[Pkg-samba-maint] [samba] branch experimental updated (a699730 -> 592a5be)

Jelmer Vernooij jelmer at moszumanska.debian.org
Sun Jul 3 16:02:49 UTC 2016


This is an automated email from the git hooks/post-receive script.

jelmer pushed a change to branch experimental
in repository samba.

     omits  a699730   Ensure systemd dependencies are correct
     omits  e12939e   Changelog for previous commits
     omits  806341e   Fix systemd unit files
     omits  6bc2606   Describe non-standard-dir-perm var/spool/samba/
     omits  b662d31   winbind: package-contains-empty-directory usr/lib/samba/nss_info/
     omits  3bcde7d   samba-common-bin: package-contains-empty-directory usr/lib/samba/
     omits  3e30735   samba: command-with-path-in-maintainer-script postinst:37 /usr/sbin/update-inetd
     omits  e273037   Enable systemd (sd_notify) on Linux, and install systemd files
     omits  77a8183   Ensure that dpkg-buildflags are passed, and enable all hardening
     omits  e2a3d93   Fix copyright file
     omits  70aaa38   Use secure Vcs-* URLs
     omits  5fe3ad0   Drop "Section: net" fields, this is redundant
     omits  f1a0ff4   Drop "Priority: optional" fields, this is redundant
     omits  0f563f8   d/control: Drop XS-Testsuite field
     omits  e6dcbd4   Changelog for previous commits and release 2:4.4.3+dfsg-4
     omits  0de34dd   Still run "make quicktest" but ignore failures
     omits  85c9471   Fix build with DEB_BUILD_OPTIONS=nocheck
     omits  2081640   Changelog for previous commits and release 2:4.4.3+dfsg-3
     omits  39a3b40   Skip raw.write tests for now as they fail on 32-bit
     omits  9a58015   Revert "Enable LFS via LFS_LDFLAGS and LFS_CFLAGS"
     omits  55a6345   Revert "Changelog for previous commits and release 2:4.4.3+dfsg-2"
     omits  ae6e3ad   Revert "Use DPKG_EXPORT_BUILDFLAGS"
     omits  2b4734c   Use DPKG_EXPORT_BUILDFLAGS
     omits  853e302   Changelog for previous commits and release 2:4.4.3+dfsg-2
     omits  6c88252   Enable LFS via LFS_LDFLAGS and LFS_CFLAGS
     omits  6d400e0   Changelog for previous commits and release 2:4.4.3+dfsg-2
     omits  f7540d3   Remove unreproducible build environment
     omits  7c4a9b0   Drop no_build_options.patch as it breaks "make test"
     omits  51d49f1   Run quicktest during build
     omits  792da54   usershare.patch: Fix "usershare max shares" default in XML doc and in s4
     omits  8146f72   Patch waf_smbpasswd_location submitted
     omits  15ab149   releasing package samba version 2:4.4.3+dfsg-1
     omits  5a4fc76   Cleanup ctdb READMEs during 'clean' step.
     omits  794819b   releasing package samba version 2:4.4.3+dfsg-1
     omits  4b71f60   Merge branch 'master' of git+ssh://git.debian.org/git/pkg-samba/samba into unstable
     omits  8f75576   Reapply rfc3454 patch.
     omits  46b8815   New upstream release.
     omits  ae67b27   Merge tag 'upstream/4.4.3+dfsg' into unstable
     omits  4ec0ba9   Imported Upstream version 4.4.3+dfsg
     omits  c595a17   Imported Upstream version 4.4.3+dfsg
     omits  f67230d   VERSION: Disable git snapshots for the 4.4.3 release.
     omits  d89905e   WHATSNEW: Add date.
     omits  0c53521   WHATSNEW: Udpate release notes.
     omits  b9cc3bd   s3:selftest: add smbclient_ntlm tests
     omits  d96f774   selftest:Samba4: let fl2000dc use Windows2000 style SPNEGO/NTLMSSP
     omits  883660a   selftest:Samba4: let fl2000dc use Windows2000 supported_enctypes
     omits  7548e8d   s3:test_smbclient_auth.sh: this script reqiures 5 arguments
     omits  771bcf9   selftest:Samba4: provide DC_* variables for fl2000dc and fl2008r2dc
     omits  6d62364   auth/ntlmssp: add ntlmssp_{client,server}:force_old_spnego option for testing
     omits  c52eab4   auth/spnego: add spnego:simulate_w2k option for testing
     omits  eb085f3   auth/ntlmssp: do map to guest checking after the authentication
     omits  ab24cfa   s3:smbd: only mark real guest sessions with the GUEST flag
     omits  2a9cbef   s3:smbd: make use SMB_SETUP_GUEST constant
     omits  696b25f   libcli/security: implement SECURITY_GUEST
     omits  070ae1b   s3:auth_builtin: anonymous authentication doesn't allow a password
     omits  039dc0b   s4:auth_anonymous: anonymous authentication doesn't allow a password
     omits  622a603   auth/spnego: only try to verify the mechListMic if signing was negotiated.
     omits  bc2331b   s3:libsmb: use anonymous authentication via spnego if possible
     omits  702d846   s3:libsmb: don't finish the gensec handshake for guest logins
     omits  779a339   s3:libsmb: record the session setup action flags
     omits  ad94c11   libcli/smb: add smbXcli_session_is_guest() helper function
     omits  2bae4e9   libcli/smb: add SMB1 session setup action flags
     omits  e61d929   libcli/smb: add smb1cli_session_set_action() helper function
     omits  eff4ed6   libcli/smb: fix NULL pointer derreference in smbXcli_session_is_authenticated().
     omits  ce9dc37   s3:libsmb: use password = NULL for anonymous connections
     omits  e72697d   auth/ntlmssp: don't require NTLMSSP_SIGN for smb connections
     omits  0e06d40   auth/ntlmssp: don't require any flags in the ccache_resume code
     omits  f26e6c9   auth/spnego: handle broken mechListMIC response from Windows 2000
     omits  8a8a567   auth/spnego: change log level for 'Failed to setup SPNEGO negTokenInit request: NT_STATUS_INTERNAL_ERROR'
     omits  9aa4b3c   s3:librpc:crypto:gse: increase debug level for gse_init_client().
     omits  a9a5c60   lib:krb5_wrap:krb5_samba: increase debug level for smb_krb5_get_default_realm_from_ccache().
     omits  fc3a36c   s3:libads/sasl: allow wrapped messages up to a size of 0xfffffff
     omits  8f159c5   s4:gensec_tstream: allow wrapped messages up to a size of 0xfffffff
     omits  794d0c2   Mask general purpose signals for notifyd.
     omits  1a36149   WHATSNEW: Start release notes for Samba 4.4.3.
     omits  06343ea   configure: Don't check for inotify on illumos
     omits  969ddf1   nwrap: Fix the build on Solaris
     omits  13d563a   smbd: Avoid large reads beyond EOF
     omits  a4c00ce   Fix the smb2_setinfo to handle FS info types and FSQUOTA infolevel
     omits  2184ae7   cleanupd: restart as needed
     omits  85185e7   nss_wins: Fix the hostent setup
     omits  23497a6   nss_wins: ip_pton expects the raw IP address
     omits  d4dd33b   libads: record session expiry for spnego sasl binds
     omits  acaebfa   releasing package samba version 2:4.4.2+dfsg-2
     omits  8723742   Merge in 4.3 package changes.
     omits  a804652   Merge branch 'master' of git+ssh://git.debian.org/git/pkg-samba/samba into master.
     omits  9b7c700   releasing package samba version 2:4.4.2+dfsg-1
     omits  e75c984   Update overrides.
     omits  a63ddff   Drop build dependency on perl-modules; depend on perl instead.
     omits  6d08067   Fix formatting of my last name.
     omits  f02ade3   Fix NEWS file syntax.
     omits  411c6db   Bump standards version to 3.9.8 (no changes).
     omits  5e55407   New upstream release.
     omits  94dc541   Merge tag 'upstream/4.4.2+dfsg' into experimental
     omits  ecc3685   Imported Upstream version 4.4.2+dfsg
     omits  eb96e15   vfs_catia: Fix bug 11827, memleak
     omits  6b66061   s3: libsmb: Fix error where short name length was read as 2 bytes, should be 1.
     omits  a6a4532   smbcquotas: print "NO LIMIT" only if returned quota value is 0.
     omits  811fbb2   vfs_acl_common: avoid setting POSIX ACLs if "ignore system acls" is set
     omits  26f5b40   winbind: Fix CID 1357100 Unchecked return value
     omits  fb0c85b52 idmap_hash: only allow the hash module for default idmap config.
     omits  dab38c3   idmap_hash: rename be_init() --> idmap_hash_initialize()
     omits  8bd67a1   s3:winbindd:idmap: check loadparm in domain_has_idmap_config() helper as well.
     omits  87fcc70   s3:winbindd:idmap_hash: skip domains that already have their own idmap configuration.
     omits  9d56304   s3:winbindd:idmap: add domain_has_idmap_config() helper function.
     omits  f05cf99   releasing package samba version 2:4.3.8+dfsg-1
     omits  5176d86   Re-apply patch.
     omits  fcb7933   Bump version in Replaces: samba-libs for samba-vfs-modules to 4.3.2+dfsg-1, to fix jessie->stretch upgrades. Closes: #821070
     omits  eb5dcf0   Merge tag 'upstream/4.3.8+dfsg' into unstable
     omits  9b35890   Imported Upstream version 4.3.8+dfsg
     omits  298378d   Update watch file to retrieve 4.3.X.
     omits  f787cb0c  Add patch no_build_system.patch: drop host-specific define that prevents reproducible builds.
     omits  04da991   Release 2:4.3.7+dfsg-1 to unstable
     omits  cd4cbca   Add regression patch for Joining a 2003 domain as a domain member
     omits  2bf125f   Added myself as an uploader
     omits  105e5fd   NEWS for big security patch
     omits  3d490e7   SECURITY: Samba 4.3.7 release
     omits  1329238   Release 2:4.4.1+dfsg-1 to experimental
     omits  8a08f18   NEWS file for big security release
     omits  e8918a1   VERSION: Bump version up to 4.4.3...
     omits  4b4a2bd   VERSION: Disable git snapshots for the 4.3.8 release.
     omits  71de921   VERSION: Disable git snapshots for the 4.4.2 release.
     omits  10e9011   WHATSNEW: Add release notes for Samba 4.3.8.
     omits  370b3dd   WHATSNEW: Add release notes for Samba 4.4.2.
     omits  d53306a   Add regression patch for Joining a 2003 domain as a domain member
     omits  0d47877   Merge in 4.3 history.
     omits  385b9fc   Add patch no_build_system.patch: drop host-specific define that prevents reproducible builds.
     omits  ad9257b   s3:libads: sasl wrapped LDAP connections against with kerberos and arcfour-hmac-md5
     omits  caa886e   VERSION: Bump version up to 4.3.8...
     omits  87fb3b8   s3:libads: sasl wrapped LDAP connections against with kerberos and arcfour-hmac-md5
     omits  bfc9525   VERSION: Bump version up to 4.4.2...
     omits  3c2f663   Updated version 4.4.1+dfsg from 'upstream/4.4.1+dfsg'
     omits  359f7ee   Imported Upstream version 4.4.1+dfsg
     omits  2e1014d   SECURITY: Samba 4.4.1 release
     omits  8dc2e91   Imported Upstream version 4.4.1+dfsg
     omits  bc8f352   Release to experimental
     omits  f20a9c4   Added myself as an uploader
     omits  1d39651   Package Samba 4.4.0
     omits  d1b5c43   Updated version 4.4.0+dfsg from 'upstream/4.4.0+dfsg'
     omits  92b8875   Imported Upstream version 4.4.0+dfsg
     omits  8767fc0   Change upstream branch to upstream_4.4
     omits  deb3c9c   start packaging 4.4 by reverting sure-to-conflict talloc-2.1.6 patch
     omits  c5cb6f4   Imported Upstream version 4.4.0+dfsg
     omits  4a74a50   Merge tag 'upstream/4.3.7+dfsg'
     omits  9b9d1fe   Imported Upstream version 4.3.7+dfsg
     omits  bbd4da9   releasing package samba version 2:4.3.6+dfsg-2
     omits  c02079f   Depend on source version of arch-independent samba-common, fixing binNMU-ability.
     omits  e349b13   Add bug number for samba/talloc breakage and fix
     omits  ad8b42a   Add patches from Samba bug #11789 to work with talloc 2.1.6
     omits  54ef14e   Changelog for previous commit
     omits  337cb82   Don't build ctdb twice
     omits  2256e65   Imported Upstream version 4.3.6+dfsg
     omits  0a386f6   Imported Upstream version 4.3.6
     omits  6e77398   Imported Upstream version 4.3.6
     omits  6ed3639   Add no_build_options.patch: make package more reproducible by disabling build options output.
     omits  ef3e4e6   Changelog for previous commits
     omits  ce41f24   ctdb: Fix detection of gnukfreebsd (Closes: #802621)
     omits  722d7a5   Add ufw integration
     omits  8e410a3   Add an override to script-not-executable etc/ctdb/events.d/10.external
     omits  4a183ca   Changelog for previous commit
     omits  bcc135e   Drop samba from winbind depends and use samba-common* instead (Closes: #732604)
     omits  05ed298   Imported Upstream version 4.4.0
     omits  cbd4120   Changelog for previous commit
     omits  3ad8956   Fix FTBFS when built with dpkg-buildpackage -A (Closes: #818146)
     omits  6597749   VERSION: Disable git snapshots for the 4.3.7 release.
     omits  17e1b9f   WHATSNEW: Add release notes for Samba 4.3.7.
     omits  c8180d1   VERSION: Disable git snapshots for the 4.4.1 release.
     omits  bd94b86   WHATSNEW: Add release notes for Samba 4.4.1.
