- =================================
- Release Notes for Samba 3.3.0pre2
-
- =================================
+ =============================
+ Release Notes for Samba 3.3.2
+ March, 12 2009
+ =============================
-This is the second preview release of Samba 3.3.0. This is *not*
-intended for production environments and is designed for testing
-purposes only. Please report any defects via the Samba bug reporting
-system at https://bugzilla.samba.org/.
+This is the latest bugfix release release of the Samba 3.3 series.
-Major enhancements in Samba 3.3.0 include:
+Major enhancements in Samba 3.3.2 include:
- Configuration/installation:
- o Splitting of library directory into library directory and separate
- modules directory.
-
- File Serving:
- o Extended Cluster support.
-
- Winbind:
- o Simplyfied idmap configuration.
- o Added new parameter "winbind reconnect delay".
-
- Administrative tools:
- o The destination "all" of smbcontrol does now affect all running
- daemons including nmbd and winbindd.
- o New 'net rpc vampire keytab' and 'net rpc vampire ldif' commands.
- o The 'net' utility can now use kerberos for joining and authentication.
-
- Libraries:
- o NetApi library implements various new calls for User- and Group
- Account Management.
-
-
-Configure changes
-=================
-
-The configure option "--with-libdir" has been removed. The library
-directory can still be specified by using the existing "--libdir" option.
-A new option "--with-modulesdir" has been added to allow the specification
-of a separate directory for the shared modules.
-
-
-Winbind idmap backend changes
-=============================
-
-The idmap configuration has changed with version 3.3 to something that
-allows a smoother upgrade path from pre-3.0.25 configurations that use
-"idmap backend". The reason for this change is that to many, also to Samba
-developers, the 3.0.25 style configuration with "idmap config" turned out
-to be very complex. Version 3.3 no longer deprecates the "idmap backend"
-parameter, instead with "idmap backend" the default idmap backend is
-specified.
-
-Accordingly, the "idmap config <domain> : default = yes" setting is no
-longer being looked at.
-
-The alloc backend defaults to the default backend, which should be able to
-allocate IDs. In the default distribution the tdb and ldap backends can
-allocate, the ad and rid backends can not. The idmap alloc range is now
-being set with the "old" parameters "idmap uid" and "idmap gid".
-
-The "idmap domains" parameter has been removed.
-
-
-winbind reconnect delay
-=======================
-
-This is a new parameter which specifies the number of seconds the Winbind
-daemon will wait between attempts to contact a Domain controller for a domain
-that is determined to be down or not contactable.
+ * Fix "force group" (bug #6155).
+ * Fix saving of files on Samba share using MS Office 2007 (bug #6160).
+ * Fix guest authentication in setups with "security = share" and
+ "guest ok = yes" when Winbind is running.
+ * Fix corruptions of source path in tar mode of smbclient (bug #6161).
######################################################################
Changes
#######
-smb.conf changes
-----------------
-
- Parameter Name Description Default
- -------------- ----------- -------
- idmap domains Removed
- init logon delayed hosts New ""
- init logon delay New 100
- winbind reconnect delay New 30
-
-Changes since 3.3.0pre1:
-------------------------
+Changes since 3.3.1:
+--------------------
-o Michael Adam <obnox@samba.org>
-
- * BUG 5492: Fix RHEL SPEC file by removing libmsrpc stuff.
- * BUG 5507: Fix several issues in the RHEL SPEC file.
-
o Jeremy Allison <jra@samba.org>
- * BUG 5729: Explicitly allow "-valid".
- * BUG 5751: Fix showing of ACLs on DFS in (lib)smbclient.
- * Add st_birthtime and friends for accurate create times on *BSD
- and MacOSX).
- * Fix the wcache_invalidate_samlogon calls.
- * Clarify usage of "force create mode".
- * Get smbd to look (read-only) into the winbindd cache for uid/gid <--> sid
- mappings.
- * Write times code update.
-
-
-o Steven Danneman <steven.danneman@isilon.com>
- * Cleanup of DC enumeration in get_dcs().
+ * BUG 6082: Fix renaming and deleting of directories using Windows clients.
+ * BUG 6154: Make ZFS honor admin users.
+ * BUG 6155: Fix "force group".
+ * BUG 6160: Fix saving of files on Samba share using MS Office 2007.
