[Pkg-samba-maint] [samba] branch experimental updated (a699730 -> 592a5be)
Jelmer Vernooij
jelmer at moszumanska.debian.org
Sun Jul 3 16:02:49 UTC 2016
This is an automated email from the git hooks/post-receive script.
jelmer pushed a change to branch experimental
in repository samba.
omits a699730 Ensure systemd dependencies are correct
omits e12939e Changelog for previous commits
omits 806341e Fix systemd unit files
omits 6bc2606 Describe non-standard-dir-perm var/spool/samba/
omits b662d31 winbind: package-contains-empty-directory usr/lib/samba/nss_info/
omits 3bcde7d samba-common-bin: package-contains-empty-directory usr/lib/samba/
omits 3e30735 samba: command-with-path-in-maintainer-script postinst:37 /usr/sbin/update-inetd
omits e273037 Enable systemd (sd_notify) on Linux, and install systemd files
omits 77a8183 Ensure that dpkg-buildflags are passed, and enable all hardening
omits e2a3d93 Fix copyright file
omits 70aaa38 Use secure Vcs-* URLs
omits 5fe3ad0 Drop "Section: net" fields, this is redundant
omits f1a0ff4 Drop "Priority: optional" fields, this is redundant
omits 0f563f8 d/control: Drop XS-Testsuite field
omits e6dcbd4 Changelog for previous commits and release 2:4.4.3+dfsg-4
omits 0de34dd Still run "make quicktest" but ignore failures
omits 85c9471 Fix build with DEB_BUILD_OPTIONS=nocheck
omits 2081640 Changelog for previous commits and release 2:4.4.3+dfsg-3
omits 39a3b40 Skip raw.write tests for now as they fail on 32-bit
omits 9a58015 Revert "Enable LFS via LFS_LDFLAGS and LFS_CFLAGS"
omits 55a6345 Revert "Changelog for previous commits and release 2:4.4.3+dfsg-2"
omits ae6e3ad Revert "Use DPKG_EXPORT_BUILDFLAGS"
omits 2b4734c Use DPKG_EXPORT_BUILDFLAGS
omits 853e302 Changelog for previous commits and release 2:4.4.3+dfsg-2
omits 6c88252 Enable LFS via LFS_LDFLAGS and LFS_CFLAGS
omits 6d400e0 Changelog for previous commits and release 2:4.4.3+dfsg-2
omits f7540d3 Remove unreproducible build environment
omits 7c4a9b0 Drop no_build_options.patch as it breaks "make test"
omits 51d49f1 Run quicktest during build
omits 792da54 usershare.patch: Fix "usershare max shares" default in XML doc and in s4
omits 8146f72 Patch waf_smbpasswd_location submitted
omits 15ab149 releasing package samba version 2:4.4.3+dfsg-1
omits 5a4fc76 Cleanup ctdb READMEs during 'clean' step.
omits 794819b releasing package samba version 2:4.4.3+dfsg-1
omits 4b71f60 Merge branch 'master' of git+ssh://git.debian.org/git/pkg-samba/samba into unstable
omits 8f75576 Reapply rfc3454 patch.
omits 46b8815 New upstream release.
omits ae67b27 Merge tag 'upstream/4.4.3+dfsg' into unstable
omits 4ec0ba9 Imported Upstream version 4.4.3+dfsg
omits c595a17 Imported Upstream version 4.4.3+dfsg
omits f67230d VERSION: Disable git snapshots for the 4.4.3 release.
omits d89905e WHATSNEW: Add date.
omits 0c53521 WHATSNEW: Udpate release notes.
omits b9cc3bd s3:selftest: add smbclient_ntlm tests
omits d96f774 selftest:Samba4: let fl2000dc use Windows2000 style SPNEGO/NTLMSSP
omits 883660a selftest:Samba4: let fl2000dc use Windows2000 supported_enctypes
omits 7548e8d s3:test_smbclient_auth.sh: this script reqiures 5 arguments
omits 771bcf9 selftest:Samba4: provide DC_* variables for fl2000dc and fl2008r2dc
omits 6d62364 auth/ntlmssp: add ntlmssp_{client,server}:force_old_spnego option for testing
omits c52eab4 auth/spnego: add spnego:simulate_w2k option for testing
omits eb085f3 auth/ntlmssp: do map to guest checking after the authentication
omits ab24cfa s3:smbd: only mark real guest sessions with the GUEST flag
omits 2a9cbef s3:smbd: make use SMB_SETUP_GUEST constant
omits 696b25f libcli/security: implement SECURITY_GUEST
omits 070ae1b s3:auth_builtin: anonymous authentication doesn't allow a password
omits 039dc0b s4:auth_anonymous: anonymous authentication doesn't allow a password
omits 622a603 auth/spnego: only try to verify the mechListMic if signing was negotiated.
omits bc2331b s3:libsmb: use anonymous authentication via spnego if possible
omits 702d846 s3:libsmb: don't finish the gensec handshake for guest logins
omits 779a339 s3:libsmb: record the session setup action flags
omits ad94c11 libcli/smb: add smbXcli_session_is_guest() helper function
omits 2bae4e9 libcli/smb: add SMB1 session setup action flags
omits e61d929 libcli/smb: add smb1cli_session_set_action() helper function
omits eff4ed6 libcli/smb: fix NULL pointer derreference in smbXcli_session_is_authenticated().
omits ce9dc37 s3:libsmb: use password = NULL for anonymous connections
omits e72697d auth/ntlmssp: don't require NTLMSSP_SIGN for smb connections
omits 0e06d40 auth/ntlmssp: don't require any flags in the ccache_resume code
omits f26e6c9 auth/spnego: handle broken mechListMIC response from Windows 2000
omits 8a8a567 auth/spnego: change log level for 'Failed to setup SPNEGO negTokenInit request: NT_STATUS_INTERNAL_ERROR'
omits 9aa4b3c s3:librpc:crypto:gse: increase debug level for gse_init_client().
omits a9a5c60 lib:krb5_wrap:krb5_samba: increase debug level for smb_krb5_get_default_realm_from_ccache().
omits fc3a36c s3:libads/sasl: allow wrapped messages up to a size of 0xfffffff
omits 8f159c5 s4:gensec_tstream: allow wrapped messages up to a size of 0xfffffff
omits 794d0c2 Mask general purpose signals for notifyd.
omits 1a36149 WHATSNEW: Start release notes for Samba 4.4.3.
omits 06343ea configure: Don't check for inotify on illumos
omits 969ddf1 nwrap: Fix the build on Solaris
omits 13d563a smbd: Avoid large reads beyond EOF
omits a4c00ce Fix the smb2_setinfo to handle FS info types and FSQUOTA infolevel
omits 2184ae7 cleanupd: restart as needed
omits 85185e7 nss_wins: Fix the hostent setup
omits 23497a6 nss_wins: ip_pton expects the raw IP address
omits d4dd33b libads: record session expiry for spnego sasl binds
omits acaebfa releasing package samba version 2:4.4.2+dfsg-2
omits 8723742 Merge in 4.3 package changes.
omits a804652 Merge branch 'master' of git+ssh://git.debian.org/git/pkg-samba/samba into master.
omits 9b7c700 releasing package samba version 2:4.4.2+dfsg-1
omits e75c984 Update overrides.
omits a63ddff Drop build dependency on perl-modules; depend on perl instead.
omits 6d08067 Fix formatting of my last name.
omits f02ade3 Fix NEWS file syntax.
omits 411c6db Bump standards version to 3.9.8 (no changes).
omits 5e55407 New upstream release.
omits 94dc541 Merge tag 'upstream/4.4.2+dfsg' into experimental
omits ecc3685 Imported Upstream version 4.4.2+dfsg
omits eb96e15 vfs_catia: Fix bug 11827, memleak
omits 6b66061 s3: libsmb: Fix error where short name length was read as 2 bytes, should be 1.
omits a6a4532 smbcquotas: print "NO LIMIT" only if returned quota value is 0.
omits 811fbb2 vfs_acl_common: avoid setting POSIX ACLs if "ignore system acls" is set
omits 26f5b40 winbind: Fix CID 1357100 Unchecked return value
omits fb0c85b52 idmap_hash: only allow the hash module for default idmap config.
omits dab38c3 idmap_hash: rename be_init() --> idmap_hash_initialize()
omits 8bd67a1 s3:winbindd:idmap: check loadparm in domain_has_idmap_config() helper as well.
omits 87fcc70 s3:winbindd:idmap_hash: skip domains that already have their own idmap configuration.
omits 9d56304 s3:winbindd:idmap: add domain_has_idmap_config() helper function.
omits f05cf99 releasing package samba version 2:4.3.8+dfsg-1
omits 5176d86 Re-apply patch.
omits fcb7933 Bump version in Replaces: samba-libs for samba-vfs-modules to 4.3.2+dfsg-1, to fix jessie->stretch upgrades. Closes: #821070
omits eb5dcf0 Merge tag 'upstream/4.3.8+dfsg' into unstable
omits 9b35890 Imported Upstream version 4.3.8+dfsg
omits 298378d Update watch file to retrieve 4.3.X.
omits f787cb0c Add patch no_build_system.patch: drop host-specific define that prevents reproducible builds.
omits 04da991 Release 2:4.3.7+dfsg-1 to unstable
omits cd4cbca Add regression patch for Joining a 2003 domain as a domain member
omits 2bf125f Added myself as an uploader
omits 105e5fd NEWS for big security patch
omits 3d490e7 SECURITY: Samba 4.3.7 release
omits 1329238 Release 2:4.4.1+dfsg-1 to experimental
omits 8a08f18 NEWS file for big security release
omits e8918a1 VERSION: Bump version up to 4.4.3...
omits 4b4a2bd VERSION: Disable git snapshots for the 4.3.8 release.
omits 71de921 VERSION: Disable git snapshots for the 4.4.2 release.
omits 10e9011 WHATSNEW: Add release notes for Samba 4.3.8.
omits 370b3dd WHATSNEW: Add release notes for Samba 4.4.2.
omits d53306a Add regression patch for Joining a 2003 domain as a domain member
omits 0d47877 Merge in 4.3 history.
omits 385b9fc Add patch no_build_system.patch: drop host-specific define that prevents reproducible builds.
omits ad9257b s3:libads: sasl wrapped LDAP connections against with kerberos and arcfour-hmac-md5
omits caa886e VERSION: Bump version up to 4.3.8...
omits 87fb3b8 s3:libads: sasl wrapped LDAP connections against with kerberos and arcfour-hmac-md5
omits bfc9525 VERSION: Bump version up to 4.4.2...
omits 3c2f663 Updated version 4.4.1+dfsg from 'upstream/4.4.1+dfsg'
omits 359f7ee Imported Upstream version 4.4.1+dfsg
omits 2e1014d SECURITY: Samba 4.4.1 release
omits 8dc2e91 Imported Upstream version 4.4.1+dfsg
omits bc8f352 Release to experimental
omits f20a9c4 Added myself as an uploader
omits 1d39651 Package Samba 4.4.0
omits d1b5c43 Updated version 4.4.0+dfsg from 'upstream/4.4.0+dfsg'
omits 92b8875 Imported Upstream version 4.4.0+dfsg
omits 8767fc0 Change upstream branch to upstream_4.4
omits deb3c9c start packaging 4.4 by reverting sure-to-conflict talloc-2.1.6 patch
omits c5cb6f4 Imported Upstream version 4.4.0+dfsg
omits 4a74a50 Merge tag 'upstream/4.3.7+dfsg'
omits 9b9d1fe Imported Upstream version 4.3.7+dfsg
omits bbd4da9 releasing package samba version 2:4.3.6+dfsg-2
omits c02079f Depend on source version of arch-independent samba-common, fixing binNMU-ability.
omits e349b13 Add bug number for samba/talloc breakage and fix
omits ad8b42a Add patches from Samba bug #11789 to work with talloc 2.1.6
omits 54ef14e Changelog for previous commit
omits 337cb82 Don't build ctdb twice
omits 2256e65 Imported Upstream version 4.3.6+dfsg
omits 0a386f6 Imported Upstream version 4.3.6
omits 6e77398 Imported Upstream version 4.3.6
omits 6ed3639 Add no_build_options.patch: make package more reproducible by disabling build options output.
omits ef3e4e6 Changelog for previous commits
omits ce41f24 ctdb: Fix detection of gnukfreebsd (Closes: #802621)
omits 722d7a5 Add ufw integration
omits 8e410a3 Add an override to script-not-executable etc/ctdb/events.d/10.external
omits 4a183ca Changelog for previous commit
omits bcc135e Drop samba from winbind depends and use samba-common* instead (Closes: #732604)
omits 05ed298 Imported Upstream version 4.4.0
omits cbd4120 Changelog for previous commit
omits 3ad8956 Fix FTBFS when built with dpkg-buildpackage -A (Closes: #818146)
omits 6597749 VERSION: Disable git snapshots for the 4.3.7 release.
omits 17e1b9f WHATSNEW: Add release notes for Samba 4.3.7.
omits c8180d1 VERSION: Disable git snapshots for the 4.4.1 release.
omits bd94b86 WHATSNEW: Add release notes for Samba 4.4.1.
omits 13e3e81 CVE-2015-5370: s4:selftest: run samba.tests.dcerpc.raw_protocol against ad_dc
omits 2c6f01d CVE-2015-5370: python/samba/tests: add some dcerpc raw_protocol tests
omits 78b84d5 CVE-2015-5370: python/samba/tests: add infrastructure to do raw protocol tests for DCERPC
omits 9d953e2 CVE-2015-5370: s4:librpc/rpc: call dcerpc_connection_dead() on protocol errors
omits 4a496d3 CVE-2015-5370: s3:rpc_client: disconnect connection on protocol errors
omits 45a2445 CVE-2015-5370: libcli/smb: use a max timeout of 1 second in tstream_smbXcli_np_destructor()
omits b65429f CVE-2015-5370: s3:rpc_server: verify auth_context_id in api_pipe_{bind_auth3,alter_context}
omits 97a0811 CVE-2015-5370: s3:rpc_client: verify auth_context_id in rpc_pipe_bind_step_one_done()
omits 49379e4 CVE-2015-5370: s3:librpc/rpc: verify auth_context_id in dcerpc_check_auth()
omits 518f8bb CVE-2015-5370: s3:librpc/rpc: make use of auth->auth_context_id in dcerpc_add_auth_footer()
omits a663ad5 CVE-2015-5370: s3:rpc_server: make use of pipe_auth_data->auth_context_id
omits a3fc86d CVE-2015-5370: s3:rpc_client: make use of pipe_auth_data->auth_context_id
omits 6d509e3 CVE-2015-5370: s3:librpc/rpc: add auth_context_id to struct pipe_auth_data
omits 57d5a84 CVE-2015-5370: s3:rpc_client: pass struct pipe_auth_data to create_rpc_{bind_auth3,alter_context}()
omits e84519d CVE-2015-5370: s3:rpc_server: don't allow an existing context to be changed in check_bind_req()
omits 6fd2714 CVE-2015-5370: s3:rpc_server: check the transfer syntax in check_bind_req() first
omits 7b902c3 CVE-2015-5370: s3:librpc/rpc: remove unused dcerpc_pull_dcerpc_auth()
omits 5cfe5ec CVE-2015-5370: s3:rpc_server: use DCERPC_NCA_S_PROTO_ERROR FAULTs for protocol errors
omits a9c46e8 CVE-2015-5370: s3:rpc_server: let a failing BIND mark the connection as broken
omits 9c2592f CVE-2015-5370: s3:rpc_server: disconnect the connection after a fatal FAULT pdu
omits 6456408 CVE-2015-5370: s3:rpc_server: make use of dcerpc_verify_ncacn_packet_header() to verify incoming pdus
omits d2c964f CVE-2015-5370: s3:rpc_server: verify presentation context arrays
omits 218bd4a CVE-2015-5370: s3:rpc_server: use 'alter' instead of 'bind' for variables in api_pipe_alter_context()
omits 5148a26 CVE-2015-5370: s3:rpc_server: ensure that the message ordering doesn't violate the spec
omits 198ecf4 CVE-2015-5370: s3:rpc_server: make sure auth_level isn't changed by alter_context or auth3
omits bf4a716 CVE-2015-5370: s3:rpc_server: let a failing auth3 mark the authentication as invalid
omits 087b363 CVE-2015-5370: s3:rpc_server: don't allow auth3 if the authentication was already finished
omits e6cdac4 CVE-2015-5370: s3:rpc_server: don't ignore failures of dcerpc_push_ncacn_packet()
omits 56014f6 CVE-2015-5370: s3:rpc_server: just call pipe_auth_generic_bind() in api_pipe_bind_req()
omits 8c7d8c8 CVE-2015-5370: s3:rpc_server: let a failing sec_verification_trailer mark the connection as broken
omits 4c51c89 CVE-2015-5370: s3:rpc_server: make use of dcerpc_pull_auth_trailer() in api_pipe_{bind_req,alter_context,bind_auth3}()
omits 5c495ab CVE-2015-5370: s3:rpc_client: verify auth_{type,level} in rpc_pipe_bind_step_one_done()
omits f4ef85f CVE-2015-5370: s3:rpc_client: protect rpc_api_pipe_got_pdu() against too large payloads
omits 654d8a5 CVE-2015-5370: s3:rpc_client: make use of dcerpc_verify_ncacn_packet_header() in cli_pipe_validate_current_pdu()
omits dfab482 CVE-2015-5370: s3:rpc_client: make use of dcerpc_pull_auth_trailer()
omits 569781f CVE-2015-5370: s3:librpc/rpc: let dcerpc_check_auth() auth_{type,level} against the expected values.
omits dd2c270 CVE-2015-5370: s3:librpc/rpc: remove auth trailer and possible padding within dcerpc_check_auth()
omits b1b538a CVE-2015-5370: librpc/rpc: don't allow pkt->auth_length == 0 in dcerpc_pull_auth_trailer()
omits ddd4d03 CVE-2015-5370: s4:rpc_server: reject DCERPC_PFC_FLAG_PENDING_CANCEL with DCERPC_FAULT_NO_CALL_ACTIVE
omits 7e682ed CVE-2015-5370: s4:rpc_server: the assoc_group is relative to the connection (association)
omits 9625f91 CVE-2015-5370: s4:rpc_server: only allow one fragmented call_id at a time
omits 2fd10be CVE-2015-5370: s4:rpc_server: limit allocation and alloc_hint to 4 MByte
omits d1ffe41 CVE-2015-5370: s4:rpc_server: check frag_length for requests
omits 74347a4 CVE-2015-5370: s4:rpc_server: give the correct reject reasons for invalid auth_level values
omits d7af609 CVE-2015-5370: s4:rpc_server: disconnect after a failing dcesrv_auth_request()
omits a3008ec CVE-2015-5370: s4:rpc_server: let a failing auth3 mark the authentication as invalid
omits 6a9b4ca CVE-2015-5370: s4:rpc_server: failing authentication should generate a SEC_PKG_ERROR
omits 9e86b09 CVE-2015-5370: s4:rpc_server: fix the order of error checking in dcesrv_alter()
omits 3d075a4 CVE-2015-5370: s4:rpc_server: changing an existing presentation context via alter_context is a protocol error
omits cace627 CVE-2015-5370: s4:rpc_server: don't derefence an empty ctx_list array in dcesrv_alter()
omits bf333e9 CVE-2015-5370: s4:rpc_server: remove pointless dcesrv_find_context() from dcesrv_bind()
omits e3775db CVE-2015-5370: s4:rpc_server: let invalid request fragments disconnect the connection with a protocol error
omits e365d16 CVE-2015-5370: s4:rpc_server: make sure alter_context and auth3 can't change auth_{type,level,context_id}
omits af03332e CVE-2015-5370: s4:rpc_server: maintain in and out struct dcerpc_auth per dcesrv_call_state
omits 503d08d CVE-2015-5370: s4:rpc_server: ensure that the message ordering doesn't violate the spec
omits 75d9b58 CVE-2015-5370: s4:rpc_server: verify the protocol headers before processing pdus
omits e3c1c20 CVE-2015-5370: s4:rpc_server: add infrastructure to terminate a connection after a response
omits b5d0de4 CVE-2015-5370: s4:rpc_server: make dcesrv_process_ncacn_packet() static
omits c8a1adb CVE-2015-5370: s4:rpc_server: return the correct secondary_address in dcesrv_bind()
omits a689216 CVE-2015-5370: s4:rpc_server: add some padding to dcesrv_bind_nak() responses
omits eb16dfa CVE-2015-5370: s4:rpc_server: split out a dcesrv_fault_with_flags() helper function
omits 448435a CVE-2015-5370: s4:rpc_server: fill context_id in dcesrv_fault()
omits 7c2984a CVE-2015-5370: s4:rpc_server: set alloc_hint = 24 in dcesrv_fault()
omits f9ed1a9 CVE-2015-5370: s4:rpc_server: avoid ZERO_STRUCT() in dcesrv_fault()
omits 83d93a8 CVE-2015-5370: s4:rpc_server: correctly maintain dcesrv_connection->max_{recv,xmit}_frag
omits 08ec7e7 CVE-2015-5370: s4:rpc_server/netlogon: make use of dce_call->conn->auth_state.auth_{level,type}
omits 62f8a54 CVE-2015-5370: s4:rpc_server/samr: make use of dce_call->conn->auth_state.auth_level
omits 8ad4695 CVE-2015-5370: s4:rpc_server/lsa: make use of dce_call->conn->auth_state.auth_{level,type}
omits 1ed3e26 CVE-2015-5370: s4:rpc_server: make use of dce_call->conn->auth_state.auth_* in dcesrv_request()
omits dc15870 CVE-2015-5370: s4:rpc_server: maintain dcesrv_auth->auth_{type,level,context_id}
omits 58b1cdf CVE-2015-5370: s4:rpc_server: check the result of dcerpc_pull_auth_trailer() in dcesrv_auth_bind()
omits 8332714 CVE-2015-5370: s4:rpc_server: no authentication is indicated by pkt->auth_length == 0
omits b0349be CVE-2015-5370: s4:rpc_server: make use of talloc_zero()
omits 7f348a7 CVE-2015-5370: s4:librpc/rpc: protect dcerpc_request_recv_data() against too large payloads
omits 50fc638 CVE-2015-5370: s4:librpc/rpc: use dcerpc_verify_ncacn_packet_header() to verify BIND_ACK,ALTER_RESP,RESPONSE pdus
omits a96543e CVE-2015-5370: s4:librpc/rpc: handle DCERPC_PKT_FAULT before anything else in dcerpc_alter_context_recv_handler()
omits f89c218 CVE-2015-5370: s4:librpc/rpc: make use of dcerpc_map_ack_reason() in dcerpc_bind_recv_handler()
omits 94de482 CVE-2015-5370: s3:rpc_client: remove useless frag_length check in rpc_api_pipe_got_pdu()
omits f64f451 CVE-2015-5370: s3:rpc_client: move AS/U hack to the top of cli_pipe_validate_current_pdu()
omits ac8910f CVE-2015-5370: librpc/rpc: add a dcerpc_verify_ncacn_packet_header() helper function
omits d3bb3ef CVE-2015-5370: s4:librpc/rpc: finally verify the server uses the expected auth_{type,level,context_id} values
omits e05c7dd CVE-2015-5370: s4:librpc/rpc: avoid using dcecli_security->auth_info and use per request values
omits 23f4243 CVE-2015-5370: s4:librpc/rpc: simplify checks if gensec is used in dcerpc_ship_next_request()
omits 33ee36e CVE-2015-5370: s4:librpc/rpc: avoid dereferencing sec->auth_info in dcerpc_request_prepare_vt()
omits 245fc41 CVE-2015-5370: s4:librpc/rpc: always use ncacn_pull_request_auth() for DCERPC_PKT_RESPONSE pdus
omits 4907895 CVE-2015-5370: s4:librpc/rpc: avoid using c->security_state.auth_info in ncacn_pull_request_auth()
omits 7ee85d6 CVE-2015-5370: s4:librpc/rpc: avoid using hs->p->conn->security_state.auth_info in dcerpc_bh_auth_info()
omits 25e48af CVE-2015-5370: s4:librpc/rpc: use a local auth_info variable in ncacn_push_request_sign()
omits 3f447f6 CVE-2015-5370: s4:librpc/rpc: use auth_context_id = 1
omits 32d8e05 CVE-2015-5370: s4:librpc/rpc: maintain dcecli_security->auth_{type,level,context_id}
omits 4867460 CVE-2015-5370: s4:librpc/rpc: send a dcerpc_sec_verification_trailer if needed
omits b095508 CVE-2015-5370: s3:librpc/rpc: don't call dcerpc_pull_auth_trailer() if auth_length is 0
omits b77eab0 CVE-2015-5370: librpc/rpc: simplify and harden dcerpc_pull_auth_trailer()
omits 22ab56d CVE-2015-5370: dcerpc.idl: add DCERPC_{NCACN_PAYLOAD,FRAG}_MAX_SIZE defines
omits fa0d681 CVE-2016-2118: s3:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
omits e675f63 CVE-2016-2118: s4:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
omits f425bfd CVE-2016-2118: docs-xml: default "allow dcerpc auth level connect" to "no"
omits 6750ffd CVE-2016-2118: s3:rpc_server/{epmapper,echo}: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits ba69e95 CVE-2016-2118: s3:rpc_server/{samr,lsa,netlogon}: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits 3133233 CVE-2016-2118: s3:rpc_server: make use of "allow dcerpc auth level connect"
omits 2e4f09b CVE-2016-2118: s4:rpc_server/rpcecho: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 36278e3 CVE-2016-2118: s4:rpc_server/mgmt: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 4862ee5 CVE-2016-2118: s4:rpc_server/epmapper: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 6568d5d CVE-2016-2118: s4:rpc_server/netlogon: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits 34969d6 CVE-2016-2118: s4:rpc_server/samr: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits c98143b CVE-2016-2118: s4:rpc_server/lsa: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits 1a3c82e CVE-2016-2118: s4:rpc_server: make use of "allow dcerpc auth level connect"
omits 2e9824e CVE-2016-2118: docs-xml: add "allow dcerpc auth level connect" defaulting to "yes"
omits d565761 CVE-2016-2118: s4:librpc: use integrity by default for authenticated binds
omits 70ba7b0 CVE-2016-2118: librpc: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
omits 6142767 CVE-2016-2118: s3: rpcclient: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
omits be98e7e CVE-2016-2118: s4:rpc_server/dnsserver: require at least DCERPC_AUTH_LEVEL_INTEGRITY
omits 5d4d8ec CVE-2016-2118: python:tests/dcerpc: use [sign] for dnsserver tests
omits 778dab9 CVE-2016-2118: s4:rpc_server/backupkey: require DCERPC_AUTH_LEVEL_PRIVACY
omits e1de6ec CVE-2016-2118: s4:rpc_server/drsuapi: require DCERPC_AUTH_LEVEL_PRIVACY
omits 3502195 CVE-2016-2118: s4:rpc_server: make it possible to define a min_auth_level on a presentation context
omits d8c3cf1 CVE-2016-2115: docs-xml: always default "client ipc signing" to "mandatory"
omits e7ef30e CVE-2016-2115: s3:libsmb: use SMB_SIGNING_IPC_DEFAULT and lp_client_ipc_{min,max}_protocol()
omits f76e6f9 CVE-2016-2115: s3:libnet: use SMB_SIGNING_IPC_DEFAULT
omits 084b20e CVE-2016-2115: s3:auth_domain: use SMB_SIGNING_IPC_DEFAULT
omits fdd2807 CVE-2016-2115: s3:lib/netapi: use SMB_SIGNING_IPC_DEFAULT
omits 0422c64 CVE-2016-2115: net: use SMB_SIGNING_IPC_DEFAULT
omits 80102ed CVE-2016-2115: s3:libsmb: let SMB_SIGNING_IPC_DEFAULT use "client ipc min/max protocol"
omits afda479 CVE-2016-2115: s3:libsmb: add signing constant SMB_SIGNING_IPC_DEFAULT
omits 1309832 CVE-2016-2115: s3:winbindd: use lp_client_ipc_signing()
omits f1dea29 CVE-2016-2115: s3:winbindd: use lp_client_ipc_{min,max}_protocol()
omits 2c62a54 CVE-2016-2115: s4:librpc/rpc: make use of "client ipc *" options for ncacn_np
omits dbe7a43 CVE-2016-2115: s4:libcli/raw: pass the minprotocol to smb_raw_negotiate*()
omits ee4f114 CVE-2016-2115: s4:libcli/raw: limit maxprotocol to NT1 in smb_raw_negotiate*()
omits f3da02a CVE-2016-2115: s4:libcli/smb2: use the configured min_protocol
omits 8466fe8 CVE-2016-2115: s4:libcli/raw: add smbcli_options.min_protocol
omits 863d419 CVE-2016-2115: docs-xml: add "client ipc signing" option
omits 39282d2 CVE-2016-2115: docs-xml: add "client ipc min protocol" and "client ipc max protocol" options
omits 09a7576 CVE-2016-2114: docs-xml: let the "smb signing" documentation reflect the reality
omits 2c3649c CVE-2016-2114: s3:smbd: enforce "server signing = mandatory"
omits 0b05bc9 CVE-2016-2114: libcli/smb: let mandatory signing imply allowed signing
omits cc8bbc3 CVE-2016-2114: s3:smbd: use the correct default values for "smb signing"
omits 4177489 CVE-2016-2114: s4:smb2_server: fix session setup with required signing
omits b2af10b CVE-2016-2113: docs-xml: let "tls verify peer" default to "as_strict_as_possible"
omits 2ced06d CVE-2016-2113: selftest: use "tls verify peer = no_check"
omits 5c94dfa CVE-2016-2113: selftest: test all "tls verify peer" combinations with ldaps
omits 660dbb8 CVE-2016-2113: s4:librpc/rpc: verify the rpc_proxy certificate and hostname if configured
omits a443abe CVE-2016-2113: s4:libcli/ldap: verify the server certificate and hostname if configured
omits cd4b292 CVE-2016-2113: s4:selftest: explicitly use '--option="tlsverifypeer=no_check" for some ldaps tests
omits 5ec881c CVE-2016-2113: docs-xml: add "tls verify peer" option defaulting to "no_check"
omits 0e2bcca CVE-2015-5370: s4:selftest: run samba.tests.dcerpc.raw_protocol against ad_dc
omits 9ec6afa CVE-2015-5370: python/samba/tests: add some dcerpc raw_protocol tests
omits 21fe775 CVE-2015-5370: python/samba/tests: add infrastructure to do raw protocol tests for DCERPC
omits a141a37 CVE-2015-5370: s4:librpc/rpc: call dcerpc_connection_dead() on protocol errors
omits 6ac5ad0 CVE-2015-5370: s3:rpc_client: disconnect connection on protocol errors
omits 51a4a8f CVE-2015-5370: libcli/smb: use a max timeout of 1 second in tstream_smbXcli_np_destructor()
omits cd2911f CVE-2015-5370: s3:rpc_server: verify auth_context_id in api_pipe_{bind_auth3,alter_context}
omits ac0d474 CVE-2015-5370: s3:rpc_client: verify auth_context_id in rpc_pipe_bind_step_one_done()
omits 4449c51 CVE-2015-5370: s3:librpc/rpc: verify auth_context_id in dcerpc_check_auth()
omits 365fffe CVE-2015-5370: s3:librpc/rpc: make use of auth->auth_context_id in dcerpc_add_auth_footer()
omits bc001b0 CVE-2015-5370: s3:rpc_server: make use of pipe_auth_data->auth_context_id
omits 7ab9a8c CVE-2015-5370: s3:rpc_client: make use of pipe_auth_data->auth_context_id
omits 7f2d791 CVE-2015-5370: s3:librpc/rpc: add auth_context_id to struct pipe_auth_data
omits 73550f4 CVE-2015-5370: s3:rpc_client: pass struct pipe_auth_data to create_rpc_{bind_auth3,alter_context}()
omits 46ddaf3 CVE-2015-5370: s3:rpc_server: don't allow an existing context to be changed in check_bind_req()
omits f3a67c2 CVE-2015-5370: s3:rpc_server: check the transfer syntax in check_bind_req() first
omits 278cdd1 CVE-2015-5370: s3:librpc/rpc: remove unused dcerpc_pull_dcerpc_auth()
omits adaf1ae CVE-2015-5370: s3:rpc_server: use DCERPC_NCA_S_PROTO_ERROR FAULTs for protocol errors
omits 14d97d4 CVE-2015-5370: s3:rpc_server: let a failing BIND mark the connection as broken
omits dbcd01e CVE-2015-5370: s3:rpc_server: disconnect the connection after a fatal FAULT pdu
omits 3f6a270 CVE-2015-5370: s3:rpc_server: make use of dcerpc_verify_ncacn_packet_header() to verify incoming pdus
omits 11df891 CVE-2015-5370: s3:rpc_server: verify presentation context arrays
omits 9832a22 CVE-2015-5370: s3:rpc_server: use 'alter' instead of 'bind' for variables in api_pipe_alter_context()
omits e1b75bc CVE-2015-5370: s3:rpc_server: ensure that the message ordering doesn't violate the spec
omits 84cbf3d CVE-2015-5370: s3:rpc_server: make sure auth_level isn't changed by alter_context or auth3
omits d11c5d3 CVE-2015-5370: s3:rpc_server: let a failing auth3 mark the authentication as invalid
omits 476c2f5 CVE-2015-5370: s3:rpc_server: don't allow auth3 if the authentication was already finished
omits 8695339 CVE-2015-5370: s3:rpc_server: don't ignore failures of dcerpc_push_ncacn_packet()
omits a4a828e CVE-2015-5370: s3:rpc_server: just call pipe_auth_generic_bind() in api_pipe_bind_req()
omits db297a7 CVE-2015-5370: s3:rpc_server: let a failing sec_verification_trailer mark the connection as broken
omits 905313c CVE-2015-5370: s3:rpc_server: make use of dcerpc_pull_auth_trailer() in api_pipe_{bind_req,alter_context,bind_auth3}()
omits 0cf8404 CVE-2015-5370: s3:rpc_client: verify auth_{type,level} in rpc_pipe_bind_step_one_done()
omits e87721a CVE-2015-5370: s3:rpc_client: protect rpc_api_pipe_got_pdu() against too large payloads
omits 8e691e7 CVE-2015-5370: s3:rpc_client: make use of dcerpc_verify_ncacn_packet_header() in cli_pipe_validate_current_pdu()
omits f606cfd CVE-2015-5370: s3:rpc_client: make use of dcerpc_pull_auth_trailer()
omits f39183c CVE-2015-5370: s3:librpc/rpc: let dcerpc_check_auth() auth_{type,level} against the expected values.
omits 28d558e CVE-2015-5370: s3:librpc/rpc: remove auth trailer and possible padding within dcerpc_check_auth()
omits db30949 CVE-2015-5370: librpc/rpc: don't allow pkt->auth_length == 0 in dcerpc_pull_auth_trailer()
omits cce7265 CVE-2015-5370: s4:rpc_server: reject DCERPC_PFC_FLAG_PENDING_CANCEL with DCERPC_FAULT_NO_CALL_ACTIVE
omits 795b44e CVE-2015-5370: s4:rpc_server: the assoc_group is relative to the connection (association)
omits 67e2661 CVE-2015-5370: s4:rpc_server: only allow one fragmented call_id at a time
omits f77f9bf CVE-2015-5370: s4:rpc_server: limit allocation and alloc_hint to 4 MByte
omits 3239e26 CVE-2015-5370: s4:rpc_server: check frag_length for requests
omits d249ce6 CVE-2015-5370: s4:rpc_server: give the correct reject reasons for invalid auth_level values
omits 0e26f3c CVE-2015-5370: s4:rpc_server: disconnect after a failing dcesrv_auth_request()
omits 6ed0ef7 CVE-2015-5370: s4:rpc_server: let a failing auth3 mark the authentication as invalid
omits 615019f CVE-2015-5370: s4:rpc_server: failing authentication should generate a SEC_PKG_ERROR
omits e0b58a1 CVE-2015-5370: s4:rpc_server: fix the order of error checking in dcesrv_alter()
omits cf0a939 CVE-2015-5370: s4:rpc_server: changing an existing presentation context via alter_context is a protocol error
omits f0d318f CVE-2015-5370: s4:rpc_server: don't derefence an empty ctx_list array in dcesrv_alter()
omits 6228c53 CVE-2015-5370: s4:rpc_server: remove pointless dcesrv_find_context() from dcesrv_bind()
omits a7d02ec CVE-2015-5370: s4:rpc_server: let invalid request fragments disconnect the connection with a protocol error
omits 1d99eec CVE-2015-5370: s4:rpc_server: make sure alter_context and auth3 can't change auth_{type,level,context_id}
omits 6b2d064 CVE-2015-5370: s4:rpc_server: maintain in and out struct dcerpc_auth per dcesrv_call_state
omits 26ad208 CVE-2015-5370: s4:rpc_server: ensure that the message ordering doesn't violate the spec
omits 2ed603a CVE-2015-5370: s4:rpc_server: verify the protocol headers before processing pdus
omits e9511b5 CVE-2015-5370: s4:rpc_server: add infrastructure to terminate a connection after a response
omits 5ab994c CVE-2015-5370: s4:rpc_server: make dcesrv_process_ncacn_packet() static
omits 6db7571 CVE-2015-5370: s4:rpc_server: return the correct secondary_address in dcesrv_bind()
omits 9f62223 CVE-2015-5370: s4:rpc_server: add some padding to dcesrv_bind_nak() responses
omits 4ea6765 CVE-2015-5370: s4:rpc_server: split out a dcesrv_fault_with_flags() helper function
omits 8ba1be0 CVE-2015-5370: s4:rpc_server: fill context_id in dcesrv_fault()
omits 69e1d93 CVE-2015-5370: s4:rpc_server: set alloc_hint = 24 in dcesrv_fault()
omits 5eb3b63 CVE-2015-5370: s4:rpc_server: avoid ZERO_STRUCT() in dcesrv_fault()
omits 3165b23 CVE-2015-5370: s4:rpc_server: correctly maintain dcesrv_connection->max_{recv,xmit}_frag
omits 563d8fe CVE-2015-5370: s4:rpc_server/netlogon: make use of dce_call->conn->auth_state.auth_{level,type}
omits fd3b82e CVE-2015-5370: s4:rpc_server/samr: make use of dce_call->conn->auth_state.auth_level
omits 1077b50 CVE-2015-5370: s4:rpc_server/lsa: make use of dce_call->conn->auth_state.auth_{level,type}
omits 5325276 CVE-2015-5370: s4:rpc_server: make use of dce_call->conn->auth_state.auth_* in dcesrv_request()
omits f8b98b3 CVE-2015-5370: s4:rpc_server: maintain dcesrv_auth->auth_{type,level,context_id}
omits 16e3a4c CVE-2015-5370: s4:rpc_server: check the result of dcerpc_pull_auth_trailer() in dcesrv_auth_bind()
omits 308543b CVE-2015-5370: s4:rpc_server: no authentication is indicated by pkt->auth_length == 0
omits 08f976d CVE-2015-5370: s4:rpc_server: make use of talloc_zero()
omits 0235d72 CVE-2015-5370: s4:librpc/rpc: protect dcerpc_request_recv_data() against too large payloads
omits df2dcc1 CVE-2015-5370: s4:librpc/rpc: use dcerpc_verify_ncacn_packet_header() to verify BIND_ACK,ALTER_RESP,RESPONSE pdus
omits 443e00f CVE-2015-5370: s4:librpc/rpc: handle DCERPC_PKT_FAULT before anything else in dcerpc_alter_context_recv_handler()
omits 1551c41 CVE-2015-5370: s4:librpc/rpc: make use of dcerpc_map_ack_reason() in dcerpc_bind_recv_handler()
omits 9b9d307 CVE-2015-5370: s3:rpc_client: remove useless frag_length check in rpc_api_pipe_got_pdu()
omits 735d4ba CVE-2015-5370: s3:rpc_client: move AS/U hack to the top of cli_pipe_validate_current_pdu()
omits 21b9022 CVE-2015-5370: librpc/rpc: add a dcerpc_verify_ncacn_packet_header() helper function
omits 821d484 CVE-2015-5370: s4:librpc/rpc: finally verify the server uses the expected auth_{type,level,context_id} values
omits 447f9f1 CVE-2015-5370: s4:librpc/rpc: avoid using dcecli_security->auth_info and use per request values
omits 220e4ca CVE-2015-5370: s4:librpc/rpc: simplify checks if gensec is used in dcerpc_ship_next_request()
omits e6da619 CVE-2015-5370: s4:librpc/rpc: avoid dereferencing sec->auth_info in dcerpc_request_prepare_vt()
omits 3df2b07 CVE-2015-5370: s4:librpc/rpc: always use ncacn_pull_request_auth() for DCERPC_PKT_RESPONSE pdus
omits 0899c0a CVE-2015-5370: s4:librpc/rpc: avoid using c->security_state.auth_info in ncacn_pull_request_auth()
omits 71c2c21 CVE-2015-5370: s4:librpc/rpc: avoid using hs->p->conn->security_state.auth_info in dcerpc_bh_auth_info()
omits e39b737 CVE-2015-5370: s4:librpc/rpc: use a local auth_info variable in ncacn_push_request_sign()
omits 5be0fb1 CVE-2015-5370: s4:librpc/rpc: use auth_context_id = 1
omits f64b017 CVE-2015-5370: s4:librpc/rpc: maintain dcecli_security->auth_{type,level,context_id}
omits 47d8c31 CVE-2015-5370: s4:librpc/rpc: send a dcerpc_sec_verification_trailer if needed
omits 1c7be37 CVE-2015-5370: s3:librpc/rpc: don't call dcerpc_pull_auth_trailer() if auth_length is 0
omits 82dd128 CVE-2015-5370: librpc/rpc: simplify and harden dcerpc_pull_auth_trailer()
omits e96791f CVE-2015-5370: dcerpc.idl: add DCERPC_{NCACN_PAYLOAD,FRAG}_MAX_SIZE defines
omits 6602e7e CVE-2016-2118: s3:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
omits 45a9ca1 CVE-2016-2118: s4:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
omits e9718e2 CVE-2016-2118: docs-xml: default "allow dcerpc auth level connect" to "no"
omits 4762d25 CVE-2016-2118: s3:rpc_server/{epmapper,echo}: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 1ac5f37 CVE-2016-2118: s3:rpc_server/{samr,lsa,netlogon}: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits 3ba93ce CVE-2016-2118: s3:rpc_server: make use of "allow dcerpc auth level connect"
omits a2d14bb CVE-2016-2118: s4:rpc_server/rpcecho: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 6045947 CVE-2016-2118: s4:rpc_server/mgmt: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 8f219a0 CVE-2016-2118: s4:rpc_server/epmapper: allow DCERPC_AUTH_LEVEL_CONNECT by default
omits 7869c5f CVE-2016-2118: s4:rpc_server/netlogon: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits 20e4023 CVE-2016-2118: s4:rpc_server/samr: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits ca98500 CVE-2016-2118: s4:rpc_server/lsa: reject DCERPC_AUTH_LEVEL_CONNECT by default
omits 7b93802 CVE-2016-2118: s4:rpc_server: make use of "allow dcerpc auth level connect"
omits e7be37e CVE-2016-2118(<=4.3) docs-xml: add "allow dcerpc auth level connect" defaulting to "yes"
omits 979067f CVE-2016-2118: docs-xml: add "allow dcerpc auth level connect" defaulting to "yes"
omits 101e8e8 CVE-2016-2118: s4:librpc: use integrity by default for authenticated binds
omits 9ae9c64 CVE-2016-2118: librpc: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
omits d5659c7 CVE-2016-2118: s3: rpcclient: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
omits 0a3d923 CVE-2016-2118: s4:rpc_server/dnsserver: require at least DCERPC_AUTH_LEVEL_INTEGRITY
omits 9bfa937 CVE-2016-2118: python:tests/dcerpc: use [sign] for dnsserver tests
omits 5eb6341 CVE-2016-2118: s4:rpc_server/backupkey: require DCERPC_AUTH_LEVEL_PRIVACY
omits e8dc268 CVE-2016-2118: s4:rpc_server/drsuapi: require DCERPC_AUTH_LEVEL_PRIVACY
omits 31e7611 CVE-2016-2118: s4:rpc_server: make it possible to define a min_auth_level on a presentation context
omits fa2630f CVE-2016-2115: docs-xml: always default "client ipc signing" to "mandatory"
omits 2d68100 CVE-2016-2115: s3:libsmb: use SMB_SIGNING_IPC_DEFAULT and lp_client_ipc_{min,max}_protocol()
omits cdad358 CVE-2016-2115: s3:libnet: use SMB_SIGNING_IPC_DEFAULT
omits b66500f CVE-2016-2115: s3:auth_domain: use SMB_SIGNING_IPC_DEFAULT
omits 27c66c4 CVE-2016-2115: s3:lib/netapi: use SMB_SIGNING_IPC_DEFAULT
omits 9339d90 CVE-2016-2115: net: use SMB_SIGNING_IPC_DEFAULT
omits 38552d7 CVE-2016-2115: s3:libsmb: let SMB_SIGNING_IPC_DEFAULT use "client ipc min/max protocol"
omits bdff08d CVE-2016-2115: s3:libsmb: add signing constant SMB_SIGNING_IPC_DEFAULT
omits 2b23bc3 CVE-2016-2115: s3:winbindd: use lp_client_ipc_signing()
omits 5859266 CVE-2016-2115: s3:winbindd: use lp_client_ipc_{min,max}_protocol()
omits e0588d9 CVE-2016-2115: s4:librpc/rpc: make use of "client ipc *" options for ncacn_np
omits 2220923 CVE-2016-2115: s4:libcli/raw: pass the minprotocol to smb_raw_negotiate*()
omits 60851a0 CVE-2016-2115: s4:libcli/raw: limit maxprotocol to NT1 in smb_raw_negotiate*()
omits 7903203 CVE-2016-2115: s4:libcli/smb2: use the configured min_protocol
omits c21c9a3 CVE-2016-2115: s4:libcli/raw: add smbcli_options.min_protocol
omits 2c13697 CVE-2016-2115(<=4.3): docs-xml: add "client ipc signing" option
omits 668cc85 CVE-2016-2115: docs-xml: add "client ipc signing" option
omits 9fa185c CVE-2016-2115(<=4.3): docs-xml: add "client ipc min protocol" and "client ipc max protocol" options
omits 2f7d773 CVE-2016-2115: docs-xml: add "client ipc min protocol" and "client ipc max protocol" options
omits 25b05a8 CVE-2016-2114: docs-xml: let the "smb signing" documentation reflect the reality
omits 8611441 CVE-2016-2114: s3:smbd: enforce "server signing = mandatory"
omits 7c6c666 CVE-2016-2114: libcli/smb: let mandatory signing imply allowed signing
omits 67f8524 CVE-2016-2114: s3:smbd: use the correct default values for "smb signing"
omits 2217276 CVE-2016-2114: s4:smb2_server: fix session setup with required signing
omits 641cbcc CVE-2016-2113: docs-xml: let "tls verify peer" default to "as_strict_as_possible"
omits d778580 CVE-2016-2113: selftest: use "tls verify peer = no_check"
omits dc4f8d0 CVE-2016-2113: selftest: test all "tls verify peer" combinations with ldaps
omits fdac236 CVE-2016-2113: s4:librpc/rpc: verify the rpc_proxy certificate and hostname if configured
omits 389b15e CVE-2016-2113: s4:libcli/ldap: verify the server certificate and hostname if configured
omits 54a039d CVE-2016-2113: s4:selftest: explicitly use '--option="tlsverifypeer=no_check" for some ldaps tests
omits c20ee1b CVE-2016-2113(<=4.3): docs-xml: add "tls verify peer" option defaulting to "no_check"
omits fc02668 CVE-2016-2113: docs-xml: add "tls verify peer" option defaulting to "no_check"
omits 9ca8e88 CVE-2016-2113: s4:lib/tls: implement infrastructure to do peer verification
omits 27f1625 CVE-2016-2113: s4:lib/tls: create better certificates and sign the host cert with the ca cert
omits 104a691 CVE-2016-2112: docs-xml: change the default of "ldap server require strong auth" to "yes"
omits a027a87 CVE-2016-2112: s4:selftest: run some ldap test against ad_dc_ntvfs, fl2008r2dc and fl2003dc
omits 8dad04c CVE-2016-2112: selftest: servers with explicit "ldap server require strong auth" options
omits c7f2a10 CVE-2016-2112: s4:selftest: run samba4.ldap.bind against fl2008r2dc
omits 90cc943 CVE-2016-2112: s4:ldap_server: implement "ldap server require strong auth" option
omits 963236f CVE-2016-2112(<=4.3): docs-xml: add "ldap server require strong auth" option
omits b012535 CVE-2016-2112: docs-xml: add "ldap server require strong auth" option
omits e9cfd12 CVE-2016-2112: s4:ldap_server: reduce scope of old_session_info variable
omits 5172192 CVE-2016-2112: s4:selftest: use --option=clientldapsaslwrapping=plain for plain connections
omits 6977700 CVE-2016-2112: s4:libcli/ldap: auto upgrade to SIGN after STRONG_AUTH_REQUIRED
omits e072666 CVE-2016-2112: s4:libcli/ldap: make sure we detect downgrade attacks
omits b723d97 CVE-2016-2112: s4:libcli/ldap: honour "client ldap sasl wrapping" option
omits a8c60aa CVE-2016-2112: s3:libads: make sure we detect downgrade attacks
omits 60647fa CVE-2016-2111: docs-xml/smbdotconf: default "raw NTLMv2 auth" to "no"
omits dbdd9cb CVE-2016-2111: selftest:Samba3: use "raw NTLMv2 auth = yes" for nt4_dc
omits ff1e470 CVE-2016-2111: s4:smb_server: implement "raw NTLMv2 auth" checks
omits e260f6a CVE-2016-2111: s3:auth: implement "raw NTLMv2 auth" checks
omits 3643bc9 CVE-2016-2111(<=4.3): docs-xml: add "raw NTLMv2 auth" defaulting to "yes"
omits 3dbb32c CVE-2016-2111: docs-xml: add "raw NTLMv2 auth" defaulting to "yes"
omits eaabdc1 CVE-2016-2111: docs-xml: document the new "client NTLMv2 auth" and "client use spnego" interaction
omits f319256 CVE-2016-2111: s3:libsmb: don't send a raw NTLMv2 response when we want to use spnego
omits f22b75d CVE-2016-2111: s4:libcli: don't send a raw NTLMv2 response when we want to use spnego
omits a1ae538 CVE-2016-2111: s4:param: use "client use spnego" to initialize options->use_spnego
omits 5dbffb8 CVE-2016-2111: s4:libcli: don't allow the LANMAN2 session setup without "client lanman auth = yes"
omits b6899e1 CVE-2016-2111: s4:torture/base: don't use ntlmv2 for dos connection in base.samba3error
omits 8e1e621 CVE-2016-2111: s4:torture/raw: don't use ntlmv2 for dos connection in raw.samba3badpath
omits 9784d68 CVE-2016-2111: s3:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
omits 473bbfa CVE-2016-2111: s4:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
omits 984d024 CVE-2016-2111: libcli/auth: add NTLMv2_RESPONSE_verify_netlogon_creds() helper function
omits 5074d1e CVE-2016-2111: s4:torture/rpc: fix rpc.pac ntlmv2 test
omits 7434b8d CVE-2016-2111: s4:torture/rpc: fix rpc.samba3.netlogon ntlmv2 test
omits 630e39d CVE-2016-2111: s3:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
omits b9b3b1e CVE-2016-2111: s4:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
omits 2f393b3 CVE-2016-2111: s3:rpc_server/netlogon: always go through netr_creds_server_step_check()
omits fb8bb0f CVE-2016-2111: s4:rpc_server: implement 'server schannel = yes' restriction
omits b76361d CVE-2016-2111: auth/gensec: correctly report GENSEC_FEATURE_{SIGN,SEAL} in schannel_have_feature()
omits a6d1056 CVE-2016-2111: auth/gensec: require DCERPC_AUTH_LEVEL_INTEGRITY or higher in schannel_update()
omits fc9df72 CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC generation (as client)
omits 95a1c91 CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC checking (as server)
omits 39dd2c6 CVE-2016-2110: ntlmssp.idl: add NTLMSSP_MIC_{OFFSET,SIZE}
omits 299b49f CVE-2016-2110: libcli/auth: pass server_timestamp to SMBNTLMv2encrypt_hash()
omits a278c35 CVE-2016-2110: auth/credentials: pass server_timestamp to cli_credentials_get_ntlm_response()
omits 1cc7fbe CVE-2016-2110: auth/credentials: clear the LMv2 key for NTLMv2 in cli_credentials_get_ntlm_response()
omits 8cae040 CVE-2016-2110: auth/ntlmssp: implement gensec_ntlmssp_may_reset_crypto()
omits b5e95cc CVE-2016-2110: auth/ntlmssp: call ntlmssp_sign_init if we provide GENSEC_FEATURE_SIGN
omits 3ae39af CVE-2016-2110: auth/gensec: add gensec_may_reset_crypto() infrastructure
omits f32ad5c CVE-2016-2110: auth/gensec: require spnego mechListMIC exchange for new_spnego backends
omits 3673533 CVE-2016-2110: auth/gensec: fix the client side of a spnego downgrade
omits 9440fa8 CVE-2016-2110: auth/gensec: fix the client side of a new_spnego exchange
omits efe18dc CVE-2016-2110: libcli/auth: add SPNEGO_REQUEST_MIC to enum spnego_negResult
omits 0e3bb02 CVE-2016-2110: libcli/auth: use enum spnego_negResult instead of uint8_t
omits 8714377 CVE-2016-2110: winbindd: add new_spnego to the WINBINDD_CCACHE_NTLMAUTH response
omits 677e214 CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require NTLM2 (EXTENDED_SESSIONSECURITY) when using ntlmv2
omits 2ee222b CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require flags depending on the requested features
omits a7a0d2e CVE-2016-2110: auth/ntlmssp: don't let ntlmssp_handle_neg_flags() change ntlmssp_state->use_ntlmv2
omits d29c945 CVE-2016-2110: auth/ntlmssp: don't allow a downgrade from NTLMv2 to LM_AUTH
omits 4e5c214 CVE-2016-2110: auth/ntlmssp: split allow_lm_response from allow_lm_key
omits f914050 CVE-2016-2110: auth/ntlmssp: maintain conf_flags and required_flags variables
omits 8df0d59 CVE-2016-2110: auth/ntlmssp: let ntlmssp_handle_neg_flags() return NTSTATUS
omits 25f0a4c s3:ntlm_auth: pass manage_squid_request() needs a valid struct ntlm_auth_state from within get_password()
omits cce2e6a s3:rpc_server/samr: correctly handle session_extract_session_key() failures
omits 343637b s4:selftest: run rpc.netlogon.admin also over ncalrpc and ncacn_ip_tcp
omits ba36c3f libads: Fix CID 1356316 Uninitialized pointer read
omits e681d11 libsmb: Fix CID 1356312 Explicit null dereferenced
omits 656795b s3-auth: check for return code of cli_credentials_set_machine_account().