     omits  13e3e81   CVE-2015-5370: s4:selftest: run samba.tests.dcerpc.raw_protocol against ad_dc
     omits  2c6f01d   CVE-2015-5370: python/samba/tests: add some dcerpc raw_protocol tests
     omits  78b84d5   CVE-2015-5370: python/samba/tests: add infrastructure to do raw protocol tests for DCERPC
     omits  9d953e2   CVE-2015-5370: s4:librpc/rpc: call dcerpc_connection_dead() on protocol errors
     omits  4a496d3   CVE-2015-5370: s3:rpc_client: disconnect connection on protocol errors
     omits  45a2445   CVE-2015-5370: libcli/smb: use a max timeout of 1 second in tstream_smbXcli_np_destructor()
     omits  b65429f   CVE-2015-5370: s3:rpc_server: verify auth_context_id in api_pipe_{bind_auth3,alter_context}
     omits  97a0811   CVE-2015-5370: s3:rpc_client: verify auth_context_id in rpc_pipe_bind_step_one_done()
     omits  49379e4   CVE-2015-5370: s3:librpc/rpc: verify auth_context_id in dcerpc_check_auth()
     omits  518f8bb   CVE-2015-5370: s3:librpc/rpc: make use of auth->auth_context_id in dcerpc_add_auth_footer()
     omits  a663ad5   CVE-2015-5370: s3:rpc_server: make use of pipe_auth_data->auth_context_id
     omits  a3fc86d   CVE-2015-5370: s3:rpc_client: make use of pipe_auth_data->auth_context_id
     omits  6d509e3   CVE-2015-5370: s3:librpc/rpc: add auth_context_id to struct pipe_auth_data
     omits  57d5a84   CVE-2015-5370: s3:rpc_client: pass struct pipe_auth_data to create_rpc_{bind_auth3,alter_context}()
     omits  e84519d   CVE-2015-5370: s3:rpc_server: don't allow an existing context to be changed in check_bind_req()
     omits  6fd2714   CVE-2015-5370: s3:rpc_server: check the transfer syntax in check_bind_req() first
     omits  7b902c3   CVE-2015-5370: s3:librpc/rpc: remove unused dcerpc_pull_dcerpc_auth()
     omits  5cfe5ec   CVE-2015-5370: s3:rpc_server: use DCERPC_NCA_S_PROTO_ERROR FAULTs for protocol errors
     omits  a9c46e8   CVE-2015-5370: s3:rpc_server: let a failing BIND mark the connection as broken
     omits  9c2592f   CVE-2015-5370: s3:rpc_server: disconnect the connection after a fatal FAULT pdu
     omits  6456408   CVE-2015-5370: s3:rpc_server: make use of dcerpc_verify_ncacn_packet_header() to verify incoming pdus
     omits  d2c964f   CVE-2015-5370: s3:rpc_server: verify presentation context arrays
     omits  218bd4a   CVE-2015-5370: s3:rpc_server: use 'alter' instead of 'bind' for variables in api_pipe_alter_context()
     omits  5148a26   CVE-2015-5370: s3:rpc_server: ensure that the message ordering doesn't violate the spec
     omits  198ecf4   CVE-2015-5370: s3:rpc_server: make sure auth_level isn't changed by alter_context or auth3
     omits  bf4a716   CVE-2015-5370: s3:rpc_server: let a failing auth3 mark the authentication as invalid
     omits  087b363   CVE-2015-5370: s3:rpc_server: don't allow auth3 if the authentication was already finished
     omits  e6cdac4   CVE-2015-5370: s3:rpc_server: don't ignore failures of dcerpc_push_ncacn_packet()
     omits  56014f6   CVE-2015-5370: s3:rpc_server: just call pipe_auth_generic_bind() in api_pipe_bind_req()
     omits  8c7d8c8   CVE-2015-5370: s3:rpc_server: let a failing sec_verification_trailer mark the connection as broken
     omits  4c51c89   CVE-2015-5370: s3:rpc_server: make use of dcerpc_pull_auth_trailer() in api_pipe_{bind_req,alter_context,bind_auth3}()
     omits  5c495ab   CVE-2015-5370: s3:rpc_client: verify auth_{type,level} in rpc_pipe_bind_step_one_done()
     omits  f4ef85f   CVE-2015-5370: s3:rpc_client: protect rpc_api_pipe_got_pdu() against too large payloads
     omits  654d8a5   CVE-2015-5370: s3:rpc_client: make use of dcerpc_verify_ncacn_packet_header() in cli_pipe_validate_current_pdu()
     omits  dfab482   CVE-2015-5370: s3:rpc_client: make use of dcerpc_pull_auth_trailer()
     omits  569781f   CVE-2015-5370: s3:librpc/rpc: let dcerpc_check_auth() auth_{type,level} against the expected values.
     omits  dd2c270   CVE-2015-5370: s3:librpc/rpc: remove auth trailer and possible padding within dcerpc_check_auth()
     omits  b1b538a   CVE-2015-5370: librpc/rpc: don't allow pkt->auth_length == 0 in dcerpc_pull_auth_trailer()
     omits  ddd4d03   CVE-2015-5370: s4:rpc_server: reject DCERPC_PFC_FLAG_PENDING_CANCEL with DCERPC_FAULT_NO_CALL_ACTIVE
     omits  7e682ed   CVE-2015-5370: s4:rpc_server: the assoc_group is relative to the connection (association)
     omits  9625f91   CVE-2015-5370: s4:rpc_server: only allow one fragmented call_id at a time
     omits  2fd10be   CVE-2015-5370: s4:rpc_server: limit allocation and alloc_hint to 4 MByte
     omits  d1ffe41   CVE-2015-5370: s4:rpc_server: check frag_length for requests
     omits  74347a4   CVE-2015-5370: s4:rpc_server: give the correct reject reasons for invalid auth_level values
     omits  d7af609   CVE-2015-5370: s4:rpc_server: disconnect after a failing dcesrv_auth_request()
     omits  a3008ec   CVE-2015-5370: s4:rpc_server: let a failing auth3 mark the authentication as invalid
     omits  6a9b4ca   CVE-2015-5370: s4:rpc_server: failing authentication should generate a SEC_PKG_ERROR
     omits  9e86b09   CVE-2015-5370: s4:rpc_server: fix the order of error checking in dcesrv_alter()
     omits  3d075a4   CVE-2015-5370: s4:rpc_server: changing an existing presentation context via alter_context is a protocol error
     omits  cace627   CVE-2015-5370: s4:rpc_server: don't derefence an empty ctx_list array in dcesrv_alter()
     omits  bf333e9   CVE-2015-5370: s4:rpc_server: remove pointless dcesrv_find_context() from dcesrv_bind()
     omits  e3775db   CVE-2015-5370: s4:rpc_server: let invalid request fragments disconnect the connection with a protocol error
     omits  e365d16   CVE-2015-5370: s4:rpc_server: make sure alter_context and auth3 can't change auth_{type,level,context_id}
     omits  af03332e  CVE-2015-5370: s4:rpc_server: maintain in and out struct dcerpc_auth per dcesrv_call_state
     omits  503d08d   CVE-2015-5370: s4:rpc_server: ensure that the message ordering doesn't violate the spec
     omits  75d9b58   CVE-2015-5370: s4:rpc_server: verify the protocol headers before processing pdus
     omits  e3c1c20   CVE-2015-5370: s4:rpc_server: add infrastructure to terminate a connection after a response
     omits  b5d0de4   CVE-2015-5370: s4:rpc_server: make dcesrv_process_ncacn_packet() static
     omits  c8a1adb   CVE-2015-5370: s4:rpc_server: return the correct secondary_address in dcesrv_bind()
     omits  a689216   CVE-2015-5370: s4:rpc_server: add some padding to dcesrv_bind_nak() responses
     omits  eb16dfa   CVE-2015-5370: s4:rpc_server: split out a dcesrv_fault_with_flags() helper function
     omits  448435a   CVE-2015-5370: s4:rpc_server: fill context_id in dcesrv_fault()
     omits  7c2984a   CVE-2015-5370: s4:rpc_server: set alloc_hint = 24 in dcesrv_fault()
     omits  f9ed1a9   CVE-2015-5370: s4:rpc_server: avoid ZERO_STRUCT() in dcesrv_fault()
     omits  83d93a8   CVE-2015-5370: s4:rpc_server: correctly maintain dcesrv_connection->max_{recv,xmit}_frag
     omits  08ec7e7   CVE-2015-5370: s4:rpc_server/netlogon: make use of dce_call->conn->auth_state.auth_{level,type}
     omits  62f8a54   CVE-2015-5370: s4:rpc_server/samr: make use of dce_call->conn->auth_state.auth_level
     omits  8ad4695   CVE-2015-5370: s4:rpc_server/lsa: make use of dce_call->conn->auth_state.auth_{level,type}
     omits  1ed3e26   CVE-2015-5370: s4:rpc_server: make use of dce_call->conn->auth_state.auth_* in dcesrv_request()
     omits  dc15870   CVE-2015-5370: s4:rpc_server: maintain dcesrv_auth->auth_{type,level,context_id}
     omits  58b1cdf   CVE-2015-5370: s4:rpc_server: check the result of dcerpc_pull_auth_trailer() in dcesrv_auth_bind()
     omits  8332714   CVE-2015-5370: s4:rpc_server: no authentication is indicated by pkt->auth_length == 0
     omits  b0349be   CVE-2015-5370: s4:rpc_server: make use of talloc_zero()
     omits  7f348a7   CVE-2015-5370: s4:librpc/rpc: protect dcerpc_request_recv_data() against too large payloads
     omits  50fc638   CVE-2015-5370: s4:librpc/rpc: use dcerpc_verify_ncacn_packet_header() to verify BIND_ACK,ALTER_RESP,RESPONSE pdus
     omits  a96543e   CVE-2015-5370: s4:librpc/rpc: handle DCERPC_PKT_FAULT before anything else in dcerpc_alter_context_recv_handler()
     omits  f89c218   CVE-2015-5370: s4:librpc/rpc: make use of dcerpc_map_ack_reason() in dcerpc_bind_recv_handler()
     omits  94de482   CVE-2015-5370: s3:rpc_client: remove useless frag_length check in rpc_api_pipe_got_pdu()
     omits  f64f451   CVE-2015-5370: s3:rpc_client: move AS/U hack to the top of cli_pipe_validate_current_pdu()
     omits  ac8910f   CVE-2015-5370: librpc/rpc: add a dcerpc_verify_ncacn_packet_header() helper function
     omits  d3bb3ef   CVE-2015-5370: s4:librpc/rpc: finally verify the server uses the expected auth_{type,level,context_id} values
     omits  e05c7dd   CVE-2015-5370: s4:librpc/rpc: avoid using dcecli_security->auth_info and use per request values
     omits  23f4243   CVE-2015-5370: s4:librpc/rpc: simplify checks if gensec is used in dcerpc_ship_next_request()
     omits  33ee36e   CVE-2015-5370: s4:librpc/rpc: avoid dereferencing sec->auth_info in dcerpc_request_prepare_vt()
     omits  245fc41   CVE-2015-5370: s4:librpc/rpc: always use ncacn_pull_request_auth() for DCERPC_PKT_RESPONSE pdus
     omits  4907895   CVE-2015-5370: s4:librpc/rpc: avoid using c->security_state.auth_info in ncacn_pull_request_auth()
     omits  7ee85d6   CVE-2015-5370: s4:librpc/rpc: avoid using hs->p->conn->security_state.auth_info in dcerpc_bh_auth_info()
     omits  25e48af   CVE-2015-5370: s4:librpc/rpc: use a local auth_info variable in ncacn_push_request_sign()
     omits  3f447f6   CVE-2015-5370: s4:librpc/rpc: use auth_context_id = 1
     omits  32d8e05   CVE-2015-5370: s4:librpc/rpc: maintain dcecli_security->auth_{type,level,context_id}
     omits  4867460   CVE-2015-5370: s4:librpc/rpc: send a dcerpc_sec_verification_trailer if needed
     omits  b095508   CVE-2015-5370: s3:librpc/rpc: don't call dcerpc_pull_auth_trailer() if auth_length is 0
     omits  b77eab0   CVE-2015-5370: librpc/rpc: simplify and harden dcerpc_pull_auth_trailer()
     omits  22ab56d   CVE-2015-5370: dcerpc.idl: add DCERPC_{NCACN_PAYLOAD,FRAG}_MAX_SIZE defines
     omits  fa0d681   CVE-2016-2118: s3:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
     omits  e675f63   CVE-2016-2118: s4:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
     omits  f425bfd   CVE-2016-2118: docs-xml: default "allow dcerpc auth level connect" to "no"
     omits  6750ffd   CVE-2016-2118: s3:rpc_server/{epmapper,echo}: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  ba69e95   CVE-2016-2118: s3:rpc_server/{samr,lsa,netlogon}: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  3133233   CVE-2016-2118: s3:rpc_server: make use of "allow dcerpc auth level connect"
     omits  2e4f09b   CVE-2016-2118: s4:rpc_server/rpcecho: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  36278e3   CVE-2016-2118: s4:rpc_server/mgmt: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  4862ee5   CVE-2016-2118: s4:rpc_server/epmapper: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  6568d5d   CVE-2016-2118: s4:rpc_server/netlogon: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  34969d6   CVE-2016-2118: s4:rpc_server/samr: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  c98143b   CVE-2016-2118: s4:rpc_server/lsa: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  1a3c82e   CVE-2016-2118: s4:rpc_server: make use of "allow dcerpc auth level connect"
     omits  2e9824e   CVE-2016-2118: docs-xml: add "allow dcerpc auth level connect" defaulting to "yes"
     omits  d565761   CVE-2016-2118: s4:librpc: use integrity by default for authenticated binds
     omits  70ba7b0   CVE-2016-2118: librpc: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
     omits  6142767   CVE-2016-2118: s3: rpcclient: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
     omits  be98e7e   CVE-2016-2118: s4:rpc_server/dnsserver: require at least DCERPC_AUTH_LEVEL_INTEGRITY
     omits  5d4d8ec   CVE-2016-2118: python:tests/dcerpc: use [sign] for dnsserver tests
     omits  778dab9   CVE-2016-2118: s4:rpc_server/backupkey: require DCERPC_AUTH_LEVEL_PRIVACY
     omits  e1de6ec   CVE-2016-2118: s4:rpc_server/drsuapi: require DCERPC_AUTH_LEVEL_PRIVACY
     omits  3502195   CVE-2016-2118: s4:rpc_server: make it possible to define a min_auth_level on a presentation context
     omits  d8c3cf1   CVE-2016-2115: docs-xml: always default "client ipc signing" to "mandatory"
     omits  e7ef30e   CVE-2016-2115: s3:libsmb: use SMB_SIGNING_IPC_DEFAULT and lp_client_ipc_{min,max}_protocol()
     omits  f76e6f9   CVE-2016-2115: s3:libnet: use SMB_SIGNING_IPC_DEFAULT
     omits  084b20e   CVE-2016-2115: s3:auth_domain: use SMB_SIGNING_IPC_DEFAULT
