Re: [Samba] a user getting prompt via netbios
On Tue, May 29, 2012 at 3:26 AM, Andrew Bartlett abart...@samba.org wrote: On Mon, 2012-05-28 at 19:45 +0500, Muhammad Yousuf Khan wrote: Hi, i have a user who is continually getting password prompt via Netbios access however via IP it is working fine moreover log files of the specific user are empty and rest of the users are ok with netbios and IP both. any idea please help? whould it be a machine issue (windows side) or samba side? If you are in a domain, my guess is that their kerberos ticket is not being accepted for some reason. Turn up the log level for further clues, or get a network trace. can you please explain a bit more , what do you mean by up the log level and network trace? do you mean there is an option in samba to generate different level of log or you mean find some in Krb5 or winbind log. and network trace :S ? Andrew Bartlett -- Andrew Bartlett http://samba.org/~abartlet/ Authentication Developer, Samba Team http://samba.org -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Winbind + Local Unix groups mixing
Hello samba team, I was working for many days on setting up a Samba server using Active Directory users and local unix groups without any success. This is a quite big domain (~150 users 300 machines), with many samba servers, I wouldn't have to add any more groups to the active directory just on each unix server. I also need pam for ssh logins. I try two different ways: 1 : With local (on the linux Server) accounts and Kerberos authentication + kerberos Pam module, it works but windows machines have to login as Unix-SERVER\user instead of Win-Domain\user 2 : With Winbind + pam_Winbind in this case windows machines in the domain are automatically logged in but if I want to add a winbind user to a local group it Samba doesn't use it. It seems that samba+winbind doesn't want to check local groups on domain user. Is there a way to do that? Best regards, Alexis Jeandet. -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Samba4 : Problem setting folder and file permissions from windows box
Hi I have found the solution to my AD permissions problem. It was not linked to samba, but I will post here so that it could help someone in the same situation: the permissions of my /sbin folder where not set correctly, and especially the unix_chkpwd binary. I set it with chmod g+s, rebooted the system, and everything worked again. I hope I did not bother the list with this problem not really related to samba, and I'm sorry for not being patient enough waiting for people to answer my question. regards, François Moyson Le 24/05/2012 17:43, steve a écrit : On 05/24/2012 03:39 PM, micmac wrote: I found a Python script that can copy the xattr from one file to another, sadly it didn't help at all... I'm completely desperate about a solution... and apparently people don't care at all about what I'm saying on this list. Here is the script, if it can be of use to some: http://game-sat.com/~brian/xattr.copy micmac -- View this message in context: http://samba.2283325.n4.nabble.com/Samba4-Problem-setting-folder-and-file-permissions-from-windows-box-tp4632038p4632070.html Sent from the Samba - General mailing list archive at Nabble.com. Hi I think you may be looking at the same bug as us: https://bugzilla.samba.org/show_bug.cgi?id=8938 Briefly: posix to windows and windows to posix doesn't work at the moment. I feel sure we are on the edge of an imminent fix. Please add your test-case to 3938 if you think it relevant. Cheers, Steve -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] 3.2.15 sys_get_vfs_quota -- failed for mntpath[ a device ] bdev [ a device ] qtype[4] id[513]: Invalid argument
do quotas work for you? yet another version that does not work for me is: 3.5.10 I initially thought problem was with 3.2.15 I have user and group quotas on a ext4 partition mounted like: rw,noatime,nodiratime,usrjquota=aquota.user,grpjquota=aquota.group,jqfmt=vfsv0,barrier=0 and samba does not report/recognize quotas, in logs I find: sys_get_vfs_quota() failed for mntpath[/mountPath] bdev[/dev/device] qtype[2] id[501]: Invalid argument [2012/05/29 10:46:25.087447, 3] lib/sysquotas.c:453(sys_get_quota) sys_get_vfs_quota() failed for mntpath[/mountPath] bdev[/dev/device] qtype[4] id[513]: Invalid argument On 25/05/12 08:54, lejeczek wrote: or/and ... qtype[2] id[501]: Invalid argument above version of samba does not seem to be able to recognize FS(ext4) quotas, could you gents.ladies shed some light please? very much appreciated. regards -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] After update to 3.6.1 - smbd dies often ? massive brl and lock database cleanup scheduled log entries
Hi ! We updated our NT4 domain-server samba from 3.0.27a to newest available 3.6.5 version this weekend. I've done various testing in a VM to make sure that everything is working under 3.6.5 and it all seems to run well. After updating the live system to 3.6.5 the following log entries occur really often, but users don't have any noticable problems. ( Tried to find matching entries in the client logs - loglevel 2 ): log.smbd: 2012/05/29 10:21:18.261416, 1] smbd/server.c:300(remove_child_pid) Scheduled cleanup of brl and lock database after unclean shutdown [2012/05/29 10:21:38.262575, 1] smbd/server.c:272(cleanup_timeout_fn) Cleaning up brl and lock database after unclean shutdown log.bhs013: [2012/05/29 10:21:18.251213, 2] smbd/process.c:2455(deadtime_fn) Closing idle connection [2012/05/29 10:21:18.251618, 1] smbd/service.c:1345(close_cnum) bhs013 (10.0.1.12) closed connection to service tools13 log.smbd: [2012/05/29 10:27:16.153040, 1] smbd/server.c:300(remove_child_pid) Scheduled cleanup of brl and lock database after unclean shutdown [2012/05/29 10:27:36.154652, 1] smbd/server.c:272(cleanup_timeout_fn) Cleaning up brl and lock database after unclean shutdown log.bel23: [2012/05/29 10:27:16.141301, 2] smbd/process.c:2455(deadtime_fn) Closing idle connection [2012/05/29 10:27:16.141510, 1] smbd/service.c:1345(close_cnum) bel023 (10.0.17.5) closed connection to service tools23 This one ist logged with loglevel 3: log.smbd: [2012/05/29 11:13:09.50, 3] smbd/server.c:292(remove_child_pid) smbd/server.c:292 Unclean shutdown of pid 11784 [2012/05/29 11:13:09.888995, 1] smbd/server.c:300(remove_child_pid) Scheduled cleanup of brl and lock database after unclean shutdown [2012/05/29 11:13:29.890127, 1] smbd/server.c:272(cleanup_timeout_fn) Cleaning up brl and lock database after unclean shutdown log.bel076: [2012/05/29 11:02:09.927238, 1] smbd/service.c:1081(make_connection_snum) bel076 (10.0.17.2) connect to service gb_benutzer initially as user gb_benutzer (uid=1393, gid=513) (pid 11784) [2012/05/29 11:06:09.872325, 2] param/loadparm.c:7690(handle_include) Can't find include file /etc/samba/smb.conf.bel076 [2012/05/29 11:06:09.873461, 2] param/loadparm.c:8327(do_section) Processing section [homes] [2012/05/29 11:06:09.873622, 2] param/loadparm.c:8327(do_section) Processing section [netlogon] [2012/05/29 11:06:09.873751, 2] param/loadparm.c:8327(do_section) Processing section [profiles] [2012/05/29 11:06:09.873962, 2] param/loadparm.c:8327(do_section) Processing section [printers] [2012/05/29 11:06:09.874120, 2] param/loadparm.c:8327(do_section) Processing section [print$] [2012/05/29 11:06:09.874287, 2] param/loadparm.c:8327(do_section) Processing section [domaintools] [2012/05/29 11:06:09.874522, 3] param/loadparm.c:6630(lp_add_ipc) adding IPC service [2012/05/29 11:06:09.874727, 2] lib/interface.c:341(add_interface) added interface eth1 ip=10.0.0.1 bcast=10.0.255.255 netmask=255.255.0.0 [2012/05/29 11:13:09.879760, 2] smbd/process.c:2455(deadtime_fn) Closing idle connection [2012/05/29 11:13:09.879935, 3] smbd/server.c:179(msg_exit_server) got a SHUTDOWN message [2012/05/29 11:13:09.880019, 1] smbd/service.c:1345(close_cnum) bel076 (10.0.17.2) closed connection to service gb_benutzer [2012/05/29 11:13:09.880084, 3] smbd/connection.c:35(yield_connection) Yielding connection to gb_benutzer [2012/05/29 11:13:09.880315, 3] smbd/server_exit.c:180(exit_server_common) Server exit (normal exit) It seems that a connection to a share gets dropped because it's idle (normal exit), but samba think it's unclean and rebuilds brl and lock databases. Any hints or suggestions for this errors ? Can it be ignored , or should I dig deeper (loglevel) ? Is it possible that any old stuff from samba 3.0.27a causes that errors in 3.6.5 ? Thanks in advance, Markus -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] cross-compile samba4
On 28/05/2012 23:07, Andrew Bartlett wrote: Great news! I'm pretty sure you are the first person to have cross-compiled Samba4, or if not, the first person to have done it in a long time. (The ability was there, but you know the difference between theory and practice). Could you write up in the wiki what you needed to do, and if there are any small changes we could make to the build system to make it easier next time? Andrew Bartlett Sure, I can do that. I assume I just need to create an account? Cheers, Mike. -- Any question is easy if you know the answer! -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Domain with status DISCONNECTED
Hi Friends , When I use this command : wbinfo -sequence in my samba instance this message was showed : BUILTIN : 1 MAXXX_SP : DISCONNECTED How Can I connect this Domain ? getent user and groups returns all users in my network. -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] PDC How to change workstation setting?
