIVERSAL_GROUP",
759                                            PyInt_FromLong(GTYPE_SECURITY_UNIVERSAL_GROUP));
760         PyModule_AddObject(m, "GTYPE_DISTRIBUTION_GLOBAL_GROUP",
761                                            PyInt_FromLong(GTYPE_DISTRIBUTION_GLOBAL_GROUP));
762         PyModule_AddObject(m, "GTYPE_DISTRIBUTION_DOMAIN_LOCAL_GROUP",
763                                            PyInt_FromLong(GTYPE_DISTRIBUTION_DOMAIN_LOCAL_GROUP));
764         PyModule_AddObject(m, "GTYPE_DISTRIBUTION_UNIVERSAL_GROUP",
765                                            PyInt_FromLong(GTYPE_DISTRIBUTION_UNIVERSAL_GROUP));
766
767         /* "sAMAccountType" flags */
768         PyModule_AddObject(m, "ATYPE_NORMAL_ACCOUNT",
769                                            PyInt_FromLong(ATYPE_NORMAL_ACCOUNT));
770         PyModule_AddObject(m, "ATYPE_WORKSTATION_TRUST",
771                                            PyInt_FromLong(ATYPE_WORKSTATION_TRUST));
772         PyModule_AddObject(m, "ATYPE_INTERDOMAIN_TRUST",
773                                            PyInt_FromLong(ATYPE_INTERDOMAIN_TRUST));
774         PyModule_AddObject(m, "ATYPE_SECURITY_GLOBAL_GROUP",
775                                            PyInt_FromLong(ATYPE_SECURITY_GLOBAL_GROUP));
776         PyModule_AddObject(m, "ATYPE_SECURITY_LOCAL_GROUP",
777                                            PyInt_FromLong(ATYPE_SECURITY_LOCAL_GROUP));
778         PyModule_AddObject(m, "ATYPE_SECURITY_UNIVERSAL_GROUP",
779                                            PyInt_FromLong(ATYPE_SECURITY_UNIVERSAL_GROUP));
780         PyModule_AddObject(m, "ATYPE_DISTRIBUTION_GLOBAL_GROUP",
781                                            PyInt_FromLong(ATYPE_DISTRIBUTION_GLOBAL_GROUP));
782         PyModule_AddObject(m, "ATYPE_DISTRIBUTION_LOCAL_GROUP",
783                                            PyInt_FromLong(ATYPE_DISTRIBUTION_LOCAL_GROUP));
784         PyModule_AddObject(m, "ATYPE_DISTRIBUTION_UNIVERSAL_GROUP",
785                                            PyInt_FromLong(ATYPE_DISTRIBUTION_UNIVERSAL_GROUP));
786
787         /* "domainFunctionality", "forestFunctionality" flags in the rootDSE */
788         PyModule_AddObject(m, "DS_DOMAIN_FUNCTION_2000",
789                                            PyInt_FromLong(DS_DOMAIN_FUNCTION_2000));
790         PyModule_AddObject(m, "DS_DOMAIN_FUNCTION_2003_MIXED",
791                                            PyInt_FromLong(DS_DOMAIN_FUNCTION_2003_MIXED));
792         PyModule_AddObject(m, "DS_DOMAIN_FUNCTION_2003",
793                                            PyInt_FromLong(DS_DOMAIN_FUNCTION_2003));
794         PyModule_AddObject(m, "DS_DOMAIN_FUNCTION_2008",
795                                            PyInt_FromLong(DS_DOMAIN_FUNCTION_2008));
796         PyModule_AddObject(m, "DS_DOMAIN_FUNCTION_2008_R2",
797                                            PyInt_FromLong(DS_DOMAIN_FUNCTION_2008_R2));
798
799         /* "systemFlags" */
800         PyModule_AddObject(m, "SYSTEM_FLAG_CR_NTDS_NC",
801                                         PyInt_FromLong(SYSTEM_FLAG_CR_NTDS_NC));
802         PyModule_AddObject(m, "SYSTEM_FLAG_CR_NTDS_DOMAIN",
803                                         PyInt_FromLong(SYSTEM_FLAG_CR_NTDS_DOMAIN));
804         PyModule_AddObject(m, "SYSTEM_FLAG_CR_NTDS_NOT_GC_REPLICATED",
805                                         PyInt_FromLong(SYSTEM_FLAG_CR_NTDS_NOT_GC_REPLICATED));
806         PyModule_AddObject(m, "SYSTEM_FLAG_SCHEMA_BASE_OBJECT",