     omits  fdd2807   CVE-2016-2115: s3:lib/netapi: use SMB_SIGNING_IPC_DEFAULT
     omits  0422c64   CVE-2016-2115: net: use SMB_SIGNING_IPC_DEFAULT
     omits  80102ed   CVE-2016-2115: s3:libsmb: let SMB_SIGNING_IPC_DEFAULT use "client ipc min/max protocol"
     omits  afda479   CVE-2016-2115: s3:libsmb: add signing constant SMB_SIGNING_IPC_DEFAULT
     omits  1309832   CVE-2016-2115: s3:winbindd: use lp_client_ipc_signing()
     omits  f1dea29   CVE-2016-2115: s3:winbindd: use lp_client_ipc_{min,max}_protocol()
     omits  2c62a54   CVE-2016-2115: s4:librpc/rpc: make use of "client ipc *" options for ncacn_np
     omits  dbe7a43   CVE-2016-2115: s4:libcli/raw: pass the minprotocol to smb_raw_negotiate*()
     omits  ee4f114   CVE-2016-2115: s4:libcli/raw: limit maxprotocol to NT1 in smb_raw_negotiate*()
     omits  f3da02a   CVE-2016-2115: s4:libcli/smb2: use the configured min_protocol
     omits  8466fe8   CVE-2016-2115: s4:libcli/raw: add smbcli_options.min_protocol
     omits  863d419   CVE-2016-2115: docs-xml: add "client ipc signing" option
     omits  39282d2   CVE-2016-2115: docs-xml: add "client ipc min protocol" and "client ipc max protocol" options
     omits  09a7576   CVE-2016-2114: docs-xml: let the "smb signing" documentation reflect the reality
     omits  2c3649c   CVE-2016-2114: s3:smbd: enforce "server signing = mandatory"
     omits  0b05bc9   CVE-2016-2114: libcli/smb: let mandatory signing imply allowed signing
     omits  cc8bbc3   CVE-2016-2114: s3:smbd: use the correct default values for "smb signing"
     omits  4177489   CVE-2016-2114: s4:smb2_server: fix session setup with required signing
     omits  b2af10b   CVE-2016-2113: docs-xml: let "tls verify peer" default to "as_strict_as_possible"
     omits  2ced06d   CVE-2016-2113: selftest: use "tls verify peer = no_check"
     omits  5c94dfa   CVE-2016-2113: selftest: test all "tls verify peer" combinations with ldaps
     omits  660dbb8   CVE-2016-2113: s4:librpc/rpc: verify the rpc_proxy certificate and hostname if configured
     omits  a443abe   CVE-2016-2113: s4:libcli/ldap: verify the server certificate and hostname if configured
     omits  cd4b292   CVE-2016-2113: s4:selftest: explicitly use '--option="tlsverifypeer=no_check" for some ldaps tests
     omits  5ec881c   CVE-2016-2113: docs-xml: add "tls verify peer" option defaulting to "no_check"
     omits  0e2bcca   CVE-2015-5370: s4:selftest: run samba.tests.dcerpc.raw_protocol against ad_dc
     omits  9ec6afa   CVE-2015-5370: python/samba/tests: add some dcerpc raw_protocol tests
     omits  21fe775   CVE-2015-5370: python/samba/tests: add infrastructure to do raw protocol tests for DCERPC
     omits  a141a37   CVE-2015-5370: s4:librpc/rpc: call dcerpc_connection_dead() on protocol errors
     omits  6ac5ad0   CVE-2015-5370: s3:rpc_client: disconnect connection on protocol errors
     omits  51a4a8f   CVE-2015-5370: libcli/smb: use a max timeout of 1 second in tstream_smbXcli_np_destructor()
     omits  cd2911f   CVE-2015-5370: s3:rpc_server: verify auth_context_id in api_pipe_{bind_auth3,alter_context}
     omits  ac0d474   CVE-2015-5370: s3:rpc_client: verify auth_context_id in rpc_pipe_bind_step_one_done()
     omits  4449c51   CVE-2015-5370: s3:librpc/rpc: verify auth_context_id in dcerpc_check_auth()
     omits  365fffe   CVE-2015-5370: s3:librpc/rpc: make use of auth->auth_context_id in dcerpc_add_auth_footer()
     omits  bc001b0   CVE-2015-5370: s3:rpc_server: make use of pipe_auth_data->auth_context_id
     omits  7ab9a8c   CVE-2015-5370: s3:rpc_client: make use of pipe_auth_data->auth_context_id
     omits  7f2d791   CVE-2015-5370: s3:librpc/rpc: add auth_context_id to struct pipe_auth_data
     omits  73550f4   CVE-2015-5370: s3:rpc_client: pass struct pipe_auth_data to create_rpc_{bind_auth3,alter_context}()
     omits  46ddaf3   CVE-2015-5370: s3:rpc_server: don't allow an existing context to be changed in check_bind_req()
     omits  f3a67c2   CVE-2015-5370: s3:rpc_server: check the transfer syntax in check_bind_req() first
     omits  278cdd1   CVE-2015-5370: s3:librpc/rpc: remove unused dcerpc_pull_dcerpc_auth()
     omits  adaf1ae   CVE-2015-5370: s3:rpc_server: use DCERPC_NCA_S_PROTO_ERROR FAULTs for protocol errors
     omits  14d97d4   CVE-2015-5370: s3:rpc_server: let a failing BIND mark the connection as broken
     omits  dbcd01e   CVE-2015-5370: s3:rpc_server: disconnect the connection after a fatal FAULT pdu
     omits  3f6a270   CVE-2015-5370: s3:rpc_server: make use of dcerpc_verify_ncacn_packet_header() to verify incoming pdus
     omits  11df891   CVE-2015-5370: s3:rpc_server: verify presentation context arrays
     omits  9832a22   CVE-2015-5370: s3:rpc_server: use 'alter' instead of 'bind' for variables in api_pipe_alter_context()
     omits  e1b75bc   CVE-2015-5370: s3:rpc_server: ensure that the message ordering doesn't violate the spec
     omits  84cbf3d   CVE-2015-5370: s3:rpc_server: make sure auth_level isn't changed by alter_context or auth3
     omits  d11c5d3   CVE-2015-5370: s3:rpc_server: let a failing auth3 mark the authentication as invalid
     omits  476c2f5   CVE-2015-5370: s3:rpc_server: don't allow auth3 if the authentication was already finished
     omits  8695339   CVE-2015-5370: s3:rpc_server: don't ignore failures of dcerpc_push_ncacn_packet()
     omits  a4a828e   CVE-2015-5370: s3:rpc_server: just call pipe_auth_generic_bind() in api_pipe_bind_req()
     omits  db297a7   CVE-2015-5370: s3:rpc_server: let a failing sec_verification_trailer mark the connection as broken
     omits  905313c   CVE-2015-5370: s3:rpc_server: make use of dcerpc_pull_auth_trailer() in api_pipe_{bind_req,alter_context,bind_auth3}()
     omits  0cf8404   CVE-2015-5370: s3:rpc_client: verify auth_{type,level} in rpc_pipe_bind_step_one_done()
     omits  e87721a   CVE-2015-5370: s3:rpc_client: protect rpc_api_pipe_got_pdu() against too large payloads
     omits  8e691e7   CVE-2015-5370: s3:rpc_client: make use of dcerpc_verify_ncacn_packet_header() in cli_pipe_validate_current_pdu()
     omits  f606cfd   CVE-2015-5370: s3:rpc_client: make use of dcerpc_pull_auth_trailer()
     omits  f39183c   CVE-2015-5370: s3:librpc/rpc: let dcerpc_check_auth() auth_{type,level} against the expected values.
     omits  28d558e   CVE-2015-5370: s3:librpc/rpc: remove auth trailer and possible padding within dcerpc_check_auth()
     omits  db30949   CVE-2015-5370: librpc/rpc: don't allow pkt->auth_length == 0 in dcerpc_pull_auth_trailer()
     omits  cce7265   CVE-2015-5370: s4:rpc_server: reject DCERPC_PFC_FLAG_PENDING_CANCEL with DCERPC_FAULT_NO_CALL_ACTIVE
     omits  795b44e   CVE-2015-5370: s4:rpc_server: the assoc_group is relative to the connection (association)
     omits  67e2661   CVE-2015-5370: s4:rpc_server: only allow one fragmented call_id at a time
     omits  f77f9bf   CVE-2015-5370: s4:rpc_server: limit allocation and alloc_hint to 4 MByte
     omits  3239e26   CVE-2015-5370: s4:rpc_server: check frag_length for requests
     omits  d249ce6   CVE-2015-5370: s4:rpc_server: give the correct reject reasons for invalid auth_level values
     omits  0e26f3c   CVE-2015-5370: s4:rpc_server: disconnect after a failing dcesrv_auth_request()
     omits  6ed0ef7   CVE-2015-5370: s4:rpc_server: let a failing auth3 mark the authentication as invalid
     omits  615019f   CVE-2015-5370: s4:rpc_server: failing authentication should generate a SEC_PKG_ERROR
     omits  e0b58a1   CVE-2015-5370: s4:rpc_server: fix the order of error checking in dcesrv_alter()
     omits  cf0a939   CVE-2015-5370: s4:rpc_server: changing an existing presentation context via alter_context is a protocol error
     omits  f0d318f   CVE-2015-5370: s4:rpc_server: don't derefence an empty ctx_list array in dcesrv_alter()
     omits  6228c53   CVE-2015-5370: s4:rpc_server: remove pointless dcesrv_find_context() from dcesrv_bind()
     omits  a7d02ec   CVE-2015-5370: s4:rpc_server: let invalid request fragments disconnect the connection with a protocol error
     omits  1d99eec   CVE-2015-5370: s4:rpc_server: make sure alter_context and auth3 can't change auth_{type,level,context_id}
     omits  6b2d064   CVE-2015-5370: s4:rpc_server: maintain in and out struct dcerpc_auth per dcesrv_call_state
     omits  26ad208   CVE-2015-5370: s4:rpc_server: ensure that the message ordering doesn't violate the spec
     omits  2ed603a   CVE-2015-5370: s4:rpc_server: verify the protocol headers before processing pdus
     omits  e9511b5   CVE-2015-5370: s4:rpc_server: add infrastructure to terminate a connection after a response
     omits  5ab994c   CVE-2015-5370: s4:rpc_server: make dcesrv_process_ncacn_packet() static
     omits  6db7571   CVE-2015-5370: s4:rpc_server: return the correct secondary_address in dcesrv_bind()
     omits  9f62223   CVE-2015-5370: s4:rpc_server: add some padding to dcesrv_bind_nak() responses
     omits  4ea6765   CVE-2015-5370: s4:rpc_server: split out a dcesrv_fault_with_flags() helper function
     omits  8ba1be0   CVE-2015-5370: s4:rpc_server: fill context_id in dcesrv_fault()
     omits  69e1d93   CVE-2015-5370: s4:rpc_server: set alloc_hint = 24 in dcesrv_fault()
     omits  5eb3b63   CVE-2015-5370: s4:rpc_server: avoid ZERO_STRUCT() in dcesrv_fault()
     omits  3165b23   CVE-2015-5370: s4:rpc_server: correctly maintain dcesrv_connection->max_{recv,xmit}_frag
     omits  563d8fe   CVE-2015-5370: s4:rpc_server/netlogon: make use of dce_call->conn->auth_state.auth_{level,type}
     omits  fd3b82e   CVE-2015-5370: s4:rpc_server/samr: make use of dce_call->conn->auth_state.auth_level
     omits  1077b50   CVE-2015-5370: s4:rpc_server/lsa: make use of dce_call->conn->auth_state.auth_{level,type}
     omits  5325276   CVE-2015-5370: s4:rpc_server: make use of dce_call->conn->auth_state.auth_* in dcesrv_request()
     omits  f8b98b3   CVE-2015-5370: s4:rpc_server: maintain dcesrv_auth->auth_{type,level,context_id}
     omits  16e3a4c   CVE-2015-5370: s4:rpc_server: check the result of dcerpc_pull_auth_trailer() in dcesrv_auth_bind()
     omits  308543b   CVE-2015-5370: s4:rpc_server: no authentication is indicated by pkt->auth_length == 0
     omits  08f976d   CVE-2015-5370: s4:rpc_server: make use of talloc_zero()
     omits  0235d72   CVE-2015-5370: s4:librpc/rpc: protect dcerpc_request_recv_data() against too large payloads
     omits  df2dcc1   CVE-2015-5370: s4:librpc/rpc: use dcerpc_verify_ncacn_packet_header() to verify BIND_ACK,ALTER_RESP,RESPONSE pdus
     omits  443e00f   CVE-2015-5370: s4:librpc/rpc: handle DCERPC_PKT_FAULT before anything else in dcerpc_alter_context_recv_handler()
     omits  1551c41   CVE-2015-5370: s4:librpc/rpc: make use of dcerpc_map_ack_reason() in dcerpc_bind_recv_handler()
     omits  9b9d307   CVE-2015-5370: s3:rpc_client: remove useless frag_length check in rpc_api_pipe_got_pdu()
     omits  735d4ba   CVE-2015-5370: s3:rpc_client: move AS/U hack to the top of cli_pipe_validate_current_pdu()
     omits  21b9022   CVE-2015-5370: librpc/rpc: add a dcerpc_verify_ncacn_packet_header() helper function
     omits  821d484   CVE-2015-5370: s4:librpc/rpc: finally verify the server uses the expected auth_{type,level,context_id} values
     omits  447f9f1   CVE-2015-5370: s4:librpc/rpc: avoid using dcecli_security->auth_info and use per request values
     omits  220e4ca   CVE-2015-5370: s4:librpc/rpc: simplify checks if gensec is used in dcerpc_ship_next_request()
     omits  e6da619   CVE-2015-5370: s4:librpc/rpc: avoid dereferencing sec->auth_info in dcerpc_request_prepare_vt()
     omits  3df2b07   CVE-2015-5370: s4:librpc/rpc: always use ncacn_pull_request_auth() for DCERPC_PKT_RESPONSE pdus
     omits  0899c0a   CVE-2015-5370: s4:librpc/rpc: avoid using c->security_state.auth_info in ncacn_pull_request_auth()
     omits  71c2c21   CVE-2015-5370: s4:librpc/rpc: avoid using hs->p->conn->security_state.auth_info in dcerpc_bh_auth_info()
     omits  e39b737   CVE-2015-5370: s4:librpc/rpc: use a local auth_info variable in ncacn_push_request_sign()
     omits  5be0fb1   CVE-2015-5370: s4:librpc/rpc: use auth_context_id = 1
     omits  f64b017   CVE-2015-5370: s4:librpc/rpc: maintain dcecli_security->auth_{type,level,context_id}
     omits  47d8c31   CVE-2015-5370: s4:librpc/rpc: send a dcerpc_sec_verification_trailer if needed
     omits  1c7be37   CVE-2015-5370: s3:librpc/rpc: don't call dcerpc_pull_auth_trailer() if auth_length is 0
     omits  82dd128   CVE-2015-5370: librpc/rpc: simplify and harden dcerpc_pull_auth_trailer()
     omits  e96791f   CVE-2015-5370: dcerpc.idl: add DCERPC_{NCACN_PAYLOAD,FRAG}_MAX_SIZE defines
     omits  6602e7e   CVE-2016-2118: s3:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
     omits  45a9ca1   CVE-2016-2118: s4:rpc_server/samr: allow _samr_ValidatePassword only with PRIVACY...
