Günther Deschner [Thu, 29 Oct 2009 23:09:25 +0000 (00:09 +0100)]
s3-selftest: enable RPC-LSA-SECRETS against s3.
Guenther
Günther Deschner [Thu, 1 Jul 2010 20:25:16 +0000 (22:25 +0200)]
s3-lsa: support secret objects in _lsa_QuerySecurity().
Guenther
Günther Deschner [Thu, 29 Oct 2009 23:05:07 +0000 (00:05 +0100)]
s3-lsa: support secret objects in _lsa_DeleteObject().
Guenther
Günther Deschner [Thu, 29 Oct 2009 23:04:09 +0000 (00:04 +0100)]
s3-lsa: implement _lsa_QuerySecret().
Guenther
Günther Deschner [Thu, 29 Oct 2009 23:03:21 +0000 (00:03 +0100)]
s3-lsa: implement _lsa_SetSecret().
Guenther
Günther Deschner [Thu, 29 Oct 2009 22:59:57 +0000 (23:59 +0100)]
s3-lsa: implement _lsa_CreateSecret().
Guenther
Günther Deschner [Thu, 29 Oct 2009 22:51:44 +0000 (23:51 +0100)]
s3-lsa: implement _lsa_OpenSecret().
Guenther
Günther Deschner [Thu, 17 Feb 2011 15:10:28 +0000 (16:10 +0100)]
s3-secrets: add lsa_secret passdb api.
Guenther
Günther Deschner [Wed, 28 Oct 2009 17:07:56 +0000 (18:07 +0100)]
s3-secrets: add lsa_secret struct to secrets IDL.
Guenther
Günther Deschner [Wed, 28 Oct 2009 10:03:15 +0000 (11:03 +0100)]
s3-passdb: add dummy calls to control global (replicated) secrets.
Guenther
Günther Deschner [Mon, 26 Oct 2009 12:43:16 +0000 (13:43 +0100)]
s3-lsa: add LSA_HANDLE_SECRET_TYPE.
Guenther
Günther Deschner [Thu, 16 Jul 2009 12:32:18 +0000 (14:32 +0200)]
s3-lsa: Fix _lsa_DeleteObject to handle trusted domain objects.
Guenther
Matthieu Patou [Sat, 30 Jul 2011 07:05:40 +0000 (11:05 +0400)]
s4-kcc: correctly populate the neighbor object when taking information from repsTo
Autobuild-User: Matthieu Patou <mat@samba.org>
Autobuild-Date: Sun Jul 31 00:17:17 CEST 2011 on sn-devel-104
Jeremy Allison [Fri, 29 Jul 2011 22:20:15 +0000 (15:20 -0700)]
Added missing return. Not strictly neccessary, the following if (!NT_STATUS_EQUAL(status, NT_STATUS_NOT_SUPPORTED))
clause will catch this and use tevent_req_nterror(req, status); to set the status as NT_STATUS_OK, but
it looks strange to do it that way.
Autobuild-User: Jeremy Allison <jra@samba.org>
Autobuild-Date: Sat Jul 30 01:34:24 CEST 2011 on sn-devel-104
Jeremy Allison [Fri, 29 Jul 2011 03:23:30 +0000 (20:23 -0700)]
Secod part of bugfix for bug #8335 - file copy aborts with smb2_validate_message_id: bad message_id
Modify the credit granting algorithm to closer to what I believe
Windows does.
Split up max_credits into 1/16ths, and then scale
the requested credits by how many 16ths have been
currently granted. Less than 1/16th == grant all
requested (100%), scale down as more have been
granted. Never ask for less than 1 if the client
asked for at least 1.
Autobuild-User: Jeremy Allison <jra@samba.org>
Autobuild-Date: Fri Jul 29 20:37:42 CEST 2011 on sn-devel-104
Jeremy Allison [Fri, 29 Jul 2011 03:22:45 +0000 (20:22 -0700)]
First part of bugfix for bug #8335 - file copy aborts with smb2_validate_message_id: bad message_id
Set default max credits to 8192 now this has been documented in the
SMB2 spec.