omits 6db7be4 s4-smb_server: check for return code of cli_credentials_set_machine_account().
omits bca3039 s4:rpc_server: require access to the machine account credentials
omits a6e7f49 auth/gensec: split out a gensec_verify_dcerpc_auth_level() function
omits c0beb87 auth/gensec: make sure gensec_security_by_auth_type() returns NULL for AUTH_TYPE_NONE
omits 5cdddba s4:torture/rpc/schannel: don't use validation level 6 without privacy
omits 61a09ae s4:torture/rpc: correctly use torture_skip() for test_ManyGetDCName() without NCACN_NP
omits 1cd3836 s4:torture/rpc/samlogon: use DCERPC_SEAL for netr_LogonSamLogonEx and validation level 6
omits 8665944 s4:torture/rpc/samr: use DCERPC_SEAL in setup_schannel_netlogon_pipe()
omits 46f52e7 s4:torture/netlogon: add/use test_SetupCredentialsPipe() helper function
omits 1103a6b s3:test_rpcclient_samlogon.sh: test samlogon with schannel
omits 6a3a45d s3:selftest: rpc.samr.passwords.validate should run with [seal] in order to be realistic
omits 3f05c5a selftest: setup information of new samba.example.com CA in the client environment
omits 1311631 selftest: set tls crlfile if it exist
omits 739e896 selftest: use Samba::prepare_keyblobs() and use the certs from the new CA
omits 0ad8ef8 selftest: add Samba::prepare_keyblobs() helper function
omits f058da2 selftest: mark commands in manage-CA-samba.example.com.sh as DONE
omits 8be3031 selftest: add CA-samba.example.com (non-binary) files
omits 08976c4 selftest: add config and script to create a samba.example.com CA
omits 158e06d selftest: add some helper scripts to mange a CA
omits f91a66f selftest: s!addc.samba.example.com!addom.samba.example.com!
omits 1346b27 s4:rpc_server: dcesrv_generic_session_key should only work on local transports
omits 663ec33 s4:rpc_server/samr: hide a possible NO_USER_SESSION_KEY error
omits 5182c93 s4:librpc/rpc: dcerpc_generic_session_key() should only be available on local transports
omits 44e2da8 s4:torture:samba3rpc: use an authenticated SMB connection and an anonymous DCERPC connection on top
omits fd1e4ec s4:selftest: run rpc.samr over ncacn_np instead of ncacn_ip_tcp
omits 32ad277 s4:torture: the backupkey tests need to use ncacn_np: for LSA calls
omits e09c17a s4:torture/rpc: do testjoin only via ncalrpc or ncacn_np
omits 2d6afd9 s3:libsmb: remove unused functions in clispnego.c
omits 979fc6a s3:libsmb: remove unused cli_session_setup_kerberos*() functions
omits 8a1d0a9 s3:libsmb: make use of cli_session_setup_gensec*() for Kerberos
omits 70d546d s3:libsmb: call cli_state_remote_realm() within cli_session_setup_spnego_send()
omits c4c3bd6 s3:libsmb: provide generic cli_session_setup_gensec_send/recv() pair
omits 1498885 s3:libsmb: let cli_session_setup_ntlmssp*() use gensec_update_send/recv()
omits e8b6ef4 s3:libsmb: unused ntlmssp.c
omits bbc4eb8 s3:libsmb: make use gensec based SPNEGO/NTLMSSP
omits 59b8032 s3:libads: make use of ads_sasl_spnego_gensec_bind() for GSS-SPNEGO with Kerberos
omits d19d039 s3:libads: keep service and hostname separately in ads_service_principal
omits e952e63 s3:libads: don't pass given_principal to ads_generate_service_principal() anymore.
omits 3d3725b s3:libads: provide a generic ads_sasl_spnego_gensec_bind() function
omits 4cbf13e s3:libads: make use of GENSEC_OID_SPNEGO in ads_sasl_spnego_ntlmssp_bind()
omits c63d32b s3:libads: make use of GENSEC_FEATURE_LDAP_STYLE
omits 383d18d s3:libads: add missing TALLOC_FREE(frame) in error path
omits 95461fb s4:ldap_server: make use of GENSEC_FEATURE_LDAP_STYLE
omits e2bea35 s4:selftest: simplify the loops over samba4.ldb.ldap
omits ccc1c51 s4:selftest: we don't need to run ldap test with --option=socket:testnonblock=true
omits b000387 s4:libcli/ldap: fix retry authentication after a bad password
omits 58478f4 s4:libcli/ldap: make use of GENSEC_FEATURE_LDAP_STYLE
omits debafe8 auth/ntlmssp: remove ntlmssp_unwrap() fallback for LDAP
omits 1016c9d auth/ntlmssp: add more compat for GENSEC_FEATURE_LDAP_STYLE
omits 294ef73 auth/ntlmssp: implement GENSEC_FEATURE_LDAP_STYLE
omits 6d08a2a auth/gensec: add GENSEC_FEATURE_LDAP_STYLE define
omits 192d5be auth/ntlmssp: use ndr_push_AV_PAIR_LIST in gensec_ntlmssp_server_negotiate().
omits 3136ede librpc/ndr: add ndr_ntlmssp_find_av() helper function
omits 30b4e8f ntlmssp.idl: make AV_PAIR_LIST public
omits 983edc9 ntlmssp.idl: MsAvRestrictions is MsvAvSingleHost now
omits c3392f3 security.idl: add LSAP_TOKEN_INFO_INTEGRITY
omits 00fbd5b auth/ntlmssp: use ntlmssp_version_blob() in the server
omits 3a52567 auth/ntlmssp: let the client always include NTLMSSP_NEGOTIATE_VERSION
omits 9419ce6 auth/ntlmssp: add ntlmssp_version_blob()
omits a575c5e auth/ntlmssp: don't send domain and workstation in the NEGOTIATE_MESSAGE
omits c8059be auth/ntlmssp: set NTLMSSP_ANONYMOUS for anonymous authentication
omits 34ce552 auth/ntlmssp: define all client neg_flags in gensec_ntlmssp_client_start()
omits 6d18d46 auth/ntlmssp: NTLMSSP_NEGOTIATE_VERSION is not a negotiated option
omits 3938b90 auth/ntlmssp: split out a debug_ntlmssp_flags_raw() that's more complete
omits db7e894 s3:ntlm_auth: also use gensec for "ntlmssp-client-1" and "gss-spnego-client"
omits aea667c winbindd: make use of ntlmssp_resume_ccache backend for WINBINDD_CCACHE_NTLMAUTH
omits 6ee35d9 s3:auth_generic: add "ntlmssp_resume_ccache" backend in auth_generic_client_prepare()
omits 81745b6 auth/ntlmssp: implement GENSEC_FEATURE_NTLM_CCACHE
omits 7303a10 auth/gensec: add GENSEC_FEATURE_NTLM_CCACHE define
omits 7fcefea auth/ntlmssp: provide a "ntlmssp_resume_ccache" backend
omits 3585e41 s3:ntlmssp: remove unused libsmb/ntlmssp_wrap.c
omits 993420f s3:auth_generic: make use of the top level NTLMSSP client code
omits cb7bf55 winbindd: pass an memory context to do_ntlm_auth_with_stored_pw()
omits c9d2b8d s3:tests/test_ntlm_auth_s3: test ntlmssp-client-1 with cached credentials
omits 0f54d60 s3:torture/test_ntlm_auth.py: add --client-use-cached-creds option
omits 2dac558 s3:torture/test_ntlm_auth.py: replace tabs with whitespaces
omits 8800015 s3:ntlm_auth: fix --use-cached-creds with ntlmssp-client-1
omits 33f7f44 auth/ntlmssp: add gensec_ntlmssp_server_domain()
omits aa0ed80 auth/ntlmssp: keep ntlmssp_state->server.netbios_domain on the correct talloc context
omits 14b2a51 s3:auth_generic: add auth_generic_client_start_by_sasl()
omits a0feacf s3:auth_generic: add auth_generic_client_start_by_name()
omits 9e42312 auth/gensec: make gensec_security_by_name() public
omits 35f80cf auth/gensec: handle gensec_security_by_sasl_name(NULL, ...)
omits 2e6af15 auth/gensec: keep a pointer to a possible child/sub gensec_security context
omits b474d13 s4:pygensec: make sig_size() and sign/check_packet() available
omits f702a9e s3:librpc/gse: implement gensec_gse_max_{input,wrapped}_size()
omits 5a046d5 s3:librpc/gse: don't log gss_acquire_creds failed at level 0
omits 47272c3 s3:librpc/gse: correctly support GENSEC_FEATURE_SESSION_KEY
omits 2b351b7 s3:librpc/gse: set GSS_KRB5_CRED_NO_CI_FLAGS_X in gse_init_client() if available
omits 91e2717 s3:librpc/gse: fix debug message in gse_init_client()
omits 4357b22 s3:librpc/gse: make use of GSS_C_EMPTY_BUFFER in gse_init_client
omits 88a09dc wscript_configure_system_mitkrb5: add configure checks for GSS_KRB5_CRED_NO_CI_FLAGS_X
omits 0555445 s3:libads: remove unused ads_connect_gc()
omits 49a7697 s4:librpc/rpc: map alter context SEC_PKG_ERROR to NT_STATUS_LOGON_FAILURE
omits 3121494 librpc/rpc: add error mappings for NO_CALL_ACTIVE, OUT_OF_RESOURCES and BAD_STUB_DATA
omits e7595fa dcerpc.idl: make WERROR RPC faults available in ndr_print output
omits 0117f64 epmapper.idl: make epm_twr_t available in python bindings
omits 0d53d8a s3:selftest: run samba3.blackbox.smbclient_auth.plain also with $SERVER_IPV6
omits 16e14f9 s3:test_smbclient_auth.sh: test using the ip address in the unc path (incl. ipv6-literal.net)
omits 7f24c0b lib/util_net: add support for .ipv6-literal.net
omits 6b6fbcf lib/util_net: move ipv6 linklocal handling into interpret_string_addr_internal()
omits a70f620 spnego: Correctly check asn1_tag_remaining retval
omits 5530d91 s4:torture/ntlmssp fix a compiler warning
omits 7019a9c s4-torture: flesh out ntlmssp_AUTHENTICATE_MESSAGE_check().
omits 14f4002 s4-torture: add ndr pullpush validation for NTLMSSP CHALLENGE and AUTHENTICATE messages.
omits 97ac363 s4-torture: flesh out ntlmssp_CHALLENGE_MESSAGE_check().
omits a54b256 s4-torture: activate testing of CHALLENGE and AUTHENTICATE ntlmssp messages.
omits 109618b s4-torture: fill in ntlmssp_NEGOTIATE_MESSAGE_check().
omits 1865f12 ntlmssp: when pulling messages it is important to clear memory first.
omits 42c2d63 ntlmssp: properly document version defines in IDL (from MS-NLMP).
omits 1e0e8d6 ntlmssp: fix copy/paste typo in CHALLENGE_MESSAGE in IDL.
omits 5b4999a ntlmssp: add some missing defines from MS-NLMP to our IDL.
omits e73cfb9 tls: increase Diffie-Hellman group size to 2048 bits
omits 24c6d42 s3:pam_smbpass: remove unused dependency to LIBNTLMSSP
omits 62e5169 s3:clispnego: fix confusing warning in spnego_gen_krb5_wrap()
omits 5bbf46e s3: smbclient: asn1_extract_blob() stops further asn1 processing by setting has_error.
omits 83b6653 asn1: Make 'struct asn1_data' private
omits 66ea451 asn1: Remove a reference to asn1_data internals
omits c27fd04 libcli: Remove a reference to asn1->ofs
omits 9c89afd lib: Use asn1_current_ofs()
omits 95fa77f asn1: Add asn1_current_ofs()
omits 54aecd7 lib: Use asn1_has_nesting
omits 9ac8312 asn1: Add asn1_has_nesting
omits 2b11481 lib: Use asn1_extract_blob()
omits a44d9bb asn1: Add asn1_extract_blob()
omits 274c9a4 lib: Use asn1_set_error()
omits a330540 asn1: Add asn1_set_error()
omits 89d0afc lib: Use asn1_has_error()
omits 4b04663 asn1: Add asn1_has_error()
omits d51a607 asn1: Make "struct nesting" private
omits 6d2f6e1 asn1: Add some early returns
omits bb6607a asn1: Add overflow check to asn1_write
omits 7ef1333 asn1: Make asn1_peek_full_tag return 0/errno
omits 980785a asn1: Remove an unused asn1 function
omits b5c5fec Prevent a crash in Python modules that try to authenticate by ensuring we reject cases where credendials fields are not intialized.
omits a06c22f VERSION: Bump version up to 4.3.7...
omits 36ec246 CVE-2016-2113: s4:lib/tls: implement infrastructure to do peer verification
omits 2d2ab58 CVE-2016-2113: s4:lib/tls: create better certificates and sign the host cert with the ca cert
omits 6db65fb CVE-2016-2112: docs-xml: change the default of "ldap server require strong auth" to "yes"
omits 5fbce21 CVE-2016-2112: s4:selftest: run some ldap test against ad_dc_ntvfs, fl2008r2dc and fl2003dc
omits 39c169b CVE-2016-2112: selftest: servers with explicit "ldap server require strong auth" options
omits d68c225 CVE-2016-2112: s4:selftest: run samba4.ldap.bind against fl2008r2dc
omits f44664d CVE-2016-2112: s4:ldap_server: implement "ldap server require strong auth" option
omits 8105ff1 CVE-2016-2112: docs-xml: add "ldap server require strong auth" option
omits 483a926 CVE-2016-2112: s4:ldap_server: reduce scope of old_session_info variable
omits 52ae0cc CVE-2016-2112: s4:selftest: use --option=clientldapsaslwrapping=plain for plain connections
omits c4f9336 CVE-2016-2112: s4:libcli/ldap: auto upgrade to SIGN after STRONG_AUTH_REQUIRED
omits 01acb21 CVE-2016-2112: s4:libcli/ldap: make sure we detect downgrade attacks
omits 76b1826 CVE-2016-2112: s4:libcli/ldap: honour "client ldap sasl wrapping" option
omits 187e32b CVE-2016-2112: s3:libads: make sure we detect downgrade attacks
omits 0d2e185 CVE-2016-2111: docs-xml/smbdotconf: default "raw NTLMv2 auth" to "no"
omits be45c4b CVE-2016-2111: selftest:Samba3: use "raw NTLMv2 auth = yes" for nt4_dc
omits ae29971 CVE-2016-2111: s4:smb_server: implement "raw NTLMv2 auth" checks
omits 560213f CVE-2016-2111: s3:auth: implement "raw NTLMv2 auth" checks
omits 5d69272 CVE-2016-2111: docs-xml: add "raw NTLMv2 auth" defaulting to "yes"
omits 7bad35b CVE-2016-2111: docs-xml: document the new "client NTLMv2 auth" and "client use spnego" interaction
omits f5035af CVE-2016-2111: s3:libsmb: don't send a raw NTLMv2 response when we want to use spnego
omits acd6697 CVE-2016-2111: s4:libcli: don't send a raw NTLMv2 response when we want to use spnego
omits 7e5966f CVE-2016-2111: s4:param: use "client use spnego" to initialize options->use_spnego
omits dc359da CVE-2016-2111: s4:libcli: don't allow the LANMAN2 session setup without "client lanman auth = yes"
omits 379604a CVE-2016-2111: s4:torture/base: don't use ntlmv2 for dos connection in base.samba3error
omits 7f303d7 CVE-2016-2111: s4:torture/raw: don't use ntlmv2 for dos connection in raw.samba3badpath
omits b38d560 CVE-2016-2111: s3:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
omits 54fef0f CVE-2016-2111: s4:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
omits 8421d13 CVE-2016-2111: libcli/auth: add NTLMv2_RESPONSE_verify_netlogon_creds() helper function
omits 80401c9 CVE-2016-2111: s4:torture/rpc: fix rpc.pac ntlmv2 test
omits a193154 CVE-2016-2111: s4:torture/rpc: fix rpc.samba3.netlogon ntlmv2 test
omits ab0e71b CVE-2016-2111: s3:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
omits aaf3893 CVE-2016-2111: s4:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
omits 1d33ade CVE-2016-2111: s3:rpc_server/netlogon: always go through netr_creds_server_step_check()
omits d960002 CVE-2016-2111: s4:rpc_server: implement 'server schannel = yes' restriction
omits e1101a6 CVE-2016-2111: auth/gensec: correctly report GENSEC_FEATURE_{SIGN,SEAL} in schannel_have_feature()
omits 0654735 CVE-2016-2111: auth/gensec: require DCERPC_AUTH_LEVEL_INTEGRITY or higher in schannel_update()
omits 861b86d CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC generation (as client)
omits 4956428 CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC checking (as server)
omits c5032e9 CVE-2016-2110: ntlmssp.idl: add NTLMSSP_MIC_{OFFSET,SIZE}
omits d35bc35 CVE-2016-2110: libcli/auth: pass server_timestamp to SMBNTLMv2encrypt_hash()
omits f77cf81 CVE-2016-2110: auth/credentials: pass server_timestamp to cli_credentials_get_ntlm_response()
omits 95af5d9 CVE-2016-2110: auth/credentials: clear the LMv2 key for NTLMv2 in cli_credentials_get_ntlm_response()
omits 769eec8 CVE-2016-2110: auth/ntlmssp: implement gensec_ntlmssp_may_reset_crypto()
omits 6b0ee68 CVE-2016-2110: auth/ntlmssp: call ntlmssp_sign_init if we provide GENSEC_FEATURE_SIGN
omits 6675796 CVE-2016-2110: auth/gensec: add gensec_may_reset_crypto() infrastructure
omits ce87fef CVE-2016-2110: auth/gensec: require spnego mechListMIC exchange for new_spnego backends
omits 6a56dd2 CVE-2016-2110: auth/gensec: fix the client side of a spnego downgrade
omits 77d59f1 CVE-2016-2110: auth/gensec: fix the client side of a new_spnego exchange
omits beb1f96 CVE-2016-2110: libcli/auth: add SPNEGO_REQUEST_MIC to enum spnego_negResult
omits 3a934e1 CVE-2016-2110: libcli/auth: use enum spnego_negResult instead of uint8_t
omits fc3582b CVE-2016-2110: winbindd: add new_spnego to the WINBINDD_CCACHE_NTLMAUTH response
omits 03ccba7 CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require NTLM2 (EXTENDED_SESSIONSECURITY) when using ntlmv2
omits 45a1008 CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require flags depending on the requested features
omits 67787ff CVE-2016-2110: auth/ntlmssp: don't let ntlmssp_handle_neg_flags() change ntlmssp_state->use_ntlmv2
omits 5b86a85 CVE-2016-2110: auth/ntlmssp: don't allow a downgrade from NTLMv2 to LM_AUTH
omits e6e8da9 CVE-2016-2110: auth/ntlmssp: split allow_lm_response from allow_lm_key
omits 00d1eaa9 CVE-2016-2110: auth/ntlmssp: maintain conf_flags and required_flags variables
omits ebd79e5 CVE-2016-2110: auth/ntlmssp: let ntlmssp_handle_neg_flags() return NTSTATUS
omits 1437724 s3:ntlm_auth: pass manage_squid_request() needs a valid struct ntlm_auth_state from within get_password()
omits b4125aa s3:rpc_server/samr: correctly handle session_extract_session_key() failures
omits 54cd107 s4:selftest: run rpc.netlogon.admin also over ncalrpc and ncacn_ip_tcp
omits 40b3284 libads: Fix CID 1356316 Uninitialized pointer read
omits 9af768f libsmb: Fix CID 1356312 Explicit null dereferenced
omits 9f3ae00 s3-auth: check for return code of cli_credentials_set_machine_account().
omits 1b646bb s4-smb_server: check for return code of cli_credentials_set_machine_account().
omits 168b015 s4:rpc_server: require access to the machine account credentials
omits cbeff28 auth/gensec: split out a gensec_verify_dcerpc_auth_level() function
omits 2779ec8 auth/gensec: make sure gensec_security_by_auth_type() returns NULL for AUTH_TYPE_NONE
omits 2c1fa78 s4:torture/rpc/schannel: don't use validation level 6 without privacy
omits eef3a10 s4:torture/rpc: correctly use torture_skip() for test_ManyGetDCName() without NCACN_NP
omits dba5783 s4:torture/rpc/samlogon: use DCERPC_SEAL for netr_LogonSamLogonEx and validation level 6
omits 8dea510 s4:torture/rpc/samr: use DCERPC_SEAL in setup_schannel_netlogon_pipe()
omits 10eda28 s4:torture/netlogon: add/use test_SetupCredentialsPipe() helper function
omits 402d4ac s3:test_rpcclient_samlogon.sh: test samlogon with schannel
omits ff65d5b s3:selftest: rpc.samr.passwords.validate should run with [seal] in order to be realistic
omits 8b90698 selftest: setup information of new samba.example.com CA in the client environment
omits 46fa417 selftest: set tls crlfile if it exist
omits 5e62983 selftest: use Samba::prepare_keyblobs() and use the certs from the new CA
omits 0e5d2dd selftest: add Samba::prepare_keyblobs() helper function
omits 91d2c97 selftest: mark commands in manage-CA-samba.example.com.sh as DONE
omits bbb66a9 selftest: add CA-samba.example.com (non-binary) files
omits 6a09084 selftest: add config and script to create a samba.example.com CA
omits 03479af selftest: add some helper scripts to mange a CA
omits da66e65 selftest: s!addc.samba.example.com!addom.samba.example.com!
omits df14c6a s4:rpc_server: dcesrv_generic_session_key should only work on local transports
omits bb63122 s4:rpc_server/samr: hide a possible NO_USER_SESSION_KEY error
omits 511dfb4 s4:librpc/rpc: dcerpc_generic_session_key() should only be available on local transports
omits 934f731 s4:torture:samba3rpc: use an authenticated SMB connection and an anonymous DCERPC connection on top
omits fe4cdee s4:selftest: run rpc.samr over ncacn_np instead of ncacn_ip_tcp
omits 528db7f s4:torture: the backupkey tests need to use ncacn_np: for LSA calls
omits b282ac7 s4:torture/rpc: do testjoin only via ncalrpc or ncacn_np
omits 5a8126d s3:libsmb: remove unused functions in clispnego.c
omits 506ac99 s3:libsmb: remove unused cli_session_setup_kerberos*() functions
omits d1921c6 s3:libsmb: make use of cli_session_setup_gensec*() for Kerberos
omits a167728 s3:libsmb: call cli_state_remote_realm() within cli_session_setup_spnego_send()
omits a7f8e94 s3:libsmb: provide generic cli_session_setup_gensec_send/recv() pair
omits 4b55e96 s3:libsmb: let cli_session_setup_ntlmssp*() use gensec_update_send/recv()
omits 20c847f s3:libsmb: unused ntlmssp.c
omits 7767d82 s3:libsmb: make use gensec based SPNEGO/NTLMSSP
omits a16bbec s3:libads: make use of ads_sasl_spnego_gensec_bind() for GSS-SPNEGO with Kerberos
omits 6507d6f s3:libads: keep service and hostname separately in ads_service_principal
omits 1571a9f s3:libads: don't pass given_principal to ads_generate_service_principal() anymore.
omits 8e7229d s3:libads: provide a generic ads_sasl_spnego_gensec_bind() function
omits 468c68c s3:libads: make use of GENSEC_OID_SPNEGO in ads_sasl_spnego_ntlmssp_bind()
omits ea56849 s3:libads: make use of GENSEC_FEATURE_LDAP_STYLE
omits 52629ac s3:libads: add missing TALLOC_FREE(frame) in error path
omits c5da725 s4:ldap_server: make use of GENSEC_FEATURE_LDAP_STYLE
omits 0577097 s4:selftest: simplify the loops over samba4.ldb.ldap
omits ff77277 s4:selftest: we don't need to run ldap test with --option=socket:testnonblock=true
omits f74c031 s4:libcli/ldap: fix retry authentication after a bad password
omits 2ace844 s4:libcli/ldap: make use of GENSEC_FEATURE_LDAP_STYLE
omits 482555b auth/ntlmssp: remove ntlmssp_unwrap() fallback for LDAP
omits 8f747f6 auth/ntlmssp: add more compat for GENSEC_FEATURE_LDAP_STYLE
omits 2a496ba auth/ntlmssp: implement GENSEC_FEATURE_LDAP_STYLE
omits eafd97e auth/gensec: add GENSEC_FEATURE_LDAP_STYLE define
omits c9edc04 auth/ntlmssp: use ndr_push_AV_PAIR_LIST in gensec_ntlmssp_server_negotiate().
omits 5c61712 librpc/ndr: add ndr_ntlmssp_find_av() helper function
omits 92d7499 ntlmssp.idl: make AV_PAIR_LIST public
omits e2e7ffe ntlmssp.idl: MsAvRestrictions is MsvAvSingleHost now
omits 159be66 security.idl: add LSAP_TOKEN_INFO_INTEGRITY
omits 62d31f6 auth/ntlmssp: use ntlmssp_version_blob() in the server
omits 47cebc5 auth/ntlmssp: let the client always include NTLMSSP_NEGOTIATE_VERSION
omits 423f193 auth/ntlmssp: add ntlmssp_version_blob()
omits 28725ef auth/ntlmssp: don't send domain and workstation in the NEGOTIATE_MESSAGE
omits 7494612 auth/ntlmssp: set NTLMSSP_ANONYMOUS for anonymous authentication
omits 3adc8f5 auth/ntlmssp: define all client neg_flags in gensec_ntlmssp_client_start()
omits 2e40c60 auth/ntlmssp: NTLMSSP_NEGOTIATE_VERSION is not a negotiated option
omits 2663f44 auth/ntlmssp: split out a debug_ntlmssp_flags_raw() that's more complete
omits 75bdf52 s3:ntlm_auth: also use gensec for "ntlmssp-client-1" and "gss-spnego-client"
omits b57c0e7 winbindd: make use of ntlmssp_resume_ccache backend for WINBINDD_CCACHE_NTLMAUTH
omits 8f69094 s3:auth_generic: add "ntlmssp_resume_ccache" backend in auth_generic_client_prepare()
omits cb0719d auth/ntlmssp: implement GENSEC_FEATURE_NTLM_CCACHE
omits 333e02b auth/gensec: add GENSEC_FEATURE_NTLM_CCACHE define
omits 4e2e1f6 auth/ntlmssp: provide a "ntlmssp_resume_ccache" backend
omits 4f94262 s3:ntlmssp: remove unused libsmb/ntlmssp_wrap.c
omits 17d6b17 s3:auth_generic: make use of the top level NTLMSSP client code
omits 6ed7942 winbindd: pass an memory context to do_ntlm_auth_with_stored_pw()
omits eab2039 s3:tests/test_ntlm_auth_s3: test ntlmssp-client-1 with cached credentials
omits 06e6d37 s3:torture/test_ntlm_auth.py: add --client-use-cached-creds option
omits b8eabce s3:torture/test_ntlm_auth.py: replace tabs with whitespaces
omits 6b766dc s3:ntlm_auth: fix --use-cached-creds with ntlmssp-client-1
omits c6aef8c auth/ntlmssp: add gensec_ntlmssp_server_domain()
omits 3d0fc91 auth/ntlmssp: keep ntlmssp_state->server.netbios_domain on the correct talloc context
omits 76e22d9 s3:auth_generic: add auth_generic_client_start_by_sasl()
omits 4f97bcb s3:auth_generic: add auth_generic_client_start_by_name()
omits 1317625 auth/gensec: make gensec_security_by_name() public
omits 967282e auth/gensec: handle gensec_security_by_sasl_name(NULL, ...)
omits 7cad825 auth/gensec: keep a pointer to a possible child/sub gensec_security context
omits 9e8749a s4:pygensec: make sig_size() and sign/check_packet() available
omits 028c609 s3:librpc/gse: implement gensec_gse_max_{input,wrapped}_size()
omits 8614c6c s3:librpc/gse: don't log gss_acquire_creds failed at level 0
omits 1448dba s3:librpc/gse: correctly support GENSEC_FEATURE_SESSION_KEY
omits 55b0f3c s3:librpc/gse: set GSS_KRB5_CRED_NO_CI_FLAGS_X in gse_init_client() if available
omits b10c1db s3:librpc/gse: fix debug message in gse_init_client()
omits 73f2fa6 s3:librpc/gse: make use of GSS_C_EMPTY_BUFFER in gse_init_client
omits 26d4f25 wscript_configure_system_mitkrb5: add configure checks for GSS_KRB5_CRED_NO_CI_FLAGS_X
omits 1a5f082 s3:libads: remove unused ads_connect_gc()
omits 93332f4 s4:librpc/rpc: map alter context SEC_PKG_ERROR to NT_STATUS_LOGON_FAILURE
omits d356450 librpc/rpc: add error mappings for NO_CALL_ACTIVE, OUT_OF_RESOURCES and BAD_STUB_DATA
omits 6ea3642 dcerpc.idl: make WERROR RPC faults available in ndr_print output
omits b6a1b04 epmapper.idl: make epm_twr_t available in python bindings
omits 557fc14 s3:selftest: run samba3.blackbox.smbclient_auth.plain also with $SERVER_IPV6
omits 338e1a9 s3:test_smbclient_auth.sh: test using the ip address in the unc path (incl. ipv6-literal.net)
omits c51b125 lib/util_net: add support for .ipv6-literal.net
omits b0c603c lib/util_net: move ipv6 linklocal handling into interpret_string_addr_internal()
omits 84f8c9a spnego: Correctly check asn1_tag_remaining retval
omits 4d73b84 s4:torture/ntlmssp fix a compiler warning
omits 2e8f4c8 s4-torture: flesh out ntlmssp_AUTHENTICATE_MESSAGE_check().
omits baa0a10 s4-torture: add ndr pullpush validation for NTLMSSP CHALLENGE and AUTHENTICATE messages.
omits f39d6d4 s4-torture: flesh out ntlmssp_CHALLENGE_MESSAGE_check().
omits dd6b293 s4-torture: activate testing of CHALLENGE and AUTHENTICATE ntlmssp messages.
omits 98466ff s4-torture: fill in ntlmssp_NEGOTIATE_MESSAGE_check().
omits b1f72ca ntlmssp: when pulling messages it is important to clear memory first.
omits 3b93cf0 ntlmssp: properly document version defines in IDL (from MS-NLMP).
omits 9ed62a3 ntlmssp: fix copy/paste typo in CHALLENGE_MESSAGE in IDL.
omits 0c1671a ntlmssp: add some missing defines from MS-NLMP to our IDL.
omits 30812c4 VERSION: Set version to 4.4.0...
omits 2a33a44 VERSION: Bump version up to 4.0.1...
omits 5a1b236 WHATSNEW: Add release notes for Samba 4.4.0.
omits d864232 lib/socket/interfaces: Fix some uninitialied bytes.
omits 5d8c95f build: fix build when --without-quota specified
omits 8ed6376 WHATSNEW: document the experimental smb3-multi-channel feature
omits 356cff2 VERSION: Bump version up to 4.4.0rc6...
omits 3026d93 VERSION: Disable git snapshots for the Samba 4.4.0rc5 release.
omits b65c5f1 WHATSNEW: Add release notes for Samba 4.4.0rc5.
omits 8984b15 smbd: enable multi-channel if 'server multi channel support = yes' in the config
omits 4895c3f param: add parameter "server multi channel support", defaults to off.
omits 40fb6fd selftest: Avoid sorting issues on Ubuntu 10.04 vs 14.04
omits 5184015 pytalloc: Correct description of pytalloc_Get{Base,}ObjectType behaviour
omits caab62a dbcheck: Check for and remove duplicate values in attributes
omits 017f1db selftest: Allow 4 hours for the test to run (ouch!)
omits 4b29e7b pysmb: Use pytalloc_BaseObject_PyType_Ready()
omits f7c7cbd pysmb: Do not use pytalloc_Object directly
omits b784432 pysmb: Rework py_smb_new() to use pytalloc_steal()
omits 2b1ff18 pysmb: Use pytalloc_get_mem_ctx()
omits 7ea3e7f pysmb: Use pytalloc_get_ptr()
omits 5d9eeb5 pyregistry: Use pytalloc_BaseObject_PyType_Ready()
omits a40c6f9 pyauth: Use pytalloc_BaseObject_PyType_Ready()
omits 914347f pygensec: Use pytalloc_BaseObject_PyType_Ready()
omits 39b05c2 pygensec: Use pytalloc_steal() in gensec_start_{client,server}()
omits 4cc1351 pyparam: Use pytalloc_BaseObject_PyType_Ready()
omits 83aef0a py_passdb: Use pytalloc_BaseObject_PyType_Ready()
omits d837f8d pycredentials: Use pytalloc_BaseObject_PyType_Ready()
omits ac3265b pytalloc: Add pytalloc_BaseObject_PyType_Ready() wrapper
omits 819a07a pyparam: Do not use pytalloc_Object directly
omits 1e839dc pypassdb: Do not use pytalloc_Object directly
omits 42dfaa1 pycredentials: Remove PyCredentialCacheContainerObject
omits ec66fe1 pycredentials: Do not use pytalloc_Object directly
omits 7bb3111 dbcheck: Avoid spurious warnings in dbcheck due to objectclass sorting
omits d9b2796 dbcheck: Fix incorrect/duplicate attrid in replPropertMetaData
omits 6a89304 selftest: Update release-4-1-0rc3 with more test records
omits 934623f rpc_server/drsuapi: Block replication of incorrect/duplicate attrid in replPropertMetaData
omits 21bf6af repl_meta_data: Correctly use msDS-IntId for custom schema, not the prefixMap value
omits d3bffda pidl: Use a tmp_ctx helper variable
omits 7391fc8 pidl: Use the $mem_ctx helper variable
omits 22905ce pidl: Fix our python reference handling
omits 1e035b5 pyrpc: Clarify failure mode after pytalloc_reference_ex() improvements
omits 4398286 talloc: Bump version number
omits ab1bcc3 pytalloc: Add new BaseObject
omits 61ba9bc pytalloc: add a _pytalloc_get_type() helper function and generate PyExc_TypeError on mismatch
omits e2cd642 talloc: add _pytalloc_get_ptr/_pytalloc_get_mem_ctx helper functions
omits 5a22910 talloc: Improve testsuite by avoiding path issues
omits 058b78c pyrpc: Add warning about abuse of py_return_ndr_struct()
omits aac2ecc pydsdb: Fix returning of ldb.MessageElement.
omits 6e83a84 pyldb: Add warning about pyldb_MessageElement_AsMessageElement()
omits b9d924a selftest: specify a maximum runtime for 'make testenv' of 1 year
omits fbb57a5 s3/passdb/py_passdb.c: free frame before returning
omits a411046 build: mark explicit dependencies on pytalloc-util
omits 1b08ea3 libsmb/pysmb: add pytalloc-util dependency to fix the build.
omits 9ab767f selftest: mark samba4.winbind.struct.domain_info.ad_member as flapping
omits 36b0b0e build: fix disk-free quota support on Solaris 10
omits 29b44e5 smbd: Only check dev/inode in open_directory, not the full stat()
omits a44025b s3:winbindd: don't unclude two '\0' at the end of the domain list
omits a83a26f s3:libnet:libnet_join: update msDS-SupportedEncryptionTypes (if required) with machine creds.
omits a35ce5d s3:libnet:libnet_join: fill in output enctypes and only modify when necessary.
omits 60c5909 s3:libnet:libnet_join: define list of desired encryption types only once.
omits acc8dd2 s3:librpc:idl:libnet_join: add encryption types to libnet_JoinCtx.
omits e2b8b2c s3:libnet:libnet_join: always try to create machineaccount via LDAP first.
omits 35ecc4d s3:libads:ldap: fix ads_check_ou_dn to deal with account_ou not being initialized
omits c6f7bbd s3:libads:ndr: add ADS_AUTH_USER_CREDS to ndr_print_ads_auth_flags()
omits 0dc8e31 s3:libads:ldap: print LDAP error message with log level 10.
omits f74d7f5 s3:libnet:libnet_join: prepare to allow connecting with machine creds.
omits 35ec8ac Partly revert "s3:libads: setup the msDS-SupportedEncryptionTypes attribute on ldap_add"
omits 0268dc2 vfs_glusterfs: Fix use after free in AIO callback.
omits 4e48421 s3:smbd: add negprot remote arch detection for OSX
omits 9d588a9 s3:smbd: rework negprot remote arch detection
omits 28e5e95 ctdb-common: For AF_PACKET socket types, protocol is in network order
omits 5b42463 libnet: make Kerberos domain join site-aware
omits 16e970f dsgetdcname: fix flag check
omits da0f03b dsgetdcname: return an IP address on rediscovery
omits 38091dd dsdb/repl: Ensure we use the LOCAL attid value, not the remote one
omits 2a80859 smbd:smb2: move op variable into scope of use in smb2_create_send
omits 8743f5b smbd:smb2: implement create replay
omits a894f15 smbXsrv.idl: add create_action to smbXsrv_open
omits 9bce93b smbXsrv:open: add smb2srv_open_lookup_replay_cache()
omits 609faee smb2:create: create replay cache when request has a create_guid
omits 579fb66 smbXsrv:open: maintain a replay cache
omits 42a81bf librpc:smbXsrv.idl: add flags to smbXsrv_open
omits 19d66b4 smbd:smb2: allow the REPLAY_OPERATION flag for SMB3+ requests
omits 1938d56 torture:smb2: add smb2.replay.replay-dhv2-lease3
omits fc3c842 torture:smb2: add smb2.replay.replay-oplock-lease
omits 9323ec5 torture:smb2: add smb2.replay.replay-dhv2-lease-oplock
omits ef65682 torture:smb2: add smb2.replay.replay-dhv2-lease2
omits e2e2546 torture:smb2: add smb2.replay.replay-dhv2-lease1
omits b59ff11 torture:smb2:replay: extend CHECK_CREATE_OUT() to know leases
omits 1efc89d torture:smb2: split rename2 into multiple tests and extend these
omits d601af8 torture:smb2: rename replay1 -> replay-commands
omits 26577db torture:smb2: skip replay4 if server does not support multi-channel
omits 2d82282 smbd: fix crash in smbXsrv_client_global_remove()
omits 5782344 netlogon_creds_cli: use dbwrap_purge instead of dbwrap_delete where appropriate
omits 5b439f5 s3:registry: use dbwrap_purge_bystring instead of dbwrap_delete_bystring
omits c0fc2c3 dbwrap: add dbwrap_purge[_bystring]
omits a5a7947 dbwrap_util: improve a debug message in dbwrap_delete_action()
omits b882ed1 torture:smb2: fix skip message if share is not CA
omits d019891 torture:smb2: skip replay5 test if server does not support persistent handles
omits d3a024a torture:smb2: skip replay3 if server does not support Multi-Channel
omits d3206e9 smbd:smb2_creat: remove outdated TODO comments
omits d0db200 smbXsrv_client: factor fetch-locking of global record into function
omits 8d8e111 smbXsrv_session: factor fetch-locking of local record into function
omits 7bbdd9a smbXsrv_session: factor fetch-locking of global record into function
omits 3eec659 smbXsrv_tcon: factor fetch-locking of local record into function
omits d5d58b9 smbXsrv_tcon: factor fetch-locking of global record into function
omits 6c78c8d smbXsrv_open: factor fetch-locking of local record into function
omits c3fcfad smbXsrv_open: factor fetch-locking of global record into function
omits 0b6c3b5 torture:smb2: improve torture_comments in connect test
omits 141605e torture:smb2: fix memory leak in connect test.
omits cf7a4e1 torture:smb2: rewrite connect test to use torture_asserts for create errors
omits 2dd63e5 torture:smb2: rewrite connect test to use torture_asserts
omits 95c7f0f s4-torture: let smb2.replay.replay4 test deal with scale out shares.
omits d20a4c2 s4-torture: let smb2.replay.replay3 test deal with scale out shares.
omits d194ce0 s4-torture: let smb2.replay.replay2 test deal with scale out shares.
omits 19c381c s4:libcli/ldap: add support for LDB_CONTROL_DIRSYNC_EX_OID
omits 2a1ceb8 ldb: version 1.1.26
omits 02e325f ldb: add support for LDB_CONTROL_DIRSYNC_EX
omits 530693d ldb: add LDB_ATTR_FLAG_FORCE_BASE64_LDIF support
omits 33f4491 pyldb: eliminate warnings from python api test
omits f12c897 pyldb: add api tests for search_iterator()
omits e5c7304 pyldb: add ldb.search_iterator()
omits 66112f6 pyldb: fix help message for ldb.search()
omits 11c06aa pyldb: fix memory leak in py_ldb_search()
omits f305aae pyldb: Free correct context when pyldb_Object_AsDn() fails
omits 68b76db ldb: allow a timeout of -1 result in no timeout timer at all.
omits 7a6c31d ldb-samba: fix the timeout setup in ildb_request_send()
omits f511bb3 s4:libcli/ldap: send AbandonRequests for cancelled requests
omits 68dc117 ldb:ABI: add missing pyldb-util.py3-1.1.25.sigs
omits 2a420aa ldb: Avoid a "talloc_steal"
omits d2e0047 ldb: Fix some whitespace
omits e371bd8 Merge branch 'unstable' of https://jelmer.uk/code/samba into unstable
omits 6296c2c releasing package samba version 2:4.3.6+dfsg-1
omits a5239be VERSION: Bump version up to 4.4.0rc5...
omits 331c2a3 VERSION: Disable git snapshots for the Samba 4.4.0rc4 release.
omits 54f95be WHATSNEW: Add release notes for Samba 4.4.0rc4.
omits 38eeb06 CVE-2016-0771: tests/dns: Remove dependencies on env variables
omits f193cd9 CVE-2016-0771: tests/dns: change samba.tests.dns from being a unittest
omits ee2bdcc CVE-2016-0771: tests: rename test getopt to get_opt
omits 4402337 CVE-2016-0771: tests/dns: RPC => DNS roundtrip test
omits 08e558c CVE-2016-0771: dnsserver: don't force UTF-8 for TXT
omits 111d035 CVE-2016-0771: tests/dns: modify tests to check via RPC
omits c4e9392 CVE-2016-0771: tests/dns: Add some more test cases for TXT records
omits c6dd132 CVE-2016-0771: tests/dns: Correct error code for formerly unrun test
omits 5b19529 CVE-2016-0771: tests/dns: restore formerly segfaulting test
omits 14de523 CVE-2016-0771: tests/dns: Add a comment regarding odd Windows behaviour
omits 3115b40 CVE-2016-0771: tests/dns: FORMERR can simply timeout against Windows
omits 48c3137 CVE-2016-0771: tests/dns: prepare script for further testing
omits 01faa56 CVE-2016-0771: tests/dns: Modify dns tests to match new IDL
omits 3fe2141 CVE-2016-0771: dns.idl: make use of dnsp_hinfo
omits d3ac9c3 CVE-2016-0771: s4:dns_server: fix idl for dns_txt_record
omits 8e5a639 CVE-2016-0771: librpc: add ndr_dnsp_string_list_copy() helper function
omits c504551 CVE-2016-0771: librpc: add RPC_NDR_DNSSERVER to dcerpc-samba library
omits 71c64e7 CVE-2016-0771: s4:librpc: python_dns and python_dcerpc_dnsp doesn't require client bindings
omits 1c7096a CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-EA test.
