[GLUE] Rsync SAMBA_3_2_0 SVN r25598 in order to create the v3-2-test branch.
[sfrench/samba-autobuild/.git] / source3 / include / rpc_netlogon.h
index 0a515b74f37043a8323cf4e04f4ea927f685ea53..a82b977a5bbadfd8014a52eebf15307b7f303e4e 100644 (file)
@@ -8,7 +8,7 @@
    
    This program is free software; you can redistribute it and/or modify
    it under the terms of the GNU General Public License as published by
-   the Free Software Foundation; either version 2 of the License, or
+   the Free Software Foundation; either version 3 of the License, or
    (at your option) any later version.
    
    This program is distributed in the hope that it will be useful,
@@ -17,8 +17,7 @@
    GNU General Public License for more details.
    
    You should have received a copy of the GNU General Public License
-   along with this program; if not, write to the Free Software
-   Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
+   along with this program.  If not, see <http://www.gnu.org/licenses/>.
 */
 
 #ifndef _RPC_NETLOGON_H /* _RPC_NETLOGON_H */
 #define NET_AUTH               0x05
 #define NET_SRVPWSET           0x06
 #define NET_SAM_DELTAS         0x07
+#define NET_GETDCNAME          0x0b
 #define NET_LOGON_CTRL         0x0c
-#define NET_GETDCNAME          0x0d
+#define NET_GETANYDCNAME       0x0d
 #define NET_AUTH2              0x0f
 #define NET_LOGON_CTRL2                0x0e
 #define NET_SAM_SYNC           0x10
 #define NET_TRUST_DOM_LIST     0x13
 #define NET_DSR_GETDCNAME      0x14
 #define NET_AUTH3              0x1a
+#define NET_DSR_GETDCNAMEEX    0x1b
 #define NET_DSR_GETSITENAME    0x1c
+#define NET_DSR_GETDCNAMEEX2   0x22
 #define NET_SAMLOGON_EX                0x27
 
+/* Secure Channel types.  used in NetrServerAuthenticate negotiation */
+#define SEC_CHAN_WKSTA   2
+#define SEC_CHAN_DOMAIN  4
+#define SEC_CHAN_BDC     6
+
 /* Returned delta types */
 #define SAM_DELTA_DOMAIN_INFO    0x01
 #define SAM_DELTA_GROUP_INFO     0x02
 #define SAM_DELTA_DELETE_USER    0x15
 #define SAM_DELTA_MODIFIED_COUNT 0x16
 
+/* SAM database types */
+#define SAM_DATABASE_DOMAIN    0x00 /* Domain users and groups */
+#define SAM_DATABASE_BUILTIN   0x01 /* BUILTIN users and groups */
+#define SAM_DATABASE_PRIVS     0x02 /* Privileges */
+
 /* flags use when sending a NETLOGON_CONTROL request */
 
 #define NETLOGON_CONTROL_SYNC                  0x2
 #define LOGON_RESOURCE_GROUPS          0x00000200
 #define LOGON_PROFILE_PATH_RETURNED    0x00000400
 #define LOGON_GRACE_LOGON              0x01000000
+#define LOGON_KRB5_FAIL_CLOCK_SKEW     0x02000000
 
 #define SE_GROUP_MANDATORY             0x00000001
 #define SE_GROUP_ENABLED_BY_DEFAULT    0x00000002
 #define SE_GROUP_OWNER                         0x00000008
 #define SE_GROUP_USE_FOR_DENY_ONLY     0x00000010
 #define SE_GROUP_LOGON_ID              0xC0000000
-#define SE_GROUP_RESOURCE              0x20000000
+#define SE_GROUP_RESOURCE              0x20000000      /* Domain Local Group */
 
 /* Flags for controlling the behaviour of a particular logon */
 
@@ -407,10 +420,27 @@ typedef struct net_r_logon_ctrl2_info {
        NTSTATUS status; /* return code */
 } NET_R_LOGON_CTRL2;
 
+/* NET_Q_GETANYDCNAME - Ask a DC for a trusted DC name */
+
+typedef struct net_q_getanydcname {
+       uint32  ptr_logon_server;
+       UNISTR2 uni_logon_server;
+       uint32  ptr_domainname;
+       UNISTR2 uni_domainname;
+} NET_Q_GETANYDCNAME;
+
+/* NET_R_GETANYDCNAME - Ask a DC for a trusted DC name */
+
+typedef struct net_r_getanydcname {
+       uint32  ptr_dcname;
+       UNISTR2 uni_dcname;
+       WERROR status;
+} NET_R_GETANYDCNAME;
+
+
 /* NET_Q_GETDCNAME - Ask a DC for a trusted DC name */
 
 typedef struct net_q_getdcname {
-       uint32  ptr_logon_server;
        UNISTR2 uni_logon_server;
        uint32  ptr_domainname;
        UNISTR2 uni_domainname;
@@ -421,7 +451,7 @@ typedef struct net_q_getdcname {
 typedef struct net_r_getdcname {
        uint32  ptr_dcname;
        UNISTR2 uni_dcname;
-       NTSTATUS status;
+       WERROR status;
 } NET_R_GETDCNAME;
 
 /* NET_Q_TRUST_DOM_LIST - LSA Query Trusted Domains */
@@ -1024,7 +1054,63 @@ typedef struct net_r_sam_deltas_info {
        NTSTATUS status;
 } NET_R_SAM_DELTAS;
 
