r1888: Bring the same level of "required_membership"-functionality that
authorGünther Deschner <gd@samba.org>
Wed, 18 Aug 2004 16:25:41 +0000 (16:25 +0000)
committerGerald (Jerry) Carter <jerry@samba.org>
Wed, 10 Oct 2007 15:52:23 +0000 (10:52 -0500)
commit33b2bc49306fcac00e7b38fa5c402c6568493938
tree0c6044a5cce92d84e9ec87bc79469a18a1ccd1af
parent6fb06bbc1a94d24333ed47cf7af0534eaca34f44
r1888: Bring the same level of "required_membership"-functionality that
ntlm_auth uses, to pam_winbindd as well.

This allows to make successfull authentication via PAM dependent on
SID-membership. At the moment, both ntlm_auth and pam_winbindd.so accept
user/group-names or sid-strings - as discussed, recursive membership
(e.g. local aliases) will be added later.

Guenther
(This used to be commit 7494569655f8d112a0c883a2748a1012bb64ad3a)
source3/nsswitch/pam_winbind.c
source3/nsswitch/pam_winbind.h