omits ee4d435 CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-ACL test.
omits b13711e CVE-2015-7560: s3: libsmb: Add SMB1-only POSIX cli_posix_setacl() functions. Needed for tests.
omits 3d09f82 CVE-2015-7560: s3: libsmb: Rename cli_posix_getfaclXX() functions to cli_posix_getacl() as they operate on pathnames.
omits 863c44a CVE-2015-7560: s3: smbd: Refuse to set EA's on a symlink.
omits f803247 CVE-2015-7560: s3: smbd: Silently return no EA's available on a symlink.
omits c1fe124 CVE-2015-7560: s3: smbd: Set return values early, allows removal of code duplication.
omits 3f59769 CVE-2015-7560: s3: smbd: Refuse to get a POSIX ACL on a symlink.
omits af2e476 CVE-2015-7560: s3: smbd: Refuse to set a POSIX ACL on a symlink.
omits 4be4e40 CVE-2015-7560: s3: smbd: Refuse to set an ACL from a POSIX file handle on a symlink.
omits e90c33e CVE-2015-7560: s3: smbd: Refuse to get an ACL from a POSIX file handle on a symlink.
omits 468f67b CVE-2015-7560: s3: smbd: Add refuse_symlink() function that can be used to prevent operations on a symlink.
omits ecb3f91 releasing package samba version 2:4.3.5+dfsg-3
omits 02256f1 Ignore debhelper build stamp.
omits e288505 Rebuild against current version of ldb in the archive. Closes: #817036
omits e2fdbec Fix dhclient hook if samba is not installed. Thanks, Jan Braun. Closes: #801976
omits 357e4a4 releasing package samba version 2:4.3.5+dfsg-2
omits 098d9d3 Move strict ldb dependency to samba-dsdb-modules package, which actually contains the modules. Closes: #816210
omits 2bce9c7 New upstream release.
omits 2103dfd Merge tag 'upstream/4.3.6+orig' into unstable
omits 7877404 Imported Upstream version 4.3.6+orig
omits 5a10cf1 Ignore debhelper-build-stamp.
omits 891b6e9 releasing package samba version 2:4.3.5+dfsg-1
omits 72ce8f6 Bump standards version to 3.9.7 (no changes).
omits b8e4656 Add smbclient_krb5_wrapper.
omits fb01148 Ignore debian build stamp files.
omits 9ad8dd1 Ignore backup files.
omits 6e731c6 Drop patch sockets-with-htons.patch: applied upstream.
omits 43a7524 Update usershare patch after upstream changes.
omits 6a5dc70 Loosen dependencies on ldb to ldb >= 1.1.21, per upstream.
omits 722000a Wrap and sort.
omits b8f4a96 New upstream release.
omits 4203084 Merge tag 'upstream/4.3.5+dfsg' into unstable
omits 67382a6 Imported Upstream version 4.3.5+dfsg
omits 2212643 selftest: Add a blackbox test for smbget
omits eb40cac selftest: add a helper for the smbget binary
omits 83b29fb selftest: Reduce code duplication
omits 7ebf660 s3:utils/smbget fix option parsing
omits 789c77e WHATSNEW: document removal of -P in smbget
omits a51b9a4 s3:utils/smbget update manpage with -P option removal
omits 7ea0312 s3:utils/smbget remove -P option
omits 5298c36 s3:utils/smbget improve check of write() result
omits b24f898 s3:utils/smbget abort recursive download on error
omits ac81bbc s3:utils/smbget another int -> bool conversion
omits 52033ae samba3.blackbox.smbclient.forceuser_validusers: Add new test for force user option.
omits e787720 passdb: add linefeed to debug message
omits 1372a32 smbd: ignore SVHDX create context
omits 2335e6f winbindd: return trust parameters when listing trusts
omits 46c1289 winbindd: initialize foreign domain as AD based on trust
omits f9aef97 winbindd: introduce add_trusted_domain_from_tdc()
omits 9004fa4 access based share enum: handle permission set in configuration files
omits bf4b42c tevent: version 0.9.28
omits c5b55c8 lib: tevent: Fix memory leak reported by Pavel Březina <pbrezina at redhat.com> when old signal action restored.
omits 77c1e14 tevent: version 0.9.27
omits 30d815a Fix ETIME handling for Solaris event ports.
omits 30e85f4 ldb: remove outdated comment about type argument in dlist
omits 96e0a11 tevent: remove outdated comment about type argument in dlist
omits 745e81e dlist: remove outdated comment about type argument
omits f20e5b3 dlist: remove unneeded type argument from DLIST_CONCATENATE()
omits ac36022 tevent: remove unneeded type argument from DLIST_CONCATENATE()
omits 95d89dd ldb: remove unneeded argument type from DLIST_CONCATENATE()
omits 9d32594 tevent: remove uneeded type argument from DLIST_DEMOTE()
omits 1a7ceca ldb: remove uneeded type argument from DLIST_DEMOTE()
omits c373524 dlist: remove unneeded argument from DLIST_DEMOTE()
omits 9e06f33 ldb: remove unneeded type arg from DLIST_ADD_END
omits 2081969 tevent: remove unneeded type argument from DLIST_ADD_END
omits c4536f8 dlist: remove unneeded type argument from DLIST_ADD_END()
omits c17b1f6 s3:clispnego: fix confusing warning in spnego_gen_krb5_wrap()
omits 6342580 s3:libads: setup the msDS-SupportedEncryptionTypes attribute on ldap_add
omits c7a93d7 VERSION: Disable git snapshots for the 4.3.6 release.
omits d6bd81e WHATSNEW: Add release notes for Samba 4.3.6.
omits b428ecb CVE-2016-0771: tests/dns: Remove dependencies on env variables
omits 7a11d99 CVE-2016-0771: tests/dns: change samba.tests.dns from being a unittest
omits 0dea999 CVE-2016-0771: tests: rename test getopt to get_opt
omits ad5e885 CVE-2016-0771: tests/dns: RPC => DNS roundtrip test
omits 2b4c7db CVE-2016-0771: dnsserver: don't force UTF-8 for TXT
omits eb46848 CVE-2016-0771: tests/dns: modify tests to check via RPC
omits 63103d1 CVE-2016-0771: tests/dns: Add some more test cases for TXT records
omits 3bca5fc CVE-2016-0771: tests/dns: Correct error code for formerly unrun test
omits 4011a52 CVE-2016-0771: tests/dns: restore formerly segfaulting test
omits 9f7a2a1 CVE-2016-0771: tests/dns: Add a comment regarding odd Windows behaviour
omits 51ac36e CVE-2016-0771: tests/dns: FORMERR can simply timeout against Windows
omits 18faca0 CVE-2016-0771: tests/dns: prepare script for further testing
omits 3196b9e CVE-2016-0771: tests/dns: Modify dns tests to match new IDL
omits 1c69840 CVE-2016-0771: dns.idl: make use of dnsp_hinfo
omits df431a3 CVE-2016-0771: s4:dns_server: fix idl for dns_txt_record
omits 7693d68 CVE-2016-0771: librpc: add ndr_dnsp_string_list_copy() helper function
omits efaf509 CVE-2016-0771: librpc: add RPC_NDR_DNSSERVER to dcerpc-samba library
omits 7ee8a4c CVE-2016-0771: s4:librpc: python_dns and python_dcerpc_dnsp doesn't require client bindings
omits c68280d CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-EA test.
omits ceb6dcc CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-ACL test.
omits 444ba8f CVE-2015-7560: s3: libsmb: Add SMB1-only POSIX cli_posix_setacl() functions. Needed for tests.
omits 25963b1 CVE-2015-7560: s3: libsmb: Rename cli_posix_getfaclXX() functions to cli_posix_getacl() as they operate on pathnames.
omits 63ae57f CVE-2015-7560: s3: smbd: Refuse to set EA's on a symlink.
omits 062876f CVE-2015-7560: s3: smbd: Silently return no EA's available on a symlink.
omits e27f9a4 CVE-2015-7560: s3: smbd: Set return values early, allows removal of code duplication.
omits 2907193 CVE-2015-7560: s3: smbd: Refuse to get a POSIX ACL on a symlink.
omits 0be03f1 CVE-2015-7560: s3: smbd: Refuse to set a POSIX ACL on a symlink.
omits 774e210 CVE-2015-7560: s3: smbd: Refuse to set an ACL from a POSIX file handle on a symlink.
omits fa1c482 CVE-2015-7560: s3: smbd: Refuse to get an ACL from a POSIX file handle on a symlink.
omits 76f6cf5 CVE-2015-7560: s3: smbd: Add refuse_symlink() function that can be used to prevent operations on a symlink.
omits c23f677 VERSION: Bump version up to 4.3.6...
omits 57bc152 VERSION: Bump version up to 4.4.0rc4...
omits ff77a11 VERSION: Disable git snapshots for the Samba 4.4.0rc3 release.
omits 84348b2 WHATSNEW: Add release notes for Samba 4.4.0rc3.
omits a2aea37 Real memeory leak(buildup) issue in loadparm.
omits 956289e libcli: Fix debug message, print sid string for new_ace trustee.
omits d605d6d docs: Add manpage for cifsdd
omits db13d6a s4-client: Fix cifsdd arg parsing for skip
omits fce2c82 docs: Add example for domain logins to smbspool man page.
omits a5f6056 script/release.sh: generate announce.${tagname}.patch.txt in announcement_samba_rc()
omits 3e92dce script/release.sh: improve error messages if the tag verification fails
omits 1a70742 s3-waf: Install smbspool_krb5_wrapper in LIBEXECDIR
omits 389c89c ctdb: Install helpers under libexecdir
omits 8a42885 VERSION: Disable git snapshots for the 4.3.5 release.
omits b35144d WHATSNEW: Add release notes for Samba 4.3.5.
omits 3a4be07 ctdb-scripts: Drop use of "smbcontrol winbindd ip-dropped ..."
omits 6c6599c ctdb-scripts: Drop use of "smbcontrol winbindd ip-dropped ..."
omits 4f637ba lib/tsocket: workaround sockets not supporting FIONREAD
omits 6774af1 param: Fix str_list_v3 to accept ; again
omits b65697f lib:socket: fix CID 1350009 - illegal memory accesses (BUFFER_SIZE_WARNING)
omits 08b1ff8 s3:utils/smbget set default blocksize
omits 5ca7624 s3:utils/smbget add a error message on allocation error
omits 558663a lib/socket: Fix improper use of default interface speed
omits 903b13e loadparm: Fix memory leak issue.
omits 2c91eb7 Revert "ctdb-daemon: Check packet generation against database generation"
omits f3bca17 s3: smbd: posix_acls: Fix check for setting u:g:o entry on a filesystem with no ACL support.
omits 0221677 s3:smbd:open: Skip redundant call to file_set_dosmode when creating a new file.
omits c358f3c smbd: Fix CID 1351216 Dereference null return value
omits ed8a55f smbd: Fix CID 1351215 Improper use of negative value
omits 6c2a3e2 lib:socket: fix CID 1350010 - integer OVERFLOW_BEFORE_WIDEN
omits f8618dc lib/tsocket: workaround sockets not supporting FIONREAD
omits 6c1a5f0 param: Fix str_list_v3 to accept ; again
omits 11b89bd loadparm: Fix memory leak issue.
omits 4526ba6 s3: smbd: posix_acls: Fix check for setting u:g:o entry on a filesystem with no ACL support.
omits ebb7d66 s3:smbd:open: Skip redundant call to file_set_dosmode when creating a new file.
omits f1d0341 docs-xml: fix typo in smbspool_krb5_wrapper manpage.
omits 0a0276b VERSION: Bump version up to 4.4.0rc3...
omits 186206f VERSION: Disable git snapshots for the Samba 4.4.0rc2 release.
omits 0a81ac4 WHATSNEW: Add release notes for Samba 4.4.0rc2.
omits 4c7f237 docs: Add smbspool_krb5_wrapper manpage
omits f3cfe82 docs-xml: fix typo in smbspool_krb5_wrapper manpage.
omits b6a6011 docs: Add smbspool_krb5_wrapper manpage
omits ac49d96 s3:vfs:glusterfs: fix build after quota changes.
omits 7d7a14f python:tests/core: add tests for arcfour_encrypt() and string_to_byte_array()
omits 9270b1d8 python:tests/core: add tests for arcfour_encrypt() and string_to_byte_array()
omits 6c44fab s4:scripting/devel: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
omits 8acf14e python:samba/netcmd/domain: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
omits b950d91 python:samba/join.py: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
omits 4e6d6c7 python:samba: add a generic arcfour_encrypt() helper function
omits ffd18e1 python:samba: add a generic string_to_byte_array() helper function
omits d6db609 s4:scripting/devel: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
omits e91612e python:samba/netcmd/domain: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
omits 9517f4b python:samba/join.py: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
omits 280ccf1 python:samba: add a generic arcfour_encrypt() helper function
omits 04b2073 python:samba: add a generic string_to_byte_array() helper function
omits b422510 ctdb-common: Use documented names for protocol family in socket()
omits 4945439 Release 2:4.3.3+dfsg-2
omits fe875f3 ctdb-common: Use documented names for protocol family in socket()
omits 9ca2add ctdb-common: Protocol argument must be in host order for socket() call
omits 522c1c5 ctdb-common: Protocol argument must be in host order for socket() call
omits 67399a9 Fix CTDB behavior since CVE-2015-8543 (Closes: #813406)
omits f2dc71c s3: smbd: Fix timestamp rounding inside SMB2 create.
omits 9eed186 WHATSNEW: update with latest parameter updates for smbget
omits 2978226 s3-utils/smbget: Update manpages for parameter changes
omits a7046bc s3-utils/smbget: Fix user-/name password reading from rcfile
omits 9d4cbe6 s3-utils/smbget: Fix reading the rcfile
omits 1ebeb06 s3-utils/smbget: Fix option parsing and apply samba defaults
omits 2aadb75 selftest: fix test_dfree_quota.sh
omits 3029dc0 ctdb: do not provide a useless pkgconfig file for ctdb.
omits 7da9c65 smbd: show correct disk size for different quota and dfree block sizes
omits 3e600d6 s3: smbd: Fix timestamp rounding inside SMB2 create.
omits 830f003 smbd: show correct disk size for different quota and dfree block sizes
omits 67db303 s3:utils/smbget fix recursive download
omits 155d821 waf: Only build smb_krb5_wrapper if we have CUPS
omits 2b218c3 s3-client: Add a KRB5 wrapper for smbspool
omits 1133650 VERSION: Bump version up to 4.4.0rc2...
omits 6c547b3 VERSION: Set version to 4.4.0rc1...
omits d201a20 WHATSNEW: Add smbstatus changes.
omits c1bbe58 WHATSNEW: Extend release notes for Samba 4.4.0rc1.
omits 192f151 waf: Only build smb_krb5_wrapper if we have CUPS
omits 91eeeb7 disk_quotas: style fix
omits 6689499 vfs_gpfs: make sure get_quota does not return bogus values
omits de3c2ed make disk_norm() static
omits a8eea0c vfs_gpfs: do not call disk_norm() on disk_free_fn
omits 9e60cbf vfs_ceph: do not call disk_norm() on disk_free_fn
omits 279c9ce vfs_fake_dfq: remove quota code from disk_free
omits 19f9b31 smbd: refactor disk_free handling
omits 72231ec vfs_snapper: add get_quota function
omits cc25335 vfs_shadow_copy2: add get_quota function
omits 22d757c vfs_cap: add get_quota function
omits c464b9e vfs: add path parameter to get_quota
omits f71761c selftest: add disk-free and quota tests based on fake_dfq VFS module
omits 540dcfa vfs_fake_dfq: add vfs module
omits 345f084 smbd: enable unit-testing of NT_TRANSACT_GET_USER_QUOTA
omits 17c9b8d quotas: correct comment about SMB_GROUP_QUOTA_TYPE
omits 798fcfd loadparm: introduce lp_parm_ulonglong() and lpcfg_parm_ulonglong()
omits 7a890a7 smbd:smb2_negprot: implement connection passing based on client_guid
omits cfbf450 smbd:smb2_server: let smbd_server_connection_terminate() only call exit_server() for the last connection
omits a446966 smbd:process: use smbXsrv_client_create.
omits 0010dc8 smbd:process: treat initialized table in smbXsrv_connection_init_tables
omits d77238f smbd: add smbXsrv_client.c
omits 8ab4629 smbd:globals.h: add guid_verified to smbXsrv_connection.smb2.client
omits 3590f3f idl:smbXsrv: add smbXsrv_connection_pass structures.
omits bae1b94 idl:smbXsrv: add smbXsrv_client_global structures
omits 5e91bf0 idl:messagaing: add MSG_SMBXSRV_CONNECTION_PASS
omits 756b452 s3-parm: clean up defaults when removing global parameters
omits 6a24ccc s3:smbd: only process fsctl_network_iface_info if multi channel is enabled
omits 54c0fce s4:torture: add SMB2 test for directory creation initial allocation size
omits 57654ee s3:smbd: Ignore initial allocation size for directory creation
omits e8a051f s3:smbd: implement fsctl_network_iface_info
omits 99d3dbe docs:smb.conf: document new extra syntax for interfaces.
omits 9fcf874 s4:lib:socket: skip extra data in interpret_interface()
omits 8284b34 s3:lib: extend interpret_interface() to optionally read speed, caps, and index from config
omits 3785be8 s3:lib: remove an unmotivated comment from interpret_interface()
omits e569ffd s3:lib: copy speed, cap, and index in add_interface()
omits 9f9d6ac smb.h: add linkspeed, capability, and if_index to interface struct
omits 549a9ab lib:socket: detect link speed with ethtool ioctl in get_interfaces (on linux)
omits 1862aa6 build: detect support for ethtool
omits 64be8e7 lib:socket: set defaults for linkspeed and capability in get_interfaces()
omits 235f37b lib:socket: get interface index from kernel
omits d392e0a lib:socket: add linkspeed, capability and if_index to iface_struct
omits bc9e1fc librpc:idl: define FSCTL_NET_IFACE_NONE_CAPABLE in ioctl.idl
omits a2894cf s3:lib: add braces around if-block in my_sam_name()
omits d67d8e1 s3:lib: remove supefluous comments from map_my_name()
omits 6eaf40f s3:lib: fix white spaces in my_sam_name()
omits dee38e0 vfs_shadow_copy2: documentation for snapsharepath
omits bbb5a8a vfs_shadow_copy2: add tests for snapsharepath
omits 8433388 vfs_shadow_copy2: add snapsharepath parameter
omits 57dab20 vfs_shadow_copy2: remove basedir state variable
omits 500bc01 s3-parm: clean up defaults when removing global parameters
omits 62c68bd s3-client: Add a KRB5 wrapper for smbspool
omits 1bf7905 WHATSNEW: Documentation CTDB changes for v4.4
omits b7da062 s3:utils/smbget make use of bool for flags
omits 76f1679 s3:utils/smbget use C99 format identifiers
omits 4d033ba s3:utils/smbget code format
omits ec802d2 s3:utils/smbget fix recursive download
omits c8a5ab9 WHATSNEW: CTDB_NATGW_SLAVE_ONLY is no longer used
omits df6cca2 ctdb-tools: Drop support for setting and viewing NAT gateway capability
omits 3b64c27 ctdb-scripts: No longer set the NAT gateway capability
omits 411ccb9 ctdb/tools: Update ctdb CLI tool to call ctdb_natgw
omits e515968 ctdb-tests: Drop some unnecessary NAT gateway tests
omits bae9fea ctdb: Call out to ctdb_natgw helper from 11.natgw
omits f1265f0 ctdb-tests: NAT gateway slave-only changes
omits 7095c9b ctdb-scripts: New function ctdb_natgw_slave_only()
omits 3a2eebf ctdb-tests: Test ctdb CLI tool via a stub
omits 1538fc4 ctdb-tools: Add standalone ctdb_natgw tool script
omits d71f747 ctdb-scripts: Tests for monitoring of CTDB_NATGW_PUBLIC_IFACE
omits 638117c ctdb-scripts: Move monitoring of CTDB_NATGW_PUBLIC_IFACE to 11.natgw
omits df5845c ctdb-scripts: CTDB_PARTIALLY_ONLINE_INTERFACES incompatible with NAT gateway
omits 06901f4 ctdb-scripts: Rename variable: fail -> down_interfaces_found
omits d0f2143 ctdb-scripts: Drop functions mark_up() and mark_down()
omits 85316c0 ctdb-scripts: Move interface monitoring code to functions file
omits fe64e76 ctdb-scripts: Rename get_real_iface() -> interface_get_real()
omits 6f212aa ctdb-scripts: Refactor function interface_monitor() to monitor one interface
omits cd86f20 s4:torture: add SMB2 test for directory creation initial allocation size
omits 78ccbb0 s3:smbd: Ignore initial allocation size for directory creation
omits a1a8746 s3:smb2_sesssetup: implement SMB3 session bind (disabled)
omits edd781d s3:smb2_sesssetup: treat BINDING in smbd_smb2_session_setup_auth_return
omits 91770e3 s3:smb2_negprot: announce multi channel support (disabled)
omits d60ffcf smbXsrv: introduce bool smbXsrv_client->server_multi_channel_enabled
omits 3e08469 build: fix ldbsearch panic on FC22
omits 8ec92e5 smbspool: Add string representation of nt_status
omits c3aaf64 waf: Only build the backupkey rpc test with AD DC enabled
omits f69b6dd tests: Only execute heimdal tests if we build with heimdal
omits 30419f2 tests: Rename heimdal blackbox tests
omits b74bef8 smbstatus: add support for SMB1 signing and CIFS UNIX extensions encryption
omits f955499 libcli/smb: add define SMB_ENCRYPTION_GSSAPI for CIFS encryption type
omits 1e60a3f smbstatus: show signing state of sessions and tcons
omits 8d8af47 s3:lib/conn_tdb: store the connection dialect
omits 9d28443 s3:smb2_server: add signing state tracking flags
omits fe5353c s3:smb2_server: convert signing_required bool to flags bitmap
omits 780743d smbstatus: show encrpytion state of tree connects
omits 83a557d smbstatus: align tree connect header and output
omits e0fc931 smbstatus: show encrpytion state of sessions
omits 5d75078 smbstatus: align session list header and ouput
omits 603f1de smbstatus: pass talloc context to traverse_connections
omits c2443d6 smbstatus: pass talloc context to traverse_sessionid
omits f59ef03 smbstatus: rework connection dialect printing
omits e501c73 s3:smb2_server: add encryption state tracking flags
omits 736cd36 s3:smb2_server: store encryption cipher in the channel
omits bfdffea s3:smb2_server: convert encryption desired and required bools to flags
omits 63a13f4 smbstatus: remove obsolete verbose message
omits ef269c9 substitute: Fix talloc_sub_basic for %G in the case of a local user.
omits 2f2b57a passdb: change ABI version to 0.25.0 due to removed symbol.
omits 8ff3257 s3:passdb: move my_sam_name() from passdb to util_name.c
omits a929913 s4-torture: let smb2.replay.replay5 test deal with scale out shares.
omits c9218c4 smbd:smb2_close: remove an irritating blank line
omits 718007b docs:smbdotconf: fix tabs/space mixup in logon parameter metadata
omits 6ed3985 vfs_shadow_copy2: check crossmountpoints against snapdirseverywhere
omits 6d82bdd smbcacls: fix uninitialized variable
omits 6cff009 smbcacls: fix uninitialized variable
omits d905179 ctdb-client: Use ctdb_rec_buffer_init() to initialize ctdb_rec_buffer
omits a7d54bb ctdb-client: Add missing initialization for h->ev in transaction_start
omits 5d5d88e ctdb-client: Do not delete reqid explicitly
omits 8ca76ad ctdb-client: Add a disconnect callback for ctdb client
omits 555237f ctdb-client: Close ctdb socket connection when client context goes away
omits e59712b ctdb-client: Use ctdb_ltdb_header_extract()
omits 0ed60d7 ctdb-protocol: Fix marshaling of seqnum
omits 006d4c1 docs: Bump version up to 4.4.
omits d51a635 ctdb-build: Fix -O3 developer build
omits 594778e ldb-samba: Expand testing of recursive search
omits 10e3237 ldb-samba: Correct error reporting to match Windows
omits 1d05f3b ldb-samba: Reenable recursive search
omits a52bcaa ldb-samba: critical bugfix on original recursive search implementation
omits 177ac58 ldb-samba: Implement transitive extended matching
omits a2d49fa pidl: Change PyGetSetDef in generated python bindings to use C99 initialisers
omits cff17f0 s3: smbd: Remove one more use of lp_posix_pathnames().
omits ecc7022 s3-util: skip S-1-18 sids in token generaion in sid_array_from_info3().
omits a924209 s3-util: add helper functions to deal with the S-1-18 domain.
omits cf163ac security: Add Asserted Identity sids (S-1-18)
omits d1235c7 ldb: Fix CID 1348110 Uninitialized scalar variable
omits cf05ba5 s3-libads: Use the configured LDAP page size.
omits 8c2609f Change default LDAP page size to 1000.
omits 19fffeb ctdb-scripts: further untangle logic for success of interface monitoring
omits 93e48df ctdb: Fix the O3 developer build
omits 2c72956 Revert "winbind: Retry after SESSION_EXPIRED error in ping-dc"
omits 52b5636 winbindd: Retry on expired session in cm_connect_netlogon
omits dded902 winbindd: Retry on expired session in cm_connect_sam
omits 423120f winbindd: Retry on expired session in cm_connect_lsa
omits a0f2f52 winbindd: Remove double retry from some ADS methods
omits fa875e3 winbindd: Add retry also for ADS method calls
omits 39e6b5b winbindd: Reset connection for expired session before reconnecting
omits 40bc9b0 vfs_shadow_copy2: add a blackbox test suite
omits 0998c40 vfs_shadow_copy2: fix case where snapshots are outside the share
omits a453c78 vfs_shadow_copy2: add shadow_copy2_do_convert()
omits db70921 s3:smbd/oplock obey kernel oplock setting when releasing oplocks
omits 43ade9a selftest: more dfree command and smbclient disk usage tests
omits 21d362e smbclient: query disk usage relative to current directory
omits 0f57acc s4:acl LDB module - fix error message
omits 39bc356 ctdb-ipalloc: Document the steps involved in a takeover run
omits e320725 ctdb-ipalloc: Split IP allocation into its own build subsystem
omits 19d3fd1 s4-rpc_server: Add missing include for ROLE_ACTIVE_DIRECTORY_DC
omits 7362c27 vfs_shadow_copy2: add a blackbox test suite
omits 8a49a63 vfs_shadow_copy2: fix case where snapshots are outside the share
omits 3703bca vfs_shadow_copy2: add shadow_copy2_do_convert()
omits fba90fd s3:smbd_smb2_reauth_generic_return: make use of smb2req->xconn
omits 490a27b pam_winbind: check != PAM_SUCCESS and != NULL explicitly
omits e8e9e7f vfs:shadow_copy2: fix a debug message
omits 25243af docs: fix copy'n'paste error in vfs_shadow_copy2 manpage
omits f7583be asn1: Make asn1_peek_tag_needed_size static
omits 2aa1cf4 asn1: Fix a typo
omits 5e1a84c winbind: Properly error check init_lsa_ref_domain_list
omits 5a2c305 idmap: Fix whitespace
omits 9039f1f libcli: Fix a typo
omits 812e074 libsmb: Remove ip_service based resolve_lmhosts
omits c29188f libsmb: Convert resolve_hosts to sockaddr_storage
omits da8674c Rename 'errors' to 'samba-errors' and make it public.
omits 218f96f libcli: Make headers for private libraries private.
omits ffbd9c4 Add a new header file for functions in lib/util/util.c.
omits 512d15d Make libcli-smb-raw private, for now.
omits 773cfba Avoid including libds/common/roles.h in public loadparm.h header.
omits ce32f26 ldb: Only set public headers field when installing as a public library.
omits 1860e98 time_basic.h: Remove unnecessary dependency on replace.h
omits 620d5cb Remove public library dcerpc-atsvc.
omits 232726a Make libregistry private, for now.
omits 2f7dde3 Make libtorture private, for now.
omits c46a8cf Make gensec private, for now.
omits 5d67d55 talloc: Only set public headers field when installing as a public library.
omits 3eb9065 Error when private libraries have public headers.
omits 68a3576 tdb: Only set public headers field when installing as a public library.
omits 48ebeaa Add private_headers flag to SAMBA_*() functions.
omits 2cba491 tevent: Only set public headers field when installing as a public library.
omits fddca39 samdb: Add explicit dependency on ldb.
omits 3123e2c Simplify handling of dependencies on external libraries in test_headers.
omits 4ab7a00 Use full path to dlinklist.h in includes.
omits 6f3656c Revert "winbind: Retry after SESSION_EXPIRED error in ping-dc"
omits aa3883e winbindd: Retry on expired session in cm_connect_netlogon
omits 276d604 winbindd: Retry on expired session in cm_connect_sam
omits 3b6b545 winbindd: Retry on expired session in cm_connect_lsa
omits 4c6804e winbindd: Remove double retry from some ADS methods
omits e4adf55 winbindd: Add retry also for ADS method calls
omits fb5b0ce winbindd: Reset connection for expired session before reconnecting
omits 3ac2d4b ctdb-tests: Fix some incorrect memory allocations
omits a7ce00c ctdb-scripts: Use more unique temporary file names
omits 4afe822 ctdb-scripts: Don't remove temporary files before use
omits 2083883 ctdb-scripts: Superficial clean-ups to 10.interface
omits c23744c ctdb-scripts: Clarify logic for success of interface monitoring
omits d8e4c5a ctdb-scripts: Fix regression in updateip code
omits 18b0aea ctdb-ipalloc: Fix a memory leak
omits 24160ee ctdb-daemon: Don't leak memory if not using recovery lock
omits 56ce230 ctdb-recoverd: Fix some uninitialised memory issues
omits 8f73ae0 ctdb-daemon: Drop the "schedule for deletion" messages to DEBUG level
omits 9790abd ctdb/web: Fix typo.
omits 7c4d802 talloc: Fix a documentation typo
omits 7cec309 nss_wrapper: bump version to 1.1.2
omits ae2a575 VERSION: Bump version up to 4.3.5...
omits da292b6 nwrap: Fix segfaults while reloading hosts file
omits 19b2dcb nwrap: Don't fail if we want to add an existing entry
omits 9b79020 nwrap: Fix the build on Solaris
omits 5f62197 nwrap: Don't leak memory from gethostbyname*() functions
omits b54bbb2 nwrap: Fix the build on FreeBSD
omits 766e795 nwrap: fix a copy and paste error in the destructor.
omits 554963d nwrap: Cleanup shadow getspnam() memory
omits 159fdb0 nwrap: fix leaking the entlists
omits bf49615 nwrap: catch error to add item to vector in nwrap_he_parse_line()
omits 736fa61 nwrap: rename nwrap_he.entdata to nwrap_he.entries
omits e94a7c5 nwrap: remove unused member list from struct nwrap_he
omits 16b71ae nwrap: Small code shift in nwrap_ed_inventarize_add_to_existing()
omits db0ef5c nwrap: Cast max_hostents to avoid warnings
omits 8fad97b nwrap: Fix initialization of e entry
omits f1acb0e nwrap: remove ai_tail argument from nwrap_files_getaddrinfo()
omits d198cda nwrap: rewrite the loop for duplication ai entries if socktype not given
omits ab2f41b nwrap: add an explaining comment for the ai duplicating loop
omits 062c97b nwrap: move setting of ai_{flags|socktype|protocol} into nwrap_convert_he_ai
omits a66606c nwrap: use symbols IPPROTO_TCP and IPPROTO_UDP
omits bf65160 nwrap: rename _ai -> ai_new in nwrap_files_getaddrinfo()
omits a42f658 nwrap: fix a memleak in nwrap_files_getaddrinfo()
omits 07b6925 nwrap: rename ai_prev -> ai_cur in nwrap_files_getaddrinfo()
omits b996f0a nwrap: Fix inventarization of IPs when loading hosts
omits 07f1bef nwrap: refactor nwrap_add_hname_* into one nwrap_ed_inventarize.
omits 55e9606 nwrap: treat AI_NUMERICHOST correctly in getaddrinfo.
omits 34cff9e nwrap: fix treatment of EAI_ADDRINFO in nwrap_files_getaddrinfo
omits 154080c nwrap: correctly track EAI_ADDRINFO in nwrap_files_getaddrinfo
omits 0dc34ea nwrap: in nwrap_files_getaddrinfo, treat failure of nwrap_convert_he_ai as error
omits 18be46d nwrap: convert nwrap_files_getaddrinfo() to return EAI error codes
omits 6078126 nwrap: use the error code from nwrap_files_cache_reload() in callers
omits fe7e163 nwrap: turn nwrap_files_cache_reload() into a bool function
omits 4919f1c nwrap: better error propagation in nwrap_he_parse_line()
omits ccb4076 nwrap: log NULL alias name at ERROR level in nwrap_add_hname()
omits f6e4c58 nwrap: better error propagation in nwrap_add_hname()
omits ddd0ca8 nwrap: better error propagation in nwrap_add_hname_alias
omits 7ec5aae nwrap: catch NULL list in nwrap_add_hname_add_to_existing
omits 2974cef nwrap: catch null h_name in nwrap_add_hname_add_new
omits be8c7dc nwrap: catch NULL ip in nwrap_add_ai
omits a725bd7 nwrap: turn nwrap_add_hname_add_to_existing() into bool
omits d681a08 nwrap: simplify nwrap_file_getaddrinfo: remove a variable
omits 28f0a8b nwrap: simplify nwrap_files_gethostbyname: remove a variable
omits 54c825b nwrap: log hash table full message at error level
omits 9502535 nwrap: rewrite linked-list datastructures to be properly separated.
omits 19d5415 nwrap: remove superfluous comments from nwrap_add_hname()
omits 4ec47e7 nwrap: remove superfluous comments from nwrap_add_hname_alias()
omits 69af963 nwrap: remove a superfluous comment from nwrap_add_hname_add_new()
omits 3cc12ec nwrap: move var into scope in nwrap_add_hname()
omits f7b28bd nwrap: simplify nwrap_add_hname
omits 8f62cda nwrap: simplify nwrap_add_hname_alias
omits 067978d nwrap: initialize some variables in nwrap_files_getaddrinfo
omits be182ba nwrap: slightly clean flow by removing an else branch in nwrap_getaddrinfo
omits 559ed74 nwrap: in nwrap_getaddrinfo, only call libc_getaddrinfo if we need it.
omits 9927e49 nwrap: slightly simplify logic in nwrap_getaddrinfo()
omits b0569d4 nwrap: simplify logic in nwrap_getaddrinfo, calling nwrap_files_getaddrinfo
omits 53e633e nwrap: improve code readability in nwrap_getaddrinfo()
omits 8da2110 nwrap: remove code duplication in nwrap_getaddrinfo
omits 5bea2dc nwrap: fix return code for getaddrinfo in case service is not valid
omits 40f9bf7 nwrap: fix return code of getaddrinfo for AI_NUMERICSERV in error case
omits 522631b nwrap: fix numeric port detection in nwrap_getaddrinfo
omits 72764a6 nwrap: Better check service string sanity.
omits 200f5bf nwrap: Fix memory leak in nwrap_gethostbyname_r()
omits 43d470a nwrap: Fix memory leak in nwrap_files_gethostbyname()
omits 853b2ff nwrap: Fix memory leak in nwrap_he_unload()
omits 3cae3e5 nwrap: Rename cont to vector in nwrap_vector_add_item()
omits e1bb009 nwrap: Fix memory leak inside nwrap_getaddrinfo()
omits 0f1ffb9 nwrap: Use nwrap_vector_foreach instead of for loop
omits 9d71542 nwrap: Fix memory leak when getline() is used.
omits 4505dcd nwrap: Add basic locking for support multithreaded applications
omits 1017031 nwrap: Add BSD libc support for gethost*_r functios.
omits 960345e nwrap: Use nwrap vectors as memory backend for getaddrinfo() and gethostbyname()
omits 090dec2 nwrap: Add string manipulation functions.
omits 270d6f9 nwrap: Add nwrap_add_hname() and nwrap_add_hname_alias().
omits 442fc3f nwrap: Add function nwrap_add_ai
omits 15c1453 nwrap: Add a hash table to the nwrap structure
omits f3da6e4 nwrap: Simplify file loading.
omits ff65d01 nwrap: Add nwrap vector memory management functions
omits 6706ee4 nwrap: Check for setspent and getspnam functions
omits 22f159f src: Add configure check for shadow.h
omits 088887b nwrap: Add support for getspnam()
omits 608fa20 nwrap: Add (set|get|end)spent functions
omits e971a44 nwrap: Add nss_wrapper_shadow_enabled() function
omits 4be5853 nwrap: Add shadow file parser
omits 2a53352 nwrap: Remove unused struct member in nwrap_main
omits 90585c4 nwrap: Implement nwrap_files_initgroups()
omits 80abc70 nwrap: Remove unneeded memcpy in getgrouplist()
omits a104389 nwrap: Avoid a string comparsion in getgrouplist()
omits 1c346a0 nwrap: Use ssize_t for aliases_count
omits 02b5410 nwrap: Prevent compilation failure on machine without IPv4
omits 90dbe7b nwrap: Replace free() calls by SAFE_FREE macro where possible.
omits ea741de nwrap: Fix the handle loops for older gcc versions.
omits 77d0fce torture: add torture comment output of name/ip to WinsBy{Ip,Name} tests
omits 71ffd3b torture: Fix winbind.wbclient.ResolveWinsByIp test
omits fcb1ca8 torture: fix check_pw_with_krb5 in the rpc:lsa test
omits 688590f torture: fix check_dom_trust_pw in the rpc:lsa test
omits 38c2305 torture: fix the ldap.netlogon-udp test
omits 9b443d2 torture: fix the ldap.cldap test
omits 0c12970 VERSION: Disable git snapshots for the 4.3.4 release.
omits f700a19 WHATSNEW: Add release notes for Samba 4.3.4.
omits 97d39ca s3:torture: add traverse testing to LOCAL-RBTREE
omits 49f04d1 dbwrap_rbt: fix modifying the db during traverse
omits 4a0f277 dbwrap_rbt: add nested traverse protection
omits a9071dc dbwrap_rbt: use talloc_zero_size() instead of a partial ZERO_STRUCT()
omits c36c6e9 Revert "Fix bug #11394 - Crash: Bad talloc magic value - access after free"
omits 2e2d4be s3:wscript: fix spaces
omits 551e268 tldap: Use struct initializer in tldap_search
omits 8842235 tldap: Avoid includes.h
omits 093a89f tldap.h: References DATA_BLOB
omits 5021974 lib: Introduce util_tsock.h
omits 3df9e9c tldap: tevent_req_create NULLs out "state"
omits e481849 tldap: Use "size_t" for talloc_array_length result
omits 8215409 tldap: Remove an unneeded "return;"
omits 245064d tldap: Remove unneeded vars
omits 5632000 Add dependency on libtevent-dev in samba-dev.
omits 657610a smbd: Fix 240393 Uninitialized pointer read
omits fc4c2dc bind_dlz: Fix CID 1347318 Unchecked return value
omits 0cb8b9d ctdb: Fix CID 1347319 Unchecked return value
omits 4a3ad42 samdb: Fix CID 1347320 Dereference null return value
omits 78e9f1e build: Add space before -D option
omits 0e58705 python: Remove Python 2.4 support macros
omits 8bac96d ntvfs/python: Adjust to use of PY_SSIZE_T_CLEAN
omits 516ec30 pyrpc: Adjust to use of PY_SSIZE_T_CLEAN
omits 5c7822a pyregistry: Adjust to use of PY_SSIZE_T_CLEAN
omits 6a6aec7 pymessaging: Adjust to use of PY_SSIZE_T_CLEAN
omits 0064f1d pylibsmb: Adjust to use of PY_SSIZE_T_CLEAN
omits 638c611 pidl: Use PY_SSIZE_T_CLEAN
omits 4894811 ldb: Adjust to PY_SSIZE_T_CLEAN and use Py_ssize_t consistently with PyArg_ParseTuple*()
omits 46b8d7f python: Assert that we use Py_ssize_t consistently for PyParseArgs*()
omits 11de99a asn1: Clean up includes
omits fe3c270 smbcontrol: Use procid_is_local
omits 2948fb3 net: Use procid_is_local
omits 8108f0d s3: smbclient: asn1_extract_blob() stops further asn1 processing by setting has_error.
omits 8ca6fe6 docs:smbdotconf: fix the description of 'machine password timeout'
omits 0cae227 selftest: Add tests for ntlm-server-1 and --password mode in ntlm_auth
omits bfe4163 ntlm_auth: Allow --password force a local password check for ntlm-server-1 mode
omits 234861b password_lockout: test creds.get_kerberos_state()
omits 7870c0c auth: keep track of lastLogon and lastLogonTimestamp
omits 5e60671 password_lockout tests: add assertLoginFailure()
omits fe51036 auth: increase resolution for password grace period calculation
omits ca7cd60 pycredentials: add get_kerberos_state() method
omits 7c50b7a smbd: do not disable "store dos attributes" on-the-fly
omits 6be8237 s3:smbd: fix a corner case of the symlink verification
omits 1ae26f8 s3: libsmb: Correctly initialize the list head when keeping a list of primary followed by DFS connections.
omits 9d43c74 vfs_streams_xattr: fix and simplify streams_xattr_get_name()
omits deec633 vfs_fruit: hide the Netatalk metadata xattr in streaminfo
omits 535812d vfs_fruit: add and use define for the Netatalk metadata xattr
omits 48bce69 s4:torture:vfs_fruit: add test test_read_afpinfo
omits dad33c3 s4:torture:vfs_fruit: add tests for AFP_Resource delete-on-close and eof
omits 4c00711 vfs_fruit: ignore delete on the AFP_Resource stream
omits 093575e s4:torture:vfs_fruit: update AFP_AfpInfo IO tests
omits de829e6 vfs_fruit: fix offset and len handling for AFP_AfpInfo stream
omits f8bc71f s4:torture:vfs_fruit: test nulling out AFP_AfpInfo stream
omits 89f4adb vfs_fruit: writing all 0 to AFP_AfpInfo stream
omits 3a31406 s4:torture:vfs_fruit: add tests for AFP_AfpInfo delete-on-close and eof
omits f85e4e6 vfs_fruit: handling of ftruncate() on AFP_AfpInfo stream
omits a52778b s4:torture:vfs_fruit: file without AFP_AfpInfo
omits a0d3a3a vfs_fruit: stat AFP_AfpInfo must fail when it doesn't exist
omits 2482f7a vfs_fruit: fix some debug messages
omits e150a70 s3:lib/errmap_unix: map EOVERFLOW to NT_STATUS_ALLOTTED_SPACE_EXCEEDED
omits a9d4091 s4:torture:vfs_fruit: fix flakey test_write_atalk_rfork_io with OS X
omits ba97d85 s4:torture:vfs_fruit: fix test_rename_dir_openfile() to work with OS X
omits adbe3fd s4:torture:vfs_fruit: fix test_aapl() to work with OS X
omits 7ed3a98 s4:torture:vfs_fruit: skip test_stream_names() without "localdir"
omits 33851cb s4:torture:vfs_fruit: skip test_adouble_conversion() without "localdir"
omits 2d9ddc1 s4:torture:vfs_fruit: skip test test_read_atalk_metadata() without "localdir" and rename it
omits 8acd795 s4:torture:vfs_fruit: add explicit cleanup of testfiles
omits 9aefc7d s4:torture:vfs_fruit: add --option=torture:osx for enable_aapl()
omits 86b653b s4:torture:vfs_fruit: enhance check_stream
omits eb5df33 s4:torture:vfs_fruit: use AFPINFO_STREAM_NAME
omits 7fb8371 s4:torture:vfs_fruit: tweak check_stream_list()
omits a985c92 s4:torture:vfs_fruit: rename tree1 -> tree
omits 9215fc8 s4:torture:vfs_fruit: remove unused tree2
omits eda6aaf s3:smbd/oplock obey kernel oplock setting when releasing oplocks
omits 3e1b26b selftest: more dfree command and smbclient disk usage tests
omits 275da6c smbclient: query disk usage relative to current directory
omits d865ed2 asn1: Make 'struct asn1_data' private
omits 44c56fc asn1: Remove a reference to asn1_data internals
omits 3c340d8 libcli: Remove a reference to asn1->ofs
omits b7f0e29 lib: Use asn1_current_ofs()
omits 927bbed asn1: Add asn1_current_ofs()
omits 1282f60 lib: Use asn1_has_nesting
omits 2a5141a asn1: Add asn1_has_nesting
omits a93946b lib: Use asn1_extract_blob()
omits 7b7aa01 asn1: Add asn1_extract_blob()
omits 8cfb6a3 lib: Use asn1_set_error()
omits 94b4459 asn1: Add asn1_set_error()
omits 57a0bc9 lib: Use asn1_has_error()
omits fa207fe asn1: Add asn1_has_error()
omits ef8049b asn1: Make "struct nesting" private
omits f908e65 asn1: Add some early returns
omits 249202d asn1: Add overflow check to asn1_write
omits ad630a6 asn1: Make asn1_peek_full_tag return 0/errno
omits 4580022 asn1: Remove an unused asn1 function
omits a44e4e9 ldb: validate ldb_dn_set_component input parameters even more strictly
omits 30e92d0 ldb: Explain why this use of talloc_memdup() is safe
omits 084bab5 ldb: Be strict about talloc_memdup() and passed in buffers in ldb_dn_set_component()
omits ff94a01 travis: Add metadata file for the Travis CI Open Source cloud build/test service
omits 05c3481 autobuild: Use make -j on samba-libs/samba-static build as well
omits af89d18 autobuild: Put the static build in another stanza
omits cce1612 autobuild: Use cp --recursive --link --archive
omits 9a91fce autobuild: Give a clearer failure message
omits d60465c build:wafsamba: Use the upstream version of gccdeps
omits 88969d7 thirdparty:waf: Update gccdeps from upstream
omits 1bc806a Happy New Year 2016!
omits 73f01cd torture:smb2: fix copy'n'paste error in durable-open:open2:lease test
omits 1be7e8b smbd: remove function name from a DBG_INFO in a recent commit
omits d4c2395 smbd: do not disable "store dos attributes" on-the-fly
omits 5b1a87e dsdb subnets: warn when an IPv6 address is in IPv4 embedding range
omits 906a53f samldb: ensure subnets have proper net ranges
omits cbb9397 samba-tool: add sites subnet subcommands
omits 8e6f2d9 samba-tool tests: Add command line tests for sites
omits 12813ea python/sites: Rework site DN construction
omits dbcb13c python.sites tests: remove excessive transaction management
omits bdb03c5 selftest: Allow sites test to run against a remote ldap:// host
omits 9ac5e3c samba.sites: reduce code duplication in Exception classes
omits 358c0f2 dsdb.tests.sites: don't use global database, tidy long lines
omits b27dcb5 samba.sites: improve grammar in an error message
omits f26b227 dsdb.tests.sites: merge interdependent tests
omits fa2c668 samba-tool sites: use -H to set URL with standard handling
omits bb64abf sambatool sites: PEP8/flake8 improvements
omits 149c075 torture/gentest time_skew(): don't use labs() on unsigned NTTIME
omits d098e9c repl: Skip new subdomains and partitions when replicating
omits 8091f84 s4:samba-tool domain raise tool - make it aware of newer domain function levels
omits 33ed975 s4:samba-tool domain raise tool - handle Windows 2000 mode AD domains correctly
omits ada59ec s3:smbd: fix a corner case of the symlink verification
omits 2efa2e0 s3: smbd: Replace lp_posix_pathnames() with req->posix_pathnames in dir.c. Only one remaining.
omits 52bae79 s3: smbd: Remove lp_posix_pathnames() checks on paths sent in via old Win9X RPC calls.
omits 398ee27 s3: smbd: Replace lp_posix_pathnames() with smbreq->posix_pathnames in smb2_query_directory.c.
omits 944e940 s3: smbd: smb2_create.c - remove all uses of lp_posix_pathnames().
omits a2f025e s3: smbd: Convert all but one use of lp_posix_pathnames() into req->posix_pathnames in trans2.c
omits 3cd1b18 s3: smbd: Remove *all* uses of lp_posix_pathnames() from open.c
omits 865bd48 s3: smbd: Replace most uses of lp_posix_pathnames() with req->posix_pathnames in nttrans.c
omits 6db6bc2 s3: smbd: Replace most uses of lp_posix_pathnames() with req->posix_pathnames in reply.c
omits 40df6f2 s3: smbd: Now struct smb_request has a bool posix_pathnames, remove the lp_posix_pathnames() call inside srvstr_get_path_req_wcard().