Volker Lendecke [Fri, 29 Jul 2011 14:37:18 +0000 (16:37 +0200)]
s3: Add a fallback for missing open&x support in OS/X Lion
Autobuild-User: Volker Lendecke <vlendec@samba.org>
Autobuild-Date: Fri Jul 29 17:55:20 CEST 2011 on sn-devel-104
Volker Lendecke [Fri, 29 Jul 2011 14:36:58 +0000 (16:36 +0200)]
s3: Make map_open_params_to_ntcreate() available in lib/
Volker Lendecke [Fri, 29 Jul 2011 14:14:39 +0000 (16:14 +0200)]
s3: Make is_executable() available in lib/
Volker Lendecke [Fri, 29 Jul 2011 14:12:16 +0000 (16:12 +0200)]
s3: We only need base_name in map_open_params_to_ntcreate
Michael Adam [Thu, 7 Jul 2011 15:42:08 +0000 (17:42 +0200)]
s3:dbwrap: move all .c and .h files of dbwrap to lib/dbwrap/
Autobuild-User: Michael Adam <obnox@samba.org>
Autobuild-Date: Fri Jul 29 13:34:22 CEST 2011 on sn-devel-104
Michael Adam [Wed, 6 Jul 2011 15:02:13 +0000 (17:02 +0200)]
s3-waf: replace the dbwrap_util library by a dbwrap library that contains the dbwrap core
Michael Adam [Wed, 6 Jul 2011 14:49:34 +0000 (16:49 +0200)]
s3:dbwrap: move db_is_local() from dbwrap.c to dbwrap_open.c
Michael Adam [Wed, 6 Jul 2011 14:40:21 +0000 (16:40 +0200)]
s3:dbwrap: move db_open() to a file dbwrap_open.c of its own.
Also start new folder lib/dbwrap/ where dbwrap_open.c is stored and
make the fallbacke implementation functoins non-static and create a
dbwrap_private.h header file that contains their prototypes.
Michael Adam [Wed, 6 Jul 2011 14:09:17 +0000 (16:09 +0200)]
s3:g_lock: explicitly include dbwrap.h
Michael Adam [Wed, 6 Jul 2011 14:14:18 +0000 (16:14 +0200)]
s3:modules:nfs4_acls: fix the include of dbwrap.h to not include "include/"
Michael Adam [Wed, 6 Jul 2011 12:27:03 +0000 (14:27 +0200)]
s3:dbwrap: explicitly include dbwrap.h in dbwrap_ctdb.c
This used to come in via g_lock.h
Pair-Programmed-With: Gregor Beck <gbeck@sernet.de>
Andrew Tridgell [Fri, 29 Jul 2011 01:57:07 +0000 (11:57 +1000)]
talloc: added test suite for talloc_free_children()
this tests the fix from Simo
Autobuild-User: Andrew Tridgell <tridge@samba.org>
Autobuild-Date: Fri Jul 29 11:30:13 CEST 2011 on sn-devel-104
Simo Sorce [Wed, 27 Jul 2011 16:02:35 +0000 (12:02 -0400)]
talloc: preserve context name on talloc_free_children()
Otherwise tc->name will end up pointing to garbage when it is not
set to a const but rather to a string allocate as child of the context itself.
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Tridgell [Thu, 28 Jul 2011 07:14:28 +0000 (17:14 +1000)]
samba-tool: use ldb.binary_encode() on search expression elements
this allows us to deal with search elements containing characters that
must be escaped in LDAP
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
Pair-Programmed-With: Amitay Isaacs <amitay@gmail.com>
Andrew Tridgell [Thu, 28 Jul 2011 07:03:57 +0000 (17:03 +1000)]
samba-tool: fixed binary encoding of usernames in setpassword
Pair-Programmed-With: Amitay Isaacs <amitay@gmail.com>
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
Andrew Tridgell [Thu, 28 Jul 2011 07:03:06 +0000 (17:03 +1000)]
pyldb: added binary_encode() and binary_decode() methods
this gives access to RFC2254 encoding from python
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
Pair-Programmed-With: Amitay Isaacs <amitay@gmail.com>
Andrew Tridgell [Thu, 28 Jul 2011 05:56:15 +0000 (15:56 +1000)]
ldb: added a test for an invalid search expression
this tests the fix for invalid expressions in & and | expressions
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
Pair-Programmed-With: Amitay Isaacs <amitay@gmail.com>
Andrew Tridgell [Thu, 28 Jul 2011 05:51:31 +0000 (15:51 +1000)]
ldb: fixed a search expression parse bug
when a secondary component of a & or | expression was invalid, it was
ignored rather than giving an error. For example:
(|(objectclass=user)(samaccountname=foo\blah))
was treated as being:
(objectclass=user)
whereas it should be an error, as foo\blah is invalid
Pair-Programmed-With: Amitay Isaacs <amitay@gmail.com>
Pair-Programmed-With: Andrew Bartlett <abartlet@samba.org>
Andrew Bartlett [Thu, 21 Jul 2011 08:21:19 +0000 (18:21 +1000)]
s4-auth Fill in the remainder of the unix info in auth_session_info
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Autobuild-User: Andrew Bartlett <abartlet@samba.org>
Autobuild-Date: Fri Jul 29 05:33:03 CEST 2011 on sn-devel-104
Andrew Bartlett [Thu, 21 Jul 2011 07:06:17 +0000 (17:06 +1000)]
s4-auth Move conversion of security_token to unix_token to auth
This allows us to honour the AUTH_SESSION_INFO_UNIX_TOKEN flag.