Will be easy, but I don't want to install something that I normally don't use to just change 1 field. But appreciated your input thanks!!! On Mon, May 28, 2012 at 1:37 PM, John Drescher dresche...@gmail.com wrote: Got it, I will give a try, thanks!!! One easy way to do that is Ldap account manager. http://www.ldap-account-manager.org/lamcms/changelog John -- LIving the dream... -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Windows 7 attempting to access Samba over port 80
Good Morning: I'm running a domain-joined Samba 3.6 server. For the majority of users it is working as expected; they can log in without issue using their domain credentials and AD group ACLs are working. However, I have one Windows 7 user who is complaining he can't log in. When I looked on the server I see no logs for his machine. I did a initial traffic sniff and I see his machine is pinging the Samba server on port 80. I want to clearly state I don't think this is a samba problem. The overall majority of users are not complaining about this server. Based on the information I have today, Samba doesn't even come into play as the Win7 box pings the wrong port. I do still need to verify that the client is starting initially on port 80, and not trying 445, failing, caching the failure, and then falling back to 80 on subsequent attempts. So, I want to pose the following question to the list: has anyone seen this? I shoulder surfed and I don't believe it to be user error at this time. I have a sit-down with the user tomorrow to try and resolve this. However, I currently believe this is a client side issue and I don't know what to check client side. (I'm a Linux admin, not Windows) Can any of the Windows guys on this list advise? Thanks! -- Tom Noonan II ESTL Technician - Randstad -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Samba4+windows 7
Hello list, Iam using samba 4 alpha 21, I have a client with windows 7, this pc join suceful to domain, but the problem consist when it search a shared folder en smb.conf, for example a client with windows xp do not have problem with shared folder in samba4, windows 7 have problem with shared resource. somebody can help me. -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Windows 7 attempting to access Samba over port 80
Since it is port 80, can you capture the contents of the packets? It might be Outlook trying to autoconfigure a mail account? Outlook will poke around on several ports trying to locate a mail server. I believe Windows clients should try to connect on port 445 then fall back to 137-139.The only way samba would use port 80 is if you were using an SSL tunnel BUT I don't think Windows client natively supports that. On 05/29/12 11:15, Tom Noonan II wrote: Good Morning: I'm running a domain-joined Samba 3.6 server. For the majority of users it is working as expected; they can log in without issue using their domain credentials and AD group ACLs are working. However, I have one Windows 7 user who is complaining he can't log in. When I looked on the server I see no logs for his machine. I did a initial traffic sniff and I see his machine is pinging the Samba server on port 80. I want to clearly state I don't think this is a samba problem. The overall majority of users are not complaining about this server. Based on the information I have today, Samba doesn't even come into play as the Win7 box pings the wrong port. I do still need to verify that the client is starting initially on port 80, and not trying 445, failing, caching the failure, and then falling back to 80 on subsequent attempts. So, I want to pose the following question to the list: has anyone seen this? I shoulder surfed and I don't believe it to be user error at this time. I have a sit-down with the user tomorrow to try and resolve this. However, I currently believe this is a client side issue and I don't know what to check client side. (I'm a Linux admin, not Windows) Can any of the Windows guys on this list advise? Thanks! -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Windows 7 attempting to access Samba over port 80
IIRc I have seen Windows trying to use port 80 and webdav when no port 139/445 was available. Only from the graphical shell though. This is not done at the redirector level, but up the stack when the machine can't be found using SMB. Simo. On Tue, 2012-05-29 at 14:02 -0400, Gaiseric Vandal wrote: Since it is port 80, can you capture the contents of the packets? It might be Outlook trying to autoconfigure a mail account? Outlook will poke around on several ports trying to locate a mail server. I believe Windows clients should try to connect on port 445 then fall back to 137-139.The only way samba would use port 80 is if you were using an SSL tunnel BUT I don't think Windows client natively supports that. On 05/29/12 11:15, Tom Noonan II wrote: Good Morning: I'm running a domain-joined Samba 3.6 server. For the majority of users it is working as expected; they can log in without issue using their domain credentials and AD group ACLs are working. However, I have one Windows 7 user who is complaining he can't log in. When I looked on the server I see no logs for his machine. I did a initial traffic sniff and I see his machine is pinging the Samba server on port 80. I want to clearly state I don't think this is a samba problem. The overall majority of users are not complaining about this server. Based on the information I have today, Samba doesn't even come into play as the Win7 box pings the wrong port. I do still need to verify that the client is starting initially on port 80, and not trying 445, failing, caching the failure, and then falling back to 80 on subsequent attempts. So, I want to pose the following question to the list: has anyone seen this? I shoulder surfed and I don't believe it to be user error at this time. I have a sit-down with the user tomorrow to try and resolve this. However, I currently believe this is a client side issue and I don't know what to check client side. (I'm a Linux admin, not Windows) Can any of the Windows guys on this list advise? Thanks! -- Simo Sorce Samba Team GPL Compliance Officer s...@samba.org Principal Software Engineer at Red Hat, Inc. s...@redhat.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Windows 7 attempting to access Samba over port 80
In my case -- same symptoms (attempted connection via TCP port 80), there were over 200 6to4 adapters which I removed and then was able to connect to samba share. http://answers.microsoft.com/en-us/windows/forum/windows_7-networking/windows-7-system-error-1231-network-location/07c46785-cd1b-42c9-aa94-0adf1f4e2516 From: simo i...@samba.org To: gaiseric.van...@gmail.com, Cc: samba@lists.samba.org Date: 05/29/2012 02:13 PM Subject:Re: [Samba] Windows 7 attempting to access Samba over port 80 Sent by:samba-boun...@lists.samba.org IIRc I have seen Windows trying to use port 80 and webdav when no port 139/445 was available. Only from the graphical shell though. This is not done at the redirector level, but up the stack when the machine can't be found using SMB. Simo. On Tue, 2012-05-29 at 14:02 -0400, Gaiseric Vandal wrote: Since it is port 80, can you capture the contents of the packets? It might be Outlook trying to autoconfigure a mail account? Outlook will poke around on several ports trying to locate a mail server. I believe Windows clients should try to connect on port 445 then fall back to 137-139.The only way samba would use port 80 is if you were using an SSL tunnel BUT I don't think Windows client natively supports that. On 05/29/12 11:15, Tom Noonan II wrote: Good Morning: I'm running a domain-joined Samba 3.6 server. For the majority of users it is working as expected; they can log in without issue using their domain credentials and AD group ACLs are working. However, I have one Windows 7 user who is complaining he can't log in. When I looked on the server I see no logs for his machine. I did a initial traffic sniff and I see his machine is pinging the Samba server on port 80. I want to clearly state I don't think this is a samba problem. The overall majority of users are not complaining about this server. Based on the information I have today, Samba doesn't even come into play as the Win7 box pings the wrong port. I do still need to verify that the client is starting initially on port 80, and not trying 445, failing, caching the failure, and then falling back to 80 on subsequent attempts. So, I want to pose the following question to the list: has anyone seen this? I shoulder surfed and I don't believe it to be user error at this time. I have a sit-down with the user tomorrow to try and resolve this. However, I currently believe this is a client side issue and I don't know what to check client side. (I'm a Linux admin, not Windows) Can any of the Windows guys on this list advise? Thanks! -- Simo Sorce Samba Team GPL Compliance Officer s...@samba.org Principal Software Engineer at Red Hat, Inc. s...@redhat.com -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] wbinfo -u - Error looking up domain users