omits 4587d83 s3: smbd: VFS change. Add new field bool posix_pathnames into struct smb_request.
omits cc729ae s3: smbd: srvstr_get_path() is now only called when lp_posix_pathnames() is false.
omits 88bb480 s3: smbd: Split all calls to srvstr_get_path() to calls to srvstr_get_path_posix() or srvstr_get_path() depending on lp_posix_pathnames().
omits c78d739 s3: smbd: Add srvstr_get_path_posix().
omits 5740761 s3: smbd: We now know that srvstr_get_path_wcard() is only called when lp_posix_pathnames() is false.
omits 41d62df s3: smbd: Split all calls to srvstr_get_path_wcard() into srvstr_get_path_wcard_posix() or srvstr_get_path_wcard() depending on lp_posix_pathnames().
omits eb7198f s3: smbd: Add srvstr_get_path_wcard_posix().
omits db36ee4 s3: smbd: Move lp_posix_pathnames() out into srvstr_get_path_req_wcard().
omits 5a34069 s3: smbd: Move lp_posix_pathnames() out into srvstr_get_path().
omits 4a6d7e1 s3: smbd: Move lp_posix_pathnames() out of srvstr_get_path_wcard_internal().
omits f33224d net: Fix Coverity ID 241039 Unchecked return value
omits 431cf20 s3: smbd: open_file: use FSP_POSIX_FLAGS_PATHNAMES
omits 58bebcb smbd: file_struct: factor out POSIX pathname processing out of POSIX open
omits 035bd5f s3: smbd: Remove lp_posix_pathnames() from filename.c
omits 993122a s3: smbd: In trans2.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits 274e8b5 s3: smbd: In smb2_query_directory.c.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits 31212e9 s3: smbd: In smb2_create.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits dae4b37 s3: smbd: In reply.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits 6694c82 s3: smbd: In open.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits 4ce5de5 s3: smbd: In srv_srvsvc_nt.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits 7641c69 s3: smbd: In nttrans2.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
omits acf6600 s3: smbd: In smb2_query_directory.c Use ucf_flags variable instead of passing as parameter.
omits c783db3 s3: smbd: In smb2_create.c Use ucf_flags variable instead of passing as parameter.
omits 5d03e75 s3: smbd: In srv_srvsvc_nt.c Use ucf_flags variable instead of passing as parameter.
omits f3f3426 s3: smbd: In trans2.c Use ucf_flags variable instead of passing as parameter.
omits b2c813f s3: smbd: In reply.c Use ucf_flags variable instead of passing as parameter.
omits e5db676 s3: smbd: In open.c Use ucf_flags variable instead of passing as parameter.
omits 5c183b2 s3: smbd: Use ucf_flags variable instead of passing as parameter.
omits 5f407e3 Fix typo in winbindd_cm.c
omits 00e952e s3: fix encryption help messages
omits b165d52 s4:torture:vfs_fruit: add test test_read_afpinfo
omits 21d4b5c s4:torture:vfs_fruit: add tests for AFP_Resource delete-on-close and eof
omits ee431fc vfs_fruit: ignore delete on the AFP_Resource stream
omits decde0b s4:torture:vfs_fruit: update AFP_AfpInfo IO tests
omits f569fd5 vfs_fruit: fix offset and len handling for AFP_AfpInfo stream
omits 666a55b s4:torture:vfs_fruit: test nulling out AFP_AfpInfo stream
omits e94b177 vfs_fruit: writing all 0 to AFP_AfpInfo stream
omits e5588b4 s4:torture:vfs_fruit: add tests for AFP_AfpInfo delete-on-close and eof
omits 4024153 vfs_fruit: handling of ftruncate() on AFP_AfpInfo stream
omits 6f8c188 s4:torture:vfs_fruit: file without AFP_AfpInfo
omits 0af7bf4 vfs_fruit: stat AFP_AfpInfo must fail when it doesn't exist
omits 748adea vfs_fruit: fix some debug messages
omits 1650e79 s3:lib/errmap_unix: map EOVERFLOW to NT_STATUS_ALLOTTED_SPACE_EXCEEDED
omits ba00884 s4:torture:vfs_fruit: fix flakey test_write_atalk_rfork_io with OS X
omits 3632609 s4:torture:vfs_fruit: fix test_rename_dir_openfile() to work with OS X
omits 0fc2ed8 s4:torture:vfs_fruit: fix test_aapl() to work with OS X
omits 56bf276 s4:torture:vfs_fruit: skip test_stream_names() without "localdir"
omits 987e12b s4:torture:vfs_fruit: skip test_adouble_conversion() without "localdir"
omits 0a9a7c2 s4:torture:vfs_fruit: skip test test_read_atalk_metadata() without "localdir" and rename it
omits 155397e s4:torture:vfs_fruit: add explicit cleanup of testfiles
omits 3c0ac9b s4:torture:vfs_fruit: add --option=torture:osx for enable_aapl()
omits fdf937e s4:torture:vfs_fruit: enhance check_stream
omits 8694da4 s4:torture:vfs_fruit: use AFPINFO_STREAM_NAME
omits 8e0cf77 s4:torture:vfs_fruit: tweak check_stream_list()
omits 1d13744 s4:torture:vfs_fruit: rename tree1 -> tree
omits 9d28f82 s4:torture:vfs_fruit: remove unused tree2
omits 7ba9f82 s4-torture: add a negoex ndr pullpush test.
omits f37a20e releasing package samba version 2:4.3.3+dfsg-1
omits af00aa0 Add Replaces: samba to samba-libs because of moved libs.
omits a1774eb docs: Fix typos in man vfs_gpfs.
omits dbd87b9 tdb: Refuse to load a database with hash size 0
omits bffcc17 libads: Remove "foreign" from ads_struct
omits bf1fa9e negoex.idl: use DATA_BLOB for negoex_BYTE_VECTOR
omits a4fa489 negoex.idl: initial version
omits d7feb18 s3: libsmb: Correctly initialize the list head when keeping a list of primary followed by DFS connections.
omits f27ba17 vfs_glusterfs: Fix a memory leak in AIO
omits 55d8bfc s3:libsmb: remove unused spnego related includes
omits fbcc309 s3:smbd: remove unused spnego related includes
omits a7fa3a6 smbd: make "hide dot files" option work with "store dos attributes = yes"
omits 76edbf5 lib/async_req: do not install async_connect_send_test.
omits 795c543 lib/param: add a fixed unified lpcfg_string_{free,set,set_upper}() infrastructure
omits b8ecf97 samba-tool: fsmo.py throws an uncaught exception if no
omits 95ed8b7 s4:torture:vfs_fruit: add a test for POSIX rename
omits 685ad2d vfs_fruit: enable POSIX directory rename semantics
omits dfbf293 vfs_fruit: add a flag that tracks whether use of AAPL was negotiated
omits 02968ec s3:smbd: file_struct: seperate POSIX directory rename cap from POSIX open
omits db3d0c6 s3:smbd: convert file_struct.posix_open to a bitmap with flags
omits e242d72 selftest: Ensure that if the SAMBA_PID is not set, that the env is not OK
omits b0aa686 selftest: Do not start tests on an environment that has failed to start up
omits af16d52 ldb torture: test ldb_unpack_data_only_attr_list
omits 8644dd4 lib/ldb: Use talloc_memdup() because we know the length of the attribute already
omits 8731e0c lib/ldb: Rename variable for clarity
omits 315049e lib/ldb Add checks for overflow during ldb pack and parse
omits 486fd45 lib/ldb: Use better variable names in ldb_unpack_only_attr_list
omits 000249f ldb: increment version due to added ldb_unpack_data_only_attr_list
omits 61a84ca lib/ldb: Clarify the intent of ldb_data_unpack_withlist
omits abcd35f ldb: introduce ldb_unpack_data_withlist to unpack partial list of attributes
omits 1595f56 CVE-2015-8467: samdb: Match MS15-096 behaviour for userAccountControl
omits bc2d859 CVE-2015-5296: libcli/smb: make sure we require signing when we demand encryption on a session
omits aef4113 CVE-2015-5296: s3:libsmb: force signing when requiring encryption in SMBC_server_internal()
omits f8b0f7f CVE-2015-5296: s3:libsmb: force signing when requiring encryption in do_connect()
omits acbb4dd CVE-2015-5299: s3-shadow-copy2: fix missing access check on snapdir
omits cc137fa CVE-2015-5252: s3: smbd: Fix symlink verification (file access outside the share).
omits 7606c0d CVE-2015-5252: s3: smbd: Fix symlink verification (file access outside the share).
omits 420f38f VERSION: Bump version up to 4.3.4...
omits fba7e79 Merge tag 'samba-4.3.3' into v4-3-test
omits 067640b Merge tag 'ldb-1.1.24' into master
omits 2058ce2 smbd: make "hide dot files" option work with "store dos attributes = yes"
omits 0fd68d0 librpc: Fix typos
omits 6aaa8b6 lib: Remove ntstatus.h from gencache.h
omits 4767291 vfs_glusterfs: Attach missing destructor.
omits 0062177 smbd: Fix CID 1343333 Uninitialized variables
omits 5a72a2e dns_server: Remove unused handle_question
omits 6adec93 dns_server: Add handle_authoritative_send()
omits 3b7f99e dns_server: Add add_dns_res_rec()
omits b6aaf77 dns_server: Convert "ask_forwarder" params
omits 4b54e14 dns_server: Simplify array length handling
omits 3f2cbb6 dns_server: Simplify talloc handling
omits 9de59c7 dns_server: Consolidate talloc_realloc
omits 4807577 Fix bug 10881 Wrong keytab permissions when joining additional DC with BIND backend
omits dc20c30 samba_upgradedns: Set correct permissions on secrets.keytab for BIND9
omits 308d645 samba_upgradedns: Improve search for existing accounts in secrets.ldb
omits d38e221 samba_dnsupdate: Simplify logic and add more verbose debugging
omits 9bbb468 samba_dnsupdate: Expand output when --verbose is set
omits 67b6346 python: Give a more helpful error message when we do not have an smb.conf
omits ab1ebb1 password_lockout: test creds.get_kerberos_state()
omits 795f472 auth: keep track of lastLogon and lastLogonTimestamp
omits 909ebe0 password_lockout tests: add assertLoginFailure()
omits d097e81 auth: increase resolution for password grace period calculation
omits 8b26559 pycredentials: add get_kerberos_state() method
omits 203f023 s4:torture/winbind: add more debug output to samba4.winbind.struct.domain_info
omits 79f946c lib: Remove unused talloc_append_blob
omits 8ca3a58 gencache: Refactor gencache_set_data_blob
omits 640870e lib: Separate out xx_path() & callers
omits c281573 lib: Use directory_create_or_exist in xx_path
omits d547d03 gencache: True->true, False->false
omits 5ef9184 lib: Add gencache.h
omits f3d140f docs-xml: Update idmap_rfc2307 manpage for new realm handling
omits 7cd99b4 idmap_rfc2307: Fix handling of cn realm
omits b36c621 s3: smbd: When requesting posix open in open_file_ntcreate() we need to set all posix flags.
omits 07c4967 s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits dea2add s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits 0db1ad9 s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits 82fa4ec s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits cad35c5 s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits c19eaf3 s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits cc13120 s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits a1deced s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits c808a63 s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
omits 7fb3d28 ctdb-client: Only get capabilities from active nodes
omits 569ce95 Fix bug #11394 - Crash: Bad talloc magic value - access after free
omits 36813a4 vfs_glusterfs: Move vfs_gluster_write and vfs_gluster_pwrite.
omits 8d3b900 vfs_glusterfs: Add white space so vfs_glusterfs_pread_send and vfs_glusterfs_pwrite_send match.
omits 640ecbb vfs_glusterfs: Fix AIO crash on smb.conf reload.
omits 79df4ca docs: Fix typos in man vfs_gpfs.
omits defa49e s4-torture: Remove obsolte code in backupkey_heimdal rpc test
omits 39bd6f0 s4-torture: Improve backupkey test to validate the self signed cert
omits eb11fba s4-torture: Add a GnuTLS based backupkey rpc test
omits 59c11db s4-torture: Rename backupkey test to backupkey_heimdal
omits 97765d4 s4-rpc_server: Add a GnuTLS based backupkey implementation
omits 53e8fee waf: Check for GnuTLS 3.4.7
omits 8e09669 s4-rpc-bkrp: Do not set the ca status
omits e8ce1f2 s4-rpc_server: Rename dcesrv_backupkey to dcesrv_backupkey_heimdal
omits 39ec708 s4-torture: make sure we always verify ndr pull and push of bkrp_exported_RSA_key_pair struct.
omits 2f16675 ping_pong: add -l option
omits b63e3b9 ldb: version 1.1.24
omits f36cb71 CVE-2015-5330: ldb_dn_explode: copy strings by length, not terminators
omits 538d305 CVE-2015-5330: next_codepoint_handle_ext: don't short-circuit UTF16 low bytes
omits a118d42 CVE-2015-5330: strupper_talloc_n_handle(): properly count characters
omits ba5dbda CVE-2015-5330: Fix handling of unicode near string endings
omits 0454b95 CVE-2015-5330: ldb_dn_escape_value: use known string length, not strlen()
omits 7f51ec8 CVE-2015-5330: ldb_dn: simplify and fix ldb_dn_escape_internal()
omits aa6c271 CVE-2015-3223: lib: ldb: Use memmem binary search, not strstr text search.
omits ec504db CVE-2015-3223: lib: ldb: Cope with canonicalise_fn returning string "", length 0.
omits 3c6ea32 lib/param: handle (ignore) substitution variable in smb.conf
omits ea6de66 libdns: Small cleanup
omits dfceb51 libdns: Convert dns_udp_request to 0/errno
omits 190e2c0 libdns: Properly set ENOMEM
omits a0fcb7b libdns: tsocket returns -1 and sets errno
omits 557169d lib: Use GUID_buf_string in discover_dc_dns
omits 9bc3f48 lib: Lift lp_disable_netbios one level
omits 7e5b4cd lib: make debug_dsdcinfo_flags static
omits 2bb0b47 lib: Avoid a includes.h
omits 17bc0fa Revert "s3: smbd: Tear down global_smbXsrv_client in the correct order."
omits fbcf1d2 samba-tool: user create examples show 'add' instead of 'create'
omits 4735e5f samba-tool: fsmo.py throws an uncaught exception if no
omits dd9b12a ntlm_auth: Add --offline-logon
omits bd569c3 docs-xml: Document range parameter for idmap_autorid
omits fe91857 ctdb-ipalloc: Rename top level IP allocation algorithm functions
omits 821aa24 ctdb-ipalloc: Rename ctdb_takeover_run_core() to ipalloc()
omits 99abcc1 ctdb-ipalloc: Fold force_rebalance_candidates into IP allocation state
omits 13aa583 ctdb-ipalloc: Fold all IPs list into IP allocation state
omits fb66232 ctdb-ipalloc: Tidy up some of the IP allocation functions
omits 5dcc1d7 ctdb-daemon: Don't delete connection information for released IP
omits 4261d6e ctdb-daemon: Move VNN lookup out of ctdb_remove_tcp_connection()
omits 473f1a7 ctdb-daemon: Do not process tickle updates for hosted IP addresses
omits 80c0511 ctdb-docs: Rewrite event script documentation
omits d7424f9 ctdb-scripts: Add exportfs cache to NFS Linux kernel callout
omits bd7c94d ctdb-recoverd: Drop function unban_all_nodes()
omits ad66858 ctdb-daemon: Drop handling of ban control sent to unexpected node
omits e153501 ldb torture: Test ldb unpacking and printing
omits 5137daa ldb: Move ldb_(un)pack_data into ldb_module.h for testing
omits 60dc26b ldb: Fix installation of _ldb_text.py
omits 2a55a0b Fix little typo in README file
omits c505076 Fix propagation of LDB errors through TDB.
omits 99b2fd4 ldb: Fix bug triggered by having an empty message in database during search.
omits c118fbc clitar: cope with functions of older versions of libarchive
omits f25d09a selftest: fix tar test with Pax format archives
omits 412cefc client: Fix parameter mixup
omits 392b2d3 docs: Fix some typos in the idmap backend section.
omits 0230180 doc: fix a typo in the smb.conf manpage, explanation of idmap config
omits 0583d5b vfs: remove posix_flags hack, bump interface version to 34
omits 0f0693d s4:torture:vfs_fruit: add a test for POSIX rename
omits 1d7bef5 vfs_fruit: enable POSIX directory rename semantics
omits 89a7394 vfs_fruit: add a flag that tracks whether use of AAPL was negotiated
omits bf19575 s3:smbd: file_struct: seperate POSIX directory rename cap from POSIX open
omits d698cec s3:smbd: convert file_struct.posix_open to a bitmap with flags
omits d2a0806 s4:torture/basic: Fix misleading test case names in aliases test
omits 6321145 lib/async_req: do not install async_connect_send_test.
omits 3bbd8d3 libcli/smb: fix BUFFER_OVERFLOW handling in tstream_smbXcli_np
omits 0e8d33f libcli/smb: correctly handle STATUS_BUFFER_OVERFLOW in smb1cli_readx*
omits 68850f3 libcli/smb: correctly handle STATUS_BUFFER_OVERFLOW in smb2cli_query_info*
omits b47bfce libcli/smb: correctly handle STATUS_BUFFER_OVERFLOW in smb2cli_read*
omits 91e12e0 libcli/smb: make sure we have a body size of 0x31 before dereferencing an ioctl response
omits 58d4e77 smbd: Fix a comment
omits 797be47 smbd: Simplify a boolean expression
omits 49912f2 smbd: Fix a typo
omits b3a9b88 librpc: Fix a possible array out of bounds access
omits 87f8bdd lib: Fix an array subscript is above array bounds error
omits c2de842 s3:talloc_dict: fix a SIGBUS when dereferencing unaligned pointers
omits a84eed5 lib/param: add a fixed unified lpcfg_string_{free,set,set_upper}() infrastructure
omits 0548fc5 docs: change pdbedit --set-nt-hash to be consistent
omits 9368917 passdb: Change ABI version to 0.24.2
omits 576b92a pdb: add a blackbox test for setting password with hash
omits 1c91177 Add --set-nt-hash option to pdbedit to update user password from nt-hash hexstring.
omits bb9f13a s3:torture: add traverse testing to LOCAL-RBTREE
omits 0f46da0 dbwrap_rbt: fix modifying the db during traverse
omits 5905079 dbwrap_rbt: add nested traverse protection
omits f3d1fc1 dbwrap_rbt: use talloc_zero_size() instead of a partial ZERO_STRUCT()
omits 257ec9c docs: Fix some typos in the idmap backend section.
omits 1ee7053 ctdb-protocol: Fix marshalling for struct ctdb_rec_data
omits 8ded8e8 ctdb-protocol: Add API to extract ctdb_ltdb_header from TDB_DATA
omits 5f5b319 ctdb-protocol: Fix marshalling of struct ctdb_public_ip_list
omits 5498b71 ctdb-protocol: Fix marshalling of struct ctdb_addr_info
omits 5878177 ctdb-protocol: Do not expect a reply for SHUTDOWN control
omits 3fc6a89 ctdb-protocol: Add marshalling for TDB_DATA
omits 3d84399 ctdb-protocol: Add utility function ctdb_sock_addr_to_string
omits af13e56 ctdb-system: Use protocol/protocol.h instead of ctdb_private.h
omits 2bad37d ctdb-include: Make client header self contained
omits 28fb899 ctdb-include: Make protocol headers self contained
omits 8024e19 s3: smbd: Tear down global_smbXsrv_client in the correct order.
omits 2b0df37 s3: docs: Fix "strict rename" doc to match code.
omits 16f2028 s3: smbd: Change semantics of strict rename to search the file open db.
omits 1582006 s3: smbd: have_file_open_below() fails to enumerate open files below an open directory handle.
omits 9883599 smbd:dir: remove an extra empty line in files_below_forall()
omits 3b2ae07 build:wafsamba: Ensure that check_group_ordering can be overridden
omits 735cf06 build:wafsamba: Ensure that target clones get a different name
omits cc4f7e3 build:wafsamba: Specify whether node objects or flat lists in ant_glob
omits 22386dc samba-tool: replace use of os.popen
omits e6f88c1 libads: Fix picky const warning with krb5_set_password_using_ccache
omits 0733ce3 gensec: Fix picky unused variable errors
omits ab0cbf9 auth: Fix picky const warnings in gssapi_pac
omits e0504a8 s4-auth: Fix picky unused variable warning
omits e9e306b krb5_wrap: Fix picky const compiler warnings
omits bf10446 selftest: Fix Samba::bindir_path() with a valid directory.
omits 8aab442 dbwrap_tdb: Fix a typo
omits 33084a1 ctdb-ipalloc: Drop unnecessary struct ctdb_ipflags
omits e73496d ctdb-ipalloc: Move memory allocation into ipalloc_state_init()
omits 47c5e5a ctdb-ipalloc: Have set_ipflags_internal() set ipalloc_state->ipflags
omits dd163e2 ctdb-ipalloc: Fold IP flags into IP allocation state
omits 22a930a ctdb-ipalloc: Use number of nodes from IP allocation state
omits 1316241 ctdb-ipalloc: Allocate memory off IP allocation state
omits 921e17d ctdb-ipalloc: Add error handling to IP allocation
omits 25c1093 ctdb-ipalloc: Drop CTDB context argument from set_ipflags_internal()
omits 0111773 samba-tool:provision: fix bug 11600
omits 8fdda6f ctdb-scripts: Drop creation of database directories
omits 5b7bb60 ctdb-ipalloc: ctdb_takeover_run_core() takes ipalloc_state
omits 5fba874 ctdb-ipalloc: Tidy up create_merged_ip_list()
omits 837483c ctdb-ipalloc: Move IP list creation out to ctdb_takeover_run()
omits cc1637b ctdb-ipalloc: Add no_ip_failback to ipalloc_state
omits 47ddd62 ctdb-ipalloc: New enum ipalloc_algorithm in ipalloc_state
omits cfa0ffe ctdb-ipalloc: Move IP allocation state into its own struct
omits d7739d8 ctdb-ipalloc: node_ip_coverage() doesn't need CTDB context
omits d451bba selftest: add test for force user and well-known primary group
omits d8717a0 auth: consistent handling of well-known alias as primary gid
omits 42b7d48 auth: remove a line that has no effect
omits 7e9aaec winbind: Don't crash on invalid idmap configs
omits 5036c6e build:wafsamba: remove check_orphaned_targets
omits 155eeac lib: Fix memalign_array overflow protection
omits 69e427e idl: Some CC can't find indented #defines
omits 12b9b77 idl: Avoid // style comments
omits 5f6c4fa libreplace: Only check for malloc.h if needed
omits b64f249 libreplace: Put the malloc.h check on a line of its own
omits 4dfa4ed libreplace: Only check malloc.h once
omits bf06a51 Set LD_LIBRARY_PATH during tests.
omits 39d0a81 lib: tevent: Whitespace cleanup.
omits 2be3dd1 lib: tevent: Fix bug in poll backend - poll_event_loop_poll()
omits d967789 ctdb-scripts: Fix CTDB_DBDIR=tmpfs support
omits 3968e33 ctdb: Remove unused ctdb_set_process_name
omits 03b27bd ctdb: Use prctl_set_comment from lib/util
omits 9ec0938 lib/util: Move util_process from util to util-core
omits fd05d61 libcli/smb: Use helper function for finding session
omits 8f9bf74 smbd: Simplify check_access()
omits c2d5fdb smbd: Use check_access_fsp where appropriate
omits c056daf smbd: Factor out check_access_fsp() from check_access()
omits c8485dd smbd: Refactor check_access()
omits b8467dc smbd: Early return from dos_mode_debug_print
omits b367dbc smbd: Add hex value to dos_mode_debug_print
omits 0f5c98f smbd: Use dos_mode_debug_print in get_ea_dos_attribute
omits 313986b smbd: Use dos_mode_debug_print in dos_mode_from_sbuf
omits 053cf16 smbd: Use dos_mode_debug_print in dos_mode_msdfs
omits 89deffb smbd: Streamline dos_mode_debug_print
omits 5943f92 s4-backupkey: Don't use deprecated data structures
omits f4da068 s4-torture: Rename issuer unique id in backupkey test
omits 3de5943 s3-vfs_snapper: Fix a possible use without init warning
omits f7e2399 s4-param: Make sure newname is not used uninitialized
omits b486398 smbd: Move a message_send_all to the cleanupd
omits de6fe2a smbd: Move cleanupd revalidate to a separate fn
omits bbeabd3 smbd: Move brl_validate to the cleanupd
omits 14fc901 smbd: Move serverid_deregister() to the cleanupd
omits 99833c9 smbd: Move messaging_cleanup() to the cleanupd
omits 1dddba5 smbd: Move smbprofile_cleanup() to the cleanupd
omits b4b4fd0 smbprofile: Add dst pid to smbprofile_cleanup
omits e3e0a29 smbd: Implement a cleanup daemon
omits db99742 build:wafsamba: Waf 1.8 compatible declaration of 'mandatory' configuration tests
omits 7c0575d build:wafsamba: Install named.conf only once
omits cfe8bec build:wafsamba: Replace Options.is_install by bld.is_install
omits 44bf7c2 ctdb-recoverd: Factor out recovery master validation
omits e44957f ctdb-recmaster: Update capabilities before calling first election
omits c5e50a4 ctdb-recoverd: Move VNN map retrieval to where it is needed
omits d1f996a ctdb-recoverd: Drop explicit check for recovery lock
omits 1499f3e ctdb-recoverd: Simplify using TALLOC_FREE()
omits 050e64b ctdb-recoverd: Clarify that recmaster is being set on the current node
omits 0833e47 ctdb-recoverd: Do not sanity check recovery master with local daemon
omits d8decd0 ctdb-recoverd: Don't retrieve recovery master from local daemon
omits e90cab7 ctdb-recoverd: Explicitly set initial recovery master to unknown
omits 018077f ctdb-recoverd: Do not set recovery master during recovery
omits 4b37cc7 ctdb-recoverd: Have recovery daemon remember election result
omits 6f88375 ctdb-recoverd: Clarify recovery master validation logic
omits 74fa62c WHATSNEW: Document CTDB tunable change
omits 9166c30 ctdb-daemon: Rename EventScriptTimeoutCount to MonitorTimeoutCount
omits 55ad4d8 ctdb-daemon: Move script timeout count into monitor state
omits 0d5db1c ctdb-daemon: Reset script timeout count in monitor code
omits a33b50d ctdb-daemon: Do not bother printing script timeout count
omits 134ede8 ctdb-doc: Correct documentation for tunables for script timeout
omits bda2d9d ctdb-ipalloc: Don't consider runstates in the IP takeover code
omits 9ea3188 ctdb-ipalloc: Check for available IPs, not runstate, in takeover run
omits 66574c9 ctdb-ipalloc: A VNN can only host IPs if node is in RUNNING runstate
omits 6b4a961 ctdb-build: Remove ctdb-common-util subsystem
omits 0fffdc1 ctdb-daemon: Remove unused ctdb_logging.[ch]
omits 27bc80c ctdb-tool: Use new debug level API
omits 9c16aec ctdb-common: Use new debug level API
omits 8b1bf86 ctdb-tests: Build in common/logging.c
omits 1757755 ctdb-tests: Replace ctdb_logging.h with common/logging.h
omits 921d815 ctdb-transport: Replace ctdb_logging.h with common/logging.h
omits f50db5c ctdb-server: Replace ctdb_logging.h with common/logging.h
omits 3f31415 ctdb-common: Replace ctdb_logging.h with common/logging.h
omits 7258e1d ctdb-client: Replace ctdb_logging.h with common/logging.h
omits 145da0b ctdb-system: Replace ctdb_logging.h with common/logging.h
omits 7e376f0 ctdb-logging: Remove duplicate definitions
omits dd7d2a4 ctdb-tests: Update test to set numeric debug levels
omits 3d8c1ca ctdb-logging: Allow numeric specification of debug level
omits 2ddc527 ctdb-logging: Allow sub-string matching for debug level strings
omits 64ef27b ctdb-logging: Fix for loop condition
omits 8534408 ctdb-logging: Add APIs to convert debug_level to and from integer
omits c170cdb ctdb-logging: Move debug_extra definition to server/ctdb_logging.c
omits 7dd2f1c ctdb-daemon: Move ctdb_fork.c to server
omits 848da80 ctdb-daemon: Move switch_from_server_to_client() to ctdb_daemon.c
omits eee4af5 WHATSNEW: Add async SMB2 flush and new aio parameter
omits 90469a3 docs: Update doc for 'strict sync' parameter for async SMB2 flush
omits c4be0b7 s3: smbd: Change aio_pending_size static variable to a new "aio max threads" smb.conf parameter.
omits c83ecbb s3: smbd: Remove checks causing fallback to sync on pread/pwrite/fsync.
omits 5327c60 s3: smbd: Remove --with-aio-support. We no longer would ever prefer POSIX-RT aio, use pthread_aio instead.
omits e05d69f docs: correct the name of the idmap config group of parameters
omits 0aca421 ctdb: Fix the O3 developer build
omits f9b92cf selftest: Use strict sync = yes
omits c737fae smbd: Issue fsync for SMB2 FLUSH asynchronously
omits 17f4110 s3: smbd: Remove outstanding_aio_calls from globals.
omits 8039382 s3: smbd: Remove aio_pending_size from globals.
omits 0137105 s4-auth: Fix some debugging and crash in error cases
omits c4267ce smbd: Remove dead code
omits 0886637 ctdb-recoverd: Reload remote IPs as part of takeover run
omits 8cdae3a ctdb-recoverd: Move ctdb_reload_remote_public_ips() to ctdb_takeover.c
omits c37e3c0 ctdb-recoverd: Remote IP validation can't cause a takeover run
omits 8b7b153 ctdb-recoverd: Drop culprit argument from ctdb_reload_remote_public_ips()
omits 1d7d5ab ctdb-recoverd: Trigger takeover run after rebalance timeout
omits a7e8687 ctdb-recoverd: Remove unnecessary assignments of need_takeover_run
omits d608862 ctdb-recoverd: Do not run recovery-related events around IP takeover
omits bd0befa ctdb-recoverd: Drop some sanity checking in local IP verification
omits ceb0988 ctdb-recoverd: Simplify using TALLOC_FREE()
omits 8936281 gss: samba member server returns incorrect error code with some versions of krb5
omits 6e6436a ctdb-build: Don't try to install unavailable prebuilt manpages
omits 85a2a2c ctdb-tests: Try to connect few times before failing in comm_client_test
omits 42d5b06 vfs: Remove smb_traffic_analyzer
omits 2d6dca8 smbstatus: always initialize a messaing context
omits c701e46 lib: Fix CID 1338432 Unchecked return value
omits 609a923 dns_server: Fix a clang warning
omits 4749aec s3-build: Avoid setting CTDB specific include path
omits be670ef ctdb-scripts: Add support for CTDB_DBDIR in tmpfs
omits f05c6d3 ctdb-scripts: Improve CTDB wrapper shutdown code
omits 3a7c73f ctdb-tests: Fix "setreclock" test
omits 1ed577e ctdb-tests: Fix the name of the "setreclock" test
omits af26da1 vfs_acl_*: Only sha256 needed
omits dee23e9 vfs_cap: Fix a warning
omits 9b2a4b1 lib: messages.h references struct iovec
omits c66592b lib: Move some procid functions out of util.c
omits f0bfd61 lib: Increase a debuglevel
omits c526f5f vfs_fruit: Fix a typo
omits c315fce Fix various spelling errors
omits f3033a1 build:wafsamba: Remove the print_commands code from the build scripts
omits 7c5a92a build:wafsamba: Include the print_commands.py tool from upstream
omits 963ccff build:wafsamba: Remove samba_utils.runonce
omits 1f4f081 build:wafsamba: Remove the unnecessary intltool module dependency
omits 9731979 build:wafsamba: Moved samba_before_apply_obj_vars to samba_utils
omits 40a2deb build:wafsamba: Removed unnecessary and misleading variables
omits bae51eb Fix up some aesthetics ... ie, align things as they were intended.
omits 278c257 spec files: remove pam_smbpass
omits 21d0082 source3/wscript: remove pam_smbpass option as it was removed
omits c6ae462 doc: fix a typo in the smb.conf manpage, explanation of idmap config
omits 23663b9 vfs_gpfs: Re-enable share modes
omits 2515ad7 vfs_gpfs: Fix the build with -Werror=declaration-after-statement
omits ce8068e remove many valgrind errors for base.lock test
omits 7ade519 fix uninitialised read in process_host_announce
omits 17482d5 fix writev(vector[...]) points to uninitialised bytes in call_trans2findnext
omits 0f2f8a4 fix 'Invalid read of size 1' in reply_search
omits 9b2aba1 fix writev(vector[...]) points to uninitialised bytes in call_trans2findfirst
omits 8a40da8 ldb: version 1.1.23
omits 0d36d6d pyldb: Improve test coverage
omits dd7baa2 pyldb: Fixes and Python3 compat for Dn component accessors
omits a4d9c87 pyldb: Prevent segfault when first module is NULL
omits 2a29e36 ldb: Build for two Python versions at once
omits e958385 pyldb: Adapt tests to Python 3
omits d584d5e pyldb: Split text/byte strings for compatibility with Python 3
omits 0b384f6 pyldb: Modernize test suite
omits b509cbd pyldb: Add Python 3 compatibility (except strings)
omits a04cfaa pyldb: DECREF old debug function when resetting it
omits 2e298c1 pyldb: Don't use the internal macro PyObject_REPR
omits 7935796 pyldb: Properly increase refcount of returned values
omits c54fc3f ldb: Run the Python testsuite
omits 9884a8f tevent: version 0.9.26
omits 68077c6 lib: tevent: docs: Add tutorial on thread usage.
omits a132320 lib: tevent: tests: Add a second thread test that does request/reply.
omits 187aebb lib: tevent: Initial test of tevent threaded context code.
omits 49bddd8 lib: tevent: Initial checkin of threaded tevent context calling code.
omits bb0050a tdb: version 1.3.8
omits 4f6eb58 talloc: version 2.1.5
omits fae40ec uwrap: Bump version to 1.2.0
omits 2dae19c uwrap: Fix build warning with release build
omits 3328bce uwrap: Add the EINVAL check to setegid()
omits 6e30b2e uwrap: Allow setgid calls only for privileged users
omits be0cb8a uwrap: Allow setregid calls only for privileged users
omits 6b38879 uwrap: Allow setresgid calls only for privileged users
omits 2232db8 uwrap: Move the EINVAL check down in seteuid()
omits 56970b4 uwrap: Allow setuid calls only for privileged users
omits 253f42c uwrap: Allow setreuid calls only for privileged users
omits 5a9c80d uwrap: Allow setresuid calls only for privileged users
omits 656f0db uwrap: Fix a possible null pointer dereference
omits aad7019 uwrap: Improve debug output
omits 8922654 uwrap: Fix debug line in uwrap_init()
omits e821e45 ntvfs: Add error debug statements for set_unix_security
omits 3d7fdb8 selftest: Start Samba AD DC as root
omits 3b7cbc2 s4-rpc_server: Get the real initial uid for selftest
omits 796a05b selftest: Start smbd, nmbd and winbindd as root
omits 6361063 s3-lib: Get the real initial uid for selftest
omits 77eb8e0 vfs_offline: add documentation
omits b3f3ffe vfs_offline: add a blackbox test
omits b37ecbd vfs_offline: add vfs_offline module
omits 89940f3 s3: rpcclient: Prevent null ptr access by returning error if no creds available
omits e8fab02 s3: winbind: Prevent null ptr access by returning error if no creds available
omits aa3cc0b s3: smbd: If EA's are turned off on a share don't allow an SMB2 create containing them.
omits b06544d wafsamba: detect programmer errors in CHECK_BUNDLED_SYSTEM()
omits c474173 tests: Add tests for net ads (join|leave)
omits 23932d3 ctdb-build: Add ctdb/ directory to include path for top-level build
omits 38d9278 ctdb-include: Use new protocol definitions
omits 8b84a82 ctdb-protocol: Rename G_LOCK_READ/WRITE to CTDB_G_LOCK_READ/WRITE
omits b8b737c ctdb-client: Rename g_lock datatypes as per new protocol.h
omits 03c69d8 ctdb-include: Remove unused definitions
omits 3b71d05 ctdb-tools: Use replace headers instead of system headers
omits 409c92b ctdb-daemon: Remove explicit include of ctdb_protocol.h
omits 44e611d ctdb-daemon: Rename struct ctdb_control_get_ifaces to ctdb_iface_list_old
omits ecfaef5 ctdb-daemon: Rename struct ctdb_control_public_ip_info to ctdb_public_ip_info_old
omits c4e9d61 ctdb-daemon: Rename struct ctdb_control_iface_info to ctdb_iface
omits 417077c ctdb-daemon: Rename struct ctdb_control_transdb to ctdb_transdb
omits 1278a5a ctdb-daemon: Rename struct ctdb_control_set_tunable to ctdb_tunable_old
omits 64d8bb6 ctdb-daemon: Rename struct ctdb_control_pulldb to ctdb_pulldb
omits f8c2dc3 ctdb-daemon: Rename struct ctdb_control_gratious_arp to ctdb_addr_info_old
omits 357bc60 ctdb-daemon: Rename struct ctdb_control_ip_iface to ctdb_addr_info_old
omits cb0be41 ctdb-daemon: Rename struct ctdb_tunable to ctdb_tunable_list
omits ca48135 ctdb-daemon: Rename struct ctdb_control_tcp_tickle_list to ctdb_tickle_list_old
omits e34afd8 ctdb-daemon: Rename struct srvid_request_data to ctdb_disable_message
omits cf1ac77 ctdb-daemon: Rename struct srvid_request to ctdb_srvid_message
omits d4de452 ctdb-daemon: Rename struct ctdb_ban_time to ctdb_ban_state
omits 92a6ac1 ctdb-daemon: Rename struct ctdb_tcp_connection to ctdb_connection
omits a82ee23 ctdb-daemon: Rename struct ctdb_control_tcp_addr to ctdb_connection
omits 699ee0d ctdb-daemon: Rename struct ctdb_server_id_list to ctdb_client_id_list_old
omits d858c21 ctdb-daemon: Rename struct ctdb_server_id to ctdb_client_id
omits 22c84ff ctdb-daemon: Rename enum ctdb_server_id_type to ctdb_client_id_type
omits 645cd43 ctdb-daemon: Rename struct ctdb_dbid_map to ctdb_dbid_map_old
omits 563f518 ctdb-daemon: Remove struct ctdb_client_notify_deregister
omits b936145 ctdb-daemon: Rename struct ctdb_client_notify_register to ctdb_notify_data_old
omits 6e37bb7 ctdb-include: Remove unused structure definitions
omits a9f335f ctdb-daemon: Rename struct ctdb_iface to ctdb_interface
omits 75572bd ctdb-daemon: Rename struct ctdb_db_statistics to ctdb_db_statistics_old
omits b45bc4c ctdb-daemon: Rename struct ctdb_statistics_wire to ctdb_statistics_list_old
omits b99436e ctdb-daemon: Rename struct ctdb_rec_data to ctdb_rec_data_old
omits 9bf7d0d ctdb-daemon: Rename struct latency_counter to ctdb_latency_counter
omits 04eaa07 ctdb-daemon: Rename struct ctdb_all_public_ips to ctdb_public_ip_list_old
omits 2b76e58 ctdb-daemon: Rename struct ctdb_public_ip_list to public_ip_list
omits afc5d8a ctdb-daemon: Rename struct ctdb_node_map to ctdb_node_map_old
omits c43b381 ctdb-include: Remove unnecessary typedefs
omits e8f8c63 ctdb-daemon: Rename struct ctdb_req_keepalive to ctdb_req_keepalive_old
omits 1c828b4 ctdb-daemon: Rename struct ctdb_reply_control to ctdb_reply_control_old
omits e1fed53 ctdb-daemon: Rename struct ctdb_req_control to ctdb_req_control_old
omits acf858d ctdb-daemon: Rename struct ctdb_req_message to ctdb_req_message_old
omits 296d9f4 ctdb-daemon: Rename struct ctdb_reply_dmaster to ctdb_reply_dmaster_old
omits 555a2f3 ctdb-daemon: Rename struct ctdb_req_dmaster to ctdb_req_dmaster_old
omits e23a289 ctdb-daemon: Rename struct ctdb_reply_error to ctdb_reply_error_old
omits 277c21f ctdb-daemon: Rename struct ctdb_reply_call to ctdb_reply_call_old
omits e0c42c5 ctdb-daemon: Rename struct ctdb_req_call to ctdb_req_call_old
omits f55889d ctdb-daemon: Rename enum ctdb_eventscript_call to ctdb_event
omits e7c9e50 ctdb-daemon: Rename struct ctdb_scripts_wire to ctdb_script_list_old
omits b9b4bfa ctdb-daemon: Rename struct ctdb_script_wire to ctdb_script
omits 18879da Changing log level of two entries to DBG_NOTICE
omits d5cdfa0 backupkey: Fix CID 1338078 (RESOURCE_LEAK)
omits 4f84372 notifyd: Do not include CTDB headers without CLUSTER_SUPPORT enabled
omits ed1e646 smbd: Do not include CTDB headers without CLUSTER_SUPPORT enabled
omits af92f1b s4.torture.smb2/session : Replace CHECK_VAL with torture macros
omits ad85c89 s3:smb2_server: make the logic of SMB2_CANCEL DLIST_REMOVE() clearer
omits d66863b manpage: corrected small typo error
omits 861018f build:wafsamba: Remove the now unneeded special treatment of rpath flags
omits 77afc1b build:wafsamba: Update waf/wafadmin/Tools/config_c.py from upstream
omits 9ef47d2 buildtools: Ignore exact Python version for ABI checking
omits 2f61906 s4:heimdal_build: also use check_system_heimdal_lib() for "com_err"
omits 3cb1d6e s4:heimdal_build: handle CHECK_BUNDLED_SYSTEM returning False in check_system_heimdal_lib()
omits db04752 script/autobuild.py: exclude !pytalloc-util and !pyldb-util from bundling in samba-libs
omits a19bb29 s3: Remove unnecessary __P() macro
omits 89d254d lib/replace: Make sure that replacement strto[u]ll does not reset errno unexpectedly
omits 8343c70 lib/replace: Replace BSD strtoull by wrapping strtoull instead of strtouq
omits f30a8a2 s4.torture.smb2/session: Add torture assert for close
omits e8a2dda s4.torture.smb2/session: Add torture assert for unlink
omits 9582a48 s4.torture.smb2/session : Replace CHECK_STATUS with torture macros
omits 9e87465 smbd: Fix/simplify scavenger routines
omits db9e10d s3-smbd: Fix use after issue in smbd_smb2_request_dispatch()
omits d8f3b49 ctdb-banning: Do not set recovery mode to ACTIVE in daemon
omits 30a6a22 ctdb-include: Order function prototypes as per ctdb_client.c
omits d2bd076 ctdb-include: Remove unused structures and prototypes
omits 03beaa3 ctdb-include: Move client function prototypes to ctdb_client.h
omits 404c91e ctdb-include: Move protocol structures from ctdb_private.h to ctdb_protocol.h
omits 1e782e6 ctdb-include: Move protocol structures from ctdb_client.h to ctdb_protocol.h
omits 6ce1aa9 ctdb-include: Group function prototypes from server/eventscript.c
omits 819f862 ctdb-include: Group function prototypes from server/ctdb_vacuum.c
omits 860f2edc6 ctdb-include: Group function prototypes from server/ctdb_uptime.c
omits bdce6c4 ctdb-include: Group function prototypes from server/ctdb_update_record.c
omits a24e2ae ctdb-include: Group function prototypes from server/ctdb_tunables.c
omits 7ffd56d ctdb-include: Group function prototypes from server/ctdb_traverse.c
omits 28b33b5 ctdb-include: Group function prototypes from server/ctdb_takeover.c
omits 2d0f917 ctdb-include: Group function prototypes from server/ctdb_statistics.c
omits b0f10a4 ctdb-include: Group function prototypes from server/ctdb_serverids.c
omits beadc50 ctdb-include: Group function prototypes from server/ctdb_server.c
omits c0a20b9 ctdb-include: Group function prototypes from server/ctdb_recoverd.c
omits af95b2f ctdb-include: Group function prototypes from server/ctdb_recover.c
omits 19f87a0 ctdb-include: Group function prototypes from server/ctdb_persistent.c
omits 9bb5e7d ctdb-include: Group function prototypes from server/ctdb_monitor.c
omits 3723eed ctdb-include: Group function prototypes from server/ctdb_ltdb_server.c
omits ae35699 ctdb-include: Group function prototypes from server/ctdb_logging_syslog.c
omits 930a620 ctdb-include: Group function prototypes from server/ctdb_logging_file.c
omits bc14982 ctdb-include: Group function prototypes from server/ctdb_logging.c
omits 8a4b342 ctdb-include: Group function prototypes from server/ctdb_lock.c
omits 568a4ce ctdb-include: Group function prototypes from server/ctdb_keepalive.c
omits d85e13b ctdb-include: Group function prototypes from server/ctdb_freeze.c
omits 9c52c3d ctdb-include: Group function prototypes from server/ctdb_daemon.c
omits 740bb90 ctdb-include: Group function prototypes from server/ctdb_control.c
omits 171299d ctdb-include: Group function prototypes from server/ctdb_call.c
omits 3132720 ctdb-include: Group function prototypes from server/ctdb_banning.c
omits 8558b76 ctdb-include: Group function prototypes from tcp and ib
omits 4647787 ctdb-daemon: Separate prototypes for common client/server functions
omits f1b9d8f ctdb-common: Add missing prototype for ctdb_cmdline_client()
omits ded94c4 ctdb-build: Calculate correct version when building from tarball
omits f50ac68 ctdb-daemon: Remove unused header file include/internal/includes.h
omits 01c6c90 ctdb-daemon: Remove dependency on includes.h
omits 2fdb332 ctdb-daemon: Stop using tevent compatibility definitions
omits 7084cb9 ctdb-include: Move include/internal/cmdline.h to common/
omits b900adc ctdb-daemon: Separate prototypes for system specific functions
omits 4346fe6 KCC: allow --test-all-reps-from to work with --import-ldif
omits 8bdfb25 KCC: samba_kcc --tmpdb X won't run if X already exists
omits e29fba6 KCC: with --import-ldif, don't default to standard DB url
omits 46ac3a5 KCC: kcc.import_ldif doesn't need creds
omits 6f93ffa KCC: remove NTDSConnection API methods that are never used
omits b93205e KCC: whitespace for pep8
omits 1d5bb59 KCC: fix pep8 line length in load_ip_transport()
omits ab63f1a KCC: Correct capitalisation of KCCError
omits e9f0799 KCC: raise KCCError, not Exception, in multiple places
omits 2638419 KCC: NTDSConnection.load_connection() requires objectGUID
omits 8f59362 KCC: remove debug print statements from intrasite and intersite
omits 8fe9992 KCC: load samdb before calling kcc.run()
omits 47b3334 KCC: load the object GUID with --import-ldif
omits 30330b4 KCC: avoid logging alarming things about exected events
omits ad009be KCC: shift --test-all-reps-from call to after kcc loading
omits a9ddca0 KCC: Simplify RNG seeding logic, dropping the default value
omits e442726 KCC: more debug info when --import-ldif goes badly
omits acd7728 KCC: default to not loading new samdb when we already have one
omits 76f195a KCC: fix typo in error path
omits 6f78ad2 KCC: better explain our confusion in colour_vertices comment
omits 310aa2f KCC: clarify debugging messages in bridgehead finding code
omits 5f60c4b KCC: keep track of IP transport for dsa.new_connection()
omits 059e283 KCC: set system flags for new intrasite connections
omits 704fd83 KCC: correctly use dsa.new_connection() system_flags argument
omits 4bf95b6 KCC: Use detect_failed in create_connections
omits 0f8f99f KCC: remove useless comments and simplify get_dsa_for_implied_replica()
omits 24ae662 KCC: stop --forget-intersite-links forgetting local links
omits eec0d11 KCC: simplify get_dsa_for_implied_replica(), using IP invariant
omits 5bbcbe3 KCC: Share commit wrapper between forget_ntdsconn and intrasite
omits 03e3522 KCC: pull apart remove_unneeded_ntdsconn(), fixing intersite
omits 472735f KCC: shift common is_generated() check out of branches
omits 6e3cb6b s4:torture: fix a comment typo.
omits 1466e27 build:wafsamba: Removed hard-coded class names from build scripts
omits 6404c07 ldb: Fix a "ignoring return value" warning
omits c17df7c messages: messages.h needs data_blob.h
omits 7e45bec examples: Fix unchecked result warnings
omits af03f5b lib: Remove a includes.h reference
omits e11008ea lib: Include samba_util.h in server_id_db.h
omits 58418df lib: dbwrap_local_open references loadparm_context
omits ed833d5 smbd: Fix a comment
omits f33e618 ctdb-include: Remove unused header file include/ctdb_typesafe_cb.h
omits 20b82ea ctdb-include: Remove unused header file include/ctdb.h
omits 2666d06 build:wafsamba: removed most import * statements
omits 859e341 lib: util: Make non-critical message a warning.