     omits  e9718e2   CVE-2016-2118: docs-xml: default "allow dcerpc auth level connect" to "no"
     omits  4762d25   CVE-2016-2118: s3:rpc_server/{epmapper,echo}: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  1ac5f37   CVE-2016-2118: s3:rpc_server/{samr,lsa,netlogon}: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  3ba93ce   CVE-2016-2118: s3:rpc_server: make use of "allow dcerpc auth level connect"
     omits  a2d14bb   CVE-2016-2118: s4:rpc_server/rpcecho: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  6045947   CVE-2016-2118: s4:rpc_server/mgmt: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  8f219a0   CVE-2016-2118: s4:rpc_server/epmapper: allow DCERPC_AUTH_LEVEL_CONNECT by default
     omits  7869c5f   CVE-2016-2118: s4:rpc_server/netlogon: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  20e4023   CVE-2016-2118: s4:rpc_server/samr: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  ca98500   CVE-2016-2118: s4:rpc_server/lsa: reject DCERPC_AUTH_LEVEL_CONNECT by default
     omits  7b93802   CVE-2016-2118: s4:rpc_server: make use of "allow dcerpc auth level connect"
     omits  e7be37e   CVE-2016-2118(<=4.3) docs-xml: add "allow dcerpc auth level connect" defaulting to "yes"
     omits  979067f   CVE-2016-2118: docs-xml: add "allow dcerpc auth level connect" defaulting to "yes"
     omits  101e8e8   CVE-2016-2118: s4:librpc: use integrity by default for authenticated binds
     omits  9ae9c64   CVE-2016-2118: librpc: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
     omits  d5659c7   CVE-2016-2118: s3: rpcclient: change the default auth level from DCERPC_AUTH_LEVEL_CONNECT to DCERPC_AUTH_LEVEL_INTEGRITY
     omits  0a3d923   CVE-2016-2118: s4:rpc_server/dnsserver: require at least DCERPC_AUTH_LEVEL_INTEGRITY
     omits  9bfa937   CVE-2016-2118: python:tests/dcerpc: use [sign] for dnsserver tests
     omits  5eb6341   CVE-2016-2118: s4:rpc_server/backupkey: require DCERPC_AUTH_LEVEL_PRIVACY
     omits  e8dc268   CVE-2016-2118: s4:rpc_server/drsuapi: require DCERPC_AUTH_LEVEL_PRIVACY
     omits  31e7611   CVE-2016-2118: s4:rpc_server: make it possible to define a min_auth_level on a presentation context
     omits  fa2630f   CVE-2016-2115: docs-xml: always default "client ipc signing" to "mandatory"
     omits  2d68100   CVE-2016-2115: s3:libsmb: use SMB_SIGNING_IPC_DEFAULT and lp_client_ipc_{min,max}_protocol()
     omits  cdad358   CVE-2016-2115: s3:libnet: use SMB_SIGNING_IPC_DEFAULT
     omits  b66500f   CVE-2016-2115: s3:auth_domain: use SMB_SIGNING_IPC_DEFAULT
     omits  27c66c4   CVE-2016-2115: s3:lib/netapi: use SMB_SIGNING_IPC_DEFAULT
     omits  9339d90   CVE-2016-2115: net: use SMB_SIGNING_IPC_DEFAULT
     omits  38552d7   CVE-2016-2115: s3:libsmb: let SMB_SIGNING_IPC_DEFAULT use "client ipc min/max protocol"
     omits  bdff08d   CVE-2016-2115: s3:libsmb: add signing constant SMB_SIGNING_IPC_DEFAULT
     omits  2b23bc3   CVE-2016-2115: s3:winbindd: use lp_client_ipc_signing()
     omits  5859266   CVE-2016-2115: s3:winbindd: use lp_client_ipc_{min,max}_protocol()
     omits  e0588d9   CVE-2016-2115: s4:librpc/rpc: make use of "client ipc *" options for ncacn_np
     omits  2220923   CVE-2016-2115: s4:libcli/raw: pass the minprotocol to smb_raw_negotiate*()
     omits  60851a0   CVE-2016-2115: s4:libcli/raw: limit maxprotocol to NT1 in smb_raw_negotiate*()
     omits  7903203   CVE-2016-2115: s4:libcli/smb2: use the configured min_protocol
     omits  c21c9a3   CVE-2016-2115: s4:libcli/raw: add smbcli_options.min_protocol
     omits  2c13697   CVE-2016-2115(<=4.3): docs-xml: add "client ipc signing" option
     omits  668cc85   CVE-2016-2115: docs-xml: add "client ipc signing" option
     omits  9fa185c   CVE-2016-2115(<=4.3): docs-xml: add "client ipc min protocol" and "client ipc max protocol" options
     omits  2f7d773   CVE-2016-2115: docs-xml: add "client ipc min protocol" and "client ipc max protocol" options
     omits  25b05a8   CVE-2016-2114: docs-xml: let the "smb signing" documentation reflect the reality
     omits  8611441   CVE-2016-2114: s3:smbd: enforce "server signing = mandatory"
     omits  7c6c666   CVE-2016-2114: libcli/smb: let mandatory signing imply allowed signing
     omits  67f8524   CVE-2016-2114: s3:smbd: use the correct default values for "smb signing"
     omits  2217276   CVE-2016-2114: s4:smb2_server: fix session setup with required signing
     omits  641cbcc   CVE-2016-2113: docs-xml: let "tls verify peer" default to "as_strict_as_possible"
     omits  d778580   CVE-2016-2113: selftest: use "tls verify peer = no_check"
     omits  dc4f8d0   CVE-2016-2113: selftest: test all "tls verify peer" combinations with ldaps
     omits  fdac236   CVE-2016-2113: s4:librpc/rpc: verify the rpc_proxy certificate and hostname if configured
     omits  389b15e   CVE-2016-2113: s4:libcli/ldap: verify the server certificate and hostname if configured
     omits  54a039d   CVE-2016-2113: s4:selftest: explicitly use '--option="tlsverifypeer=no_check" for some ldaps tests
     omits  c20ee1b   CVE-2016-2113(<=4.3): docs-xml: add "tls verify peer" option defaulting to "no_check"
     omits  fc02668   CVE-2016-2113: docs-xml: add "tls verify peer" option defaulting to "no_check"
     omits  9ca8e88   CVE-2016-2113: s4:lib/tls: implement infrastructure to do peer verification
     omits  27f1625   CVE-2016-2113: s4:lib/tls: create better certificates and sign the host cert with the ca cert
     omits  104a691   CVE-2016-2112: docs-xml: change the default of "ldap server require strong auth" to "yes"
     omits  a027a87   CVE-2016-2112: s4:selftest: run some ldap test against ad_dc_ntvfs, fl2008r2dc and fl2003dc
     omits  8dad04c   CVE-2016-2112: selftest: servers with explicit "ldap server require strong auth" options
     omits  c7f2a10   CVE-2016-2112: s4:selftest: run samba4.ldap.bind against fl2008r2dc
     omits  90cc943   CVE-2016-2112: s4:ldap_server: implement "ldap server require strong auth" option
     omits  963236f   CVE-2016-2112(<=4.3): docs-xml: add "ldap server require strong auth" option
     omits  b012535   CVE-2016-2112: docs-xml: add "ldap server require strong auth" option
     omits  e9cfd12   CVE-2016-2112: s4:ldap_server: reduce scope of old_session_info variable
     omits  5172192   CVE-2016-2112: s4:selftest: use --option=clientldapsaslwrapping=plain for plain connections
     omits  6977700   CVE-2016-2112: s4:libcli/ldap: auto upgrade to SIGN after STRONG_AUTH_REQUIRED
     omits  e072666   CVE-2016-2112: s4:libcli/ldap: make sure we detect downgrade attacks
     omits  b723d97   CVE-2016-2112: s4:libcli/ldap: honour "client ldap sasl wrapping" option
     omits  a8c60aa   CVE-2016-2112: s3:libads: make sure we detect downgrade attacks
     omits  60647fa   CVE-2016-2111: docs-xml/smbdotconf: default "raw NTLMv2 auth" to "no"
     omits  dbdd9cb   CVE-2016-2111: selftest:Samba3: use "raw NTLMv2 auth = yes" for nt4_dc
     omits  ff1e470   CVE-2016-2111: s4:smb_server: implement "raw NTLMv2 auth" checks
     omits  e260f6a   CVE-2016-2111: s3:auth: implement "raw NTLMv2 auth" checks
     omits  3643bc9   CVE-2016-2111(<=4.3): docs-xml: add "raw NTLMv2 auth" defaulting to "yes"
     omits  3dbb32c   CVE-2016-2111: docs-xml: add "raw NTLMv2 auth" defaulting to "yes"
     omits  eaabdc1   CVE-2016-2111: docs-xml: document the new "client NTLMv2 auth" and "client use spnego" interaction
     omits  f319256   CVE-2016-2111: s3:libsmb: don't send a raw NTLMv2 response when we want to use spnego
     omits  f22b75d   CVE-2016-2111: s4:libcli: don't send a raw NTLMv2 response when we want to use spnego
     omits  a1ae538   CVE-2016-2111: s4:param: use "client use spnego" to initialize options->use_spnego
     omits  5dbffb8   CVE-2016-2111: s4:libcli: don't allow the LANMAN2 session setup without "client lanman auth = yes"
     omits  b6899e1   CVE-2016-2111: s4:torture/base: don't use ntlmv2 for dos connection in base.samba3error
     omits  8e1e621   CVE-2016-2111: s4:torture/raw: don't use ntlmv2 for dos connection in raw.samba3badpath
     omits  9784d68   CVE-2016-2111: s3:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
     omits  473bbfa   CVE-2016-2111: s4:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
     omits  984d024   CVE-2016-2111: libcli/auth: add NTLMv2_RESPONSE_verify_netlogon_creds() helper function
     omits  5074d1e   CVE-2016-2111: s4:torture/rpc: fix rpc.pac ntlmv2 test
     omits  7434b8d   CVE-2016-2111: s4:torture/rpc: fix rpc.samba3.netlogon ntlmv2 test
     omits  630e39d   CVE-2016-2111: s3:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
     omits  b9b3b1e   CVE-2016-2111: s4:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
     omits  2f393b3   CVE-2016-2111: s3:rpc_server/netlogon: always go through netr_creds_server_step_check()
     omits  fb8bb0f   CVE-2016-2111: s4:rpc_server: implement 'server schannel = yes' restriction
     omits  b76361d   CVE-2016-2111: auth/gensec: correctly report GENSEC_FEATURE_{SIGN,SEAL} in schannel_have_feature()
     omits  a6d1056   CVE-2016-2111: auth/gensec: require DCERPC_AUTH_LEVEL_INTEGRITY or higher in schannel_update()
     omits  fc9df72   CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC generation (as client)
     omits  95a1c91   CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC checking (as server)
     omits  39dd2c6   CVE-2016-2110: ntlmssp.idl: add NTLMSSP_MIC_{OFFSET,SIZE}
     omits  299b49f   CVE-2016-2110: libcli/auth: pass server_timestamp to SMBNTLMv2encrypt_hash()
     omits  a278c35   CVE-2016-2110: auth/credentials: pass server_timestamp to cli_credentials_get_ntlm_response()
     omits  1cc7fbe   CVE-2016-2110: auth/credentials: clear the LMv2 key for NTLMv2 in cli_credentials_get_ntlm_response()
     omits  8cae040   CVE-2016-2110: auth/ntlmssp: implement gensec_ntlmssp_may_reset_crypto()
     omits  b5e95cc   CVE-2016-2110: auth/ntlmssp: call ntlmssp_sign_init if we provide GENSEC_FEATURE_SIGN
     omits  3ae39af   CVE-2016-2110: auth/gensec: add gensec_may_reset_crypto() infrastructure
     omits  f32ad5c   CVE-2016-2110: auth/gensec: require spnego mechListMIC exchange for new_spnego backends
     omits  3673533   CVE-2016-2110: auth/gensec: fix the client side of a spnego downgrade
     omits  9440fa8   CVE-2016-2110: auth/gensec: fix the client side of a new_spnego exchange
     omits  efe18dc   CVE-2016-2110: libcli/auth: add SPNEGO_REQUEST_MIC to enum spnego_negResult
     omits  0e3bb02   CVE-2016-2110: libcli/auth: use enum spnego_negResult instead of uint8_t
     omits  8714377   CVE-2016-2110: winbindd: add new_spnego to the WINBINDD_CCACHE_NTLMAUTH response
     omits  677e214   CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require NTLM2 (EXTENDED_SESSIONSECURITY) when using ntlmv2
     omits  2ee222b   CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require flags depending on the requested features
     omits  a7a0d2e   CVE-2016-2110: auth/ntlmssp: don't let ntlmssp_handle_neg_flags() change ntlmssp_state->use_ntlmv2
     omits  d29c945   CVE-2016-2110: auth/ntlmssp: don't allow a downgrade from NTLMv2 to LM_AUTH
     omits  4e5c214   CVE-2016-2110: auth/ntlmssp: split allow_lm_response from allow_lm_key
     omits  f914050   CVE-2016-2110: auth/ntlmssp: maintain conf_flags and required_flags variables
     omits  8df0d59   CVE-2016-2110: auth/ntlmssp: let ntlmssp_handle_neg_flags() return NTSTATUS
     omits  25f0a4c   s3:ntlm_auth: pass manage_squid_request() needs a valid struct ntlm_auth_state from within get_password()
     omits  cce2e6a   s3:rpc_server/samr: correctly handle session_extract_session_key() failures
     omits  343637b   s4:selftest: run rpc.netlogon.admin also over ncalrpc and ncacn_ip_tcp
     omits  ba36c3f   libads: Fix CID 1356316 Uninitialized pointer read
     omits  e681d11   libsmb: Fix CID 1356312 Explicit null dereferenced
     omits  656795b   s3-auth: check for return code of cli_credentials_set_machine_account().
     omits  6db7be4   s4-smb_server: check for return code of cli_credentials_set_machine_account().
     omits  bca3039   s4:rpc_server: require access to the machine account credentials
     omits  a6e7f49   auth/gensec: split out a gensec_verify_dcerpc_auth_level() function
     omits  c0beb87   auth/gensec: make sure gensec_security_by_auth_type() returns NULL for AUTH_TYPE_NONE
     omits  5cdddba   s4:torture/rpc/schannel: don't use validation level 6 without privacy
     omits  61a09ae   s4:torture/rpc: correctly use torture_skip() for test_ManyGetDCName() without NCACN_NP
     omits  1cd3836   s4:torture/rpc/samlogon: use DCERPC_SEAL for netr_LogonSamLogonEx and validation level 6
     omits  8665944   s4:torture/rpc/samr: use DCERPC_SEAL in setup_schannel_netlogon_pipe()
     omits  46f52e7   s4:torture/netlogon: add/use test_SetupCredentialsPipe() helper function
     omits  1103a6b   s3:test_rpcclient_samlogon.sh: test samlogon with schannel
     omits  6a3a45d   s3:selftest: rpc.samr.passwords.validate should run with [seal] in order to be realistic
     omits  3f05c5a   selftest: setup information of new samba.example.com CA in the client environment
     omits  1311631   selftest: set tls crlfile if it exist
     omits  739e896   selftest: use Samba::prepare_keyblobs() and use the certs from the new CA
     omits  0ad8ef8   selftest: add Samba::prepare_keyblobs() helper function
     omits  f058da2   selftest: mark commands in manage-CA-samba.example.com.sh as DONE
     omits  8be3031   selftest: add CA-samba.example.com (non-binary) files
     omits  08976c4   selftest: add config and script to create a samba.example.com CA
     omits  158e06d   selftest: add some helper scripts to mange a CA
     omits  f91a66f   selftest: s!addc.samba.example.com!addom.samba.example.com!
     omits  1346b27   s4:rpc_server: dcesrv_generic_session_key should only work on local transports
     omits  663ec33   s4:rpc_server/samr: hide a possible NO_USER_SESSION_KEY error
     omits  5182c93   s4:librpc/rpc: dcerpc_generic_session_key() should only be available on local transports
     omits  44e2da8   s4:torture:samba3rpc: use an authenticated SMB connection and an anonymous DCERPC connection on top
     omits  fd1e4ec   s4:selftest: run rpc.samr over ncacn_np instead of ncacn_ip_tcp
     omits  32ad277   s4:torture: the backupkey tests need to use ncacn_np: for LSA calls
     omits  e09c17a   s4:torture/rpc: do testjoin only via ncalrpc or ncacn_np
     omits  2d6afd9   s3:libsmb: remove unused functions in clispnego.c
     omits  979fc6a   s3:libsmb: remove unused cli_session_setup_kerberos*() functions
     omits  8a1d0a9   s3:libsmb: make use of cli_session_setup_gensec*() for Kerberos
     omits  70d546d   s3:libsmb: call cli_state_remote_realm() within cli_session_setup_spnego_send()
     omits  c4c3bd6   s3:libsmb: provide generic cli_session_setup_gensec_send/recv() pair
     omits  1498885   s3:libsmb: let cli_session_setup_ntlmssp*() use gensec_update_send/recv()
     omits  e8b6ef4   s3:libsmb: unused ntlmssp.c
     omits  bbc4eb8   s3:libsmb: make use gensec based SPNEGO/NTLMSSP
     omits  59b8032   s3:libads: make use of ads_sasl_spnego_gensec_bind() for GSS-SPNEGO with Kerberos
     omits  d19d039   s3:libads: keep service and hostname separately in ads_service_principal
     omits  e952e63   s3:libads: don't pass given_principal to ads_generate_service_principal() anymore.