Hi People , I have this configuration in my samba´s server and when I use this command : wbinfo -u This message is showed : Error looking up domain users. I need find AD users to use samba. Thanks in advance, Eugenio, wbinfo --sequence SV0-SP : 1 BUILTIN : 1 LIVROS : DISCONNECTED REDE_SP : 4516361 smbclient -L localhost -U% Domain=[REDE_SP] OS=[Unix] Server=[Samba 3.0.10-1.4E.9] Sharename Type Comment - --- rip_j Disk Pasta rip para setor Juridico rip_a Disk Pasta Compartilhada do rip2 troca Disk Pasta Compartilhada de Troca troca Disk Pasta Compartilhada de Troca2 atual Disk Pasta Compartilhada do setor IPC$ IPC IPC Service (Samba 3.0.10-1.4E.9) ADMIN$ IPC IPC Service (Samba 3.0.10-1.4E.9) Domain=[REDE_SP] OS=[Unix] Server=[Samba 3.0.10-1.4E.9] Server Comment - --- SV70-SP Samba 3.0.10-1.4E.9 Workgroup Master - --- REDE_SP SV4-SP wbinfo -t checking the trust secret via RPC calls failed error code was (0x0) Could not check secret wbinfo -u Error looking up domain users wbinfo -g BUILTIN+System Operators BUILTIN+Replicators BUILTIN+Guests BUILTIN+Power Users BUILTIN+Print Operators BUILTIN+Administrators BUILTIN+Account Operators BUILTIN+Backup Operators BUILTIN+Users vi /etc/samba/smb.conf netbios name = SV0-SP comment = Servidor de Arquivos workgroup = MATRIZNT1_SP security = domain ;printing = cups ;printcap name = cups ;printcap cache time = 750 ;cups options = raw map to guest = Bad User passdb backend = tdbsam ; ldap admin dn = cn=Administrator,dc=serverinterno,dc=com,dc=br ; ldap suffix = dc=serverinterno,dc=com,dc=br domain logons = no ;log level = 2 log level = 3 log file = /var/log/samba/log.%m ; vfs object = full_audit syslog only = no local master = no wins server = 127.27.0.17 wins support = no name resolve order = lmhosts host wins bcast dns proxy = yes #socket options = IPTOS_LOWDELAY TCP_NODELAY SO_SNDBUF=8192 SO_RCVBUF=8192 socket options = IPTOS_LOWDELAY TCP_NODELAY SO_KEEPALIVE SO_RCVBUF=65535 SO_SNDBUF=65535 os level = 120 oplocks = yes level2 oplocks = yes add machine script = preferred master = auto load printers = no encrypt passwords = yes client use spnego = yes realm = SERVERINTERNO.COM.BR idmap uid = 1-3 idmap gid = 1-3 template shell = /sbin/nologin winbind cache time = 600 winbind enum users = yes winbind enum groups = yes winbind separator = + winbind use default domain = no template homedir = /home/%D/%U ldap idmap suffix = ou=Idmap ldap machine suffix = ou=Computers hosts allow = 127.22. max disk size = 0 password server = 127.27.0.190 create mask = 2777 directory mask = 2777 hide dot files = no guest ok = yes -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] wbinfo -u - Error looking up domain users
Hello, perhaps you have something bad with kerberos? To have a samba server in an Active Directory I use kerberos so kerberos must be well configured and TIME synced between samba server and the Domain controller (I use ntpdate). Second: Must have the samba server joined to the domain, so the commands: net ads testjoin wbinfo -u wbinfo -g must give succesfull result (with the winbind daemon running of course) And finally, to use the Active Directory's users on samba server the file /etc/nsswitch should have winbind directive on passwd and group in order to recognize those users. Detailed explanation of samba, kerberos and winbind can be found at: http://wiki.samba.org/index.php/Samba__Active_Directory And some minor changes at /etc/resolv.conf and /etc/hosts can be made in order to avoid problems with dns. Zorry i'm zleeppy :o I hope this mail has given you some clue night! -- David El 29/05/12 22:21, Carlos Eduardo escribió: Hi People , I have this configuration in my samba´s server and when I use this command : wbinfo -u This message is showed : Error looking up domain users. I need find AD users to use samba. Thanks in advance, Eugenio, wbinfo --sequence SV0-SP : 1 BUILTIN : 1 LIVROS : DISCONNECTED REDE_SP : 4516361 smbclient -L localhost -U% Domain=[REDE_SP] OS=[Unix] Server=[Samba 3.0.10-1.4E.9] Sharename Type Comment - --- rip_j Disk Pasta rip para setor Juridico rip_a Disk Pasta Compartilhada do rip2 troca Disk Pasta Compartilhada de Troca trocaDisk Pasta Compartilhada de Troca2 atual Disk Pasta Compartilhada do setor IPC$IPC IPC Service (Samba 3.0.10-1.4E.9) ADMIN$ IPC IPC Service (Samba 3.0.10-1.4E.9) Domain=[REDE_SP] OS=[Unix] Server=[Samba 3.0.10-1.4E.9] Server Comment ---- SV70-SP Samba 3.0.10-1.4E.9 WorkgroupMaster ---- REDE_SP SV4-SP wbinfo -t checking the trust secret via RPC calls failed error code was (0x0) Could not check secret wbinfo -u Error looking up domain users wbinfo -g BUILTIN+System Operators BUILTIN+Replicators BUILTIN+Guests BUILTIN+Power Users BUILTIN+Print Operators BUILTIN+Administrators BUILTIN+Account Operators BUILTIN+Backup Operators BUILTIN+Users vi /etc/samba/smb.conf netbios name = SV0-SP comment = Servidor de Arquivos workgroup = MATRIZNT1_SP security = domain ;printing = cups ;printcap name = cups ;printcap cache time = 750 ;cups options = raw map to guest = Bad User passdb backend = tdbsam ; ldap admin dn = cn=Administrator,dc=serverinterno,dc=com,dc=br ; ldap suffix = dc=serverinterno,dc=com,dc=br domain logons = no ;log level = 2 log level = 3 log file = /var/log/samba/log.%m ; vfs object = full_audit syslog only = no local master = no wins server = 127.27.0.17 wins support = no name resolve order = lmhosts host wins bcast dns proxy = yes #socket options = IPTOS_LOWDELAY TCP_NODELAY SO_SNDBUF=8192 SO_RCVBUF=8192 socket options = IPTOS_LOWDELAY TCP_NODELAY SO_KEEPALIVE SO_RCVBUF=65535 SO_SNDBUF=65535 os level = 120 oplocks = yes level2 oplocks = yes add machine script = preferred master = auto load printers = no encrypt passwords = yes client use spnego = yes realm = SERVERINTERNO.COM.BR idmap uid = 1-3 idmap gid = 1-3 template shell = /sbin/nologin winbind cache time = 600 winbind enum users = yes winbind enum groups = yes winbind separator = + winbind use default domain = no template homedir = /home/%D/%U ldap idmap suffix = ou=Idmap ldap machine suffix = ou=Computers hosts allow = 127.22. max disk size = 0 password server = 127.27.0.190 create mask = 2777 directory mask = 2777 hide dot files = no guest ok = yes -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] cross-compile samba4
On Tue, 2012-05-29 at 12:52 +0100, Mike Howard wrote: On 28/05/2012 23:07, Andrew Bartlett wrote: Great news! I'm pretty sure you are the first person to have cross-compiled Samba4, or if not, the first person to have done it in a long time. (The ability was there, but you know the difference between theory and practice). Could you write up in the wiki what you needed to do, and if there are any small changes we could make to the build system to make it easier next time? Andrew Bartlett Sure, I can do that. I assume I just need to create an account? Yes, Then let me know the name, so I can add you as approved. Andrew Bartlett -- Andrew Bartletthttp://samba.org/~abartlet/ Authentication Developer, Samba Team http://samba.org -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] idmap backend = ad and Active Directory 2008R2