Andrew Bartlett
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Bartlett [Thu, 21 Jul 2011 05:39:27 +0000 (15:39 +1000)]
gensec: Add a way to request a unix token from GENSEC
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Bartlett [Thu, 21 Jul 2011 05:37:41 +0000 (15:37 +1000)]
ntvfs: Use security_unix_token from auth.idl
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Bartlett [Fri, 22 Jul 2011 03:00:21 +0000 (13:00 +1000)]
s3-selftest Add tests for 'map to guest = bad user'
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Bartlett [Tue, 26 Jul 2011 07:04:40 +0000 (17:04 +1000)]
selftest: Avoid being run over by armies of the undead
Ignore SIGCHILD to reap zombies
Andrew Bartlett
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Bartlett [Wed, 27 Jul 2011 02:06:22 +0000 (12:06 +1000)]
nbt: Add comment explaining that these responses are manually encoded
Signed-off-by: Andrew Tridgell <tridge@samba.org>
Andrew Bartlett [Wed, 27 Jul 2011 05:42:45 +0000 (15:42 +1000)]
selftest: explain how the message command test works
Andrew Bartlett [Wed, 27 Jul 2011 21:55:09 +0000 (07:55 +1000)]
s4-lsa Use the supplied handle in LsaLookupNames2
In my rework of this function in 2006 with
459a2301a5d63f5a1a6b27996c8a0358b20f2ab2 I ignored the incoming
handle, instead feching the LSA state again (dispite the commit
message indicating otherwise).
This means that data->access_mask is uninitialised, which doesn't
matter right now, but will once we start checking that.
Andrew Bartlett
Andrew Bartlett [Fri, 29 Jul 2011 02:10:39 +0000 (12:10 +1000)]
s4-debug: Start with DEBUG_DEFAULT_STDOUT, so we can log to a file in deamons
In commit
3c9d01e3e58e2217915317406541ac8c6f6dcf92 I changed the priority order
and added DEBUG_DEFAULT_STDOUT, but did not check all the callers.
Andrew Bartlett
Andreas Schneider [Thu, 28 Jul 2011 15:12:24 +0000 (17:12 +0200)]
s3-printing: Add forward declaration for dcerpc_binding_handle.
This fixes a build warning.
Autobuild-User: Andreas Schneider <asn@cryptomilk.org>
Autobuild-Date: Thu Jul 28 20:07:37 CEST 2011 on sn-devel-104
Volker Lendecke [Thu, 28 Jul 2011 12:24:40 +0000 (14:24 +0200)]
s3: Priorize the async echo responder over the client
Without this, an active client connection can starve the echo responder. This
leads to apparently "lost" SMBs.
Autobuild-User: Volker Lendecke <vlendec@samba.org>
Autobuild-Date: Thu Jul 28 18:53:38 CEST 2011 on sn-devel-104
Volker Lendecke [Thu, 28 Jul 2011 12:09:13 +0000 (14:09 +0200)]
tevent: Slightly simplify poll_event_loop_poll
No real code change. Do an early return instead of an if-statement, avoiding
one level of indentation.
Volker Lendecke [Tue, 26 Jul 2011 13:39:58 +0000 (15:39 +0200)]
s3: Remove unused smbd_echo_reader()
Volker Lendecke [Tue, 26 Jul 2011 13:39:29 +0000 (15:39 +0200)]
s3: Use smbd_echo_read_send in the async echo handler
Volker Lendecke [Tue, 26 Jul 2011 13:07:22 +0000 (15:07 +0200)]
s3: Add smbd_echo_read_send/recv
Read a SMB packet in the echo responder, giving the parent one second to step
in
Volker Lendecke [Tue, 26 Jul 2011 13:06:44 +0000 (15:06 +0200)]
Add wait_for_read_send/recv
Wait for readability of a socket as a tevent_req
Simo Sorce [Wed, 27 Jul 2011 20:40:21 +0000 (16:40 -0400)]
s3-rpc_server: Use talloc for pipe_rpc_fns
Everything uses talloc in the rpc server nowadays, remove this ancient use of
malloc. This also allows us to remove the free fucntion and let talloc handle
it properly.