     omits  3d3725b   s3:libads: provide a generic ads_sasl_spnego_gensec_bind() function
     omits  4cbf13e   s3:libads: make use of GENSEC_OID_SPNEGO in ads_sasl_spnego_ntlmssp_bind()
     omits  c63d32b   s3:libads: make use of GENSEC_FEATURE_LDAP_STYLE
     omits  383d18d   s3:libads: add missing TALLOC_FREE(frame) in error path
     omits  95461fb   s4:ldap_server: make use of GENSEC_FEATURE_LDAP_STYLE
     omits  e2bea35   s4:selftest: simplify the loops over samba4.ldb.ldap
     omits  ccc1c51   s4:selftest: we don't need to run ldap test with --option=socket:testnonblock=true
     omits  b000387   s4:libcli/ldap: fix retry authentication after a bad password
     omits  58478f4   s4:libcli/ldap: make use of GENSEC_FEATURE_LDAP_STYLE
     omits  debafe8   auth/ntlmssp: remove ntlmssp_unwrap() fallback for LDAP
     omits  1016c9d   auth/ntlmssp: add more compat for GENSEC_FEATURE_LDAP_STYLE
     omits  294ef73   auth/ntlmssp: implement GENSEC_FEATURE_LDAP_STYLE
     omits  6d08a2a   auth/gensec: add GENSEC_FEATURE_LDAP_STYLE define
     omits  192d5be   auth/ntlmssp: use ndr_push_AV_PAIR_LIST in gensec_ntlmssp_server_negotiate().
     omits  3136ede   librpc/ndr: add ndr_ntlmssp_find_av() helper function
     omits  30b4e8f   ntlmssp.idl: make AV_PAIR_LIST public
     omits  983edc9   ntlmssp.idl: MsAvRestrictions is MsvAvSingleHost now
     omits  c3392f3   security.idl: add LSAP_TOKEN_INFO_INTEGRITY
     omits  00fbd5b   auth/ntlmssp: use ntlmssp_version_blob() in the server
     omits  3a52567   auth/ntlmssp: let the client always include NTLMSSP_NEGOTIATE_VERSION
     omits  9419ce6   auth/ntlmssp: add ntlmssp_version_blob()
     omits  a575c5e   auth/ntlmssp: don't send domain and workstation in the NEGOTIATE_MESSAGE
     omits  c8059be   auth/ntlmssp: set NTLMSSP_ANONYMOUS for anonymous authentication
     omits  34ce552   auth/ntlmssp: define all client neg_flags in gensec_ntlmssp_client_start()
     omits  6d18d46   auth/ntlmssp: NTLMSSP_NEGOTIATE_VERSION is not a negotiated option
     omits  3938b90   auth/ntlmssp: split out a debug_ntlmssp_flags_raw() that's more complete
     omits  db7e894   s3:ntlm_auth: also use gensec for "ntlmssp-client-1" and "gss-spnego-client"
     omits  aea667c   winbindd: make use of ntlmssp_resume_ccache backend for WINBINDD_CCACHE_NTLMAUTH
     omits  6ee35d9   s3:auth_generic: add "ntlmssp_resume_ccache" backend in auth_generic_client_prepare()
     omits  81745b6   auth/ntlmssp: implement GENSEC_FEATURE_NTLM_CCACHE
     omits  7303a10   auth/gensec: add GENSEC_FEATURE_NTLM_CCACHE define
     omits  7fcefea   auth/ntlmssp: provide a "ntlmssp_resume_ccache" backend
     omits  3585e41   s3:ntlmssp: remove unused libsmb/ntlmssp_wrap.c
     omits  993420f   s3:auth_generic: make use of the top level NTLMSSP client code
     omits  cb7bf55   winbindd: pass an memory context to do_ntlm_auth_with_stored_pw()
     omits  c9d2b8d   s3:tests/test_ntlm_auth_s3: test ntlmssp-client-1 with cached credentials
     omits  0f54d60   s3:torture/test_ntlm_auth.py: add --client-use-cached-creds option
     omits  2dac558   s3:torture/test_ntlm_auth.py: replace tabs with whitespaces
     omits  8800015   s3:ntlm_auth: fix --use-cached-creds with ntlmssp-client-1
     omits  33f7f44   auth/ntlmssp: add gensec_ntlmssp_server_domain()
     omits  aa0ed80   auth/ntlmssp: keep ntlmssp_state->server.netbios_domain on the correct talloc context
     omits  14b2a51   s3:auth_generic: add auth_generic_client_start_by_sasl()
     omits  a0feacf   s3:auth_generic: add auth_generic_client_start_by_name()
     omits  9e42312   auth/gensec: make gensec_security_by_name() public
     omits  35f80cf   auth/gensec: handle gensec_security_by_sasl_name(NULL, ...)
     omits  2e6af15   auth/gensec: keep a pointer to a possible child/sub gensec_security context
     omits  b474d13   s4:pygensec: make sig_size() and sign/check_packet() available
     omits  f702a9e   s3:librpc/gse: implement gensec_gse_max_{input,wrapped}_size()
     omits  5a046d5   s3:librpc/gse: don't log gss_acquire_creds failed at level 0
     omits  47272c3   s3:librpc/gse: correctly support GENSEC_FEATURE_SESSION_KEY
     omits  2b351b7   s3:librpc/gse: set GSS_KRB5_CRED_NO_CI_FLAGS_X in gse_init_client() if available
     omits  91e2717   s3:librpc/gse: fix debug message in gse_init_client()
     omits  4357b22   s3:librpc/gse: make use of GSS_C_EMPTY_BUFFER in gse_init_client
     omits  88a09dc   wscript_configure_system_mitkrb5: add configure checks for GSS_KRB5_CRED_NO_CI_FLAGS_X
     omits  0555445   s3:libads: remove unused ads_connect_gc()
     omits  49a7697   s4:librpc/rpc: map alter context SEC_PKG_ERROR to NT_STATUS_LOGON_FAILURE
     omits  3121494   librpc/rpc: add error mappings for NO_CALL_ACTIVE, OUT_OF_RESOURCES and BAD_STUB_DATA
     omits  e7595fa   dcerpc.idl: make WERROR RPC faults available in ndr_print output
     omits  0117f64   epmapper.idl: make epm_twr_t available in python bindings
     omits  0d53d8a   s3:selftest: run samba3.blackbox.smbclient_auth.plain also with $SERVER_IPV6
     omits  16e14f9   s3:test_smbclient_auth.sh: test using the ip address in the unc path (incl. ipv6-literal.net)
     omits  7f24c0b   lib/util_net: add support for .ipv6-literal.net
     omits  6b6fbcf   lib/util_net: move ipv6 linklocal handling into interpret_string_addr_internal()
     omits  a70f620   spnego: Correctly check asn1_tag_remaining retval
     omits  5530d91   s4:torture/ntlmssp fix a compiler warning
     omits  7019a9c   s4-torture: flesh out ntlmssp_AUTHENTICATE_MESSAGE_check().
     omits  14f4002   s4-torture: add ndr pullpush validation for NTLMSSP CHALLENGE and AUTHENTICATE messages.
     omits  97ac363   s4-torture: flesh out ntlmssp_CHALLENGE_MESSAGE_check().
     omits  a54b256   s4-torture: activate testing of CHALLENGE and AUTHENTICATE ntlmssp messages.
     omits  109618b   s4-torture: fill in ntlmssp_NEGOTIATE_MESSAGE_check().
     omits  1865f12   ntlmssp: when pulling messages it is important to clear memory first.
     omits  42c2d63   ntlmssp: properly document version defines in IDL (from MS-NLMP).
     omits  1e0e8d6   ntlmssp: fix copy/paste typo in CHALLENGE_MESSAGE in IDL.
     omits  5b4999a   ntlmssp: add some missing defines from MS-NLMP to our IDL.
     omits  e73cfb9   tls: increase Diffie-Hellman group size to 2048 bits
     omits  24c6d42   s3:pam_smbpass: remove unused dependency to LIBNTLMSSP
     omits  62e5169   s3:clispnego: fix confusing warning in spnego_gen_krb5_wrap()
     omits  5bbf46e   s3: smbclient: asn1_extract_blob() stops further asn1 processing by setting has_error.
     omits  83b6653   asn1: Make 'struct asn1_data' private
     omits  66ea451   asn1: Remove a reference to asn1_data internals
     omits  c27fd04   libcli: Remove a reference to asn1->ofs
     omits  9c89afd   lib: Use asn1_current_ofs()
     omits  95fa77f   asn1: Add asn1_current_ofs()
     omits  54aecd7   lib: Use asn1_has_nesting
     omits  9ac8312   asn1: Add asn1_has_nesting
     omits  2b11481   lib: Use asn1_extract_blob()
     omits  a44d9bb   asn1: Add asn1_extract_blob()
     omits  274c9a4   lib: Use asn1_set_error()
     omits  a330540   asn1: Add asn1_set_error()
     omits  89d0afc   lib: Use asn1_has_error()
     omits  4b04663   asn1: Add asn1_has_error()
     omits  d51a607   asn1: Make "struct nesting" private
     omits  6d2f6e1   asn1: Add some early returns
     omits  bb6607a   asn1: Add overflow check to asn1_write
     omits  7ef1333   asn1: Make asn1_peek_full_tag return 0/errno
     omits  980785a   asn1: Remove an unused asn1 function
     omits  b5c5fec   Prevent a crash in Python modules that try to authenticate by ensuring we reject cases where credendials fields are not intialized.
     omits  a06c22f   VERSION: Bump version up to 4.3.7...
     omits  36ec246   CVE-2016-2113: s4:lib/tls: implement infrastructure to do peer verification
     omits  2d2ab58   CVE-2016-2113: s4:lib/tls: create better certificates and sign the host cert with the ca cert
     omits  6db65fb   CVE-2016-2112: docs-xml: change the default of "ldap server require strong auth" to "yes"
     omits  5fbce21   CVE-2016-2112: s4:selftest: run some ldap test against ad_dc_ntvfs, fl2008r2dc and fl2003dc
     omits  39c169b   CVE-2016-2112: selftest: servers with explicit "ldap server require strong auth" options
     omits  d68c225   CVE-2016-2112: s4:selftest: run samba4.ldap.bind against fl2008r2dc
     omits  f44664d   CVE-2016-2112: s4:ldap_server: implement "ldap server require strong auth" option
     omits  8105ff1   CVE-2016-2112: docs-xml: add "ldap server require strong auth" option
     omits  483a926   CVE-2016-2112: s4:ldap_server: reduce scope of old_session_info variable
     omits  52ae0cc   CVE-2016-2112: s4:selftest: use --option=clientldapsaslwrapping=plain for plain connections
     omits  c4f9336   CVE-2016-2112: s4:libcli/ldap: auto upgrade to SIGN after STRONG_AUTH_REQUIRED
     omits  01acb21   CVE-2016-2112: s4:libcli/ldap: make sure we detect downgrade attacks
     omits  76b1826   CVE-2016-2112: s4:libcli/ldap: honour "client ldap sasl wrapping" option
     omits  187e32b   CVE-2016-2112: s3:libads: make sure we detect downgrade attacks
     omits  0d2e185   CVE-2016-2111: docs-xml/smbdotconf: default "raw NTLMv2 auth" to "no"
     omits  be45c4b   CVE-2016-2111: selftest:Samba3: use "raw NTLMv2 auth = yes" for nt4_dc
     omits  ae29971   CVE-2016-2111: s4:smb_server: implement "raw NTLMv2 auth" checks
     omits  560213f   CVE-2016-2111: s3:auth: implement "raw NTLMv2 auth" checks
     omits  5d69272   CVE-2016-2111: docs-xml: add "raw NTLMv2 auth" defaulting to "yes"
     omits  7bad35b   CVE-2016-2111: docs-xml: document the new "client NTLMv2 auth" and "client use spnego" interaction
     omits  f5035af   CVE-2016-2111: s3:libsmb: don't send a raw NTLMv2 response when we want to use spnego
     omits  acd6697   CVE-2016-2111: s4:libcli: don't send a raw NTLMv2 response when we want to use spnego
     omits  7e5966f   CVE-2016-2111: s4:param: use "client use spnego" to initialize options->use_spnego
     omits  dc359da   CVE-2016-2111: s4:libcli: don't allow the LANMAN2 session setup without "client lanman auth = yes"
     omits  379604a   CVE-2016-2111: s4:torture/base: don't use ntlmv2 for dos connection in base.samba3error
     omits  7f303d7   CVE-2016-2111: s4:torture/raw: don't use ntlmv2 for dos connection in raw.samba3badpath
     omits  b38d560   CVE-2016-2111: s3:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
     omits  54fef0f   CVE-2016-2111: s4:rpc_server/netlogon: check NTLMv2_RESPONSE values for SEC_CHAN_WKSTA
     omits  8421d13   CVE-2016-2111: libcli/auth: add NTLMv2_RESPONSE_verify_netlogon_creds() helper function
     omits  80401c9   CVE-2016-2111: s4:torture/rpc: fix rpc.pac ntlmv2 test
     omits  a193154   CVE-2016-2111: s4:torture/rpc: fix rpc.samba3.netlogon ntlmv2 test
     omits  ab0e71b   CVE-2016-2111: s3:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
     omits  aaf3893   CVE-2016-2111: s4:rpc_server/netlogon: require DCERPC_AUTH_LEVEL_PRIVACY for validation level 6
     omits  1d33ade   CVE-2016-2111: s3:rpc_server/netlogon: always go through netr_creds_server_step_check()
     omits  d960002   CVE-2016-2111: s4:rpc_server: implement 'server schannel = yes' restriction
     omits  e1101a6   CVE-2016-2111: auth/gensec: correctly report GENSEC_FEATURE_{SIGN,SEAL} in schannel_have_feature()
     omits  0654735   CVE-2016-2111: auth/gensec: require DCERPC_AUTH_LEVEL_INTEGRITY or higher in schannel_update()
     omits  861b86d   CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC generation (as client)
     omits  4956428   CVE-2016-2110: auth/ntlmssp: implement new_spnego support including MIC checking (as server)
     omits  c5032e9   CVE-2016-2110: ntlmssp.idl: add NTLMSSP_MIC_{OFFSET,SIZE}
     omits  d35bc35   CVE-2016-2110: libcli/auth: pass server_timestamp to SMBNTLMv2encrypt_hash()
     omits  f77cf81   CVE-2016-2110: auth/credentials: pass server_timestamp to cli_credentials_get_ntlm_response()
     omits  95af5d9   CVE-2016-2110: auth/credentials: clear the LMv2 key for NTLMv2 in cli_credentials_get_ntlm_response()
     omits  769eec8   CVE-2016-2110: auth/ntlmssp: implement gensec_ntlmssp_may_reset_crypto()
     omits  6b0ee68   CVE-2016-2110: auth/ntlmssp: call ntlmssp_sign_init if we provide GENSEC_FEATURE_SIGN
     omits  6675796   CVE-2016-2110: auth/gensec: add gensec_may_reset_crypto() infrastructure
     omits  ce87fef   CVE-2016-2110: auth/gensec: require spnego mechListMIC exchange for new_spnego backends
     omits  6a56dd2   CVE-2016-2110: auth/gensec: fix the client side of a spnego downgrade
     omits  77d59f1   CVE-2016-2110: auth/gensec: fix the client side of a new_spnego exchange
     omits  beb1f96   CVE-2016-2110: libcli/auth: add SPNEGO_REQUEST_MIC to enum spnego_negResult
     omits  3a934e1   CVE-2016-2110: libcli/auth: use enum spnego_negResult instead of uint8_t
     omits  fc3582b   CVE-2016-2110: winbindd: add new_spnego to the WINBINDD_CCACHE_NTLMAUTH response
     omits  03ccba7   CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require NTLM2 (EXTENDED_SESSIONSECURITY) when using ntlmv2
     omits  45a1008   CVE-2016-2110: auth/ntlmssp: let gensec_ntlmssp_client_start require flags depending on the requested features
     omits  67787ff   CVE-2016-2110: auth/ntlmssp: don't let ntlmssp_handle_neg_flags() change ntlmssp_state->use_ntlmv2
     omits  5b86a85   CVE-2016-2110: auth/ntlmssp: don't allow a downgrade from NTLMv2 to LM_AUTH
     omits  e6e8da9   CVE-2016-2110: auth/ntlmssp: split allow_lm_response from allow_lm_key
     omits  00d1eaa9  CVE-2016-2110: auth/ntlmssp: maintain conf_flags and required_flags variables
     omits  ebd79e5   CVE-2016-2110: auth/ntlmssp: let ntlmssp_handle_neg_flags() return NTSTATUS
     omits  1437724   s3:ntlm_auth: pass manage_squid_request() needs a valid struct ntlm_auth_state from within get_password()
     omits  b4125aa   s3:rpc_server/samr: correctly handle session_extract_session_key() failures
     omits  54cd107   s4:selftest: run rpc.netlogon.admin also over ncalrpc and ncacn_ip_tcp
     omits  40b3284   libads: Fix CID 1356316 Uninitialized pointer read
     omits  9af768f   libsmb: Fix CID 1356312 Explicit null dereferenced
     omits  9f3ae00   s3-auth: check for return code of cli_credentials_set_machine_account().