omits 86111fc ctdb-scripts: Fix an incorrect comment
omits b9903d7 ctdb-scripts: Remove PID file only if it existed
omits 0a90ed5 ctdb: open the RO tracking db with perms 0600 instead of 0000
omits cbae31c build: --picky-developer implies --enable-developer
omits 151a7da ctdb-build: Define CTDB_SOCKET at configure time
omits af99846 ctdb-tool: Remove repack command
omits 47cddb6 ctdb-ib: Fix build for infiniband transport
omits 42b1d30 ctdb-daemon: Keep protocol.h in sync with ctdb_protocol.h
omits 84b7a9f build:wafsamba: dead code removal in gettext detection
omits f9d6be3 selftest: Avoid system krb5.conf in "none" test env
omits 8d3106b selftest: Avoid system krb5.conf in some test envs that don't use kerberos
omits 63c8919 selftest: Avoid system krb5.conf in testenv provisioning
omits 843cb8e Documentation : Add GitHub notes to README.
omits 5350945 WHATSNEW: Describe nss_wins changes
omits 5ab1452 nss_wins: Use libwbclient to query wins server
omits 0abbfb2 nss_wins: Use lp_global_no_reinit()
omits 0d962e0 selftest: Confirm a demote of a real network works
omits be2e0e6 selftest: Add sample provision of master-c596ac6 with multiple DCs
omits 97577fd Add samba4.smb2.create.mkdir-dup(ad_dc_ntvfs) as flapping
omits 55a13e1 samba-tool domain demote: Add support for removing by NTDS GUID
omits e57dcdd samba-tool domain demote: Add --verbose and --quiet options
omits 642de91 samba-tool domain demote: Remove dns-SERVER object as well
omits 145bb6f samba-tool domain demote: Remove all references to the demoted host, even in DNS
omits 3226077 pydns: Add replace_by_dn()
omits a3b92a5 samba-tool domain demote: Use dn.add_base/dn.add_child
omits 00ffb67 samba-tool domain demote: Remove correct DNs and from the correct locations
omits fff09da dns_server: Give WERR_DNS_ERROR_NAME_DOES_NOT_EXIST on empty records
omits 27039a7 selftest: Add tests confirming the demote actually removes objects
omits e432c1b samba-tool domain demote: Refuse to remove ourself
omits 097435c selftest: Run samba-tool domain demote while we have a clone of the DB handy
omits 1f88353 samba-tool domain demote: Rework to allow cleanup of partial demotion, catch more errors
omits 8086900 selftest: Make it clear that the first argument to KCC.run() is unused
omits 6965c98 selftest: Run demote test against the RODC environment also
omits cf075f2 selftest: Reorder tests.py to ensure that demote, then dbcheck run last.
omits f121173 samba-tool domain demote: Allow to operate on an RODC and a subdomain
omits 1874f59 samba-tool domain demote: Add --remove-other-dead-server
omits 2191fca dns_server: Add python method to extract a DNS entry from a ldb.MessageElement
omits b48776d pydsdb: Also accept ldb.MessageElement values to dsdb routines
omits 87cd68c dns_server: Add a python module directly accessing DNS records in sam.ldb
omits 0504065 dns_server: Put more code in common
omits 2715805 selftest: Add tests for samdb_to_ldif_file
omits dadfffb python/kcc: Write correct module list into the file during ldif_to_samdb
omits 1c02f28 ldb: Fix python bindings to accept a string as a DN
omits ffe8090 samba-tool drs clone-dc-database: Require --targetdir
omits 04512d1 repl: Use DSDB_REPL_FLAG_PRIORITISE_INCOMING in samba-tool drs replicate --local
omits d1d5ec3 samba-tool drs clone-dc: Add --include-secrets option
omits 4b25650 repl: Give an error if we get a secret when not expecting one
omits 6d301ad samba-tool: Add new command 'samba-tool drs clone-dc-database'
omits 80171dd samba-tool: Remove vampire subcommand and now unused libnet_Vampire()
omits 6cd8e79 repl_meta_data: Print more detail into the LDB error string, not just DEBUG()
omits 0a924d1 smbd: Send SMB2 oplock breaks unencrypted
omits 11620ae smbd/quotas: Remove invalid quota status switch case
omits 3e6af71 autobuild: Confirm we can build without --enable-developer
omits d7cc5d4 Add samba4.smb2.create.mkdir-dup(ad_dc_ntvfs) as flapping
omits 71dcc76 build: Enable NTVFS file server to be omitted
omits 0ccf842 ctdb-scripts: Use "ctdb ip all" instead of "ctdb ip -n all"
omits 94898dd ctdb-doc: Stop using "ctdb -n all ..."
omits f7c414d ctdb-tests: Change "ctdb ip -n all" to "ctdb ip all"
omits 8c2048b ctdb-tools: Support "ctdb ip all" as equivalent to "ctdb ip -n all"
omits 5d2c943 ctdb-tests: Do not test "ctdb nodestatus -n all"
omits a94378e ctdb-tests: Drop use of "ctdb delip -n all" in simple tests
omits c607989 ctdb-tests: Drop simple uses of "ctdb -n all ..." from simple tests
omits c466ad4 texpect: undefined symbol rep_fprintf
omits d4059e1 auth: gensec: Parameters out_mem_ctx and ev are passed in the wrong order to gensec_spnego_server_try_fallback().
omits f1c49d7 messaging: Fix creating the dgm lockfile
omits 3e705ad lib/tsocket: fix non-blockging connect() error handling
omits 41fe3cf README.Coding: Update section about debug macros
omits b041a58 Remove function name from callers of DBG_*
omits 1d3df7e debug: Prefix messages from DBG_* with function name
omits 38d547b dcerpc.idl: accept invalid dcerpc_bind_nak pdus
omits 7cf4553 selftest: Fix memset parameters in test for async_connect_send()
omits f99d0b9 script/release.sh: make it possible to create stable .x releases (x >= 1)
omits 800437c autobuild: add some system information to the autobuild tarball
omits f1835d8 dynconfig: Use replace.h and memory.h directly, not via includes.h
omits e4054f2 s3-torture: Remove (incorrect) samba3-specific behavior in samba3.raw.unlink now the server is correct
omits 618d3dd s3-torture: Add WILDDELETE test to smbtorture3 to test old wildcard delete with zero attribute
omits 1d51119 s3-smbd: Fix old DOS client doing wildcard delete - gives a attribute type of zero
omits 7f8f1ab net: print file path in serverid wipedbs --verbose
omits f00dd4a provision: Allow more OS levels in sambadns
omits 35f2673 dsdb: Add functional levels for 2012 and 2012R2
omits e8bab90 samba_upgradedns: Remove unused variable
omits 5701b99 samba-tool dns: Trap on conneciton errors and give useful info
omits 751ea34 selftest: Correct comment about MAX_WRAPPED_INTERFACES
omits 56dd83b torture: Add better debug message when tsocket_address_inet_from_strings fails
omits 05d4dbd async_req: fix non-blocking connect()
omits aa96c75 selftest: add a test for async_connect_send()
omits 6c81ecc README.Coding: initialize pointers
omits 1dba498 s4:lib/messaging: use a helper variable for tdb flags
omits 79ec9cb s4:lib/messaging: use correct path for names.tdb
omits 19a0a7f script/release.sh: make it possible to create stable .0 releases
omits 3194a4d lib: Remove unused serverid_get_random_unique_id
omits 22b320c lib: Add some debug to dgm_ref
omits 01d7e26 lib: Push down unique generation one level
omits a788fd3 lib: Remove unused global my_unique_id
omits 62f2b86 lib: Remove unused procid_is_me()
omits da88b0d lib: Remove unused procid_self()
omits 6eb6622 lib: Remove procid_self() from messages.c
omits b9fd6e2 lib: Fix pid_to_procid()
omits ad924ab winbindd: Remove reference to procid_self()
omits bcc1521 fssd: Remove reference to procid_self()
omits 46308bb auth: Remove procid_self() from auth_samba4
omits 7c48369 smbd: Fix file name buflen and padding in notify repsonse
omits 2881679 vfs_streams_xattr: fix and simplify streams_xattr_get_name()
omits fedd096 vfs_fruit: hide the Netatalk metadata xattr in streaminfo
omits c8ee1a0 vfs_fruit: add and use define for the Netatalk metadata xattr
omits c4bdba9 s3.lib: Remove invalid switch case from sysquotas_nfs
omits 2bad085 build: Build *_wrapper without -DNDEBUG for in-tree use
omits 8bb44c5 ntlm auth: spelling fixes
omits 7163e08 samba-tool --help: possessive pronoun "its" has no apostrophe
omits 6456b06 ctdb-scripts: Lock debugging should print kernel stack for process in D state
omits dfc84fd ctdb-daemon: Change handling of default capabilities
omits 5aab31a ctdb-recovery: Update vnnmap before database recovery
omits 30460fc s4:torture: Add test case for Replay of Persistent Handle on a Single Channel.
omits 8bcbb6f s3: test: Fix standalone valid users fileserver test.
omits 2f6dc26 s3: lsa: lookup_name() logic for unqualified (no DOMAIN\ component) names is incorrect.
omits 23f6744 s3:lib: validate domain name in lookup_wellknown_name()
omits 808f29c s4: torture: Add SMB2 access-based enumeration test. Passes against Win2k12R2.
omits b1bd84e lib: cli: Add accessor function smb2cli_tcon_flags() to get tcon flags.
omits cc05f73 s3: smbd: Fix our access-based enumeration on "hide unreadable" to match Windows.
omits 5538e2a ctdb: fix typos in wscript comment.
omits cf89c7f ctdb-tests: Fix CID 1327218-1327221
omits 880b79a s3:lib/messages: fix error check in messaging_filtered_read_send()
omits 74013ae ctdb: Fix CID 1327223 Unbounded source buffer
omits 593bdb9 ctdb: Fix CID 1327224 Unbounded source buffer
omits 826bffc lib: Fix CID 1327227 Uninitialized scalar variable
omits 8eedd5c libdap: Fix a '\0' vs NULL mixup
omits d527ab1 ctdbd: Fix a typo
omits 65e4829 Fixes for server role parameter in smb.conf manpage
omits 9610805 build:wafsamba: Enable feature-compatible declaration for Waf 1.8
omits e73ccc0 Rely on /dev/urandom
omits 5380f7b lib: Add a little tool to perftest generate_random_buffer()
omits 258ce91 lib: Move sys_rw* to lib/util
omits 0ef9c67 s3:locking: initialize lease pointer in share_mode_traverse_fn()
omits cd0c2a5 s3:smbstatus: add stream name to share_entry_forall()
omits d643aaf s3:smbd: remove unused arg oplock_request
omits 3c00e8d pam_smbpass: REMOVE this PAM module
omits 8807ad1 dynconfig: Fix deps, no talloc required
omits b5cf80a talloc: Fix the O3 developer build
omits 2f7bee4 wbinfo: make --verbose --pam-logon print sids
omits b95b2be A small improvement to the DEBUG message when pass-through authentication fails with ACCESS_DENIED. Increased it to log level 1 so it will print out and pointed to Restrict NTLM as the setting so people know what to look for.
omits 7b6d1a2 talloc: Test that talloc magic differs between processes.
omits 2b9bfab talloc: Increment minor version due to added talloc_test_get_magic.
omits 906a26a talloc: Provide tests access to talloc_magic
omits f5135bd talloc: Test magic protection measures.
omits 4a4664a lib/talloc: Provide multiple-loading detection for libtalloc via rand()
omits 30ea897 lib/talloc: Disrupt buffer overflow attacks on Samba by using random magic
omits 1dc0538 build: Move __attribute__ ((destructor)) and ((constructor)) tests to wafsamba
omits f25a5c9 Fix a few small spelling mistakes in DEBUG messages to reduce confusion for those trying to debug stuff.
omits 5709dec vfs_commit: set the fd on open before calling SMB_VFS_FSTAT
omits 2bc55c5 lib: Make messaging_send_iov_from return 0/errno
omits 678ad95 lib: Make messaging_ctdbd_init return 0/errno
omits 7ae6943 lib: Use poll_intr_one_fd in ctdb_read_packet
omits a599b96 lib: Remove messaging_tevent_context() dependency from ctdbd_conn.c
omits 6cc1e66 lib: Make ctdbd_probe return 0/errno
omits a6ddb99 lib: Make ctdb_unwatch return 0/errno
omits b02fd99 lib: Make ctdb_watch_us return 0/errno
omits 2d00fcd lib: Make ctdbd_control_local return 0/errno
omits a039463 lib: Make ctdbd_register_ips return 0/errno
omits 4caf48e lib: Make ctdbd_traverse return 0/errno
omits b78c282 lib: Make ctdbd_parse return 0/errno
omits 4636912 lib: Make ctdbd_migrate return 0/errno
omits 210e1fb lib: Make ctdbd_db_attach return 0/errno
omits fdfc729 lib: Make ctdbd_messaging_send_iov return 0/errno
omits 546d8b4 lib: Make ctdbd_messaging_connection return 0/errno
omits 9da6cce lib: Make ctdbd_init_connection return 0/errno
omits 03fd13f lib: Make ctdbd_register_msg_ctx return 0/errno
omits f3c88bd lib: Make get_cluster_vnn return 0/errno
omits 84ad1a1 lib: Make register_with_ctdbd return 0/errno
omits 7b8853f lib: Rename ctdbd_control_unix to ctdbd_control
omits fd6293c lib: Remove ctdbd_control
omits 108b627 lib: Use ctdbd_control_unix in ctdbd_register_ips
omits dae02e9 lib: Use ctdbd_control_unix in ctdbd_db_attach
omits a448945 lib: Use ctdbd_control_unix in ctdbd_db_attach
omits 24d0add lib: Use ctdbd_control_unix in ctdbd_dbpath
omits ab79b95 lib: Use ctdbd_control_unix in ctdbd_working
omits 4d43101 lib: Rename a variable
omits a8c035f lib: Use ctdbd_control_unix in get_cluster_vnn
omits a5438e0 lib: Use ctdbd_control_unix in register_with_ctdbd
omits 858af0b lib: Add ctdbd_control_unix
omits 7b9016a lib: Fix error talloc leaks in ctdb_read_packet()
omits 0101748 ctdb-recoverd: Always check for recmaster before doing recovery
omits 3cf93d9 ctdb-recoverd: Get rid of connected-ness comparison in election
omits fbd9c9f ctdb-recoverd: Do not freeze databases for election
omits ffff66b ctdb-call: Improve a log message
omits e6ff365 ctdb-recoverd: Add code for parallel database recovery
omits cbfabd8 ctdb-daemon: Add parallel database recovery capability
omits f0613ac ctdb-daemon: Use a define for default capabilities
omits 4b39a77 ctdb-recoverd: Update flags on all nodes before database recovery
omits 9843363 ctdb-recoverd: Update capabilities before the database recovery
omits 14cacd2 ctdb-recovery: Factor out existing database recovery code
omits 9514319 ctdb-recoverd: Add parallel database recovery helper
omits b04c48d ctdb-client: Add client API for new database controls
omits 81ac247 ctdb-protocol: Add controls for parallel DB recovery
omits c6a50b9 ctdb-client: Add new client API implementation
omits 34a6c99 ctdb-protocol: Add ctdb protocol serialization routines
omits 8b45bad ctdb-include: Remove unused structure definitions
omits 54da5c6 ctdb-common: Add logging utilities
omits 1543eed ctdb-common: Add communication endpoint abstraction
omits e01c0ee ctdb-common: Add packet write abstraction
omits c77d3bb ctdb-common: Add packet read abstraction
omits facd3c8 ctdb-packaging: Package public library and header for tevent-unix-util
omits 606b909 ctdb-build: Placeholder for public headers from lib/util
omits 670db6a lib/util: Create a new library for tevent_unix.c
omits 9c16fe4 ctdb-build: Set PKGCONFIGDIR for public libraries in standalone build
omits 100917b ctdb-packaging: Install header files in ctdb subdirectory
omits b25c113 ctdb-daemon: Use reqid abstraction
omits 9fd4d07 ctdb-common: Add request id abstraction
omits a7ea6b0 ctdb-include: Remove unused definition
omits 7c6115e ctdb-daemon: whitespace fix
omits 9d75bf3 ctdb-daemon: formatting fix
omits 62f1e25 ctdb-daemon: Replace ctdb_message with srvid abstraction
omits 6272ef0 ctdb-common: Add srvid abstraction
omits e5592f9 ctdb-common: Add db_hash abstraction
omits acf5ebf ctdb-daemon: whitespace fix
omits 6672dee ctdb-daemon: formatting fix
omits ba56d85 ctdb-daemon: Remove ctdb from traverse_callback
omits 3f287ec ctdb-build: Do not split ctdb-system subsystem
omits 90b633e ctdb-build: Do not mark ctdb private headers public
omits 42f7722 ctdb-daemon: Remove freeze requirement for updating vnnmap
omits 3cbd040 ctdb-daemon: Add a check for database generation consistency
omits 0ff90f4 ctdb-daemon: Check packet generation against database generation
omits d701072 ctdb-call: Delete old defer queue if recovery occurs
omits 3d11efe ctdb-daemon: Use database generation in packet headers for database requests
omits 1df2594 ctdb-daemon: Introduce per database generation
omits b81d4cc ctdb-freeze: Use individual database freeze in blocking freeze
omits 5d9dd4d ctdb-freeze: Ensure all databases get frozen during freeze
omits 8a5039d ctdb-freeze: Make function ctdb_start_freeze static
omits b4357a7 ctdb-banning: Do not freeze databases on ban in the daemon
omits fafd35b ctdb-freeze: Fix a log message
omits d14ff2d ctdb-freeze: Use database specific information in wipe database
omits 8580562 ctdb-freeze: Use single database transactions for global transactions
omits 3d325e7 ctdb-daemon: Add controls for transactions on a single database
omits 4f155e7 ctdb-daemon: Rename ctdb_control_wipe_database to ctdb_control_transdb
omits 9f779f1 ctdb-freeze: simplify code with TALLOC_FREE
omits 979f1c5 ctdb-freeze: Improve log message to indicate subsequent freeze operation
omits 66c7bcc ctdb-daemon: Use database specific mark/unmark routines
omits e0fa182 ctdb-daemon: Use database specific freeze check routine
omits e170bd4 ctdb-locking: Add mark/unmark functions for a single database
omits d139f87 ctdb-freeze: Use single database freeze/thaw code for existing controls
omits fd7ceaf ctdb-freeze: Move destructor closer to where it is used
omits 5447864 ctdb-daemon: Add controls to freeze/thaw a single database
omits 7afabb1 ctdb-daemon: Avoid the use of ctdb->freeze_handle variable
omits 8c58c73 ctdb-daemon: Avoid the use of ctdb->freeze_mode variable
omits 056c44f ctdb-freeze: Refactor code to check if databases are frozen
omits 6a212d1 ctdb-call: Convert pending calls list to per database list
omits 2116c55 ctdb-freeze: Use ctdb_db_iterator to commit transaction on databases
omits bc9a685 ctdb-freeze: Use ctdb_db_iterator to start transaction on databases
omits 4576188 ctdb-freeze: Use ctdb_db_iterator to cancel transaction on databases
omits 74f7eeb ctdb-freeze: Use ctdb_db_prio_iterator to cancel transaction on databases
omits fb23760 ctdb-locking: Add ctdb_db_iterator to iterate through all databases
omits ecb858f ctdb-locking: Expose ctdb_db_prio_iterator function
omits b1f4680 ctdb-locking: Rename ctdb_db_iterator to ctdb_db_prio_iterator
omits 8df0916 ctdb-locking: Remove unused priority argument from db_handler_t
omits b15a65e ctdb-freeze: Remove commented test code
omits 036203e ctdb-freeze: Do an early exit if freeze is pending
omits 6d37cd3 s3:smbd: pass expected_seq_low to smbd_initialize_smb2
omits 9893888 Change the libreadline word-break character set to only space, TAB and NL so that we can attempt to do tab completion across backslashes.
omits 1bb46da s3:smb3: rename smbd_smb2_first_negprot and pass expected seq_low
omits c0aa94e s3:smbd: add expected_seq_low arg to smbd_initialize_smb2
omits 8de1ed6 s4: fix linking smbtorture on Solaris.
omits 5d7eaf9 vfs_fruit: return value of ad_pack in vfs_fruit.c
omits cc93469 lib: Fix CID 1128553 Unchecked return value from library
omits 0db470d lib: Fix CID 1325733 Uninitialized scalar variable
omits 70dbba9 s3:ctdbd_conn: make sure we destroy tevent_fd before closing the socket
omits 97bb100 lib: Pass sockname and timeout to ctdbd_probe()
omits 770b0e4 lib: Pass sockname and timeout to ctdbd_messaging_connection
omits 025fb48 lib: Move lp_ctdbd_socket() to cluster_support.c
omits ccd31e0 lib: Pass parameters to ctdbd_init_connection()
omits 0bc244e lib: Store sockname in ctdbd_connection
omits 6c86062 lib: Remove temporary ctdb_connection in ctdb_control
omits 2aedb2d lib: Store ctdb_timeout in ctdb_connection
omits 54c7b05 lib: Lift lp_ctdbd_socket() call up one level
omits 6755376 kerberos: make sure we only use prompter type when available.
omits e524ab9 winbind: Fix 100% loop
omits f9ceaf4 s3: smbd: Fix NULL pointer bug introduced by previous 'raw' stream fix (bug #11522).
omits bec685f s3: smbd: fix a crash in unix_convert()
omits 00954a9 lib: We can do ACCRIGHTS style fdpassing
omits 0499cee lib: Support fd passing using the 4.3BSD way
omits f4e06a9 lib: Move some routines around in msghdr.c
omits 2c675aa lib: We only need the fd-passing check once
omits b191632 lib: Fix the build on Solaris
omits d9000cb libreplace: Fix the build on Solaris
omits 22c5699 lib: Fix server_id_db_set_exclusive
omits 2c12b51 lib: Add "pid/unique" format for server_id_from_string
omits a4f6450 lib: Fix server_id_from_string
omits 8044e2d lib: Add server_id_str_buf_unique
omits 620b746 lib: Remove ctdb_serverids_exist
omits 103658d lib: Remove serverids_exist
omits b542ce7 lib: Use messaging_dgm_get_unique in serverid_exists
omits c793fb8 lib: Use serverid_exists in server_id_db_check_exclusive
omits 37f01c8 messages_dgm: Add messaging_dgm_get_unique
omits beb7c6b net: Add "serverid exists"
omits e119f95 net: Fix some tiny memleaks
omits 348dd41 s3:lib:interface: break an overly long line
omits d8b2421 s4-scripting: fix minor indent issue for hresult generation.
omits f5109df s4-scripting: fix wrong indent that caused gen_ntstatus.py to fail.
omits dea49cc ldb: Fix CID 1034781 Unsigned compared against 0
omits edd18f7 messages_dgm: Fix an incorrect cast
omits cfca46a messages_dgm: No includes.h necessary
omits ae43867 s4-torture: trying to make clusapi resource online/offline testing a bit more robust
omits 6ef2d28 s3-rpcclient: protect against empty witness async notify messages.
omits 08e260e librpc: properly quote uuids so that wireshark dissectors can be built from them.
omits 4827d49 clusapi: remove security.idl dependency from IDL.
omits 71a168e build:wafsamba: Set the default installation prefix for Waf 1.8
omits 875beef samba-tool: add command to dump dosinfo xattr from a file
omits 44aff1a ctdb-build: Use socket_wrapper only with selftest
omits d493ec1 s4: torture: Fix directory test against a server that actually uses index returns.
omits e224e62 net: fix a crash with net ads keytab create
omits 1b8ea12 witness: fix length calculation in witness_IPaddrInfoList IDL.
omits f2fcbf2 witness: fix IP address endianess in witness_IPaddrInfo IDL.
omits 23c17d9 s4-torture: add test to verify WITNESS_NOTIFY_CLIENT_MOVE message marshalling.
omits 2266e24 smbd: Set process name for notifyd process
omits 0b455a5 smbd: Set process name for async echo handler
omits 96c48b3 s3: Move call to prctl_set_comment to reinit_after_fork
omits 6788a5f lib: Fix prctl detection for prctl_set_comment
omits 969d043 s4: torture: Test mkdir race condition.
omits b1c823d s3: smbd: Fix mkdir race condition.
omits ce62124 docs: Fix references to async smb echo handler in smb.conf manpage
omits dec34db s4:torture: add a test for 0 byte sized streams
omits e9c5b63 s4: torture: Fix double-free on error.
omits a1187bb dbwrap: Remove talloc from dbwrap_watch_record_stored()
omits 1a8750a dbwrap: Convert dbwrap_record_watchers_key to not use talloc
omits 2e0e06c dbwrap: Simplify dbwrap_record_watchers_key()
omits 9964d60 dbwrap: Make dbwrap_db_id return size_t
omits 71a407e dbwrap: Remove talloc_reference()
omits 225cba6 dbwrap: Remove unused dbwrap_hash_size()
omits 5d12eb8 dbwrap: Remove loadparm_context from db_open_tdb
omits 1399198 build: improve stack protector check
omits b4747b6 s4:torture:smb2:rename: Fix typo in simple_nodelete testcase.
omits 25dcdc9 lib/param: fix hiding of FLAG_SYNONYM values
omits 8262ecb build:wafsamba: Use the samba-provided CHECK_CFG method in configuration tests
omits 3408591 ctdb-doc: Fix a typo in the definition of CTDB_NODE_ADDRESS
omits a36a734 Revert "tdb: Add tdbdump -u"
omits 6ce3643 s3: tests: smbclient test to ensure we can create and see a :foobar stream on the top level directory in a share.
omits 74fd4f9 s3: smbd: Fix opening/creating :stream files on the root share directory.
omits 94e7e70 s3: smbd: Remove unused parameter from build_stream_path().
omits a47012d s3: smbclient: Move cmd_setmode out of clitar.c and back into client.c
omits ea53e86 tdb: Add tdbdump -u
omits 1d2a1a6 s4:lib/messaging: use 'msg.lock' and 'msg.sock' for messaging related subdirs
omits 1aabd92 s3:lib/messages: use 'msg.lock' and 'msg.sock' for messaging related subdirs
omits b0fa831 s3:lib/messages: add missing allocation check for priv_path
omits 5866fcc s4: tests: Fix nss_tests build on Solaris.
omits 4276ec7 Makefile: Add option to list all tests
omits f54b2f7 ctdb: Fix CID 1324447 Double close
omits 3ddd351 ctdb-build: Install pre-built manpages when xsltproc not available
omits f1bb641 ctdb-doc: Update out-of-date documentation for CTDB socket options
omits b933b91 ctdb-scripts: Update important installed files to use build-time defaults
omits 56fd37b ctdb-tools: Drop vacuum.log from ctdb_diagnostics
omits 121d1a8 ctdb-scripts: Rename variable CTDB_ETCDIR to CTDB_SYS_ETCDIR
omits 014a1eb ctdb-scripts: CTDB_BASE must be set when including functions file
omits c58d582 ctdb-scripts: Factor out possible creation of rt_tables file
omits 6774676 ctdb-scripts: Move remaining state files into CTDB_SCRIPT_VARDIR
omits 3aa11b1 ctdb-scripts: New internal variable CTDB_SCRIPT_VARDIR
omits d064620 ctdb-scripts: Properly set CTDB_VARDIR in scripts at install time
omits bd77a97 ctdb-build: Add missing manual pages to pre-generate list for tarball
omits 36a1473 ctdb-docs: Update "ctdb reloadnodes" documentation
omits e7a139b ctdb-scripts: Drop internal file-level variables referencing $CTDB_VARDIR
omits 143ec9e ctdb-scripts: Drop file removal involving $ctdb_managed_dir
omits 353c27d ctdb-scripts: Drop functions ctdb_checkstatus() and ctdb_setstatus()
omits 8c2948e ctdb-scripts: Drop 62.cnfs eventscript
omits 9d49dfa ctdb-scripts: New internal variable CTDB_NFS_CALLOUT_STATE_DIR
omits 12153af s3: dfs: Fix a crash when the dfs targets are disabled.
omits b0f41c0 build: use as-needed linker flag also on OpenBSD
omits d3e51b9 nss_winbind: fix hang on Solaris on big groups
omits a997c77 nss_wins: add module for FreeBSD
omits b7eb725 smbXsrv_session: factor smbXsrv_session_add_channel() out of smbXsrv_session_create()
omits 57053c5 s3:smb2_sesssetup: let smbd_smb2_reauth_generic_return() cope with channels
omits 69d2af1 s3:smb2_sesssetup: let smbd_smb2_auth_generic_return() cope with channels
omits 6f95bc5 s3:smb2_sesssetup: change talloc hierarchy in smbd_smb2_session_setup_gensec_done
omits cf5c28d replace: Fix check for gettimeofday()
omits 36830db net: reformat usage text for 'net ads join'
omits d7a617f docs: mention new --no-dns-updates parameter in manpage of net.
omits ae81a40 net: add option --no-dns-updates for net ads join
omits a44a0c4 libsmb: Fix CID 1034606 Incorrect pointer comparison
omits b63b53c libsmb: Fix CID 1034605 Incorrect pointer comparison
omits 736397e winbindd: Fix CID 1273310 Remove structurally dead code
omits 76ef9c1 build: line-break deps for 'param' subsystem
omits 123e658 build: fix quotation of deps for 'param' subsystem.
omits 7d49d9b ctdb-server: fix a possible fd leak in ctdb_tcp_listen_automatic()
omits 4010c03 ctdb: improve a misleading help text.
omits 3f402eb ctdb-doc: remove description of removed --syslog option from ctdbd manpage
omits 7d84cd6 pam_winbind: Fix a segfault if initialization fails
omits e7b6990 swrap: Bump version to 1.1.4
omits 9fe5eac9 swrap: Call dlclose() in the destructor
omits 5bd1ec1 swrap: Fix signed comparsion warnings
omits 830e3dd swrap: Add environment variable to specify mtu size
omits 5543243 swrap: Fix TCP support with sendmsg/recvmsg
omits 049b7c8 swrap: Correctly update the msg_name in recvmsg()
omits 73a62af rwrap: Bump version to 1.1.3
omits 278facd rwrap: Fix strict aliasing warnings for symbol binding
omits fee8437 Find the correct symbol when res_* is a define to __res_*
omits 48d4aac fruit: Fix CID 1323186 Dereference before null check
omits 04c8655 dsdb: Fix a confusing parameter
omits facb11b samdb: Fix CID 1034736 Dereference after null check
omits 6b44ce6 configure: Fix aio_suspend detection
omits a7b6dd4 libsmbclient: Fix 32-bit problems
omits e79877a ctdb-tools: Add dbstatistics to ctdb_diagnostics
omits bce6a38 ctdb-daemon: Drop struct ctdb_control_killtcp
omits 2a8b21e vfs_gpfs: Avoid calling gpfs_is_offline on every i/o
omits 53a8cc7 vfs_gpfs: Introduce vfs_gpfs_fsp_is_offline
omits 0fb8ea7 winbind: Don't delete an existing krb5 ticket on cached logon.
omits 239062a ctdb: Fix a 32-bit problem
omits e4b0ea1 Fix memory leak in dns resolution during spnego authentication using kerberos.
omits 22a37c4 tls: increase Diffie-Hellman group size to 2048 bits
omits b49b1bd doc: fix description of tls dh params file parameter
omits 2d0e301 s4:torture:vfs_fruit: created empty resourceforks
omits c1e1891 s4:torture:vfs_fruit: add a resource fork truncation test
omits 6263495 vfs_fruit: delete ._ file when deleting the basefile
omits db1c074 vfs_fruit: split and simplify fruit_ftruncate
omits 34759c8 vfs_fruit: handling of empty resource fork
omits ba6c7df build:wafsamba: Use the Waf 1.8 API get_tgen_by_name instead of name_to_obj
omits ffea9a1 build:wafsamba: Close file handles in the build scripts too
omits da9eee8 third_party:waf: fix a mis-merge - Utils.check_dir issue
omits bcf5f45 third_party:waf: Backport parts of the waf 1.8 API
omits 841845d samr4: Use <SID=%s> in GetGroupsForUser
omits b3f906f Revert "winbind: Fix 100% loop"
omits 5aefea8 python/tests: Add more assertions that we get back the value we expect
omits 1f50e19 python/tests: Add tests for 64 bit signed integers
omits e6fbeb8 pidl/python: also add a ndr_PyLong_FromLongLong() for symnetric reasons
omits d1416d6 pidl/python: Provide static inline helper function ndr_PyLong_FromUnsignedLongLong
omits c2f4e32 pidl/python: Calculate maximum integer values using a lookup table
omits 88b27eb spoolss: handle SetPrinter for info level 4
omits 2947a70 ldb:wscript: make it possible to build samba with a system ldb again
omits 770fb8c selftest: add a check for disabled change notify
omits b9c5612 selftest: add change notify = no to simpleserver env
omits 098b8a5 notify: check for valid notify_ctx in notify_remove
omits c3647ec web_server: Fix server not to segfault on startup
omits 615d9b7 web_server: Use talloc_get_type_abort()
omits ac25a8a lib/tls: Ensure SSLv3 is disabled in the web server by default
omits cdaa122 lib/tls: Remove unused tls_init_client code
omits 4164d7b ctdb-scripts: Add default filesystem usage warnings
omits 0f28ccf ctdb-scripts: Add default system memory usage warnings
omits 2c601f1 ctdb-scripts: Enable system monitoring eventscript by default
omits b18e4ae ctdb-scripts: Throttle system resource monitoring warnings
omits e6b5163 ctdb-scripts: Don't shutdown CTDB when memory monitoring fails
omits b6a0e4b ctdb-scripts: New consistent system memory and swap monitoring
omits 02fa6c3 ctdb-scripts: Factor out new function check_thresholds()
omits b7b6e25 ctdb-scripts: Memory monitoring uses thresholds expressed as percentages
omits bd2845d ctdb-scripts: Use MemAvailable if it is in /proc/meminfo
omits 99b8ef5 ctdb-scripts: Only use /proc/meminfo for memory checks, not "free"
omits ab58c7a ctdb-scripts: Move system memory checking to 05.system
omits b27ff25 ctdb-tests: Remove unwanted trailing whitespace
omits 23acbd2 ctdb-tests: Add tests for filesystem usage monitoring
omits fa10506 ctdb-scripts: New configuration variable CTDB_MONITOR_FILESYSTEM_USAGE
omits 8f713c8 ctdb-scripts: Don't fail monitoring if sanity checks fail
omits 6b4a46e ctdb-scripts: Move filesystem monitoring into a function, clean it up
omits 47f7d1b ctdb-scripts: Rename 40.fs_use to 05.system
omits e139f19 s3: add suport for SMB3_10 and SMB3_11 protocols in smbstatus
omits f1f47ac python: Remove uuid module
omits e551cdb winbind: Fix 100% loop
omits 16c14ae s3:smb2_create: #if 0 unused variable
omits e6c234d Move the error handling for svhdx to vfswrap_create to give VFS module writers a chance to handle RSVD opens if they want to.
omits d9166eb lib/crypto: make it possible to use only parts of aes.[ch]
omits aaad9e9 lib/crypto: sync AES_cfb8_encrypt() from heimdal
omits e9d3379 lib/crypto: make use of aes_test.h in aes_gcm_128_test.c
omits 965f04d lib/crypto: optimize aes_gcm_128
omits 7e8333d lib/crypto: optimize aes_ccm_128
omits 8795ad2 lib/crypto: optimize aes_cmac_128
omits 0824221 lib/crypto: add optimized helper functions aes_block_{xor,lshift,rshift}()
omits 77c3d50 lib/crypto: add aes_ccm_128 tests
omits 80c8a1c lib/crypto: verify 0 updates in aes_gcm_128 tests
omits 683eda2 lib/crypto: run all aes_gcm_128 testcases
omits 7c4117f lib/crypto: add aes_cmac_128 chunked tests
omits 64c6cc3 s3:vfs_smb_traffic_analyzer: remove samba_ prefix from AES_* function calls
omits c9d97e3 lib: Make sid_linearize take a uint8_t
omits de421d8 lib: Remove unused sid_blob_parse
omits aa38175 lib: Convert callers of sid_blob_parse to sid_parse
omits 4a442e2 lib: Make sid_parse take a uint8_t
omits dba9e63 Prevent a crash in Python modules that try to authenticate by ensuring we reject cases where credendials fields are not intialized.
omits 4e178ed s3-util: Compare the maximum allowed length of a NetBIOS name
omits dcc657a selftest: Add assertion that we actually fix the replPropertyMetaData sort order
omits 5504502 selftest: Add in steps to re-create this database
omits a6957ba Update release-4-1-0rc3 to include data using schema modifications
omits 6122aca ldb: create a cache of known wellknown objects instead of continously searching in the db
omits c049106 dbcheck: Use set() operations to make dbcheck more efficient
omits fb88f9c dbcheck: Try to avoid duplicate searches
omits 2ff9b17 dbcheck: Add additional tests for the attributeID list
omits 2766bad dbcheck: Add explict tests for unknown and unsorted attributeID values
omits e3cf25b pidl: Assert that python arrays will not overflow the C array
omits bed29f3 pydsdb: Allow the full range of uint32_t values for attributeID
omits 336d411 python/tests: Add tests for integer overflow handling
omits 5206ccd pidl: Change PIDL to correctly use and validate python integer types
omits 3faa7dc python: Use an unsigned integer for buf_size, not -1
omits 4ef468e dnsserver: Remove incorrect and not required include of ldb_private.h
omits 617bc3f winbind: Remove "have_idmap_config" from winbindd_domain
omits b62c7e2 winbind: Do not look for the domain in wb_gid2sid
omits 2387d03 winbind: Do not look for the domain in wb_uid2sid
omits 8856555 idmap: Remove dom_name from wbint_Gid2Sid
omits d473047 idmap: Remove dom_name from wbint_Uid2Sid
omits 2f4dad5 idmap: Remove "domname" from idmap_gid_to_sid
omits 0f8c9b8 idmap: Remove "domname" from idmap_uid_to_sid
omits ac4cc24 idmap: Remove "domname" from idmap_backends_unixid_to_sid
omits ad626b9 idmap: Use a range search in idmap_backends_unixid_to_sid
omits ef0c911 idmap: Initialize all idmap domains at startup
omits d36de86 idmap: Move idmap_init() under the static vars
omits 443dd9b loadparm3: Add lp_wi_scan_global_parametrics()
omits f504681 uwrap: Bump version to 1.1.1
omits a71610c uwrap: Removed double newline
omits fc68e84 uwrap: Fix build if getres(uid|gid) are not available.
omits 6363c02 s3-auth: Fix a memory leak in make_server_info_info3()
omits e8c7693 s3-auth: Pass nt_username to check_account()
omits 34965d4 s3-auth: Fix 'map to guest = Bad Uid' support
omits 53e8d52 param: Use talloc_pooled_object
omits 0f600c3 param: Simplify set_param_opt()
omits 78d7512 lib: Remove unused parmlist code
omits 59e955b vfs_scannedonly: Remove vfs_scannedonly from samba source tree.
omits ba4c9bd script/autobuild.py: make sure --nonshared-binary=smbtorture,smbd/smbd keeps working
omits 86fa1d9 script/autobuild.py: test some --with-{static,shared}-modules combinations
omits 3b1aa7a script/autobuild.py: use -Wmissing-prototypes and --picky-developer for samba-libs*
omits 3030325 script/autobuild.py: split out a samba_libs_configure variable
omits 43d1c92 s3:wscript: make --with-{static,shared}-modules options more flexible
omits d830cec s3:wscript: simplify ABI matching for pdb_*_init()
omits bbd82b0 s3:winbindd/idmap_*: make function prototypes available via static_decl_idmap;
omits 7b2ff4c s3:modules/perfcount_*: make function prototypes available via static_decl_perfcount;
omits 37b2677 s3:modules/vfs_*: make function prototypes available via static_decl_vfs;
omits fd6eb8b examples/VFS: make function prototypes available via static_decl_vfs;
omits 4451d0a examples/pdb: fix and validate pdb_test_init() prototype via static_decl_pdb;
omits f8fca7d s4:ntvfs/posix: fix forward declaration of struct pvfs_state
omits 72e0885 s3:wscript: remove leftover from vfs_notify_fam
omits a184951 s3:idmap: we need to allow undefined symbols in idmap_tdb
omits 5134d29 s3:wscript: fix the build without any idmap module
omits 345ef6b smbd: Remove an unnecessary else branch
omits 22e1fb3 vfs: Add some {}
omits 796c77d lib: Use dom_sid_equal where appropriate
omits 2146f39 ctdb: Use talloc_report_str in ctdb
omits a44a7c7 lib: Add the pointer itself to talloc_report_str
omits 2fbce8a gensec: Fix CID 242642 Unchecked return value
omits 62d08ea replace: Fix bug 11455
omits 9638742 ctdb: Fix some clang uninitialized errors
omits 1d79f6c ctdb: Fix the build on FreeBSD 10.1
omits e8c602d s4:torture/rpc: fix ndr_security.h include in fsrvp.c
omits b2986dc release-scripts/build-manpages-nogit: run make realdistclean at the end
omits bd0ec51 s3:smb2_negprot: prefer AES128_CCM if the client supports it
omits 05dbd3b libcli/smb: prefer AES128_CCM
omits dc2d5cc Revert "ldb-samba: Implement transitive extended matching"
omits 8cacd5b Revert "dsdb: Only parse SAMBA_LDAP_MATCH_RULE_TRANSITIVE_EVAL as a DN"
omits ce3c77f s3:lib: fix some corner cases of open_socket_out_cleanup()
omits c93e2cd waf: Check for Linux has 32-bit credential calls
omits e6c8452 libcli: Use iov_buflen in smb2_signing.c
omits a431828 python:samba/upgrade.py Fix format string syntax in error condition
omits 5d141a3 lib: Remove some unused code
omits f0f23d6 lib: Remove some unused code
omits f85c2a6 smbd: Use a struct initializer
omits ba116fa smbd: Remove a confusing comment
omits b5ce90e nfs4acls: Remove type_name param from smbacl4_get_vfs_params
omits 173dca4 nfs4acls: Fix a small memleak
omits 9287b67 nfs4acls: Introduce a helper variable
omits 5caaf00 nfs4acls: Remove a few unnecessary casts
omits fafd0a0 nfs4acls: Use talloc_realloc()
omits 7e630c3 nfs4acls: Use talloc_zero_array()
omits 68c64c7 nfs4acls: Use talloc_zero()
omits 8125503 nfs4acls: Use talloc_zero()
omits 1ba9bbd nfs4acls: Remove get_validated_aceint
omits aeef821 nfs4acls: Remove get_validated_aclint
omits 45e1ef0 nfs4acls: Remove the SMB_ACE4_INT_T typedef
omits 1d30e86 nfs4acls: Remove the SMB_ACL4_INT_T typedef
omits 3314717 nfs4acls: Use SMB4ACE_T instead of _SMB_ACE4_INT_T
omits 5a7997f nfs4acls: Use SMB4ACL_T instead of _SMB_ACL4_INT_T
omits cf97ec5 nfs4acls: Remove an obsolete comment
omits 157711c nfs4acls: Use an anon struct for SMB4ACE_T
omits f15ad38 nfs4acls: Use an anon struct for SMB4ACL_T
omits 9db523b nfs4acls: Use ZERO_STRUCTP
omits 1fcad53 dns_server: Fix a small memleak
omits 9386368 dns_server: Don't call tevent_req_finish twice
omits 7258061 s4:torture:vfs_fruit: add a test for stream names
omits fe4909f s4:torture:vfs_fruit: pass xattr name as arg to torture_setup_local_xattr()
omits 1db1199 vfs_catia: run translation on stream names
omits fb9a64e vfs_streams_xattr: stream names may contain colons
omits eba1212 ctdb-tests: Add a policy routing test with misconfiguration
omits 5a6a932 ctdb-tests: Make fake gateway different to actual public IPs
omits 7d04778 ctdb-scripts: Improve error handling for 50.samba testparm failure
omits 6538ba5 ctdb-pmda: Add missing prototype declaration for non-static function
omits 7949ce1 ctdb-daemon: Reset database statistics when resetting statistics
omits d9030d8 ctdb-system: Remove unused system specific calls
omits e45b0d4 source3/rpc_client: Fix CID 1273041 Condition is redundant
omits 661b4ed lib/talloc: Fix CID 1291639 Missing unlock
omits f57a235 lib/talloc: Fix CID 1291640 Missing unlock
omits 9ae65b2 smbd: Log smb2 requests returning !OK with higher log level
omits d3ac3da s4:rpc_server/netlogon: Fix for NetApp
omits 42f38fe dns: always add authority records
omits d9a3f19 dns: Add a SOA record to error replies
omits bda1a73 dns: Also pass nsrecs to handle_question()
omits 0e11c08 dns: Just pass the name to create_response_rr
omits d7a54f3 dns: Add dns_get_authoritative_zone helper function
omits 54cbecb script/librelease.sh: this is replaced by script/release.sh now
omits 71128e0 script/release.sh: This is a new script to do releases
omits 9d9a767 wafsamba: don't add -DSTATIC_%s_MODULES* arguments for SAMBA_LIBRARY(pyembed=True)
omits 711a420 selftest: Add test for GSSAPI with no authenticator checksum mode
omits ddee603 heimdal/gssapi: Allow a NULL authenticator
omits 6224ac9 gensec: Add an option emulating another mode a client building GSSAPI/krb5 manually uses
omits 78075cf waf: Add talloc as a dependency
omits 38d7617 sdb: Assert if the HDB flags will change
omits ab08575 hdb-samba: Translate SDB errors to HDB errors
omits a3af166 s4-torture: add test for CLUSCTL_NODE_GET_ID in clusapi_NodeControl.
omits 321fe41 s3-rpcclient: add client for create enum ex.
omits 93572c9 s4-torture: add more ndr tests for property lists.
omits d6a8e35 s4-torture: add torture test for clusapi_NodeControl.
omits 7cea0aa clusapi: add clusapi_NodeControlCode to IDL.
omits d621099 s4-torture: add tests for GroupControl.
omits e1373ea clusapi: add clusapi_GroupControlCode enum to IDL.
omits 2654ac3 s4-torture: also test ClusterControl with a large initial buffer size.
omits 0f125f8 clusapi: use winreg_Type in clusapi registry IDL.
omits 2a08aa0 s4-torture: add ndr testsuite for complex clusapi_PROPERTY_LIST structs.
omits 5e009e1 clusapi: use ClusterEnumType in clusapi_CreateEnumEx.
omits d13535d s4-torture: add test for clusapi_CreateEnumEx().
omits b378329 clusapi: add PROPERTY_LIST IDL.
omits e68ce4b s4-torture: add test for GetResourceNetworkName.
omits bc14440 s3-clusapi: add test for GetResourceDependencyExpression.
omits 1f51628 s4-torture: add more tests for clusapi_OpenResource().
omits 95eb6db s3-net: use talloc array in share allowedusers
omits 9c48dbd dns_server: Fix CNAME handling
omits 3fbcd78 dns_server: Add NULL check
omits 28de101 lib/util/debug.h uses va_list, needs stdarg.h
omits c64e3a8 net: Print time of last password change in 'net ads info'
omits 487119d secrets: Add function to fetch only password change timestamp
omits 3bbf384 doc: mention that `smbd -i` exits after first connection
omits 10374dd param: update the README with instructions for adding a parameter
omits 3f5e874 param: remove the static param_table.
omits 8ad079d tests:docs: don't load or test the static param_table.
omits c102ac2 tests:docs: remove testing the diff between the static and generated table
omits 33dfaf7 param: use the generated parameter table.
omits cf16ae5 tests:docs: test the diff between the static and generated table
omits 93c8e8d tests:docs: load the full data from the generated param_table
omits 5efa507 tests:docs: load the full data from the existing param_table.
omits 2ede42e tests:docs: add a function to load the full data structures from the table
omits a918735 tests:docs: print more complicated structures than strings in the message.
omits 3de5d29 tests:docs: common initialization in docs test.
omits b138d57 build: generate param_table_gen.c from docs in the build
omits 5deeba6 generate_param: add a means to generate param_table_gen.c from the docs
omits bbd55f6 param: move the actual table out into param_table_static.c
omits 0dfa9e29 docs:smbdotconf: change type to ustring where needed.
omits 955e77c docs:smbdotconf: change type to octal where needed
omits 0e6fe4c docs:smbdotconf: change type to bytes where needed
omits 46069ed docs:smbdotconf: change type to cmdlist where needed.
omits 317bd29 tests:docs: teach the test the types cmdlist, bytes, octal, and ustring
omits 223aad4 generate_param: teach missing types cmdlist, bytes, octal, ustring.