Autobuild-User: Simo Sorce <idra@samba.org>
Autobuild-Date: Thu Jul 28 17:41:08 CEST 2011 on sn-devel-104
Simo Sorce [Wed, 27 Jul 2011 20:30:42 +0000 (16:30 -0400)]
s3-rpc_server: remove useless code
We do not reuse pies_struct so there is no reason to SERO_STRUCT() it when we
are freeing it as we are done using it anyways.
Simo Sorce [Wed, 27 Jul 2011 20:27:17 +0000 (16:27 -0400)]
s3-rpc_server: remove unnecessary talloc_free
The auth_ctx is a child of pipes_struct, and this function is a used only as a
destructor on pipes_struct. So it is not really necessary to free this struct
in the destructor as it will be freed soon enough anyway.
Simo Sorce [Wed, 27 Jul 2011 19:51:17 +0000 (15:51 -0400)]
s3-rpc_server: Remove dead code
srv_str and cli_str are not used anymore.
Andreas Schneider [Thu, 28 Jul 2011 09:36:50 +0000 (11:36 +0200)]
s3-spoolss: Use existing handle in printer_driver_files_in_use().
Autobuild-User: Andreas Schneider <asn@cryptomilk.org>
Autobuild-Date: Thu Jul 28 16:20:11 CEST 2011 on sn-devel-104
Andreas Schneider [Thu, 28 Jul 2011 09:34:08 +0000 (11:34 +0200)]
s3-spoolss: Use existing handle in printer_driver_in_use().
Volker Lendecke [Thu, 28 Jul 2011 11:41:18 +0000 (13:41 +0200)]
s3: In the async echo test, write 65k
This leads to the writev from echo responder child to parent to only deliver a
partial blob and thus excercises the retry code.
Autobuild-User: Volker Lendecke <vlendec@samba.org>
Autobuild-Date: Thu Jul 28 15:07:40 CEST 2011 on sn-devel-104
Michael Adam [Thu, 28 Jul 2011 07:49:34 +0000 (09:49 +0200)]
s3:modules:nfs4_acls: improve fix for bug #8330
simplify the check insmbacl4_find_equal_special()
Signed-off-by: Michael Adam <obnox@samba.org>
Autobuild-User: Michael Adam <obnox@samba.org>
Autobuild-Date: Thu Jul 28 13:20:38 CEST 2011 on sn-devel-104
Michael Adam [Thu, 28 Jul 2011 09:15:51 +0000 (11:15 +0200)]
s3:torture: use lp_load_global() in pdbtest - this does not need shares nor IPC$
Michael Adam [Thu, 28 Jul 2011 09:04:53 +0000 (11:04 +0200)]
s3:winbindd: use lp_load_global() - winbindd does not need shares or IPC$
Michael Adam [Thu, 28 Jul 2011 08:39:45 +0000 (10:39 +0200)]
s3:smbstatus: use lp_load_global() - smbstatus does not need to load shares!