-/* NET_Q_DSR_GETDCNAME - Ask a DC for a trusted DC name and its address */
+#define DS_FORCE_REDISCOVERY            0x00000001
+#define DS_DIRECTORY_SERVICE_REQUIRED   0x00000010
+#define DS_DIRECTORY_SERVICE_PREFERRED  0x00000020
+#define DS_GC_SERVER_REQUIRED           0x00000040
+#define DS_PDC_REQUIRED                 0x00000080
+#define DS_BACKGROUND_ONLY              0x00000100
+#define DS_IP_REQUIRED                  0x00000200
+#define DS_KDC_REQUIRED                 0x00000400
+#define DS_TIMESERV_REQUIRED            0x00000800
+#define DS_WRITABLE_REQUIRED            0x00001000
+#define DS_GOOD_TIMESERV_PREFERRED      0x00002000
+#define DS_AVOID_SELF                   0x00004000
+#define DS_ONLY_LDAP_NEEDED             0x00008000
+
+#define DS_IS_FLAT_NAME                 0x00010000
+#define DS_IS_DNS_NAME                  0x00020000
+
+#define DS_RETURN_DNS_NAME              0x40000000
+#define DS_RETURN_FLAT_NAME             0x80000000
+
+#if 0 /* unknown yet */
+#define DS_IP_VERSION_AGNOSTIC
+#define DS_TRY_NEXTCLOSEST_SITE
+#endif
+
+#define DSGETDC_VALID_FLAGS ( \
+    DS_FORCE_REDISCOVERY | \
+    DS_DIRECTORY_SERVICE_REQUIRED | \
+    DS_DIRECTORY_SERVICE_PREFERRED | \
+    DS_GC_SERVER_REQUIRED | \
+    DS_PDC_REQUIRED | \
+    DS_BACKGROUND_ONLY | \
+    DS_IP_REQUIRED | \
+    DS_KDC_REQUIRED | \
+    DS_TIMESERV_REQUIRED | \
+    DS_WRITABLE_REQUIRED | \
+    DS_GOOD_TIMESERV_PREFERRED | \
+    DS_AVOID_SELF | \
+    DS_ONLY_LDAP_NEEDED | \
+    DS_IS_FLAT_NAME | \
+    DS_IS_DNS_NAME | \
+    DS_RETURN_FLAT_NAME  | \
+    DS_RETURN_DNS_NAME )
+
+struct DS_DOMAIN_CONTROLLER_INFO {
+       const char *domain_controller_name;
+       const char *domain_controller_address;
+       int32 domain_controller_address_type;
+       struct GUID *domain_guid;
+       const char *domain_name;
+       const char *dns_forest_name;
+       uint32 flags;
+       const char *dc_site_name;
+       const char *client_site_name;
+};
+
+/* NET_Q_DSR_GETDCNAME */
 typedef struct net_q_dsr_getdcname {
        uint32 ptr_server_unc;
        UNISTR2 uni_server_unc;
@@ -1037,7 +1123,7 @@ typedef struct net_q_dsr_getdcname {
        uint32 flags;
 } NET_Q_DSR_GETDCNAME;
 
-/* NET_R_DSR_GETDCNAME - Ask a DC for a trusted DC name and its address */
+/* NET_R_DSR_GETDCNAME */
 typedef struct net_r_dsr_getdcname {
        uint32 ptr_dc_unc;
        UNISTR2 uni_dc_unc;
@@ -1057,6 +1143,41 @@ typedef struct net_r_dsr_getdcname {
        WERROR result;
 } NET_R_DSR_GETDCNAME;
 
+/* NET_Q_DSR_GETDCNAMEEX */
+typedef struct net_q_dsr_getdcnameex {
+       uint32 ptr_server_unc;
+       UNISTR2 uni_server_unc;
+       uint32 ptr_domain_name;
+       UNISTR2 uni_domain_name;
+       uint32 ptr_domain_guid;
+       struct GUID *domain_guid;
+       uint32 ptr_site_name;
+       UNISTR2 uni_site_name;
+       uint32 flags;
+} NET_Q_DSR_GETDCNAMEEX;
+
+/* NET_R_DSR_GETDCNAMEEX */
+typedef struct net_r_dsr_getdcnameex NET_R_DSR_GETDCNAMEEX;
+
+/* NET_Q_DSR_GETDCNAMEEX2 */
+typedef struct net_q_dsr_getdcnameex2 {
+       uint32 ptr_server_unc;
+       UNISTR2 uni_server_unc;
+       uint32 ptr_client_account;
+       UNISTR2 uni_client_account;
+       uint32 mask;
+       uint32 ptr_domain_name;
+       UNISTR2 uni_domain_name;
+       uint32 ptr_domain_guid;
+       struct GUID *domain_guid;
+       uint32 ptr_site_name;
+       UNISTR2 uni_site_name;
+       uint32 flags;
+} NET_Q_DSR_GETDCNAMEEX2;
+
+/* NET_R_DSR_GETDCNAMEEX2 */
+typedef struct net_r_dsr_getdcnameex2 NET_R_DSR_GETDCNAMEEX2;
+
 /* NET_Q_DSR_GESITENAME */
 typedef struct net_q_dsr_getsitename {
        uint32 ptr_computer_name;