Hello All, I'm trying to set up linux ssh/shell authentication on a CentOS_6.2 server running smbd version 3.5.10-114 using winbind/smb/pam. We've done this successfully using the tdb backend but wanted users to get the same UID/GID on every machine. Switched to rid for the backend but users still got a foreign number for UID and their default group was always Domain Users. So I'm trying to get a working setup for using our AD and the Windows Attributes for their UID and GID. After about a week of crawling the web and rooting through others' copies of smb.conf I've assembled the following config file. I think I understand what every line does and have pared it down to the minimum. UID's are the same as employeeID and should always be 5000-7. Anyone logging in NOT from the AD will be in /etc/passwd and /etc/grp so there shouldn't be any need for a local tdb backend. wbinfo -g or -u returns AD groups and users but getent fails for any AD user or group. And it still doesn't work. In fact, it doesn't allow logins at all (every SSH attempt kicks up an invalid user line across syslog). Or, if I roll back far enough to the rid version, I can log in but get the wrong (rid-based) UID and GID. Can anyone tell me what's wrong with the below file? Or at least provide a working example? Is there a complete howto anywhere for SMB3.5 and AD2008R2? Hope to hear from you, rrue seattle /etc/samba/smb.conf: [global] workgroup = FOO password server = dcx.foo.org dcy.foo.org dcz.foo.org realm = FOO.ORG security = ads winbind use default domain = true winbind offline logon = false log file = /var/log/samba/%m.log max log size = 100 socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192 dns proxy = no idmap config FHCRC : default = yes idmap config FHCRC : backend = ad idmap config FHCRC : schema_mode = rfc2307 idmap config FHCRC : range = 5000 - 7 allow trusted domains = No winbind enum users = Yes winbind enum groups = Yes winbind nested groups = Yes -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] Splitting up directories with Samba variables
On Fri, May 25, 2012 at 10:16:47PM -0500, Heather Choi wrote: In my smb.conf file, I currently I have a user share definition as: [userdir] path = /samba/%U writeable = yes The problem is, the user pool is in the tens of thousands, so it is not practical to have that many directories within /samba. I'd like to somehow dynamically configure the path with subdirectories, using the first, and second letter of the username as the first and second nested subdirectory. So the share path for username JOHN would point dynamically to /samba/J/O/JOHN. Does anyone know how to accomplish this using the user session variable %U? Is there any concept of using a sub-string for a Samba variable? No, there's no way I can think of to do this. Anyone else have any good ideas ? -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] BUILD Systems for Samba 4.0 (python-based waf in particular)
(This is the Team's agreed statement explaining the role of the two build systems in Samba 4.0. Please, if you have can't use the waf build system, and so need the autoconf system for 4.0, reply and let us know your reasons and needs here or in the specific threads I'm raising on samba-technical). Thanks, Andrew Bartlett BUILDING SAMBA 4.0 (which build system to use and why) === The waf build - Samba 4.0 ships with a new build system, based on waf. A background to this build system can be found at https://wiki.samba.org/index.php/Waf This is the build system that is used when you run ./configure make in the top level of a Samba 4.0 release tree. For the vast majority of our users, this is the build system you should use. It supports parallel and incremental builds, and builds the whole Samba suite, the file server, the print server, the NT4 domain controller, winbind, the AD Domain Controller, the client libraries and the python libraries. A key feature for many of our distributors and OEMs is that despite the range of additional features, the resulting binaries and libraries are substantially smaller, because we use shared libraries extensively. For distributions that have a requirement to use the system-supplied Kerberos library, we support building against a Heimdal or system MIT Kerberos library, provided the version is recent enough (otherwise we will use our internal version of Heimdal). Please note that builds with MIT krb5 support will not have AD DC features. By the time of the first release candidate, we will finish renaming the binaries that we ship so that where we provide a tool under a name that was used in Samba 3.x, it continues to behave in the same way it always has. This will ensure that our change in build system does not impact on our user's ability to use Samba as they always have. For developers, this build system backs a comprehensive 'make test', which provides code coverage of around 48% of our code by line: https://build.samba.org/lcov/data/coverage/samba_4_0_test/ This build system also implements important features such as ABI checking (which protects you as users from accidental changes to our published libraries), symbol versions and dependency checked incremental rebuilds after header-file changes. The waf build also assists developers by providing fully-linked binaries that run from bin/ without needing to set LD_LIBRARY_PATH. For users who do not have python installed on their systems, we provide a install_with_python.sh script, which will install a local copy of python sufficient to run the build system, without impacting on the rest of the system. Within this requirement, we expect that this build will run on all our supported platforms, and will actively deal with any portability issues that users can bring to our attention. For all these reasons, we highly recommend this new build system to all our users, for whatever purpose you want to put Samba to. The autoconf build -- For a small number of users, the requirement to have access to Python 2.4 and perl will be unacceptable, and for these users we continue to provide the 'autoconf' build system used in Samba 3.x under the source3/. This will build fewer parts of Samba, but should not be seen as 'the file server build' (typical file server deployments should use the top level build), but as a measure provided with limited features for systems and organisations unable to meet the requirements for the new build system. If you do need to use the autoconf build system, please let us know: both why you cannot use the 'waf' build in the top level, and what features of the source3 build that you require. We need this information to assess the continuing demand for this parallel infrastructure, and to determine which features need to remain available in both build systems. Optional Libraries -- To assist users and distributors to build Samba with the full feature set, by the first release candidate the build system will abort if our dependent libraries and their header files are not found on the target system. This will mean for example, that xattr, acl and ldap headers must be installed for the default build to complete. The configure system will check for these headers, and the error message will indicate: - the required header and library - the option (such as --without-acl-support) that can be specified to skip this requirement, and - the feature (ACL support optional for file servers, mandatory for AD Domain Controller) being skipped. This will assist users and in particular distributors in building fully functional packages, while allowing those on systems truly without these facilities to continue to build Samba after careful consideration. -- Andrew Bartletthttp://samba.org/~abartlet/ Authentication Developer, Samba Team http://samba.org -- To
Re: [Samba] idmap backend = ad and Active Directory 2008R2
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hey, /etc/samba/smb.conf: [global] workgroup = FOO password server = dcx.foo.org dcy.foo.org dcz.foo.org realm = FOO.ORG security = ads winbind use default domain = true winbind offline logon = false log file = /var/log/samba/%m.log max log size = 100 socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192 dns proxy = no idmap config FHCRC : default = yes idmap config FHCRC : backend = ad idmap config FHCRC : schema_mode = rfc2307 idmap config FHCRC : range = 5000 - 7 Is this option FHCRC correct, I think your DOMAIN is FOO, then it must be idmap config FOO : backend = ad I hope it will help Michael -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.12 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iQEcBAEBAgAGBQJPxalDAAoJEL/EwdcvY5PEUgMH/jQevJm5gqHJvKujR0dWb7Ev sn1vP5tTetTD0Bq+Cpdw8xcR4/yrYQhKFSMeZutoyxdaAt6muFxfLjQKUYsX17Fb 5XfYa17w8fb53x8r+QlWJFquh9c1BPnOCwtDVQlsZ8gJBVq0mVnucQAexbLdKqlt tVQhvdsDDUOMcZLK3KBHJ7ZXF2Sf+t07tzT3ID2x6UJ0Ma23khxwAUIq0NZCMlu5 KQQR+sYHMQiP6tUAEPQBDY/UGNl+GXULHeGH2Qm1LmPV8IFgyAdEPmPLWBJb9H1d x5A/bO7Z1sxfE/IT/rXjA+WUKNs1oUmOqCXQb6UHXaOuLaWboNAPzfncUV5fBoQ= =4gvv -END PGP SIGNATURE- -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[Samba] Prevent Samba clients from changing group ownership?