     omits  1b646bb   s4-smb_server: check for return code of cli_credentials_set_machine_account().
     omits  168b015   s4:rpc_server: require access to the machine account credentials
     omits  cbeff28   auth/gensec: split out a gensec_verify_dcerpc_auth_level() function
     omits  2779ec8   auth/gensec: make sure gensec_security_by_auth_type() returns NULL for AUTH_TYPE_NONE
     omits  2c1fa78   s4:torture/rpc/schannel: don't use validation level 6 without privacy
     omits  eef3a10   s4:torture/rpc: correctly use torture_skip() for test_ManyGetDCName() without NCACN_NP
     omits  dba5783   s4:torture/rpc/samlogon: use DCERPC_SEAL for netr_LogonSamLogonEx and validation level 6
     omits  8dea510   s4:torture/rpc/samr: use DCERPC_SEAL in setup_schannel_netlogon_pipe()
     omits  10eda28   s4:torture/netlogon: add/use test_SetupCredentialsPipe() helper function
     omits  402d4ac   s3:test_rpcclient_samlogon.sh: test samlogon with schannel
     omits  ff65d5b   s3:selftest: rpc.samr.passwords.validate should run with [seal] in order to be realistic
     omits  8b90698   selftest: setup information of new samba.example.com CA in the client environment
     omits  46fa417   selftest: set tls crlfile if it exist
     omits  5e62983   selftest: use Samba::prepare_keyblobs() and use the certs from the new CA
     omits  0e5d2dd   selftest: add Samba::prepare_keyblobs() helper function
     omits  91d2c97   selftest: mark commands in manage-CA-samba.example.com.sh as DONE
     omits  bbb66a9   selftest: add CA-samba.example.com (non-binary) files
     omits  6a09084   selftest: add config and script to create a samba.example.com CA
     omits  03479af   selftest: add some helper scripts to mange a CA
     omits  da66e65   selftest: s!addc.samba.example.com!addom.samba.example.com!
     omits  df14c6a   s4:rpc_server: dcesrv_generic_session_key should only work on local transports
     omits  bb63122   s4:rpc_server/samr: hide a possible NO_USER_SESSION_KEY error
     omits  511dfb4   s4:librpc/rpc: dcerpc_generic_session_key() should only be available on local transports
     omits  934f731   s4:torture:samba3rpc: use an authenticated SMB connection and an anonymous DCERPC connection on top
     omits  fe4cdee   s4:selftest: run rpc.samr over ncacn_np instead of ncacn_ip_tcp
     omits  528db7f   s4:torture: the backupkey tests need to use ncacn_np: for LSA calls
     omits  b282ac7   s4:torture/rpc: do testjoin only via ncalrpc or ncacn_np
     omits  5a8126d   s3:libsmb: remove unused functions in clispnego.c
     omits  506ac99   s3:libsmb: remove unused cli_session_setup_kerberos*() functions
     omits  d1921c6   s3:libsmb: make use of cli_session_setup_gensec*() for Kerberos
     omits  a167728   s3:libsmb: call cli_state_remote_realm() within cli_session_setup_spnego_send()
     omits  a7f8e94   s3:libsmb: provide generic cli_session_setup_gensec_send/recv() pair
     omits  4b55e96   s3:libsmb: let cli_session_setup_ntlmssp*() use gensec_update_send/recv()
     omits  20c847f   s3:libsmb: unused ntlmssp.c
     omits  7767d82   s3:libsmb: make use gensec based SPNEGO/NTLMSSP
     omits  a16bbec   s3:libads: make use of ads_sasl_spnego_gensec_bind() for GSS-SPNEGO with Kerberos
     omits  6507d6f   s3:libads: keep service and hostname separately in ads_service_principal
     omits  1571a9f   s3:libads: don't pass given_principal to ads_generate_service_principal() anymore.
     omits  8e7229d   s3:libads: provide a generic ads_sasl_spnego_gensec_bind() function
     omits  468c68c   s3:libads: make use of GENSEC_OID_SPNEGO in ads_sasl_spnego_ntlmssp_bind()
     omits  ea56849   s3:libads: make use of GENSEC_FEATURE_LDAP_STYLE
     omits  52629ac   s3:libads: add missing TALLOC_FREE(frame) in error path
     omits  c5da725   s4:ldap_server: make use of GENSEC_FEATURE_LDAP_STYLE
     omits  0577097   s4:selftest: simplify the loops over samba4.ldb.ldap
     omits  ff77277   s4:selftest: we don't need to run ldap test with --option=socket:testnonblock=true
     omits  f74c031   s4:libcli/ldap: fix retry authentication after a bad password
     omits  2ace844   s4:libcli/ldap: make use of GENSEC_FEATURE_LDAP_STYLE
     omits  482555b   auth/ntlmssp: remove ntlmssp_unwrap() fallback for LDAP
     omits  8f747f6   auth/ntlmssp: add more compat for GENSEC_FEATURE_LDAP_STYLE
     omits  2a496ba   auth/ntlmssp: implement GENSEC_FEATURE_LDAP_STYLE
     omits  eafd97e   auth/gensec: add GENSEC_FEATURE_LDAP_STYLE define
     omits  c9edc04   auth/ntlmssp: use ndr_push_AV_PAIR_LIST in gensec_ntlmssp_server_negotiate().
     omits  5c61712   librpc/ndr: add ndr_ntlmssp_find_av() helper function
     omits  92d7499   ntlmssp.idl: make AV_PAIR_LIST public
     omits  e2e7ffe   ntlmssp.idl: MsAvRestrictions is MsvAvSingleHost now
     omits  159be66   security.idl: add LSAP_TOKEN_INFO_INTEGRITY
     omits  62d31f6   auth/ntlmssp: use ntlmssp_version_blob() in the server
     omits  47cebc5   auth/ntlmssp: let the client always include NTLMSSP_NEGOTIATE_VERSION
     omits  423f193   auth/ntlmssp: add ntlmssp_version_blob()
     omits  28725ef   auth/ntlmssp: don't send domain and workstation in the NEGOTIATE_MESSAGE
     omits  7494612   auth/ntlmssp: set NTLMSSP_ANONYMOUS for anonymous authentication
     omits  3adc8f5   auth/ntlmssp: define all client neg_flags in gensec_ntlmssp_client_start()
     omits  2e40c60   auth/ntlmssp: NTLMSSP_NEGOTIATE_VERSION is not a negotiated option
     omits  2663f44   auth/ntlmssp: split out a debug_ntlmssp_flags_raw() that's more complete
     omits  75bdf52   s3:ntlm_auth: also use gensec for "ntlmssp-client-1" and "gss-spnego-client"
     omits  b57c0e7   winbindd: make use of ntlmssp_resume_ccache backend for WINBINDD_CCACHE_NTLMAUTH
     omits  8f69094   s3:auth_generic: add "ntlmssp_resume_ccache" backend in auth_generic_client_prepare()
     omits  cb0719d   auth/ntlmssp: implement GENSEC_FEATURE_NTLM_CCACHE
     omits  333e02b   auth/gensec: add GENSEC_FEATURE_NTLM_CCACHE define
     omits  4e2e1f6   auth/ntlmssp: provide a "ntlmssp_resume_ccache" backend
     omits  4f94262   s3:ntlmssp: remove unused libsmb/ntlmssp_wrap.c
     omits  17d6b17   s3:auth_generic: make use of the top level NTLMSSP client code
     omits  6ed7942   winbindd: pass an memory context to do_ntlm_auth_with_stored_pw()
     omits  eab2039   s3:tests/test_ntlm_auth_s3: test ntlmssp-client-1 with cached credentials
     omits  06e6d37   s3:torture/test_ntlm_auth.py: add --client-use-cached-creds option
     omits  b8eabce   s3:torture/test_ntlm_auth.py: replace tabs with whitespaces
     omits  6b766dc   s3:ntlm_auth: fix --use-cached-creds with ntlmssp-client-1
     omits  c6aef8c   auth/ntlmssp: add gensec_ntlmssp_server_domain()
     omits  3d0fc91   auth/ntlmssp: keep ntlmssp_state->server.netbios_domain on the correct talloc context
     omits  76e22d9   s3:auth_generic: add auth_generic_client_start_by_sasl()
     omits  4f97bcb   s3:auth_generic: add auth_generic_client_start_by_name()
     omits  1317625   auth/gensec: make gensec_security_by_name() public
     omits  967282e   auth/gensec: handle gensec_security_by_sasl_name(NULL, ...)
     omits  7cad825   auth/gensec: keep a pointer to a possible child/sub gensec_security context
     omits  9e8749a   s4:pygensec: make sig_size() and sign/check_packet() available
     omits  028c609   s3:librpc/gse: implement gensec_gse_max_{input,wrapped}_size()
     omits  8614c6c   s3:librpc/gse: don't log gss_acquire_creds failed at level 0
     omits  1448dba   s3:librpc/gse: correctly support GENSEC_FEATURE_SESSION_KEY
     omits  55b0f3c   s3:librpc/gse: set GSS_KRB5_CRED_NO_CI_FLAGS_X in gse_init_client() if available
     omits  b10c1db   s3:librpc/gse: fix debug message in gse_init_client()
     omits  73f2fa6   s3:librpc/gse: make use of GSS_C_EMPTY_BUFFER in gse_init_client
     omits  26d4f25   wscript_configure_system_mitkrb5: add configure checks for GSS_KRB5_CRED_NO_CI_FLAGS_X
     omits  1a5f082   s3:libads: remove unused ads_connect_gc()
     omits  93332f4   s4:librpc/rpc: map alter context SEC_PKG_ERROR to NT_STATUS_LOGON_FAILURE
     omits  d356450   librpc/rpc: add error mappings for NO_CALL_ACTIVE, OUT_OF_RESOURCES and BAD_STUB_DATA
     omits  6ea3642   dcerpc.idl: make WERROR RPC faults available in ndr_print output
     omits  b6a1b04   epmapper.idl: make epm_twr_t available in python bindings
     omits  557fc14   s3:selftest: run samba3.blackbox.smbclient_auth.plain also with $SERVER_IPV6
     omits  338e1a9   s3:test_smbclient_auth.sh: test using the ip address in the unc path (incl. ipv6-literal.net)
     omits  c51b125   lib/util_net: add support for .ipv6-literal.net
     omits  b0c603c   lib/util_net: move ipv6 linklocal handling into interpret_string_addr_internal()
     omits  84f8c9a   spnego: Correctly check asn1_tag_remaining retval
     omits  4d73b84   s4:torture/ntlmssp fix a compiler warning
     omits  2e8f4c8   s4-torture: flesh out ntlmssp_AUTHENTICATE_MESSAGE_check().
     omits  baa0a10   s4-torture: add ndr pullpush validation for NTLMSSP CHALLENGE and AUTHENTICATE messages.
     omits  f39d6d4   s4-torture: flesh out ntlmssp_CHALLENGE_MESSAGE_check().
     omits  dd6b293   s4-torture: activate testing of CHALLENGE and AUTHENTICATE ntlmssp messages.
     omits  98466ff   s4-torture: fill in ntlmssp_NEGOTIATE_MESSAGE_check().
     omits  b1f72ca   ntlmssp: when pulling messages it is important to clear memory first.
     omits  3b93cf0   ntlmssp: properly document version defines in IDL (from MS-NLMP).
     omits  9ed62a3   ntlmssp: fix copy/paste typo in CHALLENGE_MESSAGE in IDL.
     omits  0c1671a   ntlmssp: add some missing defines from MS-NLMP to our IDL.
     omits  30812c4   VERSION: Set version to 4.4.0...
     omits  2a33a44   VERSION: Bump version up to 4.0.1...
     omits  5a1b236   WHATSNEW: Add release notes for Samba 4.4.0.
     omits  d864232   lib/socket/interfaces: Fix some uninitialied bytes.
     omits  5d8c95f   build: fix build when --without-quota specified
     omits  8ed6376   WHATSNEW: document the experimental smb3-multi-channel feature
     omits  356cff2   VERSION: Bump version up to 4.4.0rc6...
     omits  3026d93   VERSION: Disable git snapshots for the Samba 4.4.0rc5 release.
     omits  b65c5f1   WHATSNEW: Add release notes for Samba 4.4.0rc5.
     omits  8984b15   smbd: enable multi-channel if 'server multi channel support = yes' in the config
     omits  4895c3f   param: add parameter "server multi channel support", defaults to off.
     omits  40fb6fd   selftest: Avoid sorting issues on Ubuntu 10.04 vs 14.04
     omits  5184015   pytalloc: Correct description of pytalloc_Get{Base,}ObjectType behaviour
     omits  caab62a   dbcheck: Check for and remove duplicate values in attributes
     omits  017f1db   selftest: Allow 4 hours for the test to run (ouch!)