omits ca861f2 generate_param: more uniform formatting of various type dicts
omits 99d0c3b docs:smbdotconf: add deprecated flags where missing.
omits 2b7396b docs:smbdotconf: make preload a synonym of 'auto services'
omits c6a81dc docs:smbdotconf: 'write ok' is a synonym of 'writeable' not of 'read only'
omits 3c35dd4 param: don't list '-valid' and 'copy' as synonyms - they aren't
omits 179d715 param: make 'timestamp logs' the default writing of 'debug timestamp'
omits e5ac180 param: add SYNONYM flag where missing
omits c03891c param: move dnsdomain from generate_param to EXTRA_GLOBALS
omits ff41343 generate_param: generate struct entries if we don't generate access functions.
omits 36abb6f generate_param: make it possible to handle generated and synonym flags in iteration
omits d1615ab docs:smbdotconf: add 'function' argument to writeable
omits df6c339 docs:smbdotconf: add 'function' parameter to enablespoolss
omits f19ede5 docs:smbdotconf: add 'function' parameter to valid
omits 3723403 param: rename szIdmapGID -> idmap_gid
omits 3566e7d param: rename szIdmapUID -> idmap_uid
omits 8c0217c param: rename szIdmapBackend -> idmap_backend
omits 6b1d1a4 param: rename szInclude -> include
omits bd92bc0 param: rename szCopy -> copy
omits 5820c31 param: rename bAvailable -> available
omits c644890 param: make 'realm' use the standard 'realm' variable.
omits 4ae289c param: turn 'cups encrypt' into a generated function
omits 5c18d00 param: rename CupsEncrypt -> cups_encrypt
omits 496f275 param: make 'winbind max domain connections' a generated function.
omits 78e276a param: rename winbindMaxDomainConnections -> _winbind_max_domain_connections
omits 866fd3b param: turn 'wide links' into a generated funcion
omits b7172b8 param: rename bWidelinks -> wide_links
omits 44619ad param: turn 'smb2 max credits' into generated option
omits ea6d35c param: treat negative values of 'smb2 max credits' as default.
omits a6e387d param: turn 'printcap name' into a generated function
omits 3732456 param: rename szPrintcapName -> printcap_name
omits b68d13e param: turn 'min receivefile size' into a generated function
omits 863f7b9 param: rename iminreceivefile -> min_receivefile_size
omits 217ce6d param: turn 'preferred master' into a generated function
omits 20c84b8 param: rename iPreferredMaster -> _preferred_master
omits c377f63 param: use lp[cfg]_max_print_jobs() in lp[cfg]_maxprintjobs()
omits 6fdffc8 param: generate lp[cfg]_max_print_jobs()
omits 521468e param: rename variable of 'max print jobs' to default.
omits f1846fb param: turn ldap idmap suffix into a generated function
omits 614a0b9 param: rename szLdapMachineSuffix -> _ldap_machine_suffix
omits a5ddd03 param: turn ldap idmap suffix into a generated function
omits bbe74ae param: rename szLdapIdmapSuffix -> _ldap_sz_idmap_suffix
omits e65b7ec param: turn ldap user suffix into a generated function
omits 10b36db param: rename szLdapUserSuffix -> _ldap_user_suffix
omits d4fd07d param: turn ldap group suffix into a generated function
omits cd0016d param: rename szLdapGroupSuffix -> _ldap_group_suffix
omits 63e3c75 docs:smbdotconf: add enumlist property to parameters where missing
omits ba2ea7f docs:smbdotconf: add param flag 'enumlist' to the DTD
omits 31e106b docs:smbdotconf: add handler info to smbdotconf docs where missing
omits 4bc1f77 docs:smbdotconf: add param flags 'handler' and 'deprecated' to the DTD
omits 854bbaf docs:smbdotconf: add param flag 'synonym' to the DTD
omits c72defc docs:smbdotconf: fix type to bool-rev for reverse synonyms.
omits 3bd477e tests: teach the docs test about boolean-rev
omits 9abf7b4 docs:smbdotconf: fix context of 'include' in doc
omits c3fc084 docs:smbdotconf: fix type of "preferred master" parameter.
omits 64b720d docs:smbdotconf: make formatting of headers uniform.
omits a4aaea6 s3:lib: remove unused dummyparam.c
omits 04da5a8 param: accompany FN_LOCAL_PARM_CHAR with FN_LOCAL_CHAR
omits eab9417 param: make set_variable() static.
omits 7e60050 lib/dcom: use HRESULT in dcom_create_object.
omits 4e5ee71 s4-torture: fix ResolveOxid2 test, filling in missing ref,out pointers.
omits f6f5438 s4-torture: fix ResolveOxid test, filling in missing ref,out pointers.
omits a0544cb remact: use imp_levels enum in RemoteActivation IDL.
omits 195faed remact: use HRESULT in RemoteActivation IDL and tests.
omits 04e1f2e lib/torture: add torture_assert_hresult_{equal,ok} macros.
omits 03b59a8 s4-torture: fix remact test from crashing.
omits 2ec5918 s4-torture: fix test for RemoteActivation.
omits 60be14a remact: fix IDL for RemoteActivation.
omits 0cf5c89 s4-torture: use torture_assert macros for RemoteActivation test.
omits 7b155c3 oxidresolver: fix ServerAlive2 IDL and test.
omits 08e6d24 rot: fix indent in rot.idl
omits 1baf31e rot: remove trailing whitespace from rot.idl
omits abf0188 s4-torture: fix indent of remact test.
omits 71051a9 remact: fix indent of remact.idl
omits b3b7701 oxidresolver: fix indent in oxidresolver.idl
omits 22c9f11 dcom: fix ident in dcom.idl.
omits 8b5536a oxidresolver: fix indent of ResolveOxid2 in IDL.
omits 3aaeaea s4-torture: remove trailing whitespace from remact test.
omits 82be958 s4-torture: remove trailing whitespace from oxidresolve test.
omits 5bc2f91 remact: remove trailing whitespace from remact.idl
omits a6976b2 oxidresolver: remove trailing whitespace from oxidresolver.idl
omits b36aa1e orpc: remove trailing whitespace from orpc.idl
omits 5af738a dcom: remove trailing whitespace from dcom.idl
omits 38136c1 source3 torture: don't segfault if filename query fails
omits 86dd7b9 smbXsrv_session:idl: remove the preauth and gensec members
omits 321862d s3:sesssetup: use session->pending_auth in smb1 session setup
omits d391f6d s3:smb2_sesssetup: use session->pending_auth
omits 2c39036 smbXsrv_session: add smbXsrv_session_create_auth()
omits e9885cf smbXsrv_session: add smbXsrv_session_find_auth()
omits 5e463b5 smbXsrv_session:idl: add smbXsrv_session_auth0
omits 56f2f2b lib/param: move function typedef to after forward declaration of struct loadparm_context
omits a51ee19 s3:smb2_sesssetup: remove now unneeded declaration of smb2srv_session_lookup_raw
omits d49b4aa s4-kdc: Use sdb in db-glue and hdb-samba4
omits 99d3719 s4-kdc: Introduce a simple sdb_hdb shim layer
omits 85a041b s4-kdc: Introduce sdb a KDC backend abstraction
omits 535035a s4-kdc: PAC_GLUE does not depend on hdb anymore.
omits b9203dc krb5-wrap: Use the principal returned by the KDC to create the ccache
omits 217d4c1 s4-auth: Call krb5_get_init_creds_opt_set_canonicalize() in MIT case.
omits 80509df s3-auth: Add MIT return code for KDC not reachable
omits 1c4dc00 s4-kdc: Use smb_krb5_principal_get_(type|realm) in db-glue
omits 3c0f934 tests: Add regression test for s3-passdb: Respect LOOKUP_NAME_GROUP flag in sid lookup.
omits 8c41cbb s3:smb2_server: defer channel/session validation to the session setup code.
omits 8ab4b05 s3:smb2_sesssetup: check that the connection belongs to the session in sess.setup
omits 19ec5f3 smbXsrv: use smb2srv_session_lookup_client in smbXsrv_session_close_loop
omits f6816ae smbXsrv: add smb2srv_session_lookup_client().
omits d6acf95 smbXsrv: rename smb2srv_session_lookup -> smb2srv_session_lookup_conn
omits c765d11 smbXsrv: add a smbXsrv_connection argument to smb2srv_session_lookup_raw
omits 66bf0e5 smbXsrv: add a smbXsrv_connection argument to smbXsrv_session_local_lookup()
omits d57e4ac build: fix build with gpfs support - add missing dependency to samba-debug
omits b9bef36 configure: add --with-gpfs option for selecting directory with gpfs headers
omits cef8897 s3:wscript: fix indentation
omits 952a504 ctdb-daemon: Check if updates are in flight when releasing all IPs
omits 8eb04d0 ctdb-banning: If node is already banned, do not run ctdb_local_node_got_banned()
omits 1286b02 ctdb-client: Return the correct status sent from the daemon
omits f07b746 lib: replace: Add strsep function (missing on Solaris).
omits dc99d45 s3-passdb: Respect LOOKUP_NAME_GROUP flag in sid lookup.
omits adbd6d3 pidl: merge multiple 'genpad' implementations into one.
omits 3d0b23d vfs: fix build warning in smb traffic analyzer.
omits 2443c34 s4-torture: don't build the lsa forest trust krb5 tests when building with MIT Kerberos.
omits c596ac6 install_with_python: Secure Python download with sha256 checks.
omits 509c37d tdb: Fix broken build with --disable-python
omits 5f8bad2 tdb_wrap: Use a struct initializer
omits 28e4616 tdb_wrap: Use talloc_pooled_object
omits 00ec3c4 ctdb-daemon: Correctly process the exit code from failed eventscripts
omits 71b89b2 ctdb-tool: Correctly print timed out event scripts output
omits 45e3b05 vfs: Fix CID 1312072 Failure to restore non-local value
omits d7a33d8 vfs: Fix CID 1312073 Argument cannot be negative
omits c3c024f WHATSNEW: Clear release notes for Samba 4.4.0pre1.
omits 8eb5731 VERSION: Bump version up to 4.4.0pre1
This update removed existing revisions from the reference, leaving the
reference pointing at a previous point in the repository history.
* -- * -- N refs/heads/experimental (592a5be)
\
O -- O -- O (a699730)
Any revisions marked "omits" are not gone; other references still
refer to them. Any revisions marked "discards" are gone forever.
No new revisions were added by this update.
Summary of changes:
.travis.yml | 31 -
Makefile | 3 -
README | 20 +-
README.Coding | 59 +-
VERSION | 2 +-
WHATSNEW.txt | 1384 +++-----
auth/credentials/credentials.h | 5 +-
auth/credentials/credentials_ntlm.c | 12 +-
auth/credentials/pycredentials.c | 168 +-
auth/credentials/pycredentials.h | 5 +
auth/credentials/wscript_build | 2 +-
auth/gensec/gensec.c | 113 +-
auth/gensec/gensec.h | 4 -
auth/gensec/gensec.pc.in | 11 +
auth/gensec/gensec_internal.h | 7 -
auth/gensec/gensec_start.c | 18 +-
auth/gensec/gensec_util.c | 2 +-
auth/gensec/schannel.c | 22 +-
auth/gensec/spnego.c | 358 +-
auth/gensec/wscript_build | 7 +-
auth/kerberos/gssapi_pac.c | 12 +-
auth/ntlmssp/gensec_ntlmssp.c | 9 -
auth/ntlmssp/gensec_ntlmssp_server.c | 38 +-
auth/ntlmssp/ntlmssp.c | 91 +-
auth/ntlmssp/ntlmssp.h | 17 -
auth/ntlmssp/ntlmssp_client.c | 533 +--
auth/ntlmssp/ntlmssp_ndr.c | 1 -
auth/ntlmssp/ntlmssp_private.h | 10 +-
auth/ntlmssp/ntlmssp_server.c | 464 +--
auth/ntlmssp/ntlmssp_sign.c | 103 +-
auth/ntlmssp/ntlmssp_util.c | 176 +-
auth/ntlmssp/wscript_build | 2 +-
buildtools/wafsamba/configure_file.py | 13 +-
buildtools/wafsamba/gccdeps.py | 127 +
buildtools/wafsamba/nothreads.py | 7 +-
buildtools/wafsamba/pkgconfig.py | 15 +-
buildtools/wafsamba/samba_abi.py | 9 +-
buildtools/wafsamba/samba_autoconf.py | 36 +-
buildtools/wafsamba/samba_autoproto.py | 3 +-
buildtools/wafsamba/samba_bundled.py | 58 +-
buildtools/wafsamba/samba_conftests.py | 93 +-
buildtools/wafsamba/samba_cross.py | 4 +-
buildtools/wafsamba/samba_deps.py | 101 +-
buildtools/wafsamba/samba_dist.py | 6 +-
buildtools/wafsamba/samba_headers.py | 5 +-
buildtools/wafsamba/samba_install.py | 11 +-
buildtools/wafsamba/samba_optimisation.py | 30 +-
buildtools/wafsamba/samba_patterns.py | 12 +-
buildtools/wafsamba/samba_perl.py | 9 +-
buildtools/wafsamba/samba_pidl.py | 11 +-
buildtools/wafsamba/samba_python.py | 26 +-
buildtools/wafsamba/samba_third_party.py | 4 +-
buildtools/wafsamba/samba_utils.py | 85 +-
buildtools/wafsamba/samba_version.py | 5 +-
buildtools/wafsamba/samba_wildcard.py | 9 +-
buildtools/wafsamba/symbols.py | 21 +-
buildtools/wafsamba/wafsamba.py | 42 +-
buildtools/wafsamba/wscript | 60 +-
ctdb/client/client.h | 842 -----
ctdb/client/client_call.c | 177 -
ctdb/client/client_connect.c | 338 --
ctdb/client/client_control.c | 429 ---
ctdb/client/client_control_sync.c | 3119 ----------------
ctdb/client/client_db.c | 2133 -----------
ctdb/client/client_message.c | 227 --
ctdb/client/client_message_sync.c | 196 -
ctdb/client/client_private.h | 82 -
ctdb/client/client_util.c | 155 -
ctdb/client/ctdb_client.c | 482 +--
ctdb/common/cmdline.c | 40 +-
ctdb/common/cmdline.h | 13 -
ctdb/common/comm.c | 404 ---
ctdb/common/comm.h | 101 -
ctdb/common/common.h | 146 -
ctdb/{server => common}/ctdb_fork.c | 19 +-
ctdb/common/ctdb_io.c | 46 +-
ctdb/common/ctdb_logging.c | 85 +
ctdb/common/ctdb_ltdb.c | 13 +-
ctdb/common/ctdb_message.c | 286 ++
ctdb/common/ctdb_util.c | 117 +-
ctdb/common/db_hash.c | 268 --
ctdb/common/db_hash.h | 159 -
ctdb/common/logging.c | 103 -
ctdb/common/pkt_read.c | 190 -
ctdb/common/pkt_read.h | 98 -
ctdb/common/pkt_write.c | 101 -
ctdb/common/pkt_write.h | 79 -
ctdb/common/rb_tree.c | 16 +-
ctdb/common/reqid.c | 89 -
ctdb/common/reqid.h | 89 -
ctdb/common/srvid.c | 269 --
ctdb/common/srvid.h | 115 -
ctdb/common/system.h | 65 -
ctdb/common/system_aix.c | 40 +-
ctdb/common/system_common.c | 11 +-
ctdb/common/system_freebsd.c | 56 +-
ctdb/common/system_gnu.c | 42 +-
ctdb/common/system_kfreebsd.c | 55 +-
ctdb/common/system_linux.c | 222 +-
ctdb/common/system_util.c | 10 +-
ctdb/config/ctdb.sudoers | 4 +-
ctdb/config/ctdbd_wrapper | 74 +-
ctdb/config/debug-hung-script.sh | 2 +-
ctdb/config/debug_locks.sh | 24 +-
ctdb/config/events.d/00.ctdb | 60 +-
ctdb/config/events.d/05.system | 176 -
ctdb/config/events.d/10.interface | 161 +-
ctdb/config/events.d/11.natgw | 59 +-
ctdb/config/events.d/13.per_ip_routing | 44 +-
ctdb/config/events.d/40.fs_use | 55 +
ctdb/config/events.d/49.winbind | 7 +
ctdb/config/events.d/50.samba | 45 +-
ctdb/config/events.d/60.nfs | 3 -
ctdb/config/events.d/62.cnfs | 78 +
ctdb/config/events.d/README | 271 +-
ctdb/config/functions | 256 +-
ctdb/config/nfs-linux-kernel-callout | 32 +-
ctdb/config/statd-callout | 15 +-
ctdb/ctdb.pc.in | 19 +
ctdb/doc/ctdb-statistics.7 | 4 +-
ctdb/doc/ctdb-statistics.7.html | 134 +-
ctdb/doc/ctdb-tunables.7 | 19 +-
ctdb/doc/ctdb-tunables.7.html | 124 +-
ctdb/doc/ctdb-tunables.7.xml | 28 +-
ctdb/doc/ctdb.1 | 231 +-
ctdb/doc/ctdb.1.html | 351 +-
ctdb/doc/ctdb.1.xml | 189 +-
ctdb/doc/ctdb.7 | 50 +-
ctdb/doc/ctdb.7.html | 97 +-
ctdb/doc/ctdb.7.xml | 71 +-
ctdb/doc/ctdbd.1 | 39 +-
ctdb/doc/ctdbd.1.html | 45 +-
ctdb/doc/ctdbd.1.xml | 44 +-
ctdb/doc/ctdbd.conf.5 | 161 +-
ctdb/doc/ctdbd.conf.5.html | 240 +-
ctdb/doc/ctdbd.conf.5.xml | 228 +-
ctdb/doc/ctdbd_wrapper.1 | 4 +-
ctdb/doc/ctdbd_wrapper.1.html | 4 +-
ctdb/doc/ltdbtool.1 | 4 +-
ctdb/doc/ltdbtool.1.html | 10 +-
ctdb/doc/onnode.1 | 39 +-
ctdb/doc/onnode.1.html | 43 +-
ctdb/doc/onnode.1.xml | 37 +-
ctdb/doc/ping_pong.1 | 4 +-
ctdb/doc/ping_pong.1.html | 8 +-
ctdb/ib/ibw_ctdb.c | 41 +-
ctdb/ib/ibw_ctdb.h | 5 +-
ctdb/ib/ibw_ctdb_init.c | 26 +-
ctdb/ib/ibwrapper.c | 46 +-
ctdb/ib/ibwrapper.h | 2 +-
ctdb/ib/ibwrapper_internal.h | 6 +-
ctdb/ib/ibwrapper_test.c | 68 +-
ctdb/include/common/srvid.h | 1 -
ctdb/include/ctdb.h | 1236 +++++++
ctdb/include/ctdb_client.h | 839 ++---
ctdb/{common/logging.h => include/ctdb_logging.h} | 33 +-
ctdb/include/ctdb_private.h | 1371 ++++---
ctdb/include/ctdb_protocol.h | 700 +++-
ctdb/include/ctdb_typesafe_cb.h | 177 +
ctdb/include/internal/cmdline.h | 10 +
ctdb/include/internal/includes.h | 24 +
ctdb/include/public/util/README.txt | 6 -
ctdb/packaging/RPM/ctdb.spec.in | 47 +-
ctdb/packaging/mkversion.sh | 13 +-
ctdb/protocol/protocol.h | 1022 ------
ctdb/protocol/protocol_api.h | 669 ----
ctdb/protocol/protocol_call.c | 446 ---
ctdb/protocol/protocol_client.c | 2470 -------------
ctdb/protocol/protocol_control.c | 2087 -----------
ctdb/protocol/protocol_header.c | 73 -
ctdb/protocol/protocol_message.c | 395 --
ctdb/protocol/protocol_packet.c | 44 -
ctdb/protocol/protocol_private.h | 279 --
ctdb/protocol/protocol_types.c | 2575 --------------
ctdb/protocol/protocol_util.c | 142 -
ctdb/server/ctdb_banning.c | 93 +-
ctdb/server/ctdb_call.c | 217 +-
ctdb/server/ctdb_control.c | 160 +-
ctdb/server/ctdb_daemon.c | 232 +-
ctdb/server/ctdb_event_helper.c | 9 +-
ctdb/server/ctdb_freeze.c | 852 +----
ctdb/server/ctdb_keepalive.c | 35 +-
ctdb/server/ctdb_lock.c | 139 +-
ctdb/server/ctdb_lock_helper.c | 9 +-
ctdb/server/ctdb_logging.c | 36 +-
ctdb/server/ctdb_logging_file.c | 14 +-
ctdb/server/ctdb_logging_syslog.c | 6 +-
ctdb/server/ctdb_ltdb_server.c | 94 +-
ctdb/server/ctdb_monitor.c | 154 +-
ctdb/server/ctdb_persistent.c | 43 +-
ctdb/server/ctdb_recover.c | 182 +-
ctdb/server/ctdb_recoverd.c | 1387 ++++----
ctdb/server/ctdb_recovery_helper.c | 1888 ----------
ctdb/server/ctdb_server.c | 29 +-
ctdb/server/ctdb_serverids.c | 45 +-
ctdb/server/ctdb_statistics.c | 35 +-
ctdb/server/ctdb_takeover.c | 1754 ++++++---
ctdb/server/ctdb_traverse.c | 69 +-
ctdb/server/ctdb_tunables.c | 136 +-
ctdb/server/ctdb_update_record.c | 49 +-
ctdb/server/ctdb_uptime.c | 14 +-
ctdb/server/ctdb_vacuum.c | 118 +-
ctdb/server/ctdbd.c | 45 +-
ctdb/server/eventscript.c | 104 +-
ctdb/server/ipalloc.c | 53 -
ctdb/server/ipalloc.h | 63 -
ctdb/server/ipalloc_common.c | 206 --
ctdb/server/ipalloc_deterministic.c | 62 -
ctdb/server/ipalloc_lcp2.c | 515 ---
ctdb/server/ipalloc_nondeterministic.c | 147 -
ctdb/server/ipalloc_private.h | 43 -
ctdb/tcp/ctdb_tcp.h | 6 +-
ctdb/tcp/tcp_connect.c | 60 +-
ctdb/tcp/tcp_init.c | 28 +-
ctdb/tcp/tcp_io.c | 14 +-
ctdb/tests/complex/18_ctdb_reloadips.sh | 6 +-
ctdb/tests/cunit/comm_test_001.sh | 7 -
ctdb/tests/cunit/comm_test_002.sh | 24 -
ctdb/tests/cunit/db_hash_test_001.sh | 7 -
ctdb/tests/cunit/pkt_read_001.sh | 7 -
ctdb/tests/cunit/pkt_write_001.sh | 7 -
ctdb/tests/cunit/protocol_test_001.sh | 9 -
ctdb/tests/cunit/protocol_test_002.sh | 36 -
ctdb/tests/cunit/reqid_test_001.sh | 13 -
ctdb/tests/cunit/srvid_test_001.sh | 7 -
ctdb/tests/eventscripts/00.ctdb.monitor.001.sh | 15 +
ctdb/tests/eventscripts/00.ctdb.monitor.002.sh | 15 +
ctdb/tests/eventscripts/00.ctdb.monitor.003.sh | 19 +
ctdb/tests/eventscripts/00.ctdb.monitor.004.sh | 17 +
ctdb/tests/eventscripts/00.ctdb.monitor.005.sh | 21 +
ctdb/tests/eventscripts/05.system.monitor.001.sh | 14 -
ctdb/tests/eventscripts/05.system.monitor.002.sh | 12 -
ctdb/tests/eventscripts/05.system.monitor.003.sh | 14 -
ctdb/tests/eventscripts/05.system.monitor.004.sh | 12 -
ctdb/tests/eventscripts/05.system.monitor.005.sh | 14 -
ctdb/tests/eventscripts/05.system.monitor.006.sh | 14 -
ctdb/tests/eventscripts/05.system.monitor.007.sh | 12 -
ctdb/tests/eventscripts/05.system.monitor.011.sh | 16 -
ctdb/tests/eventscripts/05.system.monitor.012.sh | 14 -
ctdb/tests/eventscripts/05.system.monitor.013.sh | 19 -
ctdb/tests/eventscripts/05.system.monitor.014.sh | 16 -
ctdb/tests/eventscripts/05.system.monitor.015.sh | 18 -
ctdb/tests/eventscripts/05.system.monitor.016.sh | 16 -
ctdb/tests/eventscripts/05.system.monitor.017.sh | 40 -
ctdb/tests/eventscripts/05.system.monitor.018.sh | 123 -
.../tests/eventscripts/10.interface.monitor.015.sh | 2 +-
.../tests/eventscripts/10.interface.monitor.016.sh | 2 +-
ctdb/tests/eventscripts/11.natgw.005.sh | 24 +
ctdb/tests/eventscripts/11.natgw.041.sh | 5 +-
ctdb/tests/eventscripts/11.natgw.042.sh | 5 +-
ctdb/tests/eventscripts/11.natgw.051.sh | 16 -
ctdb/tests/eventscripts/11.natgw.052.sh | 20 -
ctdb/tests/eventscripts/11.natgw.053.sh | 16 -
ctdb/tests/eventscripts/11.natgw.054.sh | 20 -
ctdb/tests/eventscripts/13.per_ip_routing.023.sh | 26 -
ctdb/tests/eventscripts/50.samba.monitor.110.sh | 20 -
ctdb/tests/eventscripts/50.samba.monitor.111.sh | 25 -
ctdb/tests/eventscripts/50.samba.monitor.112.sh | 13 -
ctdb/tests/eventscripts/50.samba.monitor.113.sh | 16 -
ctdb/tests/eventscripts/scripts/local.sh | 150 +-
ctdb/tests/eventscripts/stubs/ctdb | 77 +-
ctdb/tests/eventscripts/stubs/ctdb_natgw | 34 -
ctdb/tests/eventscripts/stubs/df | 38 -
ctdb/tests/eventscripts/stubs/free | 9 +
ctdb/tests/eventscripts/stubs/ip | 10 -
ctdb/tests/eventscripts/stubs/ps | 2 +-
ctdb/tests/eventscripts/stubs/testparm | 38 +-
ctdb/tests/eventscripts/stubs/timeout | 8 -
ctdb/tests/onnode/functions | 1 -
ctdb/tests/run_tests.sh | 2 +-
ctdb/tests/scripts/integration.bash | 30 +-
ctdb/tests/simple/06_ctdb_getpid.sh | 10 +-
ctdb/tests/simple/11_ctdb_ip.sh | 4 +-
ctdb/tests/simple/12_ctdb_getdebug.sh | 10 +-
ctdb/tests/simple/13_ctdb_setdebug.sh | 16 +-
ctdb/tests/simple/14_ctdb_statistics.sh | 7 +-
ctdb/tests/simple/16_ctdb_config_add_ip.sh | 2 +-
ctdb/tests/simple/20_delip_iface_gc.sh | 2 +-
ctdb/tests/simple/23_ctdb_moveip.sh | 4 +-
ctdb/tests/simple/25_dumpmemory.sh | 17 +
.../{35_set_reclock.sh => 35_set_recmaster.sh} | 31 +-
ctdb/tests/simple/60_recoverd_missing_ip.sh | 2 +-
ctdb/tests/simple/functions | 1 -
ctdb/tests/simple/scripts/local.bash | 5 -
ctdb/tests/simple/scripts/local_daemons.bash | 3 +-
ctdb/tests/src/comm_client_test.c | 216 --
ctdb/tests/src/comm_server_test.c | 367 --
ctdb/tests/src/comm_test.c | 260 --
ctdb/tests/src/ctdb_bench.c | 120 +-
ctdb/tests/src/ctdb_fetch.c | 96 +-
ctdb/tests/src/ctdb_fetch_one.c | 28 +-
ctdb/tests/src/ctdb_fetch_readonly_loop.c | 26 +-
ctdb/tests/src/ctdb_fetch_readonly_once.c | 24 +-
ctdb/tests/src/ctdb_lock_tdb.c | 6 +-
ctdb/tests/src/ctdb_persistent.c | 39 +-
ctdb/tests/src/ctdb_porting_tests.c | 40 +-
ctdb/tests/src/ctdb_randrec.c | 26 +-
ctdb/tests/src/ctdb_store.c | 29 +-
ctdb/tests/src/ctdb_takeover_tests.c | 198 +-
ctdb/tests/src/ctdb_test.c | 20 +-
ctdb/tests/src/ctdb_test_stubs.c | 47 +-
ctdb/tests/src/ctdb_trackingdb_test.c | 21 +-
ctdb/tests/src/ctdb_transaction.c | 38 +-
ctdb/tests/src/ctdb_traverse.c | 33 +-
ctdb/tests/src/ctdb_update_record.c | 25 +-
ctdb/tests/src/ctdb_update_record_persistent.c | 28 +-
ctdb/tests/src/ctdbd_test.c | 25 +-
ctdb/tests/src/db_hash_test.c | 101 -
ctdb/tests/src/pkt_read_test.c | 242 --
ctdb/tests/src/pkt_write_test.c | 370 --
ctdb/tests/src/protocol_client_test.c | 2353 ------------
ctdb/tests/src/protocol_types_test.c | 1287 -------
ctdb/tests/src/rb_test.c | 19 +-
ctdb/tests/src/reqid_test.c | 72 -
ctdb/tests/src/srvid_test.c | 78 -
ctdb/tests/takeover/scripts/local.sh | 2 +-
ctdb/tests/takeover/simulation/ctdb_takeover.py | 4 +-
ctdb/tests/test_check_tcp_ports.sh | 3 +-
ctdb/tests/tool/scripts/local.sh | 38 +-
ctdb/tests/tool/stubby.getcapabilities.001.sh | 1 +
ctdb/tests/tool/stubby.getcapabilities.002.sh | 1 +
ctdb/tests/tool/stubby.getcapabilities.004.sh | 5 +-
ctdb/tests/tool/stubby.natgwlist.006.sh | 6 +-
ctdb/tests/tool/stubby.natgwlist.007.sh | 14 +-
ctdb/tests/tool/stubby.natgwlist.009.sh | 36 +
ctdb/tests/tool/stubby.natgwlist.010.sh | 37 +
ctdb/tests/tool/stubby.nodestatus.002.sh | 8 +-
....nodestatus.002.sh => stubby.nodestatus.003.sh} | 0
....nodestatus.002.sh => stubby.nodestatus.004.sh} | 13 +-
....nodestatus.002.sh => stubby.nodestatus.005.sh} | 8 +-
ctdb/tests/tool/stubs/ctdb | 27 -
ctdb/tools/ctdb.c | 572 +--
ctdb/tools/ctdb_diagnostics | 18 +-
ctdb/tools/ctdb_natgw | 199 --
ctdb/tools/ctdb_vacuum.c | 193 +
ctdb/tools/ltdbtool.c | 21 +-
ctdb/tools/onnode | 17 +-
ctdb/utils/ping_pong/ping_pong.c | 65 +-
ctdb/utils/pmda/pmda_ctdb.c | 22 +-
ctdb/utils/smnotify/smnotify.c | 8 +-
ctdb/web/iscsi.html | 2 +-
ctdb/web/testing.html | 4 +-
ctdb/wscript | 328 +-
debian/.gitignore | 3 -
debian/NEWS | 85 -
debian/changelog | 190 +-
debian/control | 86 +-
debian/copyright | 50 +-
debian/ctdb.docs | 4 +-
debian/ctdb.install | 13 +-
debian/ctdb.lintian-overrides | 1 -
debian/gbp.conf | 2 +-
debian/libsamba-heimdal.install | 1 +
debian/libsmbclient.manpages | 1 -
debian/patches/Skip-raw.write-tests.patch | 25 -
.../ctdb-Fix-detection-of-gnukfreebsd.patch | 34 -
debian/patches/disable-socketwrapper.diff | 24 +
debian/patches/no_build_env.patch | 32 -
debian/patches/no_build_system.patch | 12 -
debian/patches/pam-examples.patch | 17 +
debian/patches/series | 6 +-
debian/patches/usershare.patch | 30 +-
debian/patches/waf_smbpasswd_location | 2 +-
debian/rules | 81 +-
debian/samba-common-bin.dirs | 1 +
debian/samba-common.dhcp | 2 +-
debian/samba-common.dirs | 2 +-
debian/samba-common.docs | 2 +-
debian/samba-dev.examples | 4 +-
debian/samba-dev.install | 72 +-
debian/samba-libs.install | 134 +-
debian/samba-libs.lintian-overrides | 3 +-
debian/samba-testsuite.install | 4 +-
debian/samba-vfs-modules.install | 2 +-
debian/samba.examples | 2 +-
debian/samba.install | 22 +-
debian/samba.lintian-overrides | 1 -
debian/samba.postinst | 2 +-
debian/samba.ufw.profile | 4 -
debian/smbclient.install | 3 -
debian/watch | 2 +-
debian/winbind.dirs | 1 +
debian/winbind.install | 9 +-
dfs_server/dfs_server_ad.c | 1 -
docs-xml/Samba3-HOWTO/TOSHARG-Passdb.xml | 2 +-
docs-xml/archives/THANKS | 2 +-
docs-xml/build/DTD/samba-doc | 4 -
docs-xml/manpages/cifsdd.8.xml | 101 -
docs-xml/manpages/dbwrap_tool.1.xml | 2 +-
docs-xml/manpages/eventlogadm.8.xml | 2 +-
docs-xml/manpages/findsmb.1.xml | 2 +-
docs-xml/manpages/idmap_ad.8.xml | 2 +-
docs-xml/manpages/idmap_autorid.8.xml | 17 +-
docs-xml/manpages/idmap_hash.8.xml | 2 +-
docs-xml/manpages/idmap_ldap.8.xml | 2 +-
docs-xml/manpages/idmap_nss.8.xml | 2 +-
docs-xml/manpages/idmap_rfc2307.8.xml | 17 +-
docs-xml/manpages/idmap_rid.8.xml | 2 +-
docs-xml/manpages/idmap_script.8.xml | 2 +-
docs-xml/manpages/idmap_tdb.8.xml | 2 +-
docs-xml/manpages/idmap_tdb2.8.xml | 2 +-
docs-xml/manpages/libsmbclient.7.xml | 2 +-
docs-xml/manpages/lmhosts.5.xml | 2 +-
docs-xml/manpages/log2pcap.1.xml | 2 +-
docs-xml/manpages/net.8.xml | 24 +-
docs-xml/manpages/nmbd.8.xml | 2 +-
docs-xml/manpages/nmblookup.1.xml | 2 +-
docs-xml/manpages/ntlm_auth.1.xml | 8 +-
docs-xml/manpages/pam_winbind.8.xml | 4 +-
docs-xml/manpages/pam_winbind.conf.5.xml | 4 +-
docs-xml/manpages/pdbedit.8.xml | 24 +-
docs-xml/manpages/profiles.1.xml | 2 +-
docs-xml/manpages/rpcclient.1.xml | 2 +-
docs-xml/manpages/samba-regedit.8.xml | 2 +-
docs-xml/manpages/samba-tool.8.xml | 2 +-
docs-xml/manpages/samba.7.xml | 2 +-
docs-xml/manpages/samba.8.xml | 2 +-
docs-xml/manpages/sharesec.1.xml | 2 +-
docs-xml/manpages/smb.conf.5.xml | 2 +-
docs-xml/manpages/smbcacls.1.xml | 2 +-
docs-xml/manpages/smbclient.1.xml | 2 +-
docs-xml/manpages/smbcontrol.1.xml | 2 +-
docs-xml/manpages/smbcquotas.1.xml | 2 +-
docs-xml/manpages/smbd.8.xml | 10 +-
docs-xml/manpages/smbget.1.xml | 24 +-
docs-xml/manpages/smbgetrc.5.xml | 10 +-
docs-xml/manpages/smbpasswd.5.xml | 2 +-
docs-xml/manpages/smbpasswd.8.xml | 2 +-
docs-xml/manpages/smbspool.8.xml | 7 +-
docs-xml/manpages/smbspool_krb5_wrapper.8.xml | 64 -
docs-xml/manpages/smbstatus.1.xml | 2 +-
docs-xml/manpages/smbta-util.8.xml | 115 +
docs-xml/manpages/smbtar.1.xml | 2 +-
docs-xml/manpages/smbtree.1.xml | 2 +-
docs-xml/manpages/testparm.1.xml | 2 +-
docs-xml/manpages/vfs_acl_tdb.8.xml | 2 +-
docs-xml/manpages/vfs_acl_xattr.8.xml | 2 +-
docs-xml/manpages/vfs_aio_fork.8.xml | 2 +-
docs-xml/manpages/vfs_aio_linux.8.xml | 2 +-
docs-xml/manpages/vfs_aio_pthread.8.xml | 2 +-
docs-xml/manpages/vfs_audit.8.xml | 2 +-
docs-xml/manpages/vfs_btrfs.8.xml | 2 +-
docs-xml/manpages/vfs_cacheprime.8.xml | 2 +-
docs-xml/manpages/vfs_cap.8.xml | 2 +-
docs-xml/manpages/vfs_catia.8.xml | 2 +-
docs-xml/manpages/vfs_ceph.8.xml | 4 +-
docs-xml/manpages/vfs_commit.8.xml | 2 +-
docs-xml/manpages/vfs_crossrename.8.xml | 2 +-
docs-xml/manpages/vfs_default_quota.8.xml | 2 +-
docs-xml/manpages/vfs_dirsort.8.xml | 2 +-
docs-xml/manpages/vfs_extd_audit.8.xml | 2 +-
docs-xml/manpages/vfs_fake_perms.8.xml | 2 +-
docs-xml/manpages/vfs_fileid.8.xml | 2 +-
docs-xml/manpages/vfs_fruit.8.xml | 2 +-
docs-xml/manpages/vfs_full_audit.8.xml | 2 +-
docs-xml/manpages/vfs_glusterfs.8.xml | 2 +-
docs-xml/manpages/vfs_gpfs.8.xml | 8 +-
docs-xml/manpages/vfs_linux_xfs_sgid.8.xml | 2 +-
docs-xml/manpages/vfs_media_harmony.8.xml | 2 +-
docs-xml/manpages/vfs_netatalk.8.xml | 2 +-
docs-xml/manpages/vfs_offline.8.xml | 72 -
docs-xml/manpages/vfs_prealloc.8.xml | 2 +-
docs-xml/manpages/vfs_preopen.8.xml | 2 +-
docs-xml/manpages/vfs_readahead.8.xml | 2 +-
docs-xml/manpages/vfs_readonly.8.xml | 2 +-
docs-xml/manpages/vfs_recycle.8.xml | 2 +-
docs-xml/manpages/vfs_scannedonly.8.xml | 243 ++
docs-xml/manpages/vfs_shadow_copy.8.xml | 2 +-
docs-xml/manpages/vfs_shadow_copy2.8.xml | 50 +-
docs-xml/manpages/vfs_shell_snap.8.xml | 2 +-
docs-xml/manpages/vfs_smb_traffic_analyzer.8.xml | 299 ++
docs-xml/manpages/vfs_snapper.8.xml | 2 +-
docs-xml/manpages/vfs_streams_depot.8.xml | 2 +-
docs-xml/manpages/vfs_streams_xattr.8.xml | 2 +-
docs-xml/manpages/vfs_syncops.8.xml | 2 +-
docs-xml/manpages/vfs_time_audit.8.xml | 2 +-
docs-xml/manpages/vfs_tsmsm.8.xml | 2 +-
docs-xml/manpages/vfs_unityed_media.8.xml | 2 +-
docs-xml/manpages/vfs_worm.8.xml | 2 +-
docs-xml/manpages/vfs_xattr_tdb.8.xml | 2 +-
docs-xml/manpages/vfs_zfsacl.8.xml | 2 +-
docs-xml/manpages/vfstest.1.xml | 2 +-
docs-xml/manpages/wbinfo.1.xml | 4 +-
docs-xml/manpages/winbind_krb5_locator.7.xml | 2 +-
docs-xml/manpages/winbindd.8.xml | 2 +-
docs-xml/smbdotconf/base/bindinterfacesonly.xml | 2 +-
docs-xml/smbdotconf/base/comment.xml | 2 +-
docs-xml/smbdotconf/base/configbackend.xml | 3 +-
docs-xml/smbdotconf/base/doscharset.xml | 5 +-
docs-xml/smbdotconf/base/interfaces.xml | 25 +-
docs-xml/smbdotconf/base/multicastdnsregister.xml | 2 +-
docs-xml/smbdotconf/base/netbiosaliases.xml | 3 +-
docs-xml/smbdotconf/base/netbiosname.xml | 2 +-
docs-xml/smbdotconf/base/netbiosscope.xml | 2 +-
docs-xml/smbdotconf/base/realm.xml | 3 +-
docs-xml/smbdotconf/base/sharebackend.xml | 2 +-
docs-xml/smbdotconf/base/unixcharset.xml | 5 +-
docs-xml/smbdotconf/base/workgroup.xml | 2 +-
docs-xml/smbdotconf/browse/browseable.xml | 4 +-
docs-xml/smbdotconf/browse/browselist.xml | 2 +-
docs-xml/smbdotconf/browse/domainmaster.xml | 3 +-
docs-xml/smbdotconf/browse/enhancedbrowsing.xml | 2 +-
docs-xml/smbdotconf/browse/lmannounce.xml | 3 +-
docs-xml/smbdotconf/browse/lminterval.xml | 2 +-
docs-xml/smbdotconf/browse/oslevel.xml | 2 +-
docs-xml/smbdotconf/browse/preferredmaster.xml | 5 +-
docs-xml/smbdotconf/domain/allowdnsupdates.xml | 1 -
docs-xml/smbdotconf/domain/dnsupdatecommand.xml | 2 +-
.../smbdotconf/domain/machinepasswordtimeout.xml | 13 +-
docs-xml/smbdotconf/domain/nsupdatecommand.xml | 2 +-
docs-xml/smbdotconf/domain/rndccommand.xml | 2 +-
docs-xml/smbdotconf/domain/spnupdatecommand.xml | 2 +-
docs-xml/smbdotconf/filename/casesensitive.xml | 3 +-
docs-xml/smbdotconf/filename/defaultcase.xml | 6 +-
docs-xml/smbdotconf/filename/deletevetofiles.xml | 2 +-
docs-xml/smbdotconf/filename/hidedotfiles.xml | 2 +-
docs-xml/smbdotconf/filename/hidespecialfiles.xml | 2 +-
docs-xml/smbdotconf/filename/hideunreadable.xml | 2 +-
.../smbdotconf/filename/hideunwriteablefiles.xml | 2 +-
docs-xml/smbdotconf/filename/manglednames.xml | 2 +-
docs-xml/smbdotconf/filename/mangleprefix.xml | 2 +-
docs-xml/smbdotconf/filename/manglingchar.xml | 2 +-
docs-xml/smbdotconf/filename/manglingmethod.xml | 4 +-
docs-xml/smbdotconf/filename/maparchive.xml | 4 +-
docs-xml/smbdotconf/filename/maphidden.xml | 2 +-
docs-xml/smbdotconf/filename/mapreadonly.xml | 3 +-
docs-xml/smbdotconf/filename/mapsystem.xml | 2 +-
docs-xml/smbdotconf/filename/maxstatcachesize.xml | 2 +-
docs-xml/smbdotconf/filename/preservecase.xml | 2 +-
docs-xml/smbdotconf/filename/shortpreservecase.xml | 2 +-
docs-xml/smbdotconf/filename/statcache.xml | 2 +-
.../smbdotconf/filename/storedosattributes.xml | 2 +-
docs-xml/smbdotconf/filename/vetofiles.xml | 2 +-
docs-xml/smbdotconf/filename/vetooplockfiles.xml | 2 +-
.../smbdotconf/ldap/clientldapsaslwrapping.xml | 3 +-
docs-xml/smbdotconf/ldap/ldapadmindn.xml | 4 +-
docs-xml/smbdotconf/ldap/ldapconnectiontimeout.xml | 6 +-
docs-xml/smbdotconf/ldap/ldapdeletedn.xml | 2 +-
docs-xml/smbdotconf/ldap/ldapderef.xml | 7 +-
docs-xml/smbdotconf/ldap/ldapfollowreferral.xml | 7 +-
docs-xml/smbdotconf/ldap/ldapgroupsuffix.xml | 4 +-
docs-xml/smbdotconf/ldap/ldapidmapsuffix.xml | 4 +-
docs-xml/smbdotconf/ldap/ldapmachinesuffix.xml | 8 +-
docs-xml/smbdotconf/ldap/ldappagesize.xml | 8 +-
docs-xml/smbdotconf/ldap/ldappasswdsync.xml | 7 +-
docs-xml/smbdotconf/ldap/ldapreplicationsleep.xml | 2 +-
docs-xml/smbdotconf/ldap/ldapsameditposix.xml | 4 +-
docs-xml/smbdotconf/ldap/ldapsamtrusted.xml | 4 +-
.../ldap/ldapserverrequirestrongauth.xml | 26 -
docs-xml/smbdotconf/ldap/ldapssl.xml | 3 +-
docs-xml/smbdotconf/ldap/ldapsslads.xml | 6 +-
docs-xml/smbdotconf/ldap/ldapsuffix.xml | 2 +-
docs-xml/smbdotconf/ldap/ldaptimeout.xml | 2 +-
docs-xml/smbdotconf/ldap/ldapusersuffix.xml | 8 +-
docs-xml/smbdotconf/locking/blockinglocks.xml | 2 +-
docs-xml/smbdotconf/locking/cscpolicy.xml | 3 +-
docs-xml/smbdotconf/locking/fakeoplocks.xml | 2 +-
docs-xml/smbdotconf/locking/kerneloplocks.xml | 4 +-
docs-xml/smbdotconf/locking/kernelsharemodes.xml | 4 +-
docs-xml/smbdotconf/locking/level2oplocks.xml | 2 +-
docs-xml/smbdotconf/locking/locking.xml | 2 +-
docs-xml/smbdotconf/locking/lockspintime.xml | 2 +-
.../smbdotconf/locking/oplockbreakwaittime.xml | 2 +-
.../smbdotconf/locking/oplockcontentionlimit.xml | 2 +-
docs-xml/smbdotconf/locking/oplocks.xml | 2 +-
docs-xml/smbdotconf/locking/posixlocking.xml | 2 +-
docs-xml/smbdotconf/locking/smb2leases.xml | 2 +-
docs-xml/smbdotconf/locking/strictlocking.xml | 3 +-
docs-xml/smbdotconf/logging/debugclass.xml | 2 +-
.../smbdotconf/logging/debughirestimestamp.xml | 2 +-
docs-xml/smbdotconf/logging/debugpid.xml | 2 +-
.../smbdotconf/logging/debugprefixtimestamp.xml | 2 +-
.../{timestamplogs.xml => debugtimestamp.xml} | 11 +-
docs-xml/smbdotconf/logging/debuguid.xml | 2 +-
docs-xml/smbdotconf/logging/ldapdebuglevel.xml | 7 +-
docs-xml/smbdotconf/logging/ldapdebugthreshold.xml | 6 +-
docs-xml/smbdotconf/logging/logfile.xml | 3 +-
docs-xml/smbdotconf/logging/logging.xml | 6 +-
docs-xml/smbdotconf/logging/loglevel.xml | 5 +-
docs-xml/smbdotconf/logging/maxlogsize.xml | 2 +-
docs-xml/smbdotconf/logging/syslog.xml | 3 +-
docs-xml/smbdotconf/logging/syslogonly.xml | 3 +-
docs-xml/smbdotconf/logon/domainlogons.xml | 2 +-
docs-xml/smbdotconf/logon/enableprivileges.xml | 3 +-
.../smbdotconf/logon/initlogondelayedhosts.xml | 2 +-
docs-xml/smbdotconf/logon/logondrive.xml | 2 +-
docs-xml/smbdotconf/logon/logonhome.xml | 2 +-
docs-xml/smbdotconf/logon/logonpath.xml | 2 +-
docs-xml/smbdotconf/logon/logonscript.xml | 2 +-
docs-xml/smbdotconf/misc/addsharecommand.xml | 2 +-
docs-xml/smbdotconf/misc/afsshare.xml | 6 +-
docs-xml/smbdotconf/misc/afsusernamemap.xml | 2 +-
.../smbdotconf/misc/allowinsecurewidelinks.xml | 6 +-
docs-xml/smbdotconf/misc/asyncsmbechohandler.xml | 2 +-
docs-xml/smbdotconf/misc/auto_services.xml | 21 -
docs-xml/smbdotconf/misc/available.xml | 6 +-
docs-xml/smbdotconf/misc/cachedirectory.xml | 4 +-
docs-xml/smbdotconf/misc/changenotify.xml | 2 +-
docs-xml/smbdotconf/misc/changesharecommand.xml | 2 +-
docs-xml/smbdotconf/misc/clusteraddresses.xml | 6 +-
docs-xml/smbdotconf/misc/clustering.xml | 2 +-
docs-xml/smbdotconf/misc/configfile.xml | 2 +-
docs-xml/smbdotconf/misc/copy.xml | 1 -
.../smbdotconf/misc/ctdblocktimewarnthreshold.xml | 2 +-
docs-xml/smbdotconf/misc/ctdbtimeout.xml | 2 +-
docs-xml/smbdotconf/misc/defaultservice.xml | 2 +-
docs-xml/smbdotconf/misc/deletereadonly.xml | 6 +-
docs-xml/smbdotconf/misc/deletesharecommand.xml | 2 +-
docs-xml/smbdotconf/misc/dfreecachetime.xml | 6 +-
.../smbdotconf/misc/directorynamecachesize.xml | 6 +-
docs-xml/smbdotconf/misc/dmapisupport.xml | 2 +-
docs-xml/smbdotconf/misc/dontdescend.xml | 6 +-
docs-xml/smbdotconf/misc/dosfilemode.xml | 6 +-
docs-xml/smbdotconf/misc/dosfiletimeresolution.xml | 6 +-
docs-xml/smbdotconf/misc/dosfiletimes.xml | 8 +-
.../smbdotconf/misc/fakedirectorycreatetimes.xml | 6 +-
docs-xml/smbdotconf/misc/followsymlinks.xml | 6 +-
docs-xml/smbdotconf/misc/fssprunestale.xml | 2 +-
docs-xml/smbdotconf/misc/fsssequencetimeout.xml | 2 +-
docs-xml/smbdotconf/misc/fstype.xml | 6 +-
docs-xml/smbdotconf/misc/homedirmap.xml | 6 +-
docs-xml/smbdotconf/misc/include.xml | 7 +-
docs-xml/smbdotconf/misc/kernelchangenotify.xml | 2 +-
docs-xml/smbdotconf/misc/lockdirectory.xml | 2 +-
.../smbdotconf/misc/logwriteablefilesonexit.xml | 6 +-