How can I prevent Samba clients from changing the group ownership of files? With the security mask parameter I can prevent Samba clients from changing some permission bits, but I can't find a parameter to prevent changing the group ownership -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
Re: [Samba] idmap backend = ad and Active Directory 2008R2
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Hallo have you enabled Unix Integration in your Windows Server ? If yes, have you a User with an uid/gid in the Unix Extension ? Michael -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.12 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/ iQEcBAEBAgAGBQJPxbCsAAoJEL/EwdcvY5PE2CkH/i75YPSSmQ1M7nUNyYn7vaOX zD99l7Ej0kKEOFbK/+h7yFAwTmsWzqt0I1EA5+5E2+7aO5v60qXgvfoLDOFoCT1w PuKIKaaXHWU0kM23UNOJ7qt24NqfYODVUIkWfPcIwBmxzYKg4DwtAylQB84l7RVr IftLIYJMBgW8SS51RZ1C7lerdV5Tkt3KIO/JaYtMIClt/PVRPzTHN4vTZk1278VW pN9nx7AzHg0J4vgxY8PJ5YH3qxZZshSTT7h2OJ8tM2If/hZWNEKQJRFO966r5P9C fRv69czxJDY9E9OD1Wzl5ZBHtBleQ3tS8AkjSW85vcDdSH7IQW12IC1lmwoKPzM= =0cMy -END PGP SIGNATURE- -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via 3085225 s3: fix compile of krb5 locator on Solaris from 27503ce freebsd9: support both WAF MIT krb5 build and autoconf build against MIT krb5 http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit 3085225e72c75abf84d7740334459cd971ee4c56 Author: Björn Jacke b...@sernet.de Date: Tue May 29 08:01:40 2012 +0200 s3: fix compile of krb5 locator on Solaris the krb5 locator plugin on Solaris needs LIBREPLACE_LIBS (bug #8732) Autobuild-User: Björn Jacke b...@sernet.de Autobuild-Date: Tue May 29 09:58:42 CEST 2012 on sn-devel-104 --- Summary of changes: source3/Makefile.in |2 +- 1 files changed, 1 insertions(+), 1 deletions(-) Changeset truncated at 500 lines: diff --git a/source3/Makefile.in b/source3/Makefile.in index 88872ad..132cd6f 100644 --- a/source3/Makefile.in +++ b/source3/Makefile.in @@ -2754,7 +2754,7 @@ bin/vlp: $(BINARY_PREREQS) $(VLP_OBJ) $(LIBTDB) $(LIBTALLOC) bin/winbind_krb5_locator.@SHLIBEXT@: $(BINARY_PREREQS) $(WINBIND_KRB5_LOCATOR_OBJ) $(LIBWBCLIENT) @echo Linking $@ @$(SHLD) $(LDSHFLAGS) -o $@ $(WINBIND_KRB5_LOCATOR_OBJ) $(LIBWBCLIENT_LIBS) $(KRB5LIBS) \ - @SONAMEFLAG@`basename $@` + $(LIBREPLACE_LIBS) @SONAMEFLAG@`basename $@` bin/pam_winbind.@SHLIBEXT@: $(BINARY_PREREQS) $(PAM_WINBIND_OBJ) $(LIBTALLOC) $(LIBWBCLIENT) @echo Linking shared library $@ -- Samba Shared Repository
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via 9102ccf s4:torture report connection error via torture_fail via aa7cd05 s3:smbd/smb2_find add a debug message via 1bd3c0a s3:smbd/smb2_getinfo add a debug message via f94d3d1 s3:smbd/smb2_setinfo add a debug message via ac6417d s3:smbd/smb2_read improve debug message via f61c241 libcli/smb: add some more FSCTL_* defines via 244cf05 s3:smb2cli_ioctl: fix requests without output_buffer.length 0 against windows from 3085225 s3: fix compile of krb5 locator on Solaris http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit 9102ccf648e4f1fb4c20fc3aece45364e94294e0 Author: Christian Ambach a...@samba.org Date: Thu May 10 14:51:13 2012 +0200 s4:torture report connection error via torture_fail to make smbtorture report the error instead of complaining about missing torture_ call Signed-off-by: Stefan Metzmacher me...@samba.org Autobuild-User: Stefan Metzmacher me...@samba.org Autobuild-Date: Tue May 29 13:57:42 CEST 2012 on sn-devel-104 commit aa7cd05e5b2efc45985a92c9f329099d40516876 Author: Christian Ambach a...@samba.org Date: Fri May 11 19:03:50 2012 +0200 s3:smbd/smb2_find add a debug message like the ones in the other calls that check for max sizes Signed-off-by: Stefan Metzmacher me...@samba.org commit 1bd3c0aefbaa3ee78b9a4bcae97d2a4b5d09d76b Author: Christian Ambach a...@samba.org Date: Fri May 11 19:03:32 2012 +0200 s3:smbd/smb2_getinfo add a debug message like the ones in the other calls that check for max sizes Signed-off-by: Stefan Metzmacher me...@samba.org commit f94d3d17e8a4ee7df0f1a8a95a23b4d6de40c089 Author: Christian Ambach a...@samba.org Date: Fri May 11 19:02:21 2012 +0200 s3:smbd/smb2_setinfo add a debug message similar to the ones present in other paths Signed-off-by: Stefan Metzmacher me...@samba.org commit ac6417dfc6f0571dfb357d131222daf054abe7e6 Author: Christian Ambach a...@samba.org Date: Fri May 11 19:01:43 2012 +0200 s3:smbd/smb2_read improve debug message make the message similar to the ones in other paths Signed-off-by: Stefan Metzmacher me...@samba.org commit f61c24166e2b98a1ac1ee6ad76b82050b39faccf Author: Stefan Metzmacher me...@samba.org Date: Tue May 29 10:08:51 2012 +0200 libcli/smb: add some more FSCTL_* defines metze commit 244cf059f09fcbf7d5a85c97deed8f94756e8a4a Author: Stefan Metzmacher me...@samba.org Date: Tue May 29 07:27:14 2012 +0200 s3:smb2cli_ioctl: fix requests without output_buffer.length 0 against windows This fixes DCERPC over SMB2 against windows servers. metze --- Summary of changes: libcli/smb/smb2cli_ioctl.c |2 +- libcli/smb/smb_constants.h |8 source3/smbd/smb2_find.c|4 source3/smbd/smb2_getinfo.c |8 source3/smbd/smb2_read.c|3 ++- source3/smbd/smb2_setinfo.c |4 source4/torture/smb2/smb2.c |9 - 7 files changed, 35 insertions(+), 3 deletions(-) Changeset truncated at 500 lines: diff --git a/libcli/smb/smb2cli_ioctl.c b/libcli/smb/smb2cli_ioctl.c index 2881c74..9836469 100644 --- a/libcli/smb/smb2cli_ioctl.c +++ b/libcli/smb/smb2cli_ioctl.c @@ -77,7 +77,7 @@ struct tevent_req *smb2cli_ioctl_send(TALLOC_CTX *mem_ctx, if (in_output_buffer) { output_buffer_offset = SMB2_HDR_BODY+0x38; - if (input_buffer_length 0) { + if (input_buffer_length 0 output_buffer_length 0) { uint32_t tmp; output_buffer_offset += input_buffer_length; tmp = output_buffer_offset; diff --git a/libcli/smb/smb_constants.h b/libcli/smb/smb_constants.h index 4b7d1f2..aaf87c1 100644 --- a/libcli/smb/smb_constants.h +++ b/libcli/smb/smb_constants.h @@ -356,6 +356,7 @@ enum csc_policy { #define FSCTL_DFS 0x0006 #define FSCTL_DFS_GET_REFERRALS(FSCTL_DFS | FSCTL_ACCESS_ANY | 0x0194 | FSCTL_METHOD_BUFFERED) +#define FSCTL_DFS_GET_REFERRALS_EX (FSCTL_DFS | FSCTL_ACCESS_ANY | 0x01B0 | FSCTL_METHOD_BUFFERED) #define FSCTL_FILESYSTEM 0x0009 #define FSCTL_REQUEST_OPLOCK_LEVEL_1(FSCTL_FILESYSTEM | FSCTL_ACCESS_ANY | 0x | FSCTL_METHOD_BUFFERED) @@ -377,6 +378,9 @@ enum csc_policy { #define FSCTL_CREATE_OR_GET_OBJECT_ID (FSCTL_FILESYSTEM | FSCTL_ACCESS_ANY | 0x00C0 | FSCTL_METHOD_BUFFERED) #define FSCTL_SET_SPARSE (FSCTL_FILESYSTEM | FSCTL_ACCESS_ANY | 0x00C4 | FSCTL_METHOD_BUFFERED) #define FSCTL_QUERY_ALLOCATED_RANGES (FSCTL_FILESYSTEM | FSCTL_ACCESS_READ | 0x00CC | FSCTL_METHOD_NEITHER) +#define FSCTL_FILE_LEVEL_TRIM (FSCTL_FILESYSTEM |