     omits  4b29e7b   pysmb: Use pytalloc_BaseObject_PyType_Ready()
     omits  f7c7cbd   pysmb: Do not use pytalloc_Object directly
     omits  b784432   pysmb: Rework py_smb_new() to use pytalloc_steal()
     omits  2b1ff18   pysmb: Use pytalloc_get_mem_ctx()
     omits  7ea3e7f   pysmb: Use pytalloc_get_ptr()
     omits  5d9eeb5   pyregistry: Use pytalloc_BaseObject_PyType_Ready()
     omits  a40c6f9   pyauth: Use pytalloc_BaseObject_PyType_Ready()
     omits  914347f   pygensec: Use pytalloc_BaseObject_PyType_Ready()
     omits  39b05c2   pygensec: Use pytalloc_steal() in gensec_start_{client,server}()
     omits  4cc1351   pyparam: Use pytalloc_BaseObject_PyType_Ready()
     omits  83aef0a   py_passdb: Use pytalloc_BaseObject_PyType_Ready()
     omits  d837f8d   pycredentials: Use pytalloc_BaseObject_PyType_Ready()
     omits  ac3265b   pytalloc: Add pytalloc_BaseObject_PyType_Ready() wrapper
     omits  819a07a   pyparam: Do not use pytalloc_Object directly
     omits  1e839dc   pypassdb: Do not use pytalloc_Object directly
     omits  42dfaa1   pycredentials: Remove PyCredentialCacheContainerObject
     omits  ec66fe1   pycredentials: Do not use pytalloc_Object directly
     omits  7bb3111   dbcheck: Avoid spurious warnings in dbcheck due to objectclass sorting
     omits  d9b2796   dbcheck: Fix incorrect/duplicate attrid in replPropertMetaData
     omits  6a89304   selftest: Update release-4-1-0rc3 with more test records
     omits  934623f   rpc_server/drsuapi: Block replication of incorrect/duplicate attrid in replPropertMetaData
     omits  21bf6af   repl_meta_data: Correctly use msDS-IntId for custom schema, not the prefixMap value
     omits  d3bffda   pidl: Use a tmp_ctx helper variable
     omits  7391fc8   pidl: Use the $mem_ctx helper variable
     omits  22905ce   pidl: Fix our python reference handling
     omits  1e035b5   pyrpc: Clarify failure mode after pytalloc_reference_ex() improvements
     omits  4398286   talloc: Bump version number
     omits  ab1bcc3   pytalloc: Add new BaseObject
     omits  61ba9bc   pytalloc: add a _pytalloc_get_type() helper function and generate PyExc_TypeError on mismatch
     omits  e2cd642   talloc: add _pytalloc_get_ptr/_pytalloc_get_mem_ctx helper functions
     omits  5a22910   talloc: Improve testsuite by avoiding path issues
     omits  058b78c   pyrpc: Add warning about abuse of py_return_ndr_struct()
     omits  aac2ecc   pydsdb: Fix returning of ldb.MessageElement.
     omits  6e83a84   pyldb: Add warning about pyldb_MessageElement_AsMessageElement()
     omits  b9d924a   selftest: specify a maximum runtime for 'make testenv' of 1 year
     omits  fbb57a5   s3/passdb/py_passdb.c: free frame before returning
     omits  a411046   build: mark explicit dependencies on pytalloc-util
     omits  1b08ea3   libsmb/pysmb: add pytalloc-util dependency to fix the build.
     omits  9ab767f   selftest: mark samba4.winbind.struct.domain_info.ad_member as flapping
     omits  36b0b0e   build: fix disk-free quota support on Solaris 10
     omits  29b44e5   smbd: Only check dev/inode in open_directory, not the full stat()
     omits  a44025b   s3:winbindd: don't unclude two '\0' at the end of the domain list
     omits  a83a26f   s3:libnet:libnet_join: update msDS-SupportedEncryptionTypes (if required) with machine creds.
     omits  a35ce5d   s3:libnet:libnet_join: fill in output enctypes and only modify when necessary.
     omits  60c5909   s3:libnet:libnet_join: define list of desired encryption types only once.
     omits  acc8dd2   s3:librpc:idl:libnet_join: add encryption types to libnet_JoinCtx.
     omits  e2b8b2c   s3:libnet:libnet_join: always try to create machineaccount via LDAP first.
     omits  35ecc4d   s3:libads:ldap: fix ads_check_ou_dn to deal with account_ou not being initialized
     omits  c6f7bbd   s3:libads:ndr: add ADS_AUTH_USER_CREDS to ndr_print_ads_auth_flags()
     omits  0dc8e31   s3:libads:ldap: print LDAP error message with log level 10.
     omits  f74d7f5   s3:libnet:libnet_join: prepare to allow connecting with machine creds.
     omits  35ec8ac   Partly revert "s3:libads: setup the msDS-SupportedEncryptionTypes attribute on ldap_add"
     omits  0268dc2   vfs_glusterfs: Fix use after free in AIO callback.
     omits  4e48421   s3:smbd: add negprot remote arch detection for OSX
     omits  9d588a9   s3:smbd: rework negprot remote arch detection
     omits  28e5e95   ctdb-common: For AF_PACKET socket types, protocol is in network order
     omits  5b42463   libnet: make Kerberos domain join site-aware
     omits  16e970f   dsgetdcname: fix flag check
     omits  da0f03b   dsgetdcname: return an IP address on rediscovery
     omits  38091dd   dsdb/repl: Ensure we use the LOCAL attid value, not the remote one
     omits  2a80859   smbd:smb2: move op variable into scope of use in smb2_create_send
     omits  8743f5b   smbd:smb2: implement create replay
     omits  a894f15   smbXsrv.idl: add create_action to smbXsrv_open
     omits  9bce93b   smbXsrv:open: add smb2srv_open_lookup_replay_cache()
     omits  609faee   smb2:create: create replay cache when request has a create_guid
     omits  579fb66   smbXsrv:open: maintain a replay cache
     omits  42a81bf   librpc:smbXsrv.idl: add flags to smbXsrv_open
     omits  19d66b4   smbd:smb2: allow the REPLAY_OPERATION flag for SMB3+ requests
     omits  1938d56   torture:smb2: add smb2.replay.replay-dhv2-lease3
     omits  fc3c842   torture:smb2: add smb2.replay.replay-oplock-lease
     omits  9323ec5   torture:smb2: add smb2.replay.replay-dhv2-lease-oplock
     omits  ef65682   torture:smb2: add smb2.replay.replay-dhv2-lease2
     omits  e2e2546   torture:smb2: add smb2.replay.replay-dhv2-lease1
     omits  b59ff11   torture:smb2:replay: extend CHECK_CREATE_OUT() to know leases
     omits  1efc89d   torture:smb2: split rename2 into multiple tests and extend these
     omits  d601af8   torture:smb2: rename replay1 -> replay-commands
     omits  26577db   torture:smb2: skip replay4 if server does not support multi-channel
     omits  2d82282   smbd: fix crash in smbXsrv_client_global_remove()
     omits  5782344   netlogon_creds_cli: use dbwrap_purge instead of dbwrap_delete where appropriate
     omits  5b439f5   s3:registry: use dbwrap_purge_bystring instead of dbwrap_delete_bystring
     omits  c0fc2c3   dbwrap: add dbwrap_purge[_bystring]
     omits  a5a7947   dbwrap_util: improve a debug message in dbwrap_delete_action()
     omits  b882ed1   torture:smb2: fix skip message if share is not CA
     omits  d019891   torture:smb2: skip replay5 test if server does not support persistent handles
     omits  d3a024a   torture:smb2: skip replay3 if server does not support Multi-Channel
     omits  d3206e9   smbd:smb2_creat: remove outdated TODO comments
     omits  d0db200   smbXsrv_client: factor fetch-locking of global record into function
     omits  8d8e111   smbXsrv_session: factor fetch-locking of local record into function
     omits  7bbdd9a   smbXsrv_session: factor fetch-locking of global record into function
     omits  3eec659   smbXsrv_tcon: factor fetch-locking of local record into function
     omits  d5d58b9   smbXsrv_tcon: factor fetch-locking of global record into function
     omits  6c78c8d   smbXsrv_open: factor fetch-locking of local record into function
     omits  c3fcfad   smbXsrv_open: factor fetch-locking of global record into function
     omits  0b6c3b5   torture:smb2: improve torture_comments in connect test
     omits  141605e   torture:smb2: fix memory leak in connect test.
     omits  cf7a4e1   torture:smb2: rewrite connect test to use torture_asserts for create errors
     omits  2dd63e5   torture:smb2: rewrite connect test to use torture_asserts
     omits  95c7f0f   s4-torture: let smb2.replay.replay4 test deal with scale out shares.
     omits  d20a4c2   s4-torture: let smb2.replay.replay3 test deal with scale out shares.
     omits  d194ce0   s4-torture: let smb2.replay.replay2 test deal with scale out shares.
     omits  19c381c   s4:libcli/ldap: add support for LDB_CONTROL_DIRSYNC_EX_OID
     omits  2a1ceb8   ldb: version 1.1.26
     omits  02e325f   ldb: add support for LDB_CONTROL_DIRSYNC_EX
     omits  530693d   ldb: add LDB_ATTR_FLAG_FORCE_BASE64_LDIF support
     omits  33f4491   pyldb: eliminate warnings from python api test
     omits  f12c897   pyldb: add api tests for search_iterator()
     omits  e5c7304   pyldb: add ldb.search_iterator()
     omits  66112f6   pyldb: fix help message for ldb.search()
     omits  11c06aa   pyldb: fix memory leak in py_ldb_search()
     omits  f305aae   pyldb: Free correct context when pyldb_Object_AsDn() fails
     omits  68b76db   ldb: allow a timeout of -1 result in no timeout timer at all.
     omits  7a6c31d   ldb-samba: fix the timeout setup in ildb_request_send()
     omits  f511bb3   s4:libcli/ldap: send AbandonRequests for cancelled requests
     omits  68dc117   ldb:ABI: add missing pyldb-util.py3-1.1.25.sigs
     omits  2a420aa   ldb: Avoid a "talloc_steal"
     omits  d2e0047   ldb: Fix some whitespace
     omits  e371bd8   Merge branch 'unstable' of https://jelmer.uk/code/samba into unstable
     omits  6296c2c   releasing package samba version 2:4.3.6+dfsg-1
     omits  a5239be   VERSION: Bump version up to 4.4.0rc5...
     omits  331c2a3   VERSION: Disable git snapshots for the Samba 4.4.0rc4 release.
     omits  54f95be   WHATSNEW: Add release notes for Samba 4.4.0rc4.
     omits  38eeb06   CVE-2016-0771: tests/dns: Remove dependencies on env variables
     omits  f193cd9   CVE-2016-0771: tests/dns: change samba.tests.dns from being a unittest
     omits  ee2bdcc   CVE-2016-0771: tests: rename test getopt to get_opt
     omits  4402337   CVE-2016-0771: tests/dns: RPC => DNS roundtrip test
     omits  08e558c   CVE-2016-0771: dnsserver: don't force UTF-8 for TXT
     omits  111d035   CVE-2016-0771: tests/dns: modify tests to check via RPC
     omits  c4e9392   CVE-2016-0771: tests/dns: Add some more test cases for TXT records
     omits  c6dd132   CVE-2016-0771: tests/dns: Correct error code for formerly unrun test
     omits  5b19529   CVE-2016-0771: tests/dns: restore formerly segfaulting test
     omits  14de523   CVE-2016-0771: tests/dns: Add a comment regarding odd Windows behaviour
     omits  3115b40   CVE-2016-0771: tests/dns: FORMERR can simply timeout against Windows
     omits  48c3137   CVE-2016-0771: tests/dns: prepare script for further testing
     omits  01faa56   CVE-2016-0771: tests/dns: Modify dns tests to match new IDL
     omits  3fe2141   CVE-2016-0771: dns.idl: make use of dnsp_hinfo
     omits  d3ac9c3   CVE-2016-0771: s4:dns_server: fix idl for dns_txt_record
     omits  8e5a639   CVE-2016-0771: librpc: add ndr_dnsp_string_list_copy() helper function
     omits  c504551   CVE-2016-0771: librpc: add RPC_NDR_DNSSERVER to dcerpc-samba library
     omits  71c64e7   CVE-2016-0771: s4:librpc: python_dns and python_dcerpc_dnsp doesn't require client bindings
     omits  1c7096a   CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-EA test.
     omits  ee4d435   CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-ACL test.
     omits  b13711e   CVE-2015-7560: s3: libsmb: Add SMB1-only POSIX cli_posix_setacl() functions. Needed for tests.
     omits  3d09f82   CVE-2015-7560: s3: libsmb: Rename cli_posix_getfaclXX() functions to cli_posix_getacl() as they operate on pathnames.
     omits  863c44a   CVE-2015-7560: s3: smbd: Refuse to set EA's on a symlink.
     omits  f803247   CVE-2015-7560: s3: smbd: Silently return no EA's available on a symlink.
     omits  c1fe124   CVE-2015-7560: s3: smbd: Set return values early, allows removal of code duplication.
     omits  3f59769   CVE-2015-7560: s3: smbd: Refuse to get a POSIX ACL on a symlink.
     omits  af2e476   CVE-2015-7560: s3: smbd: Refuse to set a POSIX ACL on a symlink.
     omits  4be4e40   CVE-2015-7560: s3: smbd: Refuse to set an ACL from a POSIX file handle on a symlink.
     omits  e90c33e   CVE-2015-7560: s3: smbd: Refuse to get an ACL from a POSIX file handle on a symlink.
     omits  468f67b   CVE-2015-7560: s3: smbd: Add refuse_symlink() function that can be used to prevent operations on a symlink.
     omits  ecb3f91   releasing package samba version 2:4.3.5+dfsg-3
     omits  02256f1   Ignore debhelper build stamp.
     omits  e288505   Rebuild against current version of ldb in the archive. Closes: #817036
     omits  e2fdbec   Fix dhclient hook if samba is not installed. Thanks, Jan Braun. Closes: #801976
     omits  357e4a4   releasing package samba version 2:4.3.5+dfsg-2
     omits  098d9d3   Move strict ldb dependency to samba-dsdb-modules package, which actually contains the modules. Closes: #816210
     omits  2bce9c7   New upstream release.
     omits  2103dfd   Merge tag 'upstream/4.3.6+orig' into unstable
     omits  7877404   Imported Upstream version 4.3.6+orig
     omits  5a10cf1   Ignore debhelper-build-stamp.
     omits  891b6e9   releasing package samba version 2:4.3.5+dfsg-1
     omits  72ce8f6   Bump standards version to 3.9.7 (no changes).
     omits  b8e4656   Add smbclient_krb5_wrapper.
     omits  fb01148   Ignore debian build stamp files.
     omits  9ad8dd1   Ignore backup files.
     omits  6e731c6   Drop patch sockets-with-htons.patch: applied upstream.
     omits  43a7524   Update usershare patch after upstream changes.
     omits  6a5dc70   Loosen dependencies on ldb to ldb >= 1.1.21, per upstream.
     omits  722000a   Wrap and sort.
     omits  b8f4a96   New upstream release.
     omits  4203084   Merge tag 'upstream/4.3.5+dfsg' into unstable
     omits  67382a6   Imported Upstream version 4.3.5+dfsg
     omits  2212643   selftest: Add a blackbox test for smbget
     omits  eb40cac   selftest: add a helper for the smbget binary
     omits  83b29fb   selftest: Reduce code duplication
     omits  7ebf660   s3:utils/smbget fix option parsing
     omits  789c77e   WHATSNEW: document removal of -P in smbget
     omits  a51b9a4   s3:utils/smbget update manpage with -P option removal
     omits  7ea0312   s3:utils/smbget remove -P option
     omits  5298c36   s3:utils/smbget improve check of write() result
     omits  b24f898   s3:utils/smbget abort recursive download on error
     omits  ac81bbc   s3:utils/smbget another int -> bool conversion
     omits  52033ae   samba3.blackbox.smbclient.forceuser_validusers: Add new test for force user option.