docs-xml/smbdotconf/misc/magicoutput.xml | 6 +-
docs-xml/smbdotconf/misc/magicscript.xml | 6 +-
docs-xml/smbdotconf/misc/messagecommand.xml | 6 +-
.../smbdotconf/misc/nbtclientsocketaddress.xml | 7 +-
docs-xml/smbdotconf/misc/ncalrpcdir.xml | 6 +-
docs-xml/smbdotconf/misc/nishomedir.xml | 6 +-
.../smbdotconf/misc/nmbdbindexplicitbroadcast.xml | 6 +-
docs-xml/smbdotconf/misc/panicaction.xml | 6 +-
docs-xml/smbdotconf/misc/perfcountmodule.xml | 6 +-
docs-xml/smbdotconf/misc/piddirectory.xml | 2 +-
docs-xml/smbdotconf/misc/postexec.xml | 6 +-
docs-xml/smbdotconf/misc/preexec.xml | 8 +-
docs-xml/smbdotconf/misc/preload.xml | 22 +
docs-xml/smbdotconf/misc/registryshares.xml | 2 +-
docs-xml/smbdotconf/misc/remoteannounce.xml | 6 +-
docs-xml/smbdotconf/misc/remotebrowsesync.xml | 6 +-
docs-xml/smbdotconf/misc/resetonzerovc.xml | 6 +-
docs-xml/smbdotconf/misc/rootpostexec.xml | 6 +-
docs-xml/smbdotconf/misc/rootpreexec.xml | 6 +-
docs-xml/smbdotconf/misc/rootpreexecclose.xml | 6 +-
docs-xml/smbdotconf/misc/rpcdaemon.xml | 4 +-
docs-xml/smbdotconf/misc/rpcserver.xml | 4 +-
docs-xml/smbdotconf/misc/smbdprofilinglevel.xml | 7 +-
docs-xml/smbdotconf/misc/statedirectory.xml | 4 +-
docs-xml/smbdotconf/misc/usershareallowguests.xml | 6 +-
docs-xml/smbdotconf/misc/usersharemaxshares.xml | 8 +-
docs-xml/smbdotconf/misc/usershareowneronly.xml | 6 +-
docs-xml/smbdotconf/misc/usersharepath.xml | 6 +-
.../smbdotconf/misc/usershareprefixallowlist.xml | 6 +-
.../smbdotconf/misc/usershareprefixdenylist.xml | 6 +-
.../smbdotconf/misc/usersharetemplateshare.xml | 6 +-
docs-xml/smbdotconf/misc/utmpdirectory.xml | 2 +-
docs-xml/smbdotconf/misc/valid.xml | 7 +-
docs-xml/smbdotconf/misc/volume.xml | 6 +-
docs-xml/smbdotconf/misc/widelinks.xml | 7 +-
docs-xml/smbdotconf/misc/wtmpdirectory.xml | 2 +-
docs-xml/smbdotconf/printing/addportcommand.xml | 2 +-
docs-xml/smbdotconf/printing/addprintercommand.xml | 2 +-
docs-xml/smbdotconf/printing/cupsencrypt.xml | 8 +-
docs-xml/smbdotconf/printing/cupsoptions.xml | 2 +-
docs-xml/smbdotconf/printing/cupsserver.xml | 2 +-
docs-xml/smbdotconf/printing/defaultdevmode.xml | 2 +-
.../smbdotconf/printing/deleteprintercommand.xml | 2 +-
docs-xml/smbdotconf/printing/disablespoolss.xml | 2 +-
docs-xml/smbdotconf/printing/enablespoolss.xml | 3 +-
docs-xml/smbdotconf/printing/enumportscommand.xml | 2 +-
docs-xml/smbdotconf/printing/forceprintername.xml | 2 +-
docs-xml/smbdotconf/printing/iprintserver.xml | 2 +-
docs-xml/smbdotconf/printing/loadprinters.xml | 2 +-
docs-xml/smbdotconf/printing/lppausecommand.xml | 2 +-
docs-xml/smbdotconf/printing/lpqcachetime.xml | 6 +-
docs-xml/smbdotconf/printing/lpqcommand.xml | 2 +-
docs-xml/smbdotconf/printing/lpresumecommand.xml | 2 +-
docs-xml/smbdotconf/printing/lprmcommand.xml | 2 +-
docs-xml/smbdotconf/printing/maxprintjobs.xml | 3 +-
.../smbdotconf/printing/maxreportedprintjobs.xml | 2 +-
docs-xml/smbdotconf/printing/os2drivermap.xml | 2 +-
docs-xml/smbdotconf/printing/printable.xml | 2 +-
docs-xml/smbdotconf/printing/printcapcachetime.xml | 4 +-
docs-xml/smbdotconf/printing/printcapname.xml | 6 +-
docs-xml/smbdotconf/printing/printcommand.xml | 2 +-
docs-xml/smbdotconf/printing/printername.xml | 2 +-
docs-xml/smbdotconf/printing/printing.xml | 4 +-
docs-xml/smbdotconf/printing/printjobusername.xml | 2 +-
.../smbdotconf/printing/printnotifybackchannel.xml | 6 +-
docs-xml/smbdotconf/printing/queuepausecommand.xml | 2 +-
.../smbdotconf/printing/queueresumecommand.xml | 2 +-
.../smbdotconf/printing/showaddprinterwizard.xml | 2 +-
.../smbdotconf/printing/spoolssarchitecture.xml | 6 +-
docs-xml/smbdotconf/printing/spoolssosversion.xml | 6 +-
docs-xml/smbdotconf/printing/useclientdriver.xml | 2 +-
.../smbdotconf/protocol/aclcheckpermissions.xml | 3 +-
docs-xml/smbdotconf/protocol/aclmapfullcontrol.xml | 6 +-
docs-xml/smbdotconf/protocol/cldapport.xml | 2 +-
.../smbdotconf/protocol/clientipcmaxprotocol.xml | 29 -
.../smbdotconf/protocol/clientipcminprotocol.xml | 29 -
docs-xml/smbdotconf/protocol/clientmaxprotocol.xml | 18 +-
docs-xml/smbdotconf/protocol/clientminprotocol.xml | 13 +-
docs-xml/smbdotconf/protocol/clientusespnego.xml | 7 +-
.../smbdotconf/protocol/dcerpcendpointservers.xml | 2 +-
.../smbdotconf/protocol/defersharingviolations.xml | 2 +-
docs-xml/smbdotconf/protocol/dgramport.xml | 2 +-
docs-xml/smbdotconf/protocol/disablenetbios.xml | 2 +-
docs-xml/smbdotconf/protocol/easupport.xml | 2 +-
docs-xml/smbdotconf/protocol/enableasusupport.xml | 6 +-
docs-xml/smbdotconf/protocol/eventloglist.xml | 2 +-
docs-xml/smbdotconf/protocol/largereadwrite.xml | 2 +-
docs-xml/smbdotconf/protocol/mapaclinherit.xml | 2 +-
docs-xml/smbdotconf/protocol/maxmux.xml | 2 +-
docs-xml/smbdotconf/protocol/maxttl.xml | 2 +-
docs-xml/smbdotconf/protocol/maxwinsttl.xml | 2 +-
docs-xml/smbdotconf/protocol/maxxmit.xml | 2 +-
.../smbdotconf/protocol/minreceivefilesize.xml | 7 +-
docs-xml/smbdotconf/protocol/minwinsttl.xml | 2 +-
docs-xml/smbdotconf/protocol/nameresolveorder.xml | 2 +-
docs-xml/smbdotconf/protocol/nbtport.xml | 2 +-
docs-xml/smbdotconf/protocol/ntaclsupport.xml | 2 +-
docs-xml/smbdotconf/protocol/ntpipesupport.xml | 2 +-
docs-xml/smbdotconf/protocol/ntstatussupport.xml | 2 +-
docs-xml/smbdotconf/protocol/profileacls.xml | 2 +-
docs-xml/smbdotconf/protocol/readraw.xml | 6 +-
docs-xml/smbdotconf/protocol/rpcbigendian.xml | 2 +-
docs-xml/smbdotconf/protocol/servermaxprotocol.xml | 7 +-
docs-xml/smbdotconf/protocol/serverminprotocol.xml | 7 +-
.../protocol/servermultichannelsupport.xml | 21 -
docs-xml/smbdotconf/protocol/sharefakefscaps.xml | 4 +-
docs-xml/smbdotconf/protocol/smb2maxcredits.xml | 8 +-
docs-xml/smbdotconf/protocol/smb2maxread.xml | 6 +-
docs-xml/smbdotconf/protocol/smb2maxtrans.xml | 6 +-
docs-xml/smbdotconf/protocol/smb2maxwrite.xml | 6 +-
docs-xml/smbdotconf/protocol/smbports.xml | 3 +-
docs-xml/smbdotconf/protocol/svcctllist.xml | 2 +-
docs-xml/smbdotconf/protocol/timeserver.xml | 2 +-
docs-xml/smbdotconf/protocol/unicode.xml | 2 +-
docs-xml/smbdotconf/protocol/unixextensions.xml | 2 +-
docs-xml/smbdotconf/protocol/usespnego.xml | 3 +-
docs-xml/smbdotconf/protocol/webport.xml | 2 +-
docs-xml/smbdotconf/protocol/writeraw.xml | 6 +-
.../smbdotconf/security/accessbasedshareenum.xml | 4 +-
docs-xml/smbdotconf/security/aclgroupcontrol.xml | 2 +-
docs-xml/smbdotconf/security/adminusers.xml | 2 +-
.../smbdotconf/security/algorithmicridbase.xml | 4 +-
.../security/allowdcerpcauthlevelconnect.xml | 27 -
.../smbdotconf/security/allowtrusteddomains.xml | 4 +-
docs-xml/smbdotconf/security/authmethods.xml | 4 +-
.../smbdotconf/security/checkpasswordscript.xml | 2 +-
docs-xml/smbdotconf/security/clientipcsigning.xml | 26 -
docs-xml/smbdotconf/security/clientlanmanauth.xml | 2 +-
docs-xml/smbdotconf/security/clientntlmv2auth.xml | 7 +-
.../smbdotconf/security/clientplaintextauth.xml | 4 +-
docs-xml/smbdotconf/security/clientschannel.xml | 5 +-
docs-xml/smbdotconf/security/clientsigning.xml | 17 +-
.../security/clientusepsnegoprincipal.xml | 3 +-
docs-xml/smbdotconf/security/createmask.xml | 2 +-
.../smbdotconf/security/dedicatedkeytabfile.xml | 4 +-
docs-xml/smbdotconf/security/directorymask.xml | 4 +-
.../smbdotconf/security/directorysecuritymask.xml | 8 +-
docs-xml/smbdotconf/security/encryptpasswords.xml | 4 +-
docs-xml/smbdotconf/security/forcecreatemode.xml | 2 +-
.../smbdotconf/security/forcedirectorymode.xml | 2 +-
.../security/forcedirectorysecuritymode.xml | 8 +-
docs-xml/smbdotconf/security/forcegroup.xml | 2 +-
.../smbdotconf/security/forceunknownacluser.xml | 2 +-
docs-xml/smbdotconf/security/forceuser.xml | 2 +-
docs-xml/smbdotconf/security/guestaccount.xml | 4 +-
docs-xml/smbdotconf/security/guestok.xml | 4 +-
docs-xml/smbdotconf/security/guestonly.xml | 2 +-
docs-xml/smbdotconf/security/hostsallow.xml | 2 +-
docs-xml/smbdotconf/security/hostsdeny.xml | 2 +-
docs-xml/smbdotconf/security/inheritacls.xml | 2 +-
docs-xml/smbdotconf/security/inheritowner.xml | 2 +-
.../smbdotconf/security/inheritpermissions.xml | 2 +-
docs-xml/smbdotconf/security/invalidusers.xml | 2 +-
docs-xml/smbdotconf/security/kerberosmethod.xml | 5 +-
docs-xml/smbdotconf/security/kpasswdport.xml | 2 +-
docs-xml/smbdotconf/security/krb5port.xml | 2 +-
docs-xml/smbdotconf/security/lanmanauth.xml | 4 +-
docs-xml/smbdotconf/security/maptoguest.xml | 5 +-
.../smbdotconf/security/mapuntrustedtodomain.xml | 4 +-
docs-xml/smbdotconf/security/ntlmauth.xml | 2 +-
docs-xml/smbdotconf/security/nullpasswords.xml | 5 +-
.../smbdotconf/security/obeypamrestrictions.xml | 4 +-
.../security/oldpasswordallowedperiod.xml | 4 +-
docs-xml/smbdotconf/security/onlyuser.xml | 3 +-
docs-xml/smbdotconf/security/pampasswordchange.xml | 4 +-
docs-xml/smbdotconf/security/passdbbackend.xml | 4 +-
.../smbdotconf/security/passdbexpandexplicit.xml | 4 +-
docs-xml/smbdotconf/security/passwdchatdebug.xml | 2 +-
docs-xml/smbdotconf/security/passwdchattimeout.xml | 2 +-
docs-xml/smbdotconf/security/passwdprogram.xml | 4 +-
docs-xml/smbdotconf/security/passwordserver.xml | 4 +-
docs-xml/smbdotconf/security/preloadmodules.xml | 6 +-
docs-xml/smbdotconf/security/privatedir.xml | 4 +-
docs-xml/smbdotconf/security/rawntlmv2auth.xml | 19 -
docs-xml/smbdotconf/security/readlist.xml | 2 +-
docs-xml/smbdotconf/security/readonly.xml | 3 +-
docs-xml/smbdotconf/security/renameuserscript.xml | 4 +-
docs-xml/smbdotconf/security/restrictanonymous.xml | 2 +-
docs-xml/smbdotconf/security/rootdirectory.xml | 6 +-
docs-xml/smbdotconf/security/sambakcccommand.xml | 2 +-
docs-xml/smbdotconf/security/security.xml | 11 +-
docs-xml/smbdotconf/security/serverrole.xml | 11 +-
docs-xml/smbdotconf/security/serverschannel.xml | 5 +-
docs-xml/smbdotconf/security/serversigning.xml | 7 +-
docs-xml/smbdotconf/security/smbencrypt.xml | 5 +-
docs-xml/smbdotconf/security/smbpasswdfile.xml | 4 +-
docs-xml/smbdotconf/security/tlsdhparamsfile.xml | 2 +-
docs-xml/smbdotconf/security/tlsverifypeer.xml | 47 -
docs-xml/smbdotconf/security/unixpasswordsync.xml | 2 +-
docs-xml/smbdotconf/security/username.xml | 5 +-
docs-xml/smbdotconf/security/usernamelevel.xml | 2 +-
docs-xml/smbdotconf/security/usernamemap.xml | 2 +-
.../smbdotconf/security/usernamemapcachetime.xml | 2 +-
docs-xml/smbdotconf/security/usernamemapscript.xml | 2 +-
docs-xml/smbdotconf/security/validusers.xml | 2 +-
docs-xml/smbdotconf/security/writeable.xml | 4 +-
docs-xml/smbdotconf/security/writelist.xml | 2 +-
docs-xml/smbdotconf/tuning/aiomaxthreads.xml | 19 -
docs-xml/smbdotconf/tuning/aioreadsize.xml | 2 +-
docs-xml/smbdotconf/tuning/aiowritesize.xml | 2 +-
.../smbdotconf/tuning/allocationroundupsize.xml | 2 +-
docs-xml/smbdotconf/tuning/blocksize.xml | 2 +-
docs-xml/smbdotconf/tuning/maxdisksize.xml | 2 +-
docs-xml/smbdotconf/tuning/strictrename.xml | 15 +-
docs-xml/smbdotconf/tuning/strictsync.xml | 6 +-
docs-xml/smbdotconf/tuning/writecachesize.xml | 2 +-
docs-xml/smbdotconf/vfs/vfsobjects.xml | 2 +-
docs-xml/smbdotconf/winbind/createkrb5conf.xml | 4 +-
docs-xml/smbdotconf/winbind/idmapbackend.xml | 4 +-
docs-xml/smbdotconf/winbind/idmapcachetime.xml | 2 +-
docs-xml/smbdotconf/winbind/idmapconfig.xml | 17 +-
docs-xml/smbdotconf/winbind/idmapgid.xml | 6 +-
.../smbdotconf/winbind/idmapnegativecachetime.xml | 2 +-
docs-xml/smbdotconf/winbind/idmapuid.xml | 4 +-
docs-xml/smbdotconf/winbind/templatehomedir.xml | 2 +-
docs-xml/smbdotconf/winbind/templateshell.xml | 2 +-
docs-xml/smbdotconf/winbind/winbindcachetime.xml | 2 +-
docs-xml/smbdotconf/winbind/winbindenumgroups.xml | 2 +-
.../smbdotconf/winbind/winbindexpandgroups.xml | 2 +-
docs-xml/smbdotconf/winbind/winbindmaxclients.xml | 2 +-
.../winbind/winbindmaxdomainconnections.xml | 8 +-
.../smbdotconf/winbind/winbindnestedgroups.xml | 2 +-
.../smbdotconf/winbind/winbindnormalizenames.xml | 2 +-
docs-xml/smbdotconf/winbind/winbindnssinfo.xml | 2 +-
.../smbdotconf/winbind/winbindofflinelogon.xml | 4 +-
.../smbdotconf/winbind/winbindreconnectdelay.xml | 2 +-
.../smbdotconf/winbind/winbindrefreshtickets.xml | 2 +-
.../smbdotconf/winbind/winbindrequesttimeout.xml | 2 +-
docs-xml/smbdotconf/winbind/winbindrpconly.xml | 4 +-
docs-xml/smbdotconf/winbind/winbindseparator.xml | 2 +-
.../winbind/winbindtrusteddomainsonly.xml | 2 +-
.../smbdotconf/winbind/winbindusedefaultdomain.xml | 2 +-
docs-xml/smbdotconf/wins/dnsproxy.xml | 2 +-
docs-xml/smbdotconf/wins/winsserver.xml | 2 +-
docs-xml/using_samba/ch02.xml | 2 +-
docs-xml/using_samba/ch05.xml | 2 +-
docs-xml/wscript_build | 12 +-
docs/manpages/dbwrap_tool.1 | 58 +-
docs/manpages/eventlogadm.8 | 6 +-
docs/manpages/findsmb.1 | 6 +-
docs/manpages/idmap_ad.8 | 6 +-
docs/manpages/idmap_autorid.8 | 11 +-
docs/manpages/idmap_hash.8 | 6 +-
docs/manpages/idmap_ldap.8 | 6 +-
docs/manpages/idmap_nss.8 | 6 +-
docs/manpages/idmap_rfc2307.8 | 17 +-
docs/manpages/idmap_rid.8 | 6 +-
docs/manpages/idmap_script.8 | 6 +-
docs/manpages/idmap_tdb.8 | 6 +-
docs/manpages/idmap_tdb2.8 | 6 +-
docs/manpages/libsmbclient.7 | 6 +-
docs/manpages/lmhosts.5 | 6 +-
docs/manpages/log2pcap.1 | 11 +-
docs/manpages/net.8 | 155 +-
docs/manpages/nmbd.8 | 61 +-
docs/manpages/nmblookup.1 | 89 +-
docs/manpages/ntlm_auth.1 | 26 +-
docs/manpages/pam_winbind.8 | 8 +-
docs/manpages/pam_winbind.conf.5 | 8 +-
docs/manpages/pdbedit.8 | 74 +-
docs/manpages/profiles.1 | 58 +-
docs/manpages/rpcclient.1 | 170 +-
docs/manpages/samba-regedit.8 | 165 +-
docs/manpages/samba-tool.8 | 48 +-
docs/manpages/samba.7 | 6 +-
docs/manpages/samba.8 | 58 +-
docs/manpages/sharesec.1 | 53 +-
docs/manpages/smb.conf.5 | 433 +--
docs/manpages/smbcacls.1 | 170 +-
docs/manpages/smbclient.1 | 170 +-
docs/manpages/smbcontrol.1 | 65 +-
docs/manpages/smbcquotas.1 | 139 +-
docs/manpages/smbd.8 | 61 +-
docs/manpages/smbget.1 | 29 +-
docs/manpages/smbgetrc.5 | 15 +-
docs/manpages/smbpasswd.5 | 6 +-
docs/manpages/smbpasswd.8 | 10 +-
docs/manpages/smbspool.8 | 19 +-
docs/manpages/smbspool_krb5_wrapper.8 | 49 -
docs/manpages/smbstatus.1 | 53 +-
docs/manpages/{cifsdd.8 => smbta-util.8} | 75 +-
docs/manpages/smbtar.1 | 6 +-
docs/manpages/smbtree.1 | 139 +-
docs/manpages/testparm.1 | 44 +-
docs/manpages/vfs_acl_tdb.8 | 6 +-
docs/manpages/vfs_acl_xattr.8 | 6 +-
docs/manpages/vfs_aio_fork.8 | 6 +-
docs/manpages/vfs_aio_linux.8 | 6 +-
docs/manpages/vfs_aio_pthread.8 | 6 +-
docs/manpages/vfs_audit.8 | 6 +-
docs/manpages/vfs_btrfs.8 | 6 +-
docs/manpages/vfs_cacheprime.8 | 6 +-
docs/manpages/vfs_cap.8 | 6 +-
docs/manpages/vfs_catia.8 | 6 +-
docs/manpages/vfs_ceph.8 | 8 +-
docs/manpages/vfs_commit.8 | 6 +-
docs/manpages/vfs_crossrename.8 | 6 +-
docs/manpages/vfs_default_quota.8 | 6 +-
docs/manpages/vfs_dirsort.8 | 6 +-
docs/manpages/vfs_extd_audit.8 | 6 +-
docs/manpages/vfs_fake_perms.8 | 6 +-
docs/manpages/vfs_fileid.8 | 6 +-
docs/manpages/vfs_fruit.8 | 6 +-
docs/manpages/vfs_full_audit.8 | 6 +-
docs/manpages/vfs_glusterfs.8 | 6 +-
docs/manpages/vfs_gpfs.8 | 14 +-
docs/manpages/vfs_linux_xfs_sgid.8 | 6 +-
docs/manpages/vfs_media_harmony.8 | 6 +-
docs/manpages/vfs_netatalk.8 | 6 +-
docs/manpages/vfs_offline.8 | 65 -
docs/manpages/vfs_prealloc.8 | 6 +-
docs/manpages/vfs_preopen.8 | 6 +-
docs/manpages/vfs_readahead.8 | 6 +-
docs/manpages/vfs_readonly.8 | 6 +-
docs/manpages/vfs_recycle.8 | 6 +-
docs/manpages/vfs_scannedonly.8 | 164 +
docs/manpages/vfs_shadow_copy.8 | 6 +-
docs/manpages/vfs_shadow_copy2.8 | 77 +-
docs/manpages/vfs_shell_snap.8 | 6 +-
docs/manpages/vfs_smb_traffic_analyzer.8 | 385 ++
docs/manpages/vfs_snapper.8 | 6 +-
docs/manpages/vfs_streams_depot.8 | 6 +-
docs/manpages/vfs_streams_xattr.8 | 6 +-
docs/manpages/vfs_syncops.8 | 6 +-
docs/manpages/vfs_time_audit.8 | 6 +-
docs/manpages/vfs_tsmsm.8 | 6 +-
docs/manpages/vfs_unityed_media.8 | 6 +-
docs/manpages/vfs_worm.8 | 6 +-
docs/manpages/vfs_xattr_tdb.8 | 6 +-
docs/manpages/vfs_zfsacl.8 | 6 +-
docs/manpages/vfstest.1 | 53 +-
docs/manpages/wbinfo.1 | 18 +-
docs/manpages/winbind_krb5_locator.7 | 6 +-
docs/manpages/winbindd.8 | 58 +-
dynconfig/dynconfig.c | 7 +-
dynconfig/wscript | 8 +-
examples/VFS/shadow_copy_test.c | 1 -
examples/VFS/skel_opaque.c | 6 +-
examples/VFS/skel_transparent.c | 8 +-
examples/libsmbclient/get_auth_data_fn.h | 16 +-
examples/libsmbclient/teststat.c | 16 +-
examples/libsmbclient/teststat2.c | 16 +-
examples/libsmbclient/testutime.c | 16 +-
examples/pdb/test.c | 4 +-
install_with_python.sh | 41 +-
lib/async_req/wscript_build | 3 +-
lib/crypto/REQUIREMENTS | 3 +
lib/dbwrap/dbwrap.c | 9 +-
lib/dbwrap/dbwrap.h | 6 +-
lib/dbwrap/dbwrap_cache.c | 8 +-
lib/dbwrap/dbwrap_local_open.c | 9 +-
lib/dbwrap/dbwrap_private.h | 4 +-
lib/dbwrap/dbwrap_rbt.c | 167 +-
lib/dbwrap/dbwrap_tdb.c | 23 +-
lib/dbwrap/dbwrap_tdb.h | 1 +
lib/dbwrap/dbwrap_util.c | 20 +-
lib/dbwrap/wscript_build | 2 +-
lib/krb5_wrap/krb5_samba.c | 21 +-
lib/ldb-samba/ldb_ildap.c | 12 +-
lib/ldb-samba/ldb_matching_rules.c | 342 --
lib/ldb-samba/ldb_matching_rules.h | 28 -
lib/ldb-samba/ldb_wrap.c | 8 +-
lib/ldb-samba/ldif_handlers.c | 6 -
lib/ldb-samba/tests/match_rules.py | 1427 +-------
lib/ldb-samba/wscript_build | 4 +-
lib/ldb/ABI/ldb-1.1.22.sigs | 264 --
lib/ldb/ABI/ldb-1.1.23.sigs | 264 --
lib/ldb/ABI/ldb-1.1.24.sigs | 264 --
lib/ldb/ABI/ldb-1.1.25.sigs | 265 --
lib/ldb/ABI/ldb-1.1.26.sigs | 265 --
lib/ldb/ABI/pyldb-util-1.1.22.sigs | 2 -
lib/ldb/ABI/pyldb-util-1.1.23.sigs | 2 -
lib/ldb/ABI/pyldb-util-1.1.24.sigs | 2 -
lib/ldb/ABI/pyldb-util-1.1.25.sigs | 2 -
lib/ldb/ABI/pyldb-util-1.1.26.sigs | 2 -
lib/ldb/ABI/pyldb-util.py3-1.1.23.sigs | 2 -
lib/ldb/ABI/pyldb-util.py3-1.1.24.sigs | 2 -
lib/ldb/ABI/pyldb-util.py3-1.1.25.sigs | 2 -
lib/ldb/ABI/pyldb-util.py3-1.1.26.sigs | 2 -
lib/ldb/_ldb_text.py | 148 -
lib/ldb/common/ldb_controls.c | 73 +-
lib/ldb/common/ldb_dn.c | 38 +-
lib/ldb/common/ldb_ldif.c | 77 +-
lib/ldb/common/ldb_match.c | 5 +-
lib/ldb/common/ldb_modules.c | 6 +-
lib/ldb/common/ldb_pack.c | 274 +-
lib/ldb/include/dlinklist.h | 15 +-
lib/ldb/include/ldb.h | 7 -
lib/ldb/include/ldb_module.h | 18 -
lib/ldb/include/ldb_private.h | 13 +-
lib/ldb/ldb_ldap/ldb_ldap.c | 18 +-
lib/ldb/ldb_sqlite3/ldb_sqlite3.c | 11 +-
lib/ldb/ldb_tdb/ldb_search.c | 19 +-
lib/ldb/ldb_tdb/ldb_tdb.c | 14 +-
lib/ldb/ldb_tdb/ldb_tdb.h | 3 -
lib/ldb/pyldb.c | 1043 ++----
lib/ldb/pyldb.h | 7 -
lib/ldb/pyldb_util.c | 21 +-
lib/ldb/tests/python/api.py | 845 +----
lib/ldb/tests/test-tdb.sh | 7 +
lib/ldb/tools/cmdline.c | 33 -
lib/ldb/wscript | 73 +-
lib/nss_wrapper/nss_wrapper.c | 2017 ++---------
lib/nss_wrapper/wscript | 5 +-
lib/param/README | 20 +-
lib/param/loadparm.c | 252 +-
lib/param/loadparm.h | 41 +-
lib/param/param.h | 10 +-
lib/param/param_table.c | 3755 +++++++++++++++++++-
lib/param/util.c | 1 -
lib/param/wscript_build | 6 -
lib/replace/replace.c | 17 +-
lib/replace/wscript | 37 +-
lib/resolv_wrapper/resolv_wrapper.c | 227 +-
lib/resolv_wrapper/wscript | 3 +-
lib/socket/interfaces.c | 66 -
lib/socket/interfaces.h | 3 -
lib/socket/wscript | 7 -
lib/socket_wrapper/socket_wrapper.c | 121 +-
lib/socket_wrapper/wscript | 3 +-
lib/talloc/ABI/pytalloc-util-2.1.4.sigs | 6 -
lib/talloc/ABI/pytalloc-util-2.1.5.sigs | 6 -
lib/talloc/ABI/pytalloc-util-2.1.6.sigs | 13 -
lib/talloc/ABI/pytalloc-util.py3-2.1.5.sigs | 5 -
lib/talloc/ABI/pytalloc-util.py3-2.1.6.sigs | 12 -
lib/talloc/ABI/talloc-2.1.4.sigs | 65 -
lib/talloc/ABI/talloc-2.1.5.sigs | 65 -
lib/talloc/ABI/talloc-2.1.6.sigs | 65 -
lib/talloc/pytalloc.c | 86 -
lib/talloc/pytalloc.h | 23 +-
lib/talloc/pytalloc_guide.txt | 40 +-
lib/talloc/pytalloc_util.c | 199 +-
lib/talloc/talloc.c | 89 +-
lib/talloc/talloc.h | 4 +-
lib/talloc/test_magic_differs.sh | 16 -
lib/talloc/test_magic_differs_helper.c | 12 -
lib/talloc/test_pytalloc.c | 83 +-
lib/talloc/test_pytalloc.py | 73 +-
lib/talloc/testsuite.c | 71 -
lib/talloc/wscript | 23 +-
lib/tdb/ABI/tdb-1.3.8.sigs | 69 -
lib/tdb/common/open.c | 7 -
lib/tdb/docs/mutex.txt | 4 +-
lib/tdb/wscript | 4 +-
lib/tdb_wrap/tdb_wrap.c | 12 +-
lib/tevent/ABI/tevent-0.9.26.sigs | 90 -
lib/tevent/ABI/tevent-0.9.27.sigs | 90 -
lib/tevent/ABI/tevent-0.9.28.sigs | 90 -
lib/tevent/doc/tevent_thread.dox | 322 --
lib/tevent/doc/tevent_tutorial.dox | 2 -
lib/tevent/testsuite.c | 330 --
lib/tevent/tevent.h | 52 -
lib/tevent/tevent_epoll.c | 6 +-
lib/tevent/tevent_immediate.c | 2 +-
lib/tevent/tevent_poll.c | 7 +-
lib/tevent/tevent_port.c | 22 +-
lib/tevent/tevent_queue.c | 2 +-
lib/tevent/tevent_select.c | 2 +-
lib/tevent/tevent_signal.c | 4 -
lib/tevent/tevent_threads.c | 370 --
lib/tevent/tevent_util.h | 15 +-
lib/tevent/wscript | 9 +-
lib/torture/torture.c | 14 +-
lib/torture/torture.h | 11 -
lib/torture/torture.pc.in | 12 +
lib/torture/wscript_build | 11 +-
lib/tsocket/tsocket_bsd.c | 75 +-
lib/uid_wrapper/uid_wrapper.c | 646 +---
lib/uid_wrapper/wscript | 75 +-
lib/util/asn1.c | 121 +-
lib/util/asn1.h | 27 +-
lib/util/charset/util_str.c | 4 +-
lib/util/debug.c | 2 +-
lib/util/debug.h | 20 +-
lib/util/dlinklist.h | 15 +-
lib/util/genrand.c | 259 +-
lib/util/genrand.h | 11 +
lib/util/idtree.c | 7 +-
lib/util/parmlist.c | 111 +
lib/util/parmlist.h | 57 +
lib/util/samba_util.h | 32 +-
lib/util/server_id.c | 110 +-
lib/util/server_id_db.c | 23 +-
lib/util/talloc_report.c | 4 +-
lib/util/tests/asn1_tests.c | 6 +-
lib/util/tests/dlinklist.c | 8 +-
lib/util/tests/genrand.c | 12 +
lib/util/tests/genrandperf.c | 39 -
lib/util/tests/parmlist.c | 107 +
lib/util/time_basic.c | 3 +-
lib/util/time_basic.h | 3 +-
lib/util/util.c | 2 +-
lib/util/util.h | 53 -
lib/util/util_net.c | 247 +-
lib/util/util_net.h | 1 -
lib/util/util_process.c | 1 -
lib/util/util_strlist.c | 18 +-
lib/util/wscript_build | 54 +-
lib/util/wscript_configure | 6 +-
libcli/auth/netlogon_creds_cli.c | 15 +-
libcli/auth/proto.h | 6 -
libcli/auth/smbencrypt.c | 170 +-
libcli/auth/spnego.h | 8 +-
libcli/auth/spnego_parse.c | 55 +-
libcli/auth/wscript_build | 2 +-
libcli/cldap/cldap.c | 14 +-
libcli/dns/dns.c | 34 +-
libcli/dns/libdns.h | 10 +-
libcli/drsuapi/drsuapi.h | 1 -
libcli/drsuapi/repl_decrypt.c | 6 -
libcli/drsuapi/wscript_build | 2 +-
libcli/ldap/ldap_message.c | 34 +-
libcli/ldap/wscript_build | 7 +-
libcli/nbt/libnbt.h | 2 -
libcli/nbt/nbtsocket.c | 7 +-
libcli/security/dom_sid.h | 6 +-
libcli/security/secace.c | 19 +
libcli/security/secace.h | 1 +
libcli/security/secdesc.c | 21 +-
libcli/security/secdesc.h | 5 +
libcli/security/security_token.c | 5 -
libcli/security/security_token.h | 2 -
libcli/security/session.c | 4 -
libcli/security/session.h | 1 -
libcli/security/util_sid.c | 31 +-
libcli/smb/smb1cli_read.c | 53 +-
libcli/smb/smb2_signing.c | 17 +-
libcli/smb/smb2cli_ioctl.c | 84 +-
libcli/smb/smb2cli_query_info.c | 24 +-
libcli/smb/smb2cli_read.c | 26 +-
libcli/smb/smbXcli_base.c | 79 +-
libcli/smb/smbXcli_base.h | 3 -
libcli/smb/smb_constants.h | 8 +-
libcli/smb/smb_signing.c | 4 -
libcli/smb/smb_unix_ext.h | 2 +-
libcli/smb/tstream_smbXcli_np.c | 17 +-
libcli/smb/wscript | 6 +-
libcli/smbreadline/smbreadline.c | 6 -
libcli/util/wscript_build | 6 +-
libds/common/flags.h | 4 +-
libds/common/wscript_build | 6 +-
libgpo/gpo_ldap.c | 2 +-
librpc/idl/clusapi.idl | 154 +-
librpc/idl/dcerpc.idl | 15 +-
librpc/idl/dcom.idl | 131 +-
librpc/idl/dns.idl | 18 +-
librpc/idl/dnsp.idl | 4 +-
librpc/idl/dnsserver.idl | 2 +-
librpc/idl/epmapper.idl | 2 +-
librpc/idl/ioctl.idl | 1 -
librpc/idl/messaging.idl | 1 -
librpc/idl/negoex.idl | 156 -
librpc/idl/ntlmssp.idl | 48 +-
librpc/idl/orpc.idl | 36 +-
librpc/idl/oxidresolver.idl | 52 +-
librpc/idl/remact.idl | 44 +-
librpc/idl/rot.idl | 58 +-
librpc/idl/security.idl | 12 -
librpc/idl/witness.idl | 6 +-
librpc/idl/wmi.idl | 8 +-
librpc/idl/wscript_build | 2 +-
librpc/idl/xattr.idl | 1 -
librpc/ndr/libndr.h | 6 +-
librpc/ndr/ndr_basic.c | 4 +-
librpc/ndr/ndr_dns.c | 29 +-
librpc/ndr/ndr_dnsp.c | 24 -
librpc/ndr/ndr_dnsp.h | 4 -
librpc/ndr/ndr_nbt.c | 2 +-
librpc/ndr/ndr_negoex.c | 520 ---
librpc/ndr/ndr_negoex.h | 37 -
librpc/ndr/ndr_ntlmssp.c | 16 -
librpc/ndr/ndr_ntlmssp.h | 2 -
librpc/rpc/binding.c | 4 +-
librpc/rpc/dcerpc_error.c | 6 +-
librpc/rpc/dcerpc_util.c | 141 +-
librpc/rpc/rpc_common.h | 10 +-
librpc/tools/wscript_build | 2 +-
librpc/wscript_build | 31 +-
nsswitch/libwbclient/tests/wbclient.c | 20 +-
nsswitch/libwbclient/wbc_pam.c | 21 +-
nsswitch/pam_winbind.c | 28 +-
nsswitch/wb_common.c | 4 +-
nsswitch/wbinfo.c | 10 -
nsswitch/winbind_struct_protocol.h | 1 -
nsswitch/wins.c | 245 +-
nsswitch/wins_freebsd.c | 81 -
nsswitch/wscript_build | 9 +-
packaging/RHEL-CTDB/configure.rpm | 2 +
packaging/RHEL-CTDB/samba.spec.tmpl | 10 +-
packaging/RHEL/samba.spec.tmpl | 6 +-
pidl/lib/Parse/Pidl/Samba3/ClientNDR.pm | 11 +-
pidl/lib/Parse/Pidl/Samba3/Template.pm | 11 +-
pidl/lib/Parse/Pidl/Samba4/NDR/Client.pm | 11 +-
pidl/lib/Parse/Pidl/Samba4/Python.pm | 43 +-
pidl/lib/Parse/Pidl/Samba4/Template.pm | 11 +-
pidl/lib/Parse/Pidl/Util.pm | 16 +-
pidl/wscript | 5 +-
python/pyglue.c | 11 -
python/samba/__init__.py | 25 -
python/samba/dbchecker.py | 162 +-
python/samba/join.py | 163 +-
python/samba/kcc/__init__.py | 372 +-
python/samba/kcc/kcc_utils.py | 105 +-
python/samba/kcc/ldif_import_export.py | 10 +-
python/samba/netcmd/dns.py | 6 +-
python/samba/netcmd/domain.py | 288 +-
python/samba/netcmd/drs.py | 46 -
python/samba/netcmd/fsmo.py | 3 +-
python/samba/netcmd/main.py | 2 +
python/samba/netcmd/ntacl.py | 24 +-
python/samba/netcmd/sites.py | 163 +-
python/samba/netcmd/user.py | 10 +-
python/samba/netcmd/vampire.py | 55 +
python/samba/ntacls.py | 8 -
python/samba/provision/__init__.py | 11 +-
python/samba/provision/sambadns.py | 15 +-
python/samba/remove_dc.py | 435 ---
python/samba/samdb.py | 25 +-
python/samba/sites.py | 52 +-
python/samba/subnets.py | 186 -
python/samba/tests/__init__.py | 527 +--
python/samba/tests/blackbox/samba_tool_drs.py | 169 +-
python/samba/tests/core.py | 16 -
python/samba/tests/dcerpc/array.py | 171 -
python/samba/tests/dcerpc/dnsserver.py | 2 +-
python/samba/tests/dcerpc/raw_protocol.py | 2623 --------------
python/samba/tests/dcerpc/rpc_talloc.py | 14 +-
python/samba/tests/dns.py | 674 +---
python/samba/tests/docs.py | 142 +-
python/samba/tests/{get_opt.py => getopt.py} | 0
python/samba/tests/kcc/ldif_import_export.py | 37 +-
python/samba/tests/provision.py | 3 +
python/samba/tests/samba_tool/sites.py | 136 -
python/samba/upgradehelpers.py | 2 +-
python/uuidmodule.c | 58 +
python/wscript_build | 8 +
script/autobuild.py | 89 +-
script/generate_param.py | 159 +-
script/release.sh | 44 +-
selftest/flapping | 2 -
selftest/knownfail | 46 +-
.../DC-addc.addom.samba.example.com-S02-cert.pem | 191 -
.../DC-addc.addom.samba.example.com-S02-key.pem | 54 -
...DC-addc.addom.samba.example.com-S02-openssl.cnf | 250 --
...ddc.addom.samba.example.com-S02-private-key.pem | 51 -
.../DC-addc.addom.samba.example.com-S02-req.pem | 30 -
.../DC-addc.addom.samba.example.com-cert.pem | 1 -
...DC-addc.addom.samba.example.com-private-key.pem | 1 -
.../DC-localdc.samba.example.com-S00-cert.pem | 190 -
.../DC-localdc.samba.example.com-S00-key.pem | 54 -
.../DC-localdc.samba.example.com-S00-openssl.cnf | 250 --
...C-localdc.samba.example.com-S00-private-key.pem | 51 -
.../DC-localdc.samba.example.com-S00-req.pem | 30 -
.../DC-localdc.samba.example.com-cert.pem | 1 -
.../DC-localdc.samba.example.com-private-key.pem | 1 -
.../manage-ca/CA-samba.example.com/NewCerts/00.pem | 190 -
.../manage-ca/CA-samba.example.com/NewCerts/01.pem | 169 -
.../manage-ca/CA-samba.example.com/NewCerts/02.pem | 191 -
.../manage-ca/CA-samba.example.com/NewCerts/03.pem | 169 -
.../Private/CA-samba.example.com-crlnumber.txt | 1 -
.../Private/CA-samba.example.com-crlnumber.txt.old | 1 -
.../Private/CA-samba.example.com-index.txt | 4 -
.../Private/CA-samba.example.com-index.txt.attr | 1 -
.../CA-samba.example.com-index.txt.attr.old | 1 -
.../Private/CA-samba.example.com-index.txt.old | 3 -
.../Private/CA-samba.example.com-openssl.cnf | 203 --
.../Private/CA-samba.example.com-private-key.pem | 102 -
.../Private/CA-samba.example.com-serial.txt | 1 -
.../Private/CA-samba.example.com-serial.txt.old | 1 -
.../Public/CA-samba.example.com-cert.pem | 62 -
.../Public/CA-samba.example.com-crl.pem | 32 -
...inistrator at addom.samba.example.com-S03-cert.pem | 169 -
...ministrator at addom.samba.example.com-S03-key.pem | 30 -
...strator at addom.samba.example.com-S03-openssl.cnf | 242 --
...tor at addom.samba.example.com-S03-private-key.pem | 27 -
...ministrator at addom.samba.example.com-S03-req.pem | 19 -
...-administrator at addom.samba.example.com-cert.pem | 1 -
...strator at addom.samba.example.com-private-key.pem | 1 -
...ER-administrator at samba.example.com-S01-cert.pem | 169 -
...SER-administrator at samba.example.com-S01-key.pem | 30 -
...administrator at samba.example.com-S01-openssl.cnf | 242 --
...nistrator at samba.example.com-S01-private-key.pem | 27 -
...SER-administrator at samba.example.com-S01-req.pem | 19 -
.../USER-administrator at samba.example.com-cert.pem | 1 -
...administrator at samba.example.com-private-key.pem | 1 -
selftest/manage-ca/manage-CA-samba.example.com.cnf | 21 -
selftest/manage-ca/manage-CA-samba.example.com.sh | 18 -
selftest/manage-ca/manage-ca.sh | 387 --
.../manage-CA-example.com.cnf | 17 -
.../openssl-BASE-template.cnf | 201 --
.../manage-ca.templates.d/openssl-CA-template.cnf | 2 -
.../manage-ca.templates.d/openssl-DC-template.cnf | 49 -
.../openssl-USER-template.cnf | 41 -
selftest/quick | 3 +-
selftest/selftest.pl | 50 +-
selftest/selftesthelpers.py | 2 -
selftest/target/Samba.pm | 124 +-
selftest/target/Samba3.pm | 225 +-
selftest/target/Samba4.pm | 365 +-
selftest/tests.py | 6 +-
source3/auth/auth.c | 2 +-
source3/auth/auth_builtin.c | 47 +-
source3/auth/auth_domain.c | 2 +-
source3/auth/auth_samba4.c | 13 +-
source3/auth/auth_util.c | 15 -
source3/auth/pampass.c | 2 +-
source3/client/README.smbspool | 17 -
source3/client/client.c | 4 +-
source3/client/clitar.c | 12 +-
source3/client/dnsbrowse.c | 2 +-
source3/client/smbspool.c | 4 +-
source3/client/smbspool_krb5_wrapper.c | 210 --
source3/include/MacExtensions.h | 10 +-
source3/include/ads.h | 2 +
source3/include/auth_generic.h | 7 +-
source3/include/ctdbd_conn.h | 102 +-
source3/include/messages.h | 18 +-
source3/include/ntquotas.h | 2 +-
source3/include/passdb.h | 2 +-
source3/include/proto.h | 116 +-
source3/include/samba_linux_quota.h | 2 +-
source3/include/secrets.h | 1 -
source3/include/serverid.h | 13 +-
source3/include/session.h | 5 +-
source3/include/smb.h | 10 +-
source3/include/smb_ldap.h | 2 +-
source3/include/smbprofile.h | 4 +-
source3/include/tldap.h | 1 -
source3/include/vfs.h | 24 +-
source3/include/vfs_macros.h | 8 +-
source3/lib/background.c | 2 +-
source3/lib/cluster_support.c | 16 -
source3/lib/cluster_support.h | 1 -
source3/lib/conn_tdb.c | 10 -
source3/lib/conn_tdb.h | 4 -
source3/lib/ctdb_dummy.c | 68 +-
source3/lib/ctdbd_conn.c | 783 ++--
source3/lib/dbwrap/dbwrap_ctdb.c | 148 +-
source3/lib/dbwrap/dbwrap_open.c | 1 -
source3/lib/dbwrap/dbwrap_watch.c | 188 +-
.../pytalloc_private.h => source3/lib/dummyparam.c | 22 +-
source3/lib/errmap_unix.c | 3 -
source3/lib/events.c | 2 +-
source3/lib/gencache.c | 42 +-
source3/lib/gencache.h | 52 -
source3/lib/interface.c | 113 +-
source3/lib/messages.c | 69 +-
source3/lib/messages_ctdbd.c | 62 +-
source3/lib/messages_dgm.c | 113 +-
source3/lib/messages_dgm.h | 3 +-
source3/lib/messages_dgm_ref.c | 17 +-
source3/lib/messages_dgm_ref.h | 2 +-
source3/lib/netapi/cm.c | 2 +-
.../examples/netdomjoin-gui/netdomjoin-gui.c | 2 +-
source3/lib/poll_funcs/poll_funcs_tevent.c | 2 +-
source3/lib/popt_common.c | 2 +-
source3/lib/privileges.c | 2 +-
source3/lib/pthreadpool/pthreadpool.c | 11 +-
source3/lib/recvfile.c | 2 +-
source3/lib/server_id_db_util.c | 10 +-
source3/lib/serverid.c | 243 +-
source3/lib/sessionid_tdb.c | 33 +-
source3/lib/smbldap.c | 6 +-
source3/lib/substitute.c | 4 +-
{lib/util => source3/lib}/sys_rw.c | 2 +-
{lib/util => source3/lib}/sys_rw.h | 0
{lib/util => source3/lib}/sys_rw_data.c | 4 +-
{lib/util => source3/lib}/sys_rw_data.h | 0
source3/lib/sysquotas_nfs.c | 7 +
source3/lib/talloc_dict.c | 7 +-
source3/lib/tldap.c | 29 +-
source3/lib/tldap_util.c | 2 +-
source3/lib/unix_msg/unix_msg.c | 4 +-
source3/lib/util.c | 184 +-
source3/lib/util_cluster.c | 9 +-
source3/lib/util_ea.c | 2 +-
source3/lib/util_file.c | 2 +-
source3/lib/util_names.c | 14 -
source3/lib/util_path.c | 95 -
source3/lib/util_path.h | 31 -
source3/lib/util_procid.c | 69 -
source3/lib/util_procid.h | 37 -
source3/lib/util_sec.c | 14 -
source3/lib/util_sid.c | 11 +-
source3/lib/util_sock.c | 6 +-
source3/lib/util_specialsids.c | 40 -
source3/lib/util_transfer_file.c | 2 +-
source3/lib/util_tsock.c | 5 +-
source3/lib/util_tsock.h | 38 -
source3/libads/ads_proto.h | 7 +-
source3/libads/ads_struct.c | 12 +-
source3/libads/krb5_setpw.c | 13 +-
source3/libads/ldap.c | 196 +-
source3/libads/ldap_utils.c | 4 +-
source3/libads/ndr.c | 2 +-
source3/libads/sasl.c | 684 ++--
source3/libnet/libnet_dssync.c | 1 -
source3/libnet/libnet_join.c | 245 +-
source3/librpc/crypto/gse.c | 96 +-
source3/librpc/idl/libnet_join.idl | 4 +-
source3/librpc/idl/smbXsrv.idl | 117 +-
source3/librpc/rpc/dcerpc.h | 10 +-
source3/librpc/rpc/dcerpc_helpers.c | 98 +-
source3/libsmb/auth_generic.c | 51 +-
source3/libsmb/cli_smb2_fnum.c | 5 +-
source3/libsmb/cli_smb2_fnum.h | 1 -
source3/libsmb/cliconnect.c | 717 ++--
source3/libsmb/clidfs.c | 2 +-
source3/libsmb/clientgen.c | 9 -
source3/libsmb/clifile.c | 135 +-
source3/libsmb/clifsinfo.c | 2 +
source3/libsmb/clilist.c | 2 +-
source3/libsmb/cliquota.c | 6 +-
source3/libsmb/clireadwrite.c | 8 +-
source3/libsmb/clispnego.c | 283 +-
source3/libsmb/dsgetdcname.c | 40 +-
source3/libsmb/libsmb_printjob.c | 4 +-
source3/libsmb/libsmb_server.c | 4 +-
source3/libsmb/namequery.c | 80 +-
source3/libsmb/ntlmssp.c | 765 ++++
source3/libsmb/ntlmssp_wrap.c | 135 +
source3/libsmb/passchange.c | 7 +-
source3/libsmb/proto.h | 20 +-
source3/libsmb/pylibsmb.c | 2 +-
source3/libsmb/unexpected.c | 3 +-
source3/locale/net/de.po | 8 +-
source3/locking/locking.c | 3 +-
source3/modules/nfs4_acls.c | 248 +-
source3/modules/nfs4_acls.h | 32 +-
source3/modules/perfcount_test.c | 1 -
source3/modules/vfs_acl_common.c | 151 +-
source3/modules/vfs_acl_tdb.c | 3 +-
source3/modules/vfs_acl_xattr.c | 3 +-
source3/modules/vfs_aio_fork.c | 15 +-
source3/modules/vfs_aio_linux.c | 25 +-
source3/modules/vfs_aio_posix.c | 301 ++
source3/modules/vfs_aio_pthread.c | 6 +-
source3/modules/vfs_aixacl2.c | 16 +-
source3/modules/vfs_audit.c | 1 -
source3/modules/vfs_cacheprime.c | 2 +-
source3/modules/vfs_cap.c | 21 +-
source3/modules/vfs_catia.c | 7 +-
source3/modules/vfs_ceph.c | 5 +-
source3/modules/vfs_default.c | 48 +-
source3/modules/vfs_default_quota.c | 13 +-
source3/modules/vfs_dirsort.c | 1 -
source3/modules/vfs_extd_audit.c | 1 -
source3/modules/vfs_fake_dfq.c | 174 -
source3/modules/vfs_fruit.c | 191 +-
source3/modules/vfs_full_audit.c | 9 +-
source3/modules/vfs_glusterfs.c | 170 +-
source3/modules/vfs_gpfs.c | 134 +-
source3/modules/vfs_nfs4acl_xattr.c | 36 +-
source3/modules/vfs_offline.c | 47 -
source3/modules/vfs_posix_eadb.c | 2 +-
source3/modules/vfs_preopen.c | 2 +-
source3/modules/vfs_scannedonly.c | 1043 ++++++
source3/modules/vfs_shadow_copy2.c | 223 +-
source3/modules/vfs_smb_traffic_analyzer.c | 946 +++++
source3/modules/vfs_smb_traffic_analyzer.h | 157 +
source3/modules/vfs_snapper.c | 36 +-
source3/modules/vfs_streams_xattr.c | 39 +-
source3/modules/vfs_syncops.c | 1 -
source3/modules/vfs_time_audit.c | 6 +-
source3/modules/vfs_zfsacl.c | 13 +-
source3/modules/wscript_build | 42 +-
source3/nmbd/asyncdns.c | 4 +-
source3/nmbd/nmbd.c | 3 +-
source3/nmbd/nmbd_browserdb.c | 2 +-
source3/nmbd/nmbd_packets.c | 2 +-