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via c17f981 s4-torture: verify #8373 and add ndr nbt tests for LOGON_PRIMARY_QUERY nbt_netlogon_requests. from 9102ccf s4:torture report connection error via torture_fail http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit c17f9817453a37e94e77a541d6ba675d1d29431e Author: Günther Deschner g...@samba.org Date: Fri May 25 14:50:11 2012 +0200 s4-torture: verify #8373 and add ndr nbt tests for LOGON_PRIMARY_QUERY nbt_netlogon_requests. Guenther Autobuild-User: Günther Deschner g...@samba.org Autobuild-Date: Tue May 29 15:49:10 CEST 2012 on sn-devel-104 --- Summary of changes: selftest/skip |1 + source4/torture/ndr/nbt.c | 37 - 2 files changed, 37 insertions(+), 1 deletions(-) Changeset truncated at 500 lines: diff --git a/selftest/skip b/selftest/skip index f2f6b69..bd11312 100644 --- a/selftest/skip +++ b/selftest/skip @@ -102,3 +102,4 @@ bench # don't run benchmarks in our selftest ^samba4.drs.delete_object.python # flakey test ^samba4.rpc.unixinfo # This contains a server-side getpwuid call which hangs the server when nss_winbindd is in use ^samba.tests.dcerpc.unix # This contains a server-side getpwuid call which hangs the server when nss_winbindd is in use +^samba.*.local.ndr.nbt_netlogon_packet # until bug #8373 is fixed diff --git a/source4/torture/ndr/nbt.c b/source4/torture/ndr/nbt.c index 21cd571..a753c2f 100644 --- a/source4/torture/ndr/nbt.c +++ b/source4/torture/ndr/nbt.c @@ -2,7 +2,7 @@ Unix SMB/CIFS implementation. test suite for nbt ndr operations - Copyright (C) Guenther Deschner 2010,2011 + Copyright (C) Guenther Deschner 2010-2012 This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by @@ -136,12 +136,42 @@ static bool nbt_netlogon_packet_check(struct torture_context *tctx, return true; } +static const uint8_t nbt_netlogon_packet_logon_primary_query_data[] = { + 0x07, 0x00, 0x58, 0x50, 0x44, 0x41, 0x54, 0x45, 0x56, 0x2d, 0x50, 0x52, + 0x4f, 0x00, 0x5c, 0x4d, 0x41, 0x49, 0x4c, 0x53, 0x4c, 0x4f, 0x54, 0x5c, + 0x4e, 0x45, 0x54, 0x5c, 0x47, 0x45, 0x54, 0x44, 0x43, 0x38, 0x31, 0x37, + 0x00, 0x00, 0x58, 0x00, 0x50, 0x00, 0x44, 0x00, 0x41, 0x00, 0x54, 0x00, + 0x45, 0x00, 0x56, 0x00, 0x2d, 0x00, 0x50, 0x00, 0x52, 0x00, 0x4f, 0x00, + 0x00, 0x00, 0x0b, 0x00, 0x00, 0x00, 0xff, 0xff, 0xff, 0xff +}; + +static bool nbt_netlogon_packet_logon_primary_query_check(struct torture_context *tctx, + struct nbt_netlogon_packet *r) +{ + torture_assert_int_equal(tctx, r-command, LOGON_PRIMARY_QUERY, command); + torture_assert_str_equal(tctx, r-req.pdc.computer_name, XPDATEV-PRO, computer_name); + torture_assert_str_equal(tctx, r-req.pdc.mailslot_name, \\MAILSLOT\\NET\\GETDC817, mailslot_name); + torture_assert_int_equal(tctx, r-req.pdc._pad.length, 1, _pad.length); + torture_assert_int_equal(tctx, r-req.pdc._pad.data[0], 0, _pad.data); + torture_assert_str_equal(tctx, r-req.pdc.unicode_name, XPDATEV-PRO, unicode_name); + torture_assert_int_equal(tctx, r-req.pdc.nt_version, 0x000b, nt_version); + torture_assert_int_equal(tctx, r-req.pdc.lmnt_token, 0x, lmnt_token); + torture_assert_int_equal(tctx, r-req.pdc.lm20_token, 0x, lm20_token); + + return true; +} + struct torture_suite *ndr_nbt_suite(TALLOC_CTX *ctx) { struct torture_suite *suite = torture_suite_create(ctx, nbt); torture_suite_add_ndr_pull_test(suite, nbt_netlogon_packet, netlogon_logon_request_req_data, netlogon_logon_request_req_check); + torture_suite_add_ndr_pull_test(suite, + nbt_netlogon_packet, + nbt_netlogon_packet_logon_primary_query_data, + nbt_netlogon_packet_logon_primary_query_check); + torture_suite_add_ndr_pull_test(suite, nbt_netlogon_response2, netlogon_logon_request_resp_data, netlogon_logon_request_resp_check); torture_suite_add_ndr_pull_test(suite, @@ -159,5 +189,10 @@ struct torture_suite *ndr_nbt_suite(TALLOC_CTX *ctx) data_blob_const(nbt_netlogon_packet_data, sizeof(nbt_netlogon_packet_data)), nbt_netlogon_packet_check); + torture_suite_add_ndr_pullpush_test(suite, + nbt_netlogon_packet, + data_blob_const(nbt_netlogon_packet_logon_primary_query_data, sizeof(nbt_netlogon_packet_logon_primary_query_data)), +
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via cee146f s3:smb2_ioctl: verify credit charge via 8b4e677 s3:smb2_ioctl: add more validation checks via 4ac57a3 s3:smb2_ioctl: add some more validation checks from c17f981 s4-torture: verify #8373 and add ndr nbt tests for LOGON_PRIMARY_QUERY nbt_netlogon_requests. http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit cee146ff7c2250d3c723f19357fd1c8541191d08 Author: Stefan Metzmacher me...@samba.org Date: Tue May 29 14:08:43 2012 +0200 s3:smb2_ioctl: verify credit charge Based on a patch from Christian Ambach a...@samba.org. metze Autobuild-User: Stefan Metzmacher me...@samba.org Autobuild-Date: Tue May 29 18:55:29 CEST 2012 on sn-devel-104 commit 8b4e6777206d7df4174f9d61830d1c337a46089f Author: Stefan Metzmacher me...@samba.org Date: Tue May 29 13:25:31 2012 +0200 s3:smb2_ioctl: add more validation checks metze commit 4ac57a3c965603684c55dbc6b02d882331d85ede Author: Stefan Metzmacher me...@samba.org Date: Tue May 29 12:06:22 2012 +0200 s3:smb2_ioctl: add some more validation checks Based on a patch from Christian Ambach a...@samba.org. metze --- Summary of changes: source3/smbd/smb2_ioctl.c | 141 1 files changed, 128 insertions(+), 13 deletions(-) Changeset truncated at 500 lines: diff --git a/source3/smbd/smb2_ioctl.c b/source3/smbd/smb2_ioctl.c index cd303ed..0d17407 100644 --- a/source3/smbd/smb2_ioctl.c +++ b/source3/smbd/smb2_ioctl.c @@ -46,14 +46,27 @@ NTSTATUS smbd_smb2_request_process_ioctl(struct smbd_smb2_request *req) NTSTATUS status; const uint8_t *inbody; int i = req-current_idx; + uint32_t min_buffer_offset; + uint32_t max_buffer_offset; + uint32_t min_output_offset; + uint32_t allowed_length_in; + uint32_t allowed_length_out; uint32_t in_ctl_code; uint64_t in_file_id_persistent; uint64_t in_file_id_volatile; uint32_t in_input_offset; uint32_t in_input_length; - DATA_BLOB in_input_buffer; + DATA_BLOB in_input_buffer = data_blob_null; + uint32_t in_max_input_length; + uint32_t in_output_offset; + uint32_t in_output_length; + DATA_BLOB in_output_buffer = data_blob_null; uint32_t in_max_output_length; uint32_t in_flags; + uint32_t data_length_in; + uint32_t data_length_out; + uint32_t data_length_tmp; + uint32_t data_length_max; struct tevent_req *subreq; status = smbd_smb2_request_verify_sizes(req, 0x39); @@ -67,9 +80,16 @@ NTSTATUS smbd_smb2_request_process_ioctl(struct smbd_smb2_request *req) in_file_id_volatile = BVAL(inbody, 0x10); in_input_offset = IVAL(inbody, 0x18); in_input_length = IVAL(inbody, 0x1C); + in_max_input_length = IVAL(inbody, 0x20); + in_output_offset= IVAL(inbody, 0x24); + in_output_length= IVAL(inbody, 0x28); in_max_output_length= IVAL(inbody, 0x2C); in_flags= IVAL(inbody, 0x30); + min_buffer_offset = SMB2_HDR_BODY + req-in.vector[i+1].iov_len; + max_buffer_offset = min_buffer_offset + req-in.vector[i+2].iov_len; + min_output_offset = min_buffer_offset; + /* * InputOffset (4 bytes): The offset, in bytes, from the beginning of * the SMB2 header to the input data buffer. If no input data is @@ -78,25 +98,120 @@ NTSTATUS smbd_smb2_request_process_ioctl(struct smbd_smb2_request *req) * 49 If no input data is required for the FSCTL/IOCTL command being * issued, Windows-based clients set this field to any value. */ - if ((in_input_length 0) - (in_input_offset != (SMB2_HDR_BODY + req-in.vector[i+1].iov_len))) { + allowed_length_in = 0; + if ((in_input_offset 0) (in_input_length 0)) { + uint32_t tmp_ofs; + + if (in_input_offset min_buffer_offset) { + return smbd_smb2_request_error(req, + NT_STATUS_INVALID_PARAMETER); + } + if (in_input_offset max_buffer_offset) { + return smbd_smb2_request_error(req, + NT_STATUS_INVALID_PARAMETER); + } + allowed_length_in = max_buffer_offset - in_input_offset; + + tmp_ofs = in_input_offset - min_buffer_offset; + in_input_buffer.data = (uint8_t *)req-in.vector[i+2].iov_base; + in_input_buffer.data += tmp_ofs; + in_input_buffer.length = in_input_length; + min_output_offset += tmp_ofs; + min_output_offset +=
autobuild: intermittent test failure detected
The autobuild test system has detected an intermittent failing test in the current master tree. The autobuild log of the failure is available here: http://git.samba.org/autobuild.flakey/2012-05-29-2016/flakey.log The samba3 build logs are available here: http://git.samba.org/autobuild.flakey/2012-05-29-2016/samba3.stderr http://git.samba.org/autobuild.flakey/2012-05-29-2016/samba3.stdout The source4 build logs are available here: http://git.samba.org/autobuild.flakey/2012-05-29-2016/samba4.stderr http://git.samba.org/autobuild.flakey/2012-05-29-2016/samba4.stdout The top commit at the time of the failure was: commit cee146ff7c2250d3c723f19357fd1c8541191d08 Author: Stefan Metzmacher me...@samba.org Date: Tue May 29 14:08:43 2012 +0200 s3:smb2_ioctl: verify credit charge Based on a patch from Christian Ambach a...@samba.org. metze Autobuild-User: Stefan Metzmacher me...@samba.org Autobuild-Date: Tue May 29 18:55:29 CEST 2012 on sn-devel-104