+ * BUG 6161: Fix corruptions of source path in tar mode of smbclient.
+ * Fix some NetBSD warnings.
+ * Fix bug in processing of open modes in POSIX open.
+ * Fix use of streams modules with CIFSFS client.
+ * Ensure ACL modules work with POSIX paths.
+ * Use fsp->posix_open in preference if we have it.
+ * Fix more POSIX path lstat calls.
-o Günther Deschner <gd@samba.org>
- * BUG 5710: Fix changing of machine account passwords.
- * Fix invalid sid copy (hit when enumerating sibling domains) in Winbind.
+o Andrew Tridgell <tridge@samba.org>
+ * Fix a bug in message handling for the change notify code.
-o James Ding <ding_cc@hotmail.com>
- * BUG 5736: Fix Winbind crash bug with trusted domains.
+o Steven Danneman <steven.danneman@isilon.com>
+ * Fix guest authentication in setups with "security = share" and "guest ok =
+ yes" when Winbind is running.
-o Ephi Dror <Ephi.Dror@datadomain.com>
- * Correct the netsamlogon_clear_cached_user function.
+o Steve French <smfrench@gmail.com>
+ * BUG 4640: Fix guest mounts in mount.cifs.
+ * Fix displaying the version string properly when no other parameters passed
+ in in mount.cifs.
-o Jeff Layton <jlayton@redhat.com>
- * Fix build warnings in cifs.upcall.
+o Björn Jacke <bj@sernet.de>
+ * Prefer gssapi header files from subdirectory.
-o Volker Lendecke <vl@sernet.de>
- * Fix Coverity IDs 587 and 589.
- * Increase the default positive idmap cache time to a week.
- * BUG 5707: Do proper error handling if the socket is closed.
- * Fix calculation of useable_space for trans2 and nttrans replies.
- * Add mapping of generic bits when setting an NFSv4 ACL.
+o Volker Lendecke <vl@samba.org>
+ * BUG 6124: Fix the build on IRIX.
+ * BUG 6176: winbindd -n should disable the winbind idmap cache.
+ * Add a vfs_preopen module to hide fs latencies.
+ * Don't log NDR_PRINT_DEBUG at level 0, this always ends up in syslog.
+ * Fix a valgrind error / segfault in dns_register_smbd().
o Stefan Metzmacher <metze@samba.org>
- * Some write time fixes.
-
+ * Fix build on SLES8.
+ * Decremented by 1 for ntcancel requests.
-o Andrew Tridgell <tridge@samba.org>
- * Fix permissions of group_mapping.ldb (CVE-2008-3789).
- * Avoid a race condition in glibc between AIO and setresuid().
- * Add missing become root for AIO operations.
- * Fix an errno handling bug that could lead to an infinite loop.
- * Fix logic of tsmsm_sendfile().
- * Fix handling of arbitrary new PAC types.
-
-
-o Qiao Yang <geoyang@ironport.com>
- * Fix a memleak.
+o Tim Prouty <tprouty@samba.org>
+ * Fix creation of core files.
-Commit Highlights:
-------------------
-o Michael Adam <obnox@samba.org>
- * BUG 5609: Remove configure option "--with-libdir" and add
- "--with-modulesdir".
- * Extend "net rpc vampire keytab" to support differential replication
- and storing of kerberos keys.
- * Rework internal logic of registry tdb code.
- * Freeze autogenerated prototype headers (good bye "make proto").
+o Dan Sledz <dan.sledz@isilon.com>
+ * Fix first mapping of uids/gids in Winbind.
-o Jeremy Allison <jra@samba.org>
- * Add new "winbind reconnect delay" parameter.
- * Make the change to smbcontrol for "all" to mean broadcast,
- and "smbd" to mean the main smb daemon.
-
-
-o Guenther Deschner <gd@samba.org>
- * BUG 5710: Fix changing of machine account passwords.
- * Add "net rpc vampire keytab" and "net rpc vampire ldif".
-
-
-o Volker Lendecke <vl@samba.org>
- * Rework of the Winbind idmap backend.
- * Fix calculation of useable_space for trans2 and nttrans replies.
- * Add mapping of generic bits when setting an NFSv4 ACL.
+o Bo Yang <boyang@novell.com>
+ * Initialize the id_map status in idmap_ldap to avoid surprise.
+ * Fix initialization of idmap status.
######################################################################