source3/nmbd/nmbd_responserecordsdb.c | 2 +-
source3/nmbd/nmbd_serverlistdb.c | 2 +-
source3/pam_smbpass/CHANGELOG | 31 +
source3/pam_smbpass/INSTALL | 64 +
source3/pam_smbpass/README | 68 +
source3/pam_smbpass/TODO | 7 +
source3/pam_smbpass/general.h | 134 +
source3/pam_smbpass/pam_smb_acct.c | 150 +
source3/pam_smbpass/pam_smb_auth.c | 264 ++
source3/pam_smbpass/pam_smb_passwd.c | 365 ++
source3/pam_smbpass/samples/README | 3 +
source3/pam_smbpass/samples/kdc-pdc | 15 +
source3/pam_smbpass/samples/password-mature | 14 +
source3/pam_smbpass/samples/password-migration | 18 +
source3/pam_smbpass/samples/password-sync | 15 +
source3/pam_smbpass/support.c | 698 ++++
source3/pam_smbpass/support.h | 57 +
source3/pam_smbpass/wscript_build | 16 +
source3/param/loadparm.c | 477 ++-
source3/passdb/ABI/samba-passdb-0.24.2.sigs | 313 --
source3/passdb/ABI/samba-passdb-0.25.0.sigs | 312 --
source3/passdb/machine_account_secrets.c | 32 +-
source3/passdb/passdb.c | 21 +-
source3/passdb/pdb_get_set.c | 24 +-
source3/passdb/pdb_ipa.c | 2 +-
source3/passdb/py_passdb.c | 285 +-
source3/passdb/secrets.c | 29 +
source3/passdb/wscript_build | 2 +-
source3/printing/notify.c | 2 +-
source3/printing/print_cups.c | 4 +-
source3/printing/printing.c | 2 +-
source3/printing/queue_process.c | 4 +-
source3/printing/spoolssd.c | 12 +-
source3/profile/profile.c | 4 +-
source3/registry/reg_backend_db.c | 7 +-
source3/registry/reg_objects.c | 4 +-
source3/registry/regfio.c | 2 +-
source3/rpc_client/cli_pipe.c | 314 +-
source3/rpc_client/rpc_transport_np.c | 3 +-
source3/rpc_server/epmd.c | 6 +-
source3/rpc_server/fss/srv_fss_agent.c | 9 +-
source3/rpc_server/fss/srv_fss_state.c | 12 +-
source3/rpc_server/fssd.c | 4 +-
source3/rpc_server/lsa/srv_lsa_nt.c | 2 +-
source3/rpc_server/lsasd.c | 10 +-
source3/rpc_server/mdssd.c | 11 +-
source3/rpc_server/netlogon/srv_netlog_nt.c | 57 +-
source3/rpc_server/rpc_handles.c | 1 -
source3/rpc_server/rpc_ncacn_np.c | 3 +-
source3/rpc_server/rpc_pipes.h | 11 -
source3/rpc_server/rpc_server.c | 12 -
source3/rpc_server/samr/srv_samr_chgpasswd.c | 2 +-
source3/rpc_server/samr/srv_samr_nt.c | 21 +-
source3/rpc_server/spoolss/srv_spoolss_nt.c | 83 -
source3/rpc_server/srv_pipe.c | 494 +--
source3/rpc_server/srvsvc/srv_srvsvc_nt.c | 23 +-
source3/rpcclient/cmd_clusapi.c | 58 -
source3/rpcclient/cmd_witness.c | 5 -
source3/rpcclient/rpcclient.c | 5 +-
source3/script/build_env.sh | 11 +
source3/script/tests/test_dfree_command.sh | 17 +-
source3/script/tests/test_dfree_quota.sh | 174 -
source3/script/tests/test_forceuser_validusers.sh | 59 -
source3/script/tests/test_ntlm_auth_s3.sh | 198 +-
source3/script/tests/test_offline.sh | 33 -
source3/script/tests/test_rpcclient_samlogon.sh | 11 +-
source3/script/tests/test_shadow_copy.sh | 291 --
source3/script/tests/test_smbclient_auth.sh | 13 +-
source3/script/tests/test_smbclient_ntlm.sh | 40 -
source3/script/tests/test_smbclient_s3.sh | 60 -
source3/script/tests/test_smbclient_tarmode.pl | 6 +-
source3/script/tests/test_smbget.sh | 236 --
source3/script/tests/test_valid_users.sh | 70 -
source3/selftest/tests.py | 23 +-
source3/smbd/aio.c | 64 +-
source3/smbd/blocking.c | 2 +-
source3/smbd/close.c | 6 +-
source3/smbd/dfree.c | 24 +-
source3/smbd/dir.c | 13 +-
source3/smbd/dosmode.c | 93 +-
source3/smbd/fileio.c | 8 +-
source3/smbd/filename.c | 55 +-
source3/smbd/globals.c | 3 +
source3/smbd/globals.h | 63 +-
source3/smbd/negprot.c | 159 +-
source3/smbd/notify.c | 3 +-
source3/smbd/notify_inotify.c | 2 +-
source3/smbd/notifyd/notifyd.c | 67 +-
source3/smbd/ntquotas.c | 2 +-
source3/smbd/nttrans.c | 108 +-
source3/smbd/open.c | 56 +-
source3/smbd/oplock.c | 3 +-
source3/smbd/posix_acls.c | 69 +-
source3/smbd/process.c | 112 +-
source3/smbd/proto.h | 28 +-
source3/smbd/quotas.c | 42 +-
source3/smbd/reply.c | 228 +-
source3/smbd/scavenger.c | 57 +-
source3/smbd/seal.c | 2 +
source3/smbd/server.c | 227 +-
source3/smbd/server_exit.c | 10 +-
source3/smbd/sesssetup.c | 56 +-
source3/smbd/smb2_break.c | 8 +-
source3/smbd/smb2_close.c | 3 +-
source3/smbd/smb2_create.c | 138 +-
source3/smbd/smb2_flush.c | 60 +-
source3/smbd/smb2_ioctl_filesys.c | 7 +-
source3/smbd/smb2_ioctl_network_fs.c | 136 -
source3/smbd/smb2_negprot.c | 87 +-
source3/smbd/smb2_query_directory.c | 12 +-
source3/smbd/smb2_read.c | 2 +-
source3/smbd/smb2_server.c | 201 +-
source3/smbd/smb2_sesssetup.c | 337 +-
source3/smbd/smb2_setinfo.c | 18 -
source3/smbd/smb2_tcon.c | 12 +-
source3/smbd/smbXsrv_client.c | 781 ----
source3/smbd/smbXsrv_open.c | 288 +-
source3/smbd/smbXsrv_session.c | 345 +-
source3/smbd/smbXsrv_tcon.c | 119 +-
source3/smbd/smbd_cleanupd.c | 156 -
source3/smbd/smbd_cleanupd.h | 33 -
source3/smbd/trans2.c | 487 +--
source3/smbd/vfs.c | 86 +-
source3/torture/nbio.c | 2 +-
source3/torture/test_ntlm_auth.py | 553 ++-
source3/torture/torture.c | 426 +--
source3/utils/net.c | 8 +-
source3/utils/net.h | 1 -
source3/utils/net_ads.c | 66 +-
source3/utils/net_rpc.c | 2 +-
source3/utils/net_serverid.c | 62 +-
source3/utils/net_util.c | 2 +-
source3/utils/ntlm_auth.c | 896 ++++-
source3/utils/pdbedit.c | 43 +-
source3/utils/smbcacls.c | 2 +-
source3/utils/smbcontrol.c | 2 +-
source3/utils/smbcquotas.c | 2 +-
source3/utils/smbfilter.c | 2 +-
source3/utils/smbget.c | 774 ++--
source3/utils/smbta-util.c | 211 ++
source3/utils/status.c | 207 +-
source3/winbindd/idmap.c | 41 -
source3/winbindd/idmap_ad.c | 1 -
source3/winbindd/idmap_autorid.c | 1 -
source3/winbindd/idmap_hash/idmap_hash.c | 33 +-
source3/winbindd/idmap_nss.c | 8 +-
source3/winbindd/idmap_rfc2307.c | 40 +-
source3/winbindd/idmap_rid.c | 7 +-
source3/winbindd/idmap_script.c | 1 -
source3/winbindd/idmap_tdb2.c | 1 -
source3/winbindd/idmap_util.c | 4 +-
source3/winbindd/wb_sids2xids.c | 14 +-
source3/winbindd/winbindd.c | 13 +-
source3/winbindd/winbindd_ads.c | 28 +-
source3/winbindd/winbindd_cache.c | 6 +-
source3/winbindd/winbindd_ccache_access.c | 44 +-
source3/winbindd/winbindd_cm.c | 114 +-
source3/winbindd/winbindd_cred_cache.c | 24 +
source3/winbindd/winbindd_dual.c | 6 +-
source3/winbindd/winbindd_dual_srv.c | 8 +
source3/winbindd/winbindd_misc.c | 13 +-
source3/winbindd/winbindd_msrpc.c | 2 +-
source3/winbindd/winbindd_ndr.c | 3 -
source3/winbindd/winbindd_pam.c | 13 +-
source3/winbindd/winbindd_proto.h | 5 -
source3/winbindd/winbindd_reconnect.c | 38 +-
source3/winbindd/winbindd_reconnect_ads.c | 324 --
source3/winbindd/winbindd_util.c | 155 +-
source3/winbindd/wscript_build | 16 +-
source3/wscript | 256 +-
source3/wscript_build | 81 +-
source4/auth/gensec/gensec_gssapi.c | 5 +-
source4/auth/gensec/gensec_krb5.c | 24 +-
source4/auth/gensec/gensec_tstream.c | 6 +-
source4/auth/gensec/pygensec.c | 162 +-
source4/auth/kerberos/kerberos-notes.txt | 2 +-
source4/auth/kerberos/kerberos_util.c | 13 +-
source4/auth/kerberos/wscript_build | 2 +-
source4/auth/ntlm/auth.c | 3 +-
source4/auth/ntlm/auth_anonymous.c | 30 -
source4/auth/ntlm/auth_sam.c | 10 +-
source4/auth/ntlm/auth_unix.c | 6 +-
source4/auth/ntlm/auth_util.c | 4 +-
source4/auth/ntlm/auth_winbind.c | 15 +-
source4/auth/pyauth.c | 14 +-
source4/auth/sam.c | 158 +-
source4/cldap_server/cldap_server.c | 1 -
source4/client/cifsdd.c | 2 +-
source4/dns_server/dlz_bind9.c | 16 +-
source4/dns_server/dns_query.c | 584 +--
source4/dns_server/dns_server.c | 73 +-
source4/dns_server/dns_server.h | 11 +-
source4/dns_server/dns_update.c | 31 +-
source4/dns_server/dns_utils.c | 92 +-
source4/dns_server/dnsserver_common.c | 192 +-
source4/dns_server/dnsserver_common.h | 18 +-
source4/dns_server/pydns.c | 319 --
source4/dns_server/wscript_build | 8 +-
source4/dsdb/common/util.c | 2 +-
source4/dsdb/common/util_trusts.c | 2 +-
source4/dsdb/dns/dns_update.c | 1 -
source4/dsdb/kcc/kcc_drs_replica_info.c | 2 +-
source4/dsdb/kcc/kcc_service.c | 1 -
source4/dsdb/pydsdb.c | 171 +-
source4/dsdb/repl/drepl_notify.c | 2 +-
source4/dsdb/repl/drepl_out_helpers.c | 3 -
source4/dsdb/repl/drepl_out_pull.c | 2 +-
source4/dsdb/repl/drepl_partitions.c | 4 +-
source4/dsdb/repl/drepl_service.c | 1 -
source4/dsdb/repl/replicated_objects.c | 92 +-
source4/dsdb/samdb/ldb_modules/acl.c | 2 +-
source4/dsdb/samdb/ldb_modules/descriptor.c | 4 +-
source4/dsdb/samdb/ldb_modules/dns_notify.c | 2 +-
source4/dsdb/samdb/ldb_modules/extended_dn_in.c | 4 +-
source4/dsdb/samdb/ldb_modules/linked_attributes.c | 2 +-
source4/dsdb/samdb/ldb_modules/operational.c | 2 +-
source4/dsdb/samdb/ldb_modules/repl_meta_data.c | 121 +-
source4/dsdb/samdb/ldb_modules/rootdse.c | 2 +-
source4/dsdb/samdb/ldb_modules/samldb.c | 289 +-
source4/dsdb/samdb/ldb_modules/secrets_tdb_sync.c | 2 +-
source4/dsdb/samdb/ldb_modules/update_keytab.c | 2 +-
.../dsdb/samdb/ldb_modules/wscript_build_server | 2 +-
source4/dsdb/samdb/samdb.h | 1 -
source4/dsdb/schema/schema_query.c | 8 +-
source4/dsdb/schema/schema_syntax.c | 12 +-
source4/dsdb/tests/python/acl.py | 2 +-
source4/dsdb/tests/python/ldap_schema.py | 31 +-
source4/dsdb/tests/python/password_lockout.py | 359 +-
source4/dsdb/tests/python/sites.py | 447 +--
source4/dsdb/wscript_build | 4 +-
source4/echo_server/echo_server.c | 3 +-
.../heimdal/lib/gssapi/krb5/accept_sec_context.c | 71 +-
source4/heimdal/lib/roken/resolve.c | 1 -
source4/heimdal_build/wscript_build | 10 +-
source4/heimdal_build/wscript_configure | 10 +-
source4/kdc/db-glue.c | 206 +-
source4/kdc/db-glue.h | 8 +-
source4/kdc/hdb-samba4.c | 145 +-
source4/kdc/kdc.c | 1 -
source4/kdc/pac-glue.c | 1 +
source4/kdc/sdb.c | 131 -
source4/kdc/sdb.h | 126 -
source4/kdc/sdb_to_hdb.c | 347 --
source4/kdc/wscript_build | 19 +-
source4/ldap_server/ldap_backend.c | 2 +-
source4/ldap_server/ldap_bind.c | 50 +-
source4/ldap_server/ldap_server.c | 7 -
source4/ldap_server/ldap_server.h | 2 -
source4/lib/com/dcom/dcom.h | 2 +-
source4/lib/com/dcom/main.c | 8 +-
source4/lib/http/http.c | 2 +-
source4/lib/messaging/messaging.c | 10 +-
source4/lib/messaging/pymessaging.c | 2 +-
source4/lib/messaging/wscript_build | 2 +-
source4/lib/registry/pyregistry.c | 19 +-
source4/lib/registry/registry.pc.in | 12 +
source4/lib/registry/wscript_build | 5 +-
source4/lib/socket/interface.c | 11 +-
source4/lib/socket/wscript_build | 2 +-
source4/lib/stream/packet.c | 2 +-
source4/lib/tls/tls.c | 90 +-
source4/lib/tls/tls.h | 30 +-
source4/lib/tls/tls_tstream.c | 251 +-
source4/lib/tls/tlscert.c | 18 +-
source4/lib/tls/wscript | 31 +-
source4/lib/wmi/tools/wmis.c | 3 +-
source4/lib/wmi/wmi_wrap.c | 2 +-
source4/lib/wmi/wmicore.c | 3 +-
source4/libcli/cliconnect.c | 2 +-
source4/libcli/dgram/dgramsocket.c | 2 +-
source4/libcli/ldap/ldap_bind.c | 62 +-
source4/libcli/ldap/ldap_client.c | 61 +-
source4/libcli/ldap/ldap_controls.c | 49 +-
source4/libcli/ldap/wscript_build | 4 +-
source4/libcli/pysmb.c | 116 +-
source4/libcli/raw/libcliraw.h | 1 -
source4/libcli/raw/rawnegotiate.c | 11 +-
source4/libcli/raw/smbclient-raw.pc.in | 10 +
source4/libcli/resolve/resolve.c | 2 +-
source4/libcli/smb2/connect.c | 7 +-
source4/libcli/smb2/wscript_build | 2 +-
source4/libcli/smb_composite/connect.c | 1 -
source4/libcli/smb_composite/sesssetup.c | 35 +-
source4/libcli/wbclient/wscript_build | 2 +-
source4/libcli/wscript_build | 16 +-
source4/libnet/libnet_vampire.c | 293 +-
source4/libnet/py_net.c | 59 +
source4/libnet/wscript_build | 2 +-
source4/librpc/dcerpc_atsvc.pc.in | 11 +
source4/librpc/rpc/dcerpc.c | 357 +-
source4/librpc/rpc/dcerpc.h | 14 +-
source4/librpc/rpc/dcerpc_auth.c | 93 +-
source4/librpc/rpc/dcerpc_connect.c | 22 -
source4/librpc/rpc/dcerpc_roh.c | 13 +-
source4/librpc/rpc/dcerpc_util.c | 22 +-
source4/librpc/rpc/pyrpc.c | 8 +-
source4/librpc/rpc/pyrpc_util.c | 3 -
source4/librpc/wscript_build | 22 +-
source4/nbt_server/dgram/netlogon.c | 1 -
source4/nbt_server/register.c | 3 +-
source4/nbt_server/wins/winsserver.c | 2 +-
source4/ntvfs/ntvfs_base.c | 2 +-
source4/ntvfs/posix/posix_eadb.h | 2 +-
source4/ntvfs/posix/pvfs_notify.c | 2 +-
source4/ntvfs/posix/python/pyposix_eadb.c | 4 +-
source4/ntvfs/posix/python/pyxattr_native.c | 4 +-
source4/ntvfs/posix/python/pyxattr_tdb.c | 19 +-
source4/ntvfs/sysdep/wscript_configure | 13 +-
source4/ntvfs/unixuid/vfs_unixuid.c | 3 -
source4/param/loadparm.c | 3 +-
source4/param/pyparam.c | 87 +-
source4/param/secrets.c | 53 +
source4/param/secrets.h | 8 +
source4/param/share_ldb.c | 2 +-
source4/param/tests/loadparm.c | 1 -
source4/param/wscript_build | 2 +-
source4/rpc_server/backupkey/dcesrv_backupkey.c | 1053 +++---
.../backupkey/dcesrv_backupkey_heimdal.c | 1854 ----------
source4/rpc_server/common/reply.c | 59 +-
source4/rpc_server/common/server_info.c | 1 -
source4/rpc_server/dcerpc_server.c | 834 +----
source4/rpc_server/dcerpc_server.h | 57 +-
source4/rpc_server/dcesrv_auth.c | 261 +-
source4/rpc_server/dcesrv_mgmt.c | 8 -
source4/rpc_server/dnsserver/dcerpc_dnsserver.c | 15 +-
source4/rpc_server/dnsserver/dnsdb.c | 6 +-
source4/rpc_server/drsuapi/dcesrv_drsuapi.c | 8 -
source4/rpc_server/drsuapi/getncchanges.c | 10 -
source4/rpc_server/echo/rpc_echo.c | 7 -
source4/rpc_server/epmapper/rpc_epmapper.c | 8 -
source4/rpc_server/handles.c | 8 +-
source4/rpc_server/lsa/dcesrv_lsa.c | 9 -
source4/rpc_server/lsa/lsa_lookup.c | 12 +-
source4/rpc_server/netlogon/dcerpc_netlogon.c | 46 +-
source4/rpc_server/remote/dcesrv_remote.c | 8 +-
source4/rpc_server/samr/dcesrv_samr.c | 12 -
source4/rpc_server/samr/dcesrv_samr.h | 1 -
source4/rpc_server/samr/samr_password.c | 25 +-
source4/rpc_server/spoolss/dcesrv_spoolss.c | 2 +-
source4/rpc_server/wscript_build | 24 +-
source4/scripting/bin/gen_hresult.py | 2 +-
source4/scripting/bin/gen_ntstatus.py | 30 +-
source4/scripting/bin/samba_dnsupdate | 34 +-
source4/scripting/bin/samba_kcc | 74 +-
source4/scripting/bin/samba_upgradedns | 28 +-
source4/scripting/bin/samba_upgradeprovision | 2 +-
source4/scripting/devel/createtrust | 18 +-
source4/selftest/tests.py | 125 +-
source4/setup/wscript_build | 2 +-
source4/smb_server/smb/negprot.c | 6 +-
source4/smb_server/smb/sesssetup.c | 10 -
source4/smb_server/smb/wscript_build | 2 +-
source4/smb_server/smb2/negprot.c | 7 +-
source4/smb_server/smb2/receive.c | 2 +-
source4/smb_server/smb2/sesssetup.c | 8 +
source4/smb_server/smb2/wscript_build | 2 +-
source4/smb_server/smb_server.h | 2 +-
source4/smb_server/wscript_build | 4 +-
source4/smbd/process_standard.c | 6 +
source4/smbd/server.c | 9 +-
source4/smbd/service.c | 2 +-
source4/torture/basic/aliases.c | 4 +-
source4/torture/basic/base.c | 21 +-
source4/torture/basic/misc.c | 4 +-
source4/torture/drs/wscript_build | 2 +-
source4/torture/gentest.c | 7 +-
source4/torture/ldap/cldap.c | 13 +-
source4/torture/ldap/netlogon.c | 13 +-
source4/torture/ldb/ldb.c | 463 +--
source4/torture/local/fsrvp_state.c | 20 +-
source4/torture/local/local.c | 1 +
source4/torture/local/wscript_build | 2 +-
source4/torture/nbench/nbio.c | 4 +-
source4/torture/nbt/wins.c | 3 +-
source4/torture/ndr/backupkey.c | 6 +-
source4/torture/ndr/clusapi.c | 383 --
source4/torture/ndr/ndr.c | 6 +-
source4/torture/ndr/negoex.c | 100 -
source4/torture/ndr/ntlmssp.c | 183 +-
source4/torture/ndr/witness.c | 44 -
source4/torture/raw/pingpong.c | 2 +-
source4/torture/raw/samba3misc.c | 7 -
source4/torture/raw/session.c | 2 +-
source4/torture/rpc/backupkey.c | 820 ++---
source4/torture/rpc/backupkey_heimdal.c | 2147 -----------
source4/torture/rpc/clusapi.c | 459 +--
source4/torture/rpc/forest_trust.c | 12 +-
source4/torture/rpc/fsrvp.c | 2 +-
source4/torture/rpc/lsa.c | 34 +-
source4/torture/rpc/netlogon.c | 101 +-
source4/torture/rpc/netlogon.h | 7 -
source4/torture/rpc/oxidresolve.c | 100 +-
source4/torture/rpc/remact.c | 47 +-
source4/torture/rpc/remote_pac.c | 39 +-
source4/torture/rpc/rpc.c | 4 +-
source4/torture/rpc/samba3rpc.c | 61 +-
source4/torture/rpc/samlogon.c | 3 +-
source4/torture/rpc/samr.c | 4 +-
source4/torture/rpc/schannel.c | 29 +-
source4/torture/rpc/spoolss.c | 2 +-
source4/torture/rpc/spoolss_notify.c | 2 +-
source4/torture/rpc/testjoin.c | 35 +-
source4/torture/smb2/connect.c | 89 +-
source4/torture/smb2/create.c | 64 -
source4/torture/smb2/dir.c | 28 -
source4/torture/smb2/durable_open.c | 2 +-
source4/torture/smb2/rename.c | 2 +-
source4/torture/smb2/replay.c | 1383 +------
source4/torture/smb2/session.c | 340 +-
source4/torture/smb2/smb2.c | 4 +-
source4/torture/smb2/streams.c | 74 -
source4/torture/unix/whoami.c | 16 +-
source4/torture/util_smb.c | 6 +-
source4/torture/vfs/fruit.c | 1361 +------
source4/torture/vfs/vfs.c | 2 +-
source4/torture/winbind/struct_based.c | 15 +-
source4/torture/wscript_build | 47 +-
source4/utils/man/ntlm_auth4.1.xml | 2 +-
source4/web_server/web_server.c | 15 +-
source4/web_server/wsgi.c | 7 +
source4/wrepl_server/wrepl_server.c | 4 +-
testprogs/blackbox/dbcheck-oldrelease.sh | 82 +-
testprogs/blackbox/demote-saveddb.sh | 67 -
testprogs/blackbox/dfree.sh | 8 +-
.../{test_kinit_heimdal.sh => test_kinit.sh} | 2 +-
...init_trusts_heimdal.sh => test_kinit_trusts.sh} | 0
testprogs/blackbox/test_ldb_simple.sh | 41 -
testprogs/blackbox/test_net_ads.sh | 35 -
testprogs/blackbox/test_pdbtest.sh | 7 -
.../{test_pkinit_heimdal.sh => test_pkinit.sh} | 0
testprogs/win32/spoolss/README.win32 | 2 +-
testprogs/win32/spoolss/testspoolss.c | 4 +-
tests/oldquotas.c | 174 -
testsuite/headers/wscript_build | 13 +-
third_party/waf/wafadmin/3rdparty/gccdeps.py | 2 +-
.../waf/wafadmin/3rdparty/print_commands.py | 25 -
third_party/waf/wafadmin/Build.py | 4 -
third_party/waf/wafadmin/Node.py | 7 -
third_party/waf/wafadmin/TaskGen.py | 3 -
third_party/waf/wafadmin/Tools/cc.py | 6 +-
third_party/waf/wafadmin/Tools/ccroot.py | 10 +-
third_party/waf/wafadmin/Tools/config_c.py | 4 -
third_party/waf/wafadmin/Tools/msvc.py | 2 +-
third_party/waf/wafadmin/Tools/osx.py | 6 +-
third_party/waf/wafadmin/Utils.py | 44 +-
wscript | 25 +-
wscript_configure_system_mitkrb5 | 4 +-
1942 files changed, 41139 insertions(+), 98762 deletions(-)
delete mode 100644 .travis.yml
create mode 100644 auth/gensec/gensec.pc.in
create mode 100644 buildtools/wafsamba/gccdeps.py
delete mode 100644 ctdb/client/client.h
delete mode 100644 ctdb/client/client_call.c
delete mode 100644 ctdb/client/client_connect.c
delete mode 100644 ctdb/client/client_control.c
delete mode 100644 ctdb/client/client_control_sync.c
delete mode 100644 ctdb/client/client_db.c
delete mode 100644 ctdb/client/client_message.c
delete mode 100644 ctdb/client/client_message_sync.c
delete mode 100644 ctdb/client/client_private.h
delete mode 100644 ctdb/client/client_util.c
delete mode 100644 ctdb/common/cmdline.h
delete mode 100644 ctdb/common/comm.c
delete mode 100644 ctdb/common/comm.h
delete mode 100644 ctdb/common/common.h
rename ctdb/{server => common}/ctdb_fork.c (93%)
create mode 100644 ctdb/common/ctdb_logging.c
create mode 100644 ctdb/common/ctdb_message.c
delete mode 100644 ctdb/common/db_hash.c
delete mode 100644 ctdb/common/db_hash.h
delete mode 100644 ctdb/common/logging.c
delete mode 100644 ctdb/common/pkt_read.c
delete mode 100644 ctdb/common/pkt_read.h
delete mode 100644 ctdb/common/pkt_write.c
delete mode 100644 ctdb/common/pkt_write.h
delete mode 100644 ctdb/common/reqid.c
delete mode 100644 ctdb/common/reqid.h
delete mode 100644 ctdb/common/srvid.c
delete mode 100644 ctdb/common/srvid.h
delete mode 100644 ctdb/common/system.h
delete mode 100755 ctdb/config/events.d/05.system
create mode 100644 ctdb/config/events.d/40.fs_use
create mode 100755 ctdb/config/events.d/62.cnfs
create mode 100644 ctdb/ctdb.pc.in
delete mode 120000 ctdb/include/common/srvid.h
create mode 100644 ctdb/include/ctdb.h
rename ctdb/{common/logging.h => include/ctdb_logging.h} (56%)
create mode 100644 ctdb/include/ctdb_typesafe_cb.h
create mode 100644 ctdb/include/internal/cmdline.h
create mode 100644 ctdb/include/internal/includes.h
delete mode 100644 ctdb/include/public/util/README.txt
delete mode 100644 ctdb/protocol/protocol.h
delete mode 100644 ctdb/protocol/protocol_api.h
delete mode 100644 ctdb/protocol/protocol_call.c
delete mode 100644 ctdb/protocol/protocol_client.c
delete mode 100644 ctdb/protocol/protocol_control.c
delete mode 100644 ctdb/protocol/protocol_header.c
delete mode 100644 ctdb/protocol/protocol_message.c
delete mode 100644 ctdb/protocol/protocol_packet.c
delete mode 100644 ctdb/protocol/protocol_private.h
delete mode 100644 ctdb/protocol/protocol_types.c
delete mode 100644 ctdb/protocol/protocol_util.c
delete mode 100644 ctdb/server/ctdb_recovery_helper.c
delete mode 100644 ctdb/server/ipalloc.c
delete mode 100644 ctdb/server/ipalloc.h
delete mode 100644 ctdb/server/ipalloc_common.c
delete mode 100644 ctdb/server/ipalloc_deterministic.c
delete mode 100644 ctdb/server/ipalloc_lcp2.c
delete mode 100644 ctdb/server/ipalloc_nondeterministic.c
delete mode 100644 ctdb/server/ipalloc_private.h
delete mode 100755 ctdb/tests/cunit/comm_test_001.sh
delete mode 100755 ctdb/tests/cunit/comm_test_002.sh
delete mode 100755 ctdb/tests/cunit/db_hash_test_001.sh
delete mode 100755 ctdb/tests/cunit/pkt_read_001.sh
delete mode 100755 ctdb/tests/cunit/pkt_write_001.sh
delete mode 100755 ctdb/tests/cunit/protocol_test_001.sh
delete mode 100755 ctdb/tests/cunit/protocol_test_002.sh
delete mode 100755 ctdb/tests/cunit/reqid_test_001.sh
delete mode 100755 ctdb/tests/cunit/srvid_test_001.sh
create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.001.sh
create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.002.sh
create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.003.sh
create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.004.sh
create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.005.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.001.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.002.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.003.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.004.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.005.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.006.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.007.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.011.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.012.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.013.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.014.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.015.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.016.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.017.sh
delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.018.sh
create mode 100755 ctdb/tests/eventscripts/11.natgw.005.sh
delete mode 100755 ctdb/tests/eventscripts/11.natgw.051.sh
delete mode 100755 ctdb/tests/eventscripts/11.natgw.052.sh
delete mode 100755 ctdb/tests/eventscripts/11.natgw.053.sh
delete mode 100755 ctdb/tests/eventscripts/11.natgw.054.sh
delete mode 100755 ctdb/tests/eventscripts/13.per_ip_routing.023.sh
delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.110.sh
delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.111.sh
delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.112.sh
delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.113.sh
delete mode 100755 ctdb/tests/eventscripts/stubs/ctdb_natgw
delete mode 100755 ctdb/tests/eventscripts/stubs/df
create mode 100755 ctdb/tests/eventscripts/stubs/free
delete mode 100755 ctdb/tests/eventscripts/stubs/timeout
delete mode 120000 ctdb/tests/onnode/functions
rename ctdb/tests/simple/{35_set_reclock.sh => 35_set_recmaster.sh} (78%)
delete mode 120000 ctdb/tests/simple/functions
delete mode 100644 ctdb/tests/src/comm_client_test.c
delete mode 100644 ctdb/tests/src/comm_server_test.c
delete mode 100644 ctdb/tests/src/comm_test.c
delete mode 100644 ctdb/tests/src/db_hash_test.c
delete mode 100644 ctdb/tests/src/pkt_read_test.c
delete mode 100644 ctdb/tests/src/pkt_write_test.c
delete mode 100644 ctdb/tests/src/protocol_client_test.c
delete mode 100644 ctdb/tests/src/protocol_types_test.c
delete mode 100644 ctdb/tests/src/reqid_test.c
delete mode 100644 ctdb/tests/src/srvid_test.c
create mode 100755 ctdb/tests/tool/stubby.natgwlist.009.sh
create mode 100755 ctdb/tests/tool/stubby.natgwlist.010.sh
copy ctdb/tests/tool/{stubby.nodestatus.002.sh => stubby.nodestatus.003.sh} (100%)
copy ctdb/tests/tool/{stubby.nodestatus.002.sh => stubby.nodestatus.004.sh} (55%)
copy ctdb/tests/tool/{stubby.nodestatus.002.sh => stubby.nodestatus.005.sh} (65%)
delete mode 100755 ctdb/tests/tool/stubs/ctdb
delete mode 100755 ctdb/tools/ctdb_natgw
create mode 100644 ctdb/tools/ctdb_vacuum.c
delete mode 100644 debian/patches/Skip-raw.write-tests.patch
delete mode 100644 debian/patches/ctdb-Fix-detection-of-gnukfreebsd.patch
create mode 100644 debian/patches/disable-socketwrapper.diff
delete mode 100644 debian/patches/no_build_env.patch
delete mode 100644 debian/patches/no_build_system.patch
create mode 100644 debian/patches/pam-examples.patch
delete mode 100644 debian/samba.ufw.profile
create mode 100644 debian/winbind.dirs
delete mode 100644 docs-xml/manpages/cifsdd.8.xml
delete mode 100644 docs-xml/manpages/smbspool_krb5_wrapper.8.xml
create mode 100644 docs-xml/manpages/smbta-util.8.xml
delete mode 100644 docs-xml/manpages/vfs_offline.8.xml
create mode 100644 docs-xml/manpages/vfs_scannedonly.8.xml
create mode 100644 docs-xml/manpages/vfs_smb_traffic_analyzer.8.xml
delete mode 100644 docs-xml/smbdotconf/ldap/ldapserverrequirestrongauth.xml
rename docs-xml/smbdotconf/logging/{timestamplogs.xml => debugtimestamp.xml} (68%)
delete mode 100644 docs-xml/smbdotconf/misc/auto_services.xml
create mode 100644 docs-xml/smbdotconf/misc/preload.xml
delete mode 100644 docs-xml/smbdotconf/protocol/clientipcmaxprotocol.xml
delete mode 100644 docs-xml/smbdotconf/protocol/clientipcminprotocol.xml
delete mode 100644 docs-xml/smbdotconf/protocol/servermultichannelsupport.xml
delete mode 100644 docs-xml/smbdotconf/security/allowdcerpcauthlevelconnect.xml
delete mode 100644 docs-xml/smbdotconf/security/clientipcsigning.xml
delete mode 100644 docs-xml/smbdotconf/security/rawntlmv2auth.xml
delete mode 100644 docs-xml/smbdotconf/security/tlsverifypeer.xml
delete mode 100644 docs-xml/smbdotconf/tuning/aiomaxthreads.xml
delete mode 100644 docs/manpages/smbspool_krb5_wrapper.8
rename docs/manpages/{cifsdd.8 => smbta-util.8} (53%)
delete mode 100644 docs/manpages/vfs_offline.8
create mode 100644 docs/manpages/vfs_scannedonly.8
create mode 100644 docs/manpages/vfs_smb_traffic_analyzer.8
delete mode 100644 lib/ldb-samba/ldb_matching_rules.c
delete mode 100644 lib/ldb-samba/ldb_matching_rules.h
delete mode 100644 lib/ldb/ABI/ldb-1.1.22.sigs
delete mode 100644 lib/ldb/ABI/ldb-1.1.23.sigs
delete mode 100644 lib/ldb/ABI/ldb-1.1.24.sigs
delete mode 100644 lib/ldb/ABI/ldb-1.1.25.sigs
delete mode 100644 lib/ldb/ABI/ldb-1.1.26.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.22.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.23.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.24.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.25.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.26.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.23.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.24.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.25.sigs
delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.26.sigs
delete mode 100644 lib/ldb/_ldb_text.py
delete mode 100644 lib/socket/wscript
delete mode 100644 lib/talloc/ABI/pytalloc-util-2.1.4.sigs
delete mode 100644 lib/talloc/ABI/pytalloc-util-2.1.5.sigs
delete mode 100644 lib/talloc/ABI/pytalloc-util-2.1.6.sigs
delete mode 100644 lib/talloc/ABI/pytalloc-util.py3-2.1.5.sigs
delete mode 100644 lib/talloc/ABI/pytalloc-util.py3-2.1.6.sigs
delete mode 100644 lib/talloc/ABI/talloc-2.1.4.sigs
delete mode 100644 lib/talloc/ABI/talloc-2.1.5.sigs
delete mode 100644 lib/talloc/ABI/talloc-2.1.6.sigs
delete mode 100755 lib/talloc/test_magic_differs.sh
delete mode 100644 lib/talloc/test_magic_differs_helper.c
delete mode 100644 lib/tdb/ABI/tdb-1.3.8.sigs
delete mode 100644 lib/tevent/ABI/tevent-0.9.26.sigs
delete mode 100644 lib/tevent/ABI/tevent-0.9.27.sigs
delete mode 100644 lib/tevent/ABI/tevent-0.9.28.sigs
delete mode 100644 lib/tevent/doc/tevent_thread.dox
delete mode 100644 lib/tevent/tevent_threads.c
create mode 100644 lib/torture/torture.pc.in
create mode 100644 lib/util/parmlist.c
create mode 100644 lib/util/parmlist.h
delete mode 100644 lib/util/tests/genrandperf.c
create mode 100644 lib/util/tests/parmlist.c
delete mode 100644 lib/util/util.h
delete mode 100644 librpc/idl/negoex.idl
delete mode 100644 librpc/ndr/ndr_negoex.c
delete mode 100644 librpc/ndr/ndr_negoex.h
delete mode 100644 nsswitch/wins_freebsd.c
create mode 100644 python/samba/netcmd/vampire.py
delete mode 100644 python/samba/remove_dc.py
delete mode 100644 python/samba/subnets.py
delete mode 100644 python/samba/tests/dcerpc/array.py
delete mode 100755 python/samba/tests/dcerpc/raw_protocol.py
rename python/samba/tests/{get_opt.py => getopt.py} (100%)
delete mode 100644 python/samba/tests/samba_tool/sites.py
create mode 100644 python/uuidmodule.c
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-cert.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-openssl.cnf
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-req.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-cert.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-cert.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-openssl.cnf
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-req.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-cert.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/00.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/01.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/02.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/03.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-crlnumber.txt
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-crlnumber.txt.old
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt.attr
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt.attr.old
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt.old
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-openssl.cnf
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-serial.txt
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-serial.txt.old
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Public/CA-samba.example.com-cert.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Public/CA-samba.example.com-crl.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-cert.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-openssl.cnf
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-req.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-cert.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-cert.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-openssl.cnf
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-private-key.pem
delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-req.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-cert.pem
delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-private-key.pem
delete mode 100644 selftest/manage-ca/manage-CA-samba.example.com.cnf
delete mode 100644 selftest/manage-ca/manage-CA-samba.example.com.sh
delete mode 100755 selftest/manage-ca/manage-ca.sh
delete mode 100644 selftest/manage-ca/manage-ca.templates.d/manage-CA-example.com.cnf
delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-BASE-template.cnf
delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-CA-template.cnf
delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-DC-template.cnf
delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-USER-template.cnf
delete mode 100644 source3/client/README.smbspool
delete mode 100644 source3/client/smbspool_krb5_wrapper.c
rename lib/talloc/pytalloc_private.h => source3/lib/dummyparam.c (67%)
delete mode 100644 source3/lib/gencache.h
rename {lib/util => source3/lib}/sys_rw.c (99%)
rename {lib/util => source3/lib}/sys_rw.h (100%)
rename {lib/util => source3/lib}/sys_rw_data.c (97%)
rename {lib/util => source3/lib}/sys_rw_data.h (100%)
delete mode 100644 source3/lib/util_path.c
delete mode 100644 source3/lib/util_path.h
delete mode 100644 source3/lib/util_procid.c
delete mode 100644 source3/lib/util_procid.h
delete mode 100644 source3/lib/util_specialsids.c
delete mode 100644 source3/lib/util_tsock.h
create mode 100644 source3/libsmb/ntlmssp.c
create mode 100644 source3/libsmb/ntlmssp_wrap.c
create mode 100644 source3/modules/vfs_aio_posix.c
delete mode 100644 source3/modules/vfs_fake_dfq.c
delete mode 100644 source3/modules/vfs_offline.c
create mode 100644 source3/modules/vfs_scannedonly.c
create mode 100644 source3/modules/vfs_smb_traffic_analyzer.c
create mode 100644 source3/modules/vfs_smb_traffic_analyzer.h
create mode 100644 source3/pam_smbpass/CHANGELOG
create mode 100644 source3/pam_smbpass/INSTALL
create mode 100644 source3/pam_smbpass/README
create mode 100644 source3/pam_smbpass/TODO
create mode 100644 source3/pam_smbpass/general.h
create mode 100644 source3/pam_smbpass/pam_smb_acct.c
create mode 100644 source3/pam_smbpass/pam_smb_auth.c
create mode 100644 source3/pam_smbpass/pam_smb_passwd.c
create mode 100644 source3/pam_smbpass/samples/README
create mode 100644 source3/pam_smbpass/samples/kdc-pdc
create mode 100644 source3/pam_smbpass/samples/password-mature
create mode 100644 source3/pam_smbpass/samples/password-migration
create mode 100644 source3/pam_smbpass/samples/password-sync
create mode 100644 source3/pam_smbpass/support.c
create mode 100644 source3/pam_smbpass/support.h
create mode 100644 source3/pam_smbpass/wscript_build
delete mode 100644 source3/passdb/ABI/samba-passdb-0.24.2.sigs
delete mode 100644 source3/passdb/ABI/samba-passdb-0.25.0.sigs
delete mode 100755 source3/script/tests/test_dfree_quota.sh
delete mode 100755 source3/script/tests/test_forceuser_validusers.sh
delete mode 100755 source3/script/tests/test_offline.sh
delete mode 100755 source3/script/tests/test_shadow_copy.sh
delete mode 100755 source3/script/tests/test_smbclient_ntlm.sh
delete mode 100755 source3/script/tests/test_smbget.sh
delete mode 100755 source3/script/tests/test_valid_users.sh
delete mode 100644 source3/smbd/smbXsrv_client.c
delete mode 100644 source3/smbd/smbd_cleanupd.c
delete mode 100644 source3/smbd/smbd_cleanupd.h
create mode 100644 source3/utils/smbta-util.c
delete mode 100644 source3/winbindd/winbindd_reconnect_ads.c
delete mode 100644 source4/dns_server/pydns.c
delete mode 100644 source4/kdc/sdb.c
delete mode 100644 source4/kdc/sdb.h
delete mode 100644 source4/kdc/sdb_to_hdb.c
create mode 100644 source4/lib/registry/registry.pc.in
create mode 100644 source4/libcli/raw/smbclient-raw.pc.in
create mode 100644 source4/librpc/dcerpc_atsvc.pc.in
delete mode 100644 source4/rpc_server/backupkey/dcesrv_backupkey_heimdal.c
delete mode 100644 source4/torture/ndr/clusapi.c
delete mode 100644 source4/torture/ndr/negoex.c
delete mode 100644 source4/torture/rpc/backupkey_heimdal.c
mode change 100755 => 100644 source4/torture/smb2/rename.c
delete mode 100755 testprogs/blackbox/demote-saveddb.sh
rename testprogs/blackbox/{test_kinit_heimdal.sh => test_kinit.sh} (99%)
rename testprogs/blackbox/{test_kinit_trusts_heimdal.sh => test_kinit_trusts.sh} (100%)
delete mode 100755 testprogs/blackbox/test_ldb_simple.sh
delete mode 100755 testprogs/blackbox/test_net_ads.sh
rename testprogs/blackbox/{test_pkinit_heimdal.sh => test_pkinit.sh} (100%)
delete mode 100644 tests/oldquotas.c
delete mode 100644 third_party/waf/wafadmin/3rdparty/print_commands.py
--
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-samba/samba.git
More information about the Pkg-samba-maint
mailing list