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via 40e47d0 s4:dbchecker - handle the none case correctly from cee146f s3:smb2_ioctl: verify credit charge http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit 40e47d08af8d287d1e8b66ffb96e3ed051516403 Author: Matthias Dieter Wallnöfer m...@samba.org Date: Thu May 24 20:43:17 2012 +0200 s4:dbchecker - handle the none case correctly This means that *no* fixing will be done, also the first possible one will be omitted as well. Reviewed-by: abartlet Autobuild-User: Matthias Dieter Wallnöfer m...@samba.org Autobuild-Date: Tue May 29 21:36:25 CEST 2012 on sn-devel-104 --- Summary of changes: source4/scripting/python/samba/dbchecker.py |2 +- 1 files changed, 1 insertions(+), 1 deletions(-) Changeset truncated at 500 lines: diff --git a/source4/scripting/python/samba/dbchecker.py b/source4/scripting/python/samba/dbchecker.py index 587d63c..95be1ce 100644 --- a/source4/scripting/python/samba/dbchecker.py +++ b/source4/scripting/python/samba/dbchecker.py @@ -110,7 +110,7 @@ class dbcheck(object): return True if c == 'NONE': setattr(self, all_attr, 'NONE') -return True +return False return c def do_modify(self, m, controls, msg, validate=True): -- Samba Shared Repository
[SCM] CTDB repository - branch master updated - ctdb-1.13-193-gac89da4
The branch, master has been updated via ac89da4eea98fa686408c5671a6c44c0fd1d7a58 (commit) via 0be452958db95c8253c362a1c08a1966e53a1f99 (commit) via bc55e09fdac9f743d6428bfe0be77840ad0fd1ba (commit) via 6e5cbe8fff71985e5a2fc16b7e9f2b868011ff5d (commit) from fd3b73d7e634f16cbb99d7d5a548e12f00d1aadb (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=master - Log - commit ac89da4eea98fa686408c5671a6c44c0fd1d7a58 Author: Amitay Isaacs ami...@gmail.com Date: Fri May 25 15:57:14 2012 +1000 tests: Increment RSN always in ctdb_update_record_persistent test If the record does not exist in persistent DB, RSN for that record is considered 0. To write a record, RSN for that record should be set to 1, otherwise the RSN check would fail. Signed-off-by: Amitay Isaacs ami...@gmail.com commit 0be452958db95c8253c362a1c08a1966e53a1f99 Author: Amitay Isaacs ami...@gmail.com Date: Fri May 25 11:40:38 2012 +1000 tests: Fix ctdb_fetch test (parse extra lines of output) Signed-off-by: Amitay Isaacs ami...@gmail.com commit bc55e09fdac9f743d6428bfe0be77840ad0fd1ba Author: Amitay Isaacs ami...@gmail.com Date: Thu May 24 16:46:07 2012 +1000 tests: Fix flakey behavior of ctdb_fetch test There were two issues with this test: 1. Since the messages are sent from one node to the next, if a node does not register for messages before CTDB on that nodes receives the message, it will never be seen by ctdb_fetch and it would block on receive and would not send any messages to next node. The crude solution is to sleep just before the messages are sent, so that ctdb_fetch on all nodes have registered for the messages. 2. If ctdb_fetch stops sending messages after timelimit expiry, the next node will keep waiting to receive messages in event_loop_once(). The default timeout is 30 seconds for event_loop_once(). Adding a timed event will always set the timeout value to the time remaining for the timed event to expire. Signed-off-by: Amitay Isaacs ami...@gmail.com commit 6e5cbe8fff71985e5a2fc16b7e9f2b868011ff5d Author: Amitay Isaacs ami...@gmail.com Date: Thu May 17 16:08:37 2012 +1000 server: Replace BOOL datatype with bool, True/False with true/false Signed-off-by: Amitay Isaacs ami...@gmail.com --- Summary of changes: client/ctdb_client.c |8 common/rb_tree.c |6 +++--- include/includes.h|7 +-- lib/util/util.c |2 +- server/ctdb_call.c|8 server/ctdb_control.c |2 +- server/ctdb_daemon.c |4 ++-- server/ctdb_freeze.c |2 +- server/ctdb_takeover.c|2 +- server/ctdbd.c|2 +- tests/simple/52_ctdb_fetch.sh |2 +- tests/src/ctdb_fetch.c| 17 + tests/src/ctdb_update_record_persistent.c |4 ++-- 13 files changed, 39 insertions(+), 27 deletions(-) Changeset truncated at 500 lines: diff --git a/client/ctdb_client.c b/client/ctdb_client.c index 69b0a04..9162a47 100644 --- a/client/ctdb_client.c +++ b/client/ctdb_client.c @@ -2023,7 +2023,7 @@ static void traverse_handler(struct ctdb_context *ctdb, uint64_t srvid, TDB_DATA if (data.dsize sizeof(uint32_t) || d-length != data.dsize) { DEBUG(DEBUG_ERR,(Bad data size %u in traverse_handler\n, (unsigned)data.dsize)); - state-done = True; + state-done = true; return; } @@ -2034,7 +2034,7 @@ static void traverse_handler(struct ctdb_context *ctdb, uint64_t srvid, TDB_DATA if (key.dsize == 0 data.dsize == 0) { /* end of traverse */ - state-done = True; + state-done = true; return; } @@ -2046,7 +2046,7 @@ static void traverse_handler(struct ctdb_context *ctdb, uint64_t srvid, TDB_DATA } if (state-fn(ctdb, key, data, state-private_data) != 0) { - state-done = True; + state-done = true; } state-count++; @@ -2071,7 +2071,7 @@ static int ctdb_traverse_ext(struct ctdb_db_context *ctdb_db, uint64_t srvid = (getpid() | 0xFLL60); struct traverse_state state; - state.done = False; + state.done = false; state.count = 0; state.private_data = private_data; state.fn = fn; diff --git a/common/rb_tree.c b/common/rb_tree.c index bff7c5a..6b131bc 100644 --- a/common/rb_tree.c +++ b/common/rb_tree.c @@ -447,7 +447,7 @@
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via aa01908 libcli/dns: Rename UDP-based calls to reflect their use via 42e1b94 Add myself as libcli/dns maintainer via 6a1ad76 s4-dns: Use W_ERROR_HAVE_NO_MEMORY in create_response_rr via 9d128bb s4-dns: Use proper talloc hierarchy for NS records in create_response_rr via ffc568e s4-dns: Use proper talloc hierarchy for records in create_response_rr via d5ce36b s4-dns: Remove sync dns_process via d4998cc s4-dns: Make the TCP dns server async via 230f933b s4-dns: Make the UDP dns server async via 4dbbd30 s4-dns: Remove sync dns_server_process_query via 2b6b7c6 s4-dns: Make dns_process_send asyn via 28b5219 s4-dns: Remove unused sync ask_forwarder wrapper via 03b3521 s4-dns: Make dns_server_process_query async via e2c1a8b s4-dns: Make ask_forwarder async via 54cde76 lib: add tevent_req_poll_werror via 6cdbce2 s4-dns: Create a proper talloc hierarchy in create_response_rr via 1171c56 s4-dns: Add debug output for unmappable WERROR to DNS errcode via 0b2743c s4-dns: Fix some typos via 5bc261f librpc: Fix some typos via da74d54 s4-dns: Remove some break; statements via 577a065 s4-dns: Fix an unlikely potential memleak via 1bdaf4b s4-dns: Use talloc_asprintf_append_buffer in create_response_rr via 1bbdf22 s4-dns: Add some NULL checks to create_response_rr from 40e47d0 s4:dbchecker - handle the none case correctly http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit aa0190825d4dcd9d6680638a06df5b4b7d89fd29 Author: Kai Blin k...@samba.org Date: Tue May 29 23:05:14 2012 +0200 libcli/dns: Rename UDP-based calls to reflect their use Autobuild-User: Kai Blin k...@samba.org Autobuild-Date: Wed May 30 02:35:27 CEST 2012 on sn-devel-104 commit 42e1b94f88dd47e4999af751b6d6c3278de3e422 Author: Kai Blin k...@samba.org Date: Fri May 25 07:54:39 2012 +0200 Add myself as libcli/dns maintainer commit 6a1ad76c5ef7f77475192cb17a26dd0ecc26aade Author: Kai Blin k...@samba.org Date: Wed May 30 00:30:29 2012 +0200 s4-dns: Use W_ERROR_HAVE_NO_MEMORY in create_response_rr commit 9d128bbb628bb2240cc95695c114d8befa331a6e Author: Kai Blin k...@samba.org Date: Wed May 30 00:23:33 2012 +0200 s4-dns: Use proper talloc hierarchy for NS records in create_response_rr commit ffc568eb4202e50d7ac203d491a6716bdea74e9a Author: Kai Blin k...@samba.org Date: Wed May 30 00:23:14 2012 +0200 s4-dns: Use proper talloc hierarchy for records in create_response_rr commit d5ce36b1487d679ef22198427d298ecad38b8af6 Author: Volker Lendecke v...@samba.org Date: Tue May 29 10:03:13 2012 +0200 s4-dns: Remove sync dns_process Signed-off-by: Kai Blin k...@samba.org commit d4998ccce73e1ca782b8bd40430be1a625a4c8fb Author: Volker Lendecke v...@samba.org Date: Mon May 28 18:42:54 2012 +0200 s4-dns: Make the TCP dns server async Signed-off-by: Kai Blin k...@samba.org commit 230f933babe72536a1bbb930b6c9d71df8b2b903 Author: Volker Lendecke v...@samba.org Date: Mon May 28 18:42:54 2012 +0200 s4-dns: Make the UDP dns server async Signed-off-by: Kai Blin k...@samba.org commit 4dbbd304e65cc9687fa4eaf1a1f3422588720ac4 Author: Volker Lendecke v...@samba.org Date: Mon May 28 18:23:50 2012 +0200 s4-dns: Remove sync dns_server_process_query Signed-off-by: Kai Blin k...