807                                         PyInt_FromLong(SYSTEM_FLAG_SCHEMA_BASE_OBJECT));
808         PyModule_AddObject(m, "SYSTEM_FLAG_ATTR_IS_RDN",
809                                         PyInt_FromLong(SYSTEM_FLAG_ATTR_IS_RDN));
810         PyModule_AddObject(m, "SYSTEM_FLAG_DISALLOW_MOVE_ON_DELETE",
811                                         PyInt_FromLong(SYSTEM_FLAG_DISALLOW_MOVE_ON_DELETE));
812         PyModule_AddObject(m, "SYSTEM_FLAG_DOMAIN_DISALLOW_MOVE",
813                                         PyInt_FromLong(SYSTEM_FLAG_DOMAIN_DISALLOW_MOVE));
814         PyModule_AddObject(m, "SYSTEM_FLAG_DOMAIN_DISALLOW_RENAME",
815                                         PyInt_FromLong(SYSTEM_FLAG_DOMAIN_DISALLOW_RENAME));
816         PyModule_AddObject(m, "SYSTEM_FLAG_CONFIG_ALLOW_LIMITED_MOVE",
817                                         PyInt_FromLong(SYSTEM_FLAG_CONFIG_ALLOW_LIMITED_MOVE));
818         PyModule_AddObject(m, "SYSTEM_FLAG_CONFIG_ALLOW_MOVE",
819                                         PyInt_FromLong(SYSTEM_FLAG_CONFIG_ALLOW_MOVE));
820         PyModule_AddObject(m, "SYSTEM_FLAG_CONFIG_ALLOW_RENAME",
821                                         PyInt_FromLong(SYSTEM_FLAG_CONFIG_ALLOW_RENAME));
822         PyModule_AddObject(m, "SYSTEM_FLAG_DISALLOW_DELETE",
823                                         PyInt_FromLong(SYSTEM_FLAG_DISALLOW_DELETE));
824
825         /* Kerberos encryption type constants */
826         PyModule_AddObject(m, "ENC_ALL_TYPES",
827                            PyInt_FromLong(ENC_ALL_TYPES));
828         PyModule_AddObject(m, "ENC_CRC32",
829                            PyInt_FromLong(ENC_CRC32));
830         PyModule_AddObject(m, "ENC_RSA_MD5",
831                            PyInt_FromLong(ENC_RSA_MD5));
832         PyModule_AddObject(m, "ENC_RC4_HMAC_MD5",
833                            PyInt_FromLong(ENC_RC4_HMAC_MD5));
834         PyModule_AddObject(m, "ENC_HMAC_SHA1_96_AES128",
835                            PyInt_FromLong(ENC_HMAC_SHA1_96_AES128));
836         PyModule_AddObject(m, "ENC_HMAC_SHA1_96_AES256",
837                            PyInt_FromLong(ENC_HMAC_SHA1_96_AES256));
838
839         PyModule_AddObject(m, "SEARCH_FLAG_ATTINDEX", PyInt_FromLong(SEARCH_FLAG_ATTINDEX));
840         PyModule_AddObject(m, "SEARCH_FLAG_PDNTATTINDEX", PyInt_FromLong(SEARCH_FLAG_PDNTATTINDEX));
841         PyModule_AddObject(m, "SEARCH_FLAG_ANR", PyInt_FromLong(SEARCH_FLAG_ANR));
842         PyModule_AddObject(m, "SEARCH_FLAG_PRESERVEONDELETE", PyInt_FromLong(SEARCH_FLAG_PRESERVEONDELETE));
843         PyModule_AddObject(m, "SEARCH_FLAG_COPY", PyInt_FromLong(SEARCH_FLAG_COPY));
844         PyModule_AddObject(m, "SEARCH_FLAG_TUPLEINDEX", PyInt_FromLong(SEARCH_FLAG_TUPLEINDEX));
845         PyModule_AddObject(m, "SEARCH_FLAG_SUBTREEATTRINDEX", PyInt_FromLong(SEARCH_FLAG_SUBTREEATTRINDEX));
846         PyModule_AddObject(m, "SEARCH_FLAG_CONFIDENTIAL", PyInt_FromLong(SEARCH_FLAG_CONFIDENTIAL));
847         PyModule_AddObject(m, "SEARCH_FLAG_NEVERVALUEAUDIT", PyInt_FromLong(SEARCH_FLAG_NEVERVALUEAUDIT));
848         PyModule_AddObject(m, "SEARCH_FLAG_RODC_ATTRIBUTE", PyInt_FromLong(SEARCH_FLAG_RODC_ATTRIBUTE));
849
850         PyModule_AddObject(m, "DS_FLAG_ATTR_NOT_REPLICATED", PyInt_FromLong(DS_FLAG_ATTR_NOT_REPLICATED));
851         PyModule_AddObject(m, "DS_FLAG_ATTR_REQ_PARTIAL_SET_MEMBER", PyInt_FromLong(DS_FLAG_ATTR_REQ_PARTIAL_SET_MEMBER));
852         PyModule_AddObject(m, "DS_FLAG_ATTR_IS_CONSTRUCTED", PyInt_FromLong(DS_FLAG_ATTR_IS_CONSTRUCTED));
853 }