Michael Adam [Thu, 28 Jul 2011 08:34:09 +0000 (10:34 +0200)]
s3:split_tokens: use lp_load_global(), fixing the call to lp_load()
this does not need share and it dos not need to save defaults
Michael Adam [Thu, 28 Jul 2011 08:33:15 +0000 (10:33 +0200)]
s3:split_tokens: fix a nonempty blank line
Michael Adam [Thu, 28 Jul 2011 08:30:20 +0000 (10:30 +0200)]
s3: use lp_load_global() in smbw_sample -- whatever this is ... :-)
Michael Adam [Thu, 28 Jul 2011 08:28:40 +0000 (10:28 +0200)]
s3:smbtree: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:27:43 +0000 (10:27 +0200)]
s3:smbpasswd: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:27:09 +0000 (10:27 +0200)]
s3:smbfilter: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:26:22 +0000 (10:26 +0200)]
s3:smbcquotas: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:23:53 +0000 (10:23 +0200)]
s3:smbcontrol: use lp_load_global(): smbcontrol does not need to load the shares
Michael Adam [Thu, 28 Jul 2011 08:21:11 +0000 (10:21 +0200)]
s3:smbcacls: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:20:24 +0000 (10:20 +0200)]
s3:pdbedit: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:19:36 +0000 (10:19 +0200)]
s3:ntlm_auth: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:18:55 +0000 (10:18 +0200)]
s3:nmblookup: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:18:18 +0000 (10:18 +0200)]
s3:net: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:17:32 +0000 (10:17 +0200)]
s3:eventlogadm: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:16:37 +0000 (10:16 +0200)]
s3:dbwrap_torture: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:15:41 +0000 (10:15 +0200)]
s3:dbwrap_tool: use lp_load_global()
Michael Adam [Thu, 28 Jul 2011 08:14:27 +0000 (10:14 +0200)]
s3:smbtorture: use the lp_load_global() wrapper of lp_load()
Michael Adam [Wed, 27 Jul 2011 15:20:05 +0000 (17:20 +0200)]
s3:torture: use lp_load_global() in the strstr test
Michael Adam [Wed, 27 Jul 2011 15:06:26 +0000 (17:06 +0200)]
s3:torture: use lp_load_global in the strcmp test
Michael Adam [Wed, 27 Jul 2011 15:05:38 +0000 (17:05 +0200)]
s3:torture: use lp_load_global() in the push_ucs2 test
Michael Adam [Wed, 27 Jul 2011 15:03:51 +0000 (17:03 +0200)]
s3:torture: use lp_load_global() in the msgtest
Michael Adam [Wed, 27 Jul 2011 15:02:51 +0000 (17:02 +0200)]
s3:torture: use lp_load_global() in the masktest
Michael Adam [Wed, 27 Jul 2011 14:56:23 +0000 (16:56 +0200)]
s3:torture: use lp_load_global() in locktest2
Michael Adam [Wed, 27 Jul 2011 14:55:25 +0000 (16:55 +0200)]
s3:torture: use lp_load_global() in the locktest
Michael Adam [Wed, 27 Jul 2011 14:36:14 +0000 (16:36 +0200)]
s3:rpcclient: use the lp_load_global() wrapper of lp_load()
Michael Adam [Wed, 27 Jul 2011 14:34:53 +0000 (16:34 +0200)]
s3:nmbd: use the lp_load_global() wrapper of lp_load()
Michael Adam [Wed, 27 Jul 2011 14:31:02 +0000 (16:31 +0200)]
s3:libnet_join: use lp_load_global() wrapper of lp_load()
Michael Adam [Wed, 27 Jul 2011 14:29:04 +0000 (16:29 +0200)]
s3:libsmbconf: use lp_load_global() in the testsuite
Michael Adam [Tue, 26 Jul 2011 22:25:59 +0000 (00:25 +0200)]
s3:libnetapi: use lp_load_global()
Michael Adam [Tue, 26 Jul 2011 10:53:52 +0000 (12:53 +0200)]
s3:loadparm: make lp_set_in_client() static - only used in wrappers in loadparm now.
Michael Adam [Tue, 26 Jul 2011 10:51:04 +0000 (12:51 +0200)]
s3:pam_smbpass: use lp_load_client() in pam_smbpass
Michael Adam [Tue, 26 Jul 2011 10:46:08 +0000 (12:46 +0200)]
s3:libsmb: use lp_load_client() and lp_load_client_no_reinit() in libsmb_context
Michael Adam [Tue, 26 Jul 2011 10:44:44 +0000 (12:44 +0200)]
s3:loadparm: add wrapper lp_load_client_no_reinit()
Michael Adam [Tue, 26 Jul 2011 10:42:29 +0000 (12:42 +0200)]
s3:loadparm: add wrapper lp_load_globals_no_reinit()
Michael Adam [Tue, 26 Jul 2011 10:36:53 +0000 (12:36 +0200)]
s3:libsmb: fix a call to lp_load to reinit the globals in any case
The potential previous lp_load of $HOME/.smb/smb.conf might have failed
halfway through and might have left globals initialized in an unwanted state.
So we should make sure to clean up before loading the dyn_CONFIGFILE()
Michael Adam [Fri, 22 Jul 2011 15:28:46 +0000 (17:28 +0200)]
s3:smbspool: use lp_load_client()
Michael Adam [Fri, 22 Jul 2011 15:17:46 +0000 (17:17 +0200)]
s3:smbclient: use lp_load_client()
Michael Adam [Fri, 22 Jul 2011 15:24:38 +0000 (17:24 +0200)]
s3:loadparm: make lp_is_in_client() static - only used inside loadparm