@samba.org commit 2b6b7c64e137145dc5c3786eb8acb85645c51ba2 Author: Volker Lendecke v...@samba.org Date: Thu May 24 17:02:57 2012 +0200 s4-dns: Make dns_process_send asyn Signed-off-by: Kai Blin k...@samba.org commit 28b5219ad9abcefbee7c466ae42901d0e0d207ca Author: Volker Lendecke v...@samba.org Date: Thu May 24 16:46:29 2012 +0200 s4-dns: Remove unused sync ask_forwarder wrapper Signed-off-by: Kai Blin k...@samba.org commit 03b35211ab7ca659edf1f23fe84b49f0b3ee6ab5 Author: Volker Lendecke v...@samba.org Date: Thu May 24 14:53:47 2012 +0200 s4-dns: Make dns_server_process_query async Signed-off-by: Kai Blin k...@samba.org commit e2c1a8b87ae9fc563711e9fe5d02b915eec2cd3b Author: Volker Lendecke v...@samba.org Date: Thu May 24 13:49:41 2012 +0200 s4-dns: Make ask_forwarder async Signed-off-by: Kai Blin k...@samba.org commit 54cde76e376b7e6a781ff2841234d7f37eb6ea93 Author: Volker Lendecke v...@samba.org Date: Thu May 24 13:49:26 2012 +0200 lib: add tevent_req_poll_werror Signed-off-by: Kai Blin k...@samba.org commit 6cdbce266b6ecccf181429949104df700d58351c Author: Volker Lendecke v...@samba.org Date: Tue May 29 15:20:21 2012 +0200 s4-dns: Create a proper talloc hierarchy in create_response_rr Pair-Programmed-With: Michael Adam ob...@samba.org Signed-off-by: Kai Blin k...@samba.org
[SCM] CTDB repository - branch 1.13 updated - ctdb-1.43-12-gba94ccc
The branch, 1.13 has been updated via ba94a0a9ccad7c1de0939e74f0163ae41102 (commit) from 33a1661443d90ff4e72c219560a8c6a69c679bb5 (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=1.13 - Log - commit ba94a0a9ccad7c1de0939e74f0163ae41102 Author: Ronnie Sahlberg ronniesahlb...@gmail.com Date: Wed May 30 11:50:13 2012 +1000 Run the shutdown eventscript before we tear down the transport This allows eventscripts to still be able to call and use ctdb during the shutdown phase. --- Summary of changes: server/ctdb_control.c |2 +- 1 files changed, 1 insertions(+), 1 deletions(-) Changeset truncated at 500 lines: diff --git a/server/ctdb_control.c b/server/ctdb_control.c index 2a16a23..3268877 100644 --- a/server/ctdb_control.c +++ b/server/ctdb_control.c @@ -323,10 +323,10 @@ static int32_t ctdb_control_dispatch(struct ctdb_context *ctdb, ctdb_stop_keepalive(ctdb); ctdb_stop_monitoring(ctdb); ctdb_release_all_ips(ctdb); + ctdb_event_script(ctdb, CTDB_EVENT_SHUTDOWN); if (ctdb-methods != NULL) { ctdb-methods-shutdown(ctdb); } - ctdb_event_script(ctdb, CTDB_EVENT_SHUTDOWN); exit(0); case CTDB_CONTROL_TAKEOVER_IPv4: -- CTDB repository
[SCM] CTDB repository - branch master updated - ctdb-1.13-194-g1a6a011
The branch, master has been updated via 1a6a011c772f7d302d114d7c8a151fa7820ec85f (commit) from ac89da4eea98fa686408c5671a6c44c0fd1d7a58 (commit) http://gitweb.samba.org/?p=ctdb.git;a=shortlog;h=master - Log - commit 1a6a011c772f7d302d114d7c8a151fa7820ec85f Author: Ronnie Sahlberg ronniesahlb...@gmail.com Date: Wed May 30 11:50:13 2012 +1000 Run the shutdown eventscript before we tear down the transport This allows eventscripts to still be able to call and use ctdb during the shutdown phase. --- Summary of changes: server/ctdb_control.c |2 +- 1 files changed, 1 insertions(+), 1 deletions(-) Changeset truncated at 500 lines: diff --git a/server/ctdb_control.c b/server/ctdb_control.c index 5c1eedd..9708acd 100644 --- a/server/ctdb_control.c +++ b/server/ctdb_control.c @@ -323,10 +323,10 @@ static int32_t ctdb_control_dispatch(struct ctdb_context *ctdb, ctdb_stop_keepalive(ctdb); ctdb_stop_monitoring(ctdb); ctdb_release_all_ips(ctdb); + ctdb_event_script(ctdb, CTDB_EVENT_SHUTDOWN); if (ctdb-methods != NULL) { ctdb-methods-shutdown(ctdb); } - ctdb_event_script(ctdb, CTDB_EVENT_SHUTDOWN); exit(0); case CTDB_CONTROL_TAKEOVER_IPv4: -- CTDB repository
[SCM] Samba Shared Repository - branch master updated
The branch, master has been updated via 27fb14b s3-loadparm: Swap synonyms of max/min protocol to server max/min protocol via 1d3e5ed s3-build: We do not have CHARSET modules any more via dde4d6f lib/param: Put common FN_ macros into param_functions.c via 3dcea0f lib/param: Add a few more s3 parameters via 9f4b6fa s3-param: Use same function name for max xmit as lib/param via 2168156 s3-param: Use same variable names as lib/param via 56996e0 s3-param: Import parameters from lib/param to make this list common via b47f9a0 s3-param: Rename lp_dns_proxy() - lp_wins_dns_proxy() for clarity via 38b1a11 lib/param: Import s3 parameters into lib/param to allow the parameter lists merge via 89981c7 lib/param: Mark a few more parameters const (matching s3) via f0d5300 param: mark realm parameter as const via b225248 param: Sort global param functions macros to ease the s3/s4 merge via ec14445 lib/param: Add .flags to max/min protocol to match s3 via 073a370 lib/param: Add .flags to wins parameters to match s3 via d3f061b lib/param: Harmonise 'password server' parameter between s3 and s4 via 91e4983 s3-build: Remove build of libtdb.so from the autoconf build via ac63b55 s3-build: Remove build of libtalloc.so from the autoconf build via 53d4ffc s3-iconv: Remove unused script/gen-8bit-gap.sh via c691ada build: Provide .pc file for libsmbsharemodes via 3ef6234 build: Provide .pc file for libnetapi via 8ddd2a8 build: Remove unused release scripts for tevent via c8877d8 build: Remove unused release scripts for tdb via ccb7642 build: Remove unused release scripts for talloc from aa01908 libcli/dns: Rename UDP-based calls to reflect their use http://gitweb.samba.org/?p=samba.git;a=shortlog;h=master - Log - commit 27fb14bfbe9d49bacd80fc033132c254267aeb34 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 15:00:12 2012 +1000 s3-loadparm: Swap synonyms of max/min protocol to server max/min protocol This matches the lib/param code, as is a seperate parameter for the client there. Andrew Bartlett Autobuild-User: Andrew Bartlett abart...@samba.org Autobuild-Date: Wed May 30 06:04:41 CEST 2012 on sn-devel-104 commit 1d3e5eda038deebe7e3d2d122c8d9963b548edfb Author: Andrew Bartlett abart...@samba.org Date: Wed May 30 08:23:38 2012 +1000 s3-build: We do not have CHARSET modules any more commit dde4d6fce9e3daa6a2332b9cbc0165a18fca0ccd Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 17:30:44 2012 +1000 lib/param: Put common FN_ macros into param_functions.c This will in turn make it possible to put the actual parameter definitions in common. Andrew Bartlett commit 3dcea0f6c7d8cd08a4affe3b54061cdcb2de1c50 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 17:35:30 2012 +1000 lib/param: Add a few more s3 parameters commit 9f4b6fa0ccdd5b0f499a26aa246e04d6652befc9 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 17:28:04 2012 +1000 s3-param: Use same function name for max xmit as lib/param Again, this helps with merging the FN_ list. Andrew Bartlett commit 21681569795040c62e5cbd38b39ae4df351cbe23 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 17:19:07 2012 +1000 s3-param: Use same variable names as lib/param Again, this helps with merging the FN_ list. Andrew Bartlett commit 56996e00bf26d6a64e2f60f2ed7cb8c2e5068934 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 17:14:05 2012 +1000 s3-param: Import parameters from lib/param to make this list common This will allow the list of FN_ macros to be made a common .c file. Andrew Bartlett commit b47f9a09cd5c374b213d9bad83c4903130f61a42 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 16:51:47 2012 +1000 s3-param: Rename lp_dns_proxy() - lp_wins_dns_proxy() for clarity This avoids some confusion now we have a DNS server as well. Andrew Bartlett commit 38b1a1115491f9bdbcf3dde42798fa94bd39dd97 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 16:51:15 2012 +1000 lib/param: Import s3 parameters into lib/param to allow the parameter lists merge This will allow us to create just one list of the FN_ macros, included into both parameter systems. This will in turn allow the actual parameter definitions to be merged in a similar way. Andrew Bartlett commit 89981c7b17f84cb8d6b8bf0271a2f2869f3a3a99 Author: Andrew Bartlett abart...@samba.org Date: Mon May 28 16:34:14 2012 +1000 lib/param: Mark a few more parameters const (matching s3) While this makes no difference in the lib/param code, this allows the C files