     omits  e787720   passdb: add linefeed to debug message
     omits  1372a32   smbd: ignore SVHDX create context
     omits  2335e6f   winbindd: return trust parameters when listing trusts
     omits  46c1289   winbindd: initialize foreign domain as AD based on trust
     omits  f9aef97   winbindd: introduce add_trusted_domain_from_tdc()
     omits  9004fa4   access based share enum: handle permission set in configuration files
     omits  bf4b42c   tevent: version 0.9.28
     omits  c5b55c8   lib: tevent: Fix memory leak reported by Pavel Březina <pbrezina at redhat.com> when old signal action restored.
     omits  77c1e14   tevent: version 0.9.27
     omits  30d815a   Fix ETIME handling for Solaris event ports.
     omits  30e85f4   ldb: remove outdated comment about type argument in dlist
     omits  96e0a11   tevent: remove outdated comment about type argument in dlist
     omits  745e81e   dlist: remove outdated comment about type argument
     omits  f20e5b3   dlist: remove unneeded type argument from DLIST_CONCATENATE()
     omits  ac36022   tevent: remove unneeded type argument from DLIST_CONCATENATE()
     omits  95d89dd   ldb: remove unneeded argument type from DLIST_CONCATENATE()
     omits  9d32594   tevent: remove uneeded type argument from DLIST_DEMOTE()
     omits  1a7ceca   ldb: remove uneeded type argument from DLIST_DEMOTE()
     omits  c373524   dlist: remove unneeded argument from DLIST_DEMOTE()
     omits  9e06f33   ldb: remove unneeded type arg from DLIST_ADD_END
     omits  2081969   tevent: remove unneeded type argument from DLIST_ADD_END
     omits  c4536f8   dlist: remove unneeded type argument from DLIST_ADD_END()
     omits  c17b1f6   s3:clispnego: fix confusing warning in spnego_gen_krb5_wrap()
     omits  6342580   s3:libads: setup the msDS-SupportedEncryptionTypes attribute on ldap_add
     omits  c7a93d7   VERSION: Disable git snapshots for the 4.3.6 release.
     omits  d6bd81e   WHATSNEW: Add release notes for Samba 4.3.6.
     omits  b428ecb   CVE-2016-0771: tests/dns: Remove dependencies on env variables
     omits  7a11d99   CVE-2016-0771: tests/dns: change samba.tests.dns from being a unittest
     omits  0dea999   CVE-2016-0771: tests: rename test getopt to get_opt
     omits  ad5e885   CVE-2016-0771: tests/dns: RPC => DNS roundtrip test
     omits  2b4c7db   CVE-2016-0771: dnsserver: don't force UTF-8 for TXT
     omits  eb46848   CVE-2016-0771: tests/dns: modify tests to check via RPC
     omits  63103d1   CVE-2016-0771: tests/dns: Add some more test cases for TXT records
     omits  3bca5fc   CVE-2016-0771: tests/dns: Correct error code for formerly unrun test
     omits  4011a52   CVE-2016-0771: tests/dns: restore formerly segfaulting test
     omits  9f7a2a1   CVE-2016-0771: tests/dns: Add a comment regarding odd Windows behaviour
     omits  51ac36e   CVE-2016-0771: tests/dns: FORMERR can simply timeout against Windows
     omits  18faca0   CVE-2016-0771: tests/dns: prepare script for further testing
     omits  3196b9e   CVE-2016-0771: tests/dns: Modify dns tests to match new IDL
     omits  1c69840   CVE-2016-0771: dns.idl: make use of dnsp_hinfo
     omits  df431a3   CVE-2016-0771: s4:dns_server: fix idl for dns_txt_record
     omits  7693d68   CVE-2016-0771: librpc: add ndr_dnsp_string_list_copy() helper function
     omits  efaf509   CVE-2016-0771: librpc: add RPC_NDR_DNSSERVER to dcerpc-samba library
     omits  7ee8a4c   CVE-2016-0771: s4:librpc: python_dns and python_dcerpc_dnsp doesn't require client bindings
     omits  c68280d   CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-EA test.
     omits  ceb6dcc   CVE-2015-7560: s3: torture3: Add new POSIX-SYMLINK-ACL test.
     omits  444ba8f   CVE-2015-7560: s3: libsmb: Add SMB1-only POSIX cli_posix_setacl() functions. Needed for tests.
     omits  25963b1   CVE-2015-7560: s3: libsmb: Rename cli_posix_getfaclXX() functions to cli_posix_getacl() as they operate on pathnames.
     omits  63ae57f   CVE-2015-7560: s3: smbd: Refuse to set EA's on a symlink.
     omits  062876f   CVE-2015-7560: s3: smbd: Silently return no EA's available on a symlink.
     omits  e27f9a4   CVE-2015-7560: s3: smbd: Set return values early, allows removal of code duplication.
     omits  2907193   CVE-2015-7560: s3: smbd: Refuse to get a POSIX ACL on a symlink.
     omits  0be03f1   CVE-2015-7560: s3: smbd: Refuse to set a POSIX ACL on a symlink.
     omits  774e210   CVE-2015-7560: s3: smbd: Refuse to set an ACL from a POSIX file handle on a symlink.
     omits  fa1c482   CVE-2015-7560: s3: smbd: Refuse to get an ACL from a POSIX file handle on a symlink.
     omits  76f6cf5   CVE-2015-7560: s3: smbd: Add refuse_symlink() function that can be used to prevent operations on a symlink.
     omits  c23f677   VERSION: Bump version up to 4.3.6...
     omits  57bc152   VERSION: Bump version up to 4.4.0rc4...
     omits  ff77a11   VERSION: Disable git snapshots for the Samba 4.4.0rc3 release.
     omits  84348b2   WHATSNEW: Add release notes for Samba 4.4.0rc3.
     omits  a2aea37   Real memeory leak(buildup) issue in loadparm.
     omits  956289e   libcli: Fix debug message, print sid string for new_ace trustee.
     omits  d605d6d   docs: Add manpage for cifsdd
     omits  db13d6a   s4-client: Fix cifsdd arg parsing for skip
     omits  fce2c82   docs: Add example for domain logins to smbspool man page.
     omits  a5f6056   script/release.sh: generate announce.${tagname}.patch.txt in announcement_samba_rc()
     omits  3e92dce   script/release.sh: improve error messages if the tag verification fails
     omits  1a70742   s3-waf: Install smbspool_krb5_wrapper in LIBEXECDIR
     omits  389c89c   ctdb: Install helpers under libexecdir
     omits  8a42885   VERSION: Disable git snapshots for the 4.3.5 release.
     omits  b35144d   WHATSNEW: Add release notes for Samba 4.3.5.
     omits  3a4be07   ctdb-scripts: Drop use of "smbcontrol winbindd ip-dropped ..."
     omits  6c6599c   ctdb-scripts: Drop use of "smbcontrol winbindd ip-dropped ..."
     omits  4f637ba   lib/tsocket: workaround sockets not supporting FIONREAD
     omits  6774af1   param: Fix str_list_v3 to accept ; again
     omits  b65697f   lib:socket: fix CID 1350009 - illegal memory accesses (BUFFER_SIZE_WARNING)
     omits  08b1ff8   s3:utils/smbget set default blocksize
     omits  5ca7624   s3:utils/smbget add a error message on allocation error
     omits  558663a   lib/socket: Fix improper use of default interface speed
     omits  903b13e   loadparm: Fix memory leak issue.
     omits  2c91eb7   Revert "ctdb-daemon: Check packet generation against database generation"
     omits  f3bca17   s3: smbd: posix_acls: Fix check for setting u:g:o entry on a filesystem with no ACL support.
     omits  0221677   s3:smbd:open: Skip redundant call to file_set_dosmode when creating a new file.
     omits  c358f3c   smbd: Fix CID 1351216 Dereference null return value
     omits  ed8a55f   smbd: Fix CID 1351215 Improper use of negative value
     omits  6c2a3e2   lib:socket: fix CID 1350010 - integer OVERFLOW_BEFORE_WIDEN
     omits  f8618dc   lib/tsocket: workaround sockets not supporting FIONREAD
     omits  6c1a5f0   param: Fix str_list_v3 to accept ; again
     omits  11b89bd   loadparm: Fix memory leak issue.
     omits  4526ba6   s3: smbd: posix_acls: Fix check for setting u:g:o entry on a filesystem with no ACL support.
     omits  ebb7d66   s3:smbd:open: Skip redundant call to file_set_dosmode when creating a new file.
     omits  f1d0341   docs-xml: fix typo in smbspool_krb5_wrapper manpage.
     omits  0a0276b   VERSION: Bump version up to 4.4.0rc3...
     omits  186206f   VERSION: Disable git snapshots for the Samba 4.4.0rc2 release.
     omits  0a81ac4   WHATSNEW: Add release notes for Samba 4.4.0rc2.
     omits  4c7f237   docs: Add smbspool_krb5_wrapper manpage
     omits  f3cfe82   docs-xml: fix typo in smbspool_krb5_wrapper manpage.
     omits  b6a6011   docs: Add smbspool_krb5_wrapper manpage
     omits  ac49d96   s3:vfs:glusterfs: fix build after quota changes.
     omits  7d7a14f   python:tests/core: add tests for arcfour_encrypt() and string_to_byte_array()
     omits  9270b1d8  python:tests/core: add tests for arcfour_encrypt() and string_to_byte_array()
     omits  6c44fab   s4:scripting/devel: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
     omits  8acf14e   python:samba/netcmd/domain: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
     omits  b950d91   python:samba/join.py: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
     omits  4e6d6c7   python:samba: add a generic arcfour_encrypt() helper function
     omits  ffd18e1   python:samba: add a generic string_to_byte_array() helper function
     omits  d6db609   s4:scripting/devel: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
     omits  e91612e   python:samba/netcmd/domain: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
     omits  9517f4b   python:samba/join.py: make use of the generic arcfour_encrypt() and string_to_byte_array() functions
     omits  280ccf1   python:samba: add a generic arcfour_encrypt() helper function
     omits  04b2073   python:samba: add a generic string_to_byte_array() helper function
     omits  b422510   ctdb-common: Use documented names for protocol family in socket()
     omits  4945439   Release 2:4.3.3+dfsg-2
     omits  fe875f3   ctdb-common: Use documented names for protocol family in socket()
     omits  9ca2add   ctdb-common: Protocol argument must be in host order for socket() call
     omits  522c1c5   ctdb-common: Protocol argument must be in host order for socket() call
     omits  67399a9   Fix CTDB behavior since CVE-2015-8543 (Closes: #813406)
     omits  f2dc71c   s3: smbd: Fix timestamp rounding inside SMB2 create.
     omits  9eed186   WHATSNEW: update with latest parameter updates for smbget
     omits  2978226   s3-utils/smbget: Update manpages for parameter changes
     omits  a7046bc   s3-utils/smbget: Fix user-/name password reading from rcfile
     omits  9d4cbe6   s3-utils/smbget: Fix reading the rcfile
     omits  1ebeb06   s3-utils/smbget: Fix option parsing and apply samba defaults
     omits  2aadb75   selftest: fix test_dfree_quota.sh
     omits  3029dc0   ctdb: do not provide a useless pkgconfig file for ctdb.
     omits  7da9c65   smbd: show correct disk size for different quota and dfree block sizes
     omits  3e600d6   s3: smbd: Fix timestamp rounding inside SMB2 create.
     omits  830f003   smbd: show correct disk size for different quota and dfree block sizes
     omits  67db303   s3:utils/smbget fix recursive download
     omits  155d821   waf: Only build smb_krb5_wrapper if we have CUPS
     omits  2b218c3   s3-client: Add a KRB5 wrapper for smbspool
     omits  1133650   VERSION: Bump version up to 4.4.0rc2...
     omits  6c547b3   VERSION: Set version to 4.4.0rc1...
     omits  d201a20   WHATSNEW: Add smbstatus changes.
     omits  c1bbe58   WHATSNEW: Extend release notes for Samba 4.4.0rc1.
     omits  192f151   waf: Only build smb_krb5_wrapper if we have CUPS
     omits  91eeeb7   disk_quotas: style fix
     omits  6689499   vfs_gpfs: make sure get_quota does not return bogus values
     omits  de3c2ed   make disk_norm() static
     omits  a8eea0c   vfs_gpfs: do not call disk_norm() on disk_free_fn
     omits  9e60cbf   vfs_ceph: do not call disk_norm() on disk_free_fn
     omits  279c9ce   vfs_fake_dfq: remove quota code from disk_free
     omits  19f9b31   smbd: refactor disk_free handling
     omits  72231ec   vfs_snapper: add get_quota function
     omits  cc25335   vfs_shadow_copy2: add get_quota function
     omits  22d757c   vfs_cap: add get_quota function
     omits  c464b9e   vfs: add path parameter to get_quota
     omits  f71761c   selftest: add disk-free and quota tests based on fake_dfq VFS module
     omits  540dcfa   vfs_fake_dfq: add vfs module
     omits  345f084   smbd: enable unit-testing of NT_TRANSACT_GET_USER_QUOTA
     omits  17c9b8d   quotas: correct comment about SMB_GROUP_QUOTA_TYPE
     omits  798fcfd   loadparm: introduce lp_parm_ulonglong() and lpcfg_parm_ulonglong()
     omits  7a890a7   smbd:smb2_negprot: implement connection passing based on client_guid
     omits  cfbf450   smbd:smb2_server: let smbd_server_connection_terminate() only call exit_server() for the last connection
     omits  a446966   smbd:process: use smbXsrv_client_create.
     omits  0010dc8   smbd:process: treat initialized table in smbXsrv_connection_init_tables
     omits  d77238f   smbd: add smbXsrv_client.c
     omits  8ab4629   smbd:globals.h: add guid_verified to smbXsrv_connection.smb2.client
     omits  3590f3f   idl:smbXsrv: add smbXsrv_connection_pass structures.
     omits  bae1b94   idl:smbXsrv: add smbXsrv_client_global structures
     omits  5e91bf0   idl:messagaing: add MSG_SMBXSRV_CONNECTION_PASS
     omits  756b452   s3-parm: clean up defaults when removing global parameters
     omits  6a24ccc   s3:smbd: only process fsctl_network_iface_info if multi channel is enabled
     omits  54c0fce   s4:torture: add SMB2 test for directory creation initial allocation size
     omits  57654ee   s3:smbd: Ignore initial allocation size for directory creation
     omits  e8a051f   s3:smbd: implement fsctl_network_iface_info
     omits  99d3dbe   docs:smb.conf: document new extra syntax for interfaces.
     omits  9fcf874   s4:lib:socket: skip extra data in interpret_interface()
     omits  8284b34   s3:lib: extend interpret_interface() to optionally read speed, caps, and index from config
     omits  3785be8   s3:lib: remove an unmotivated comment from interpret_interface()
     omits  e569ffd   s3:lib: copy speed, cap, and index in add_interface()
     omits  9f9d6ac   smb.h: add linkspeed, capability, and if_index to interface struct
     omits  549a9ab   lib:socket: detect link speed with ethtool ioctl in get_interfaces (on linux)
     omits  1862aa6   build: detect support for ethtool
     omits  64be8e7   lib:socket: set defaults for linkspeed and capability in get_interfaces()
     omits  235f37b   lib:socket: get interface index from kernel
     omits  d392e0a   lib:socket: add linkspeed, capability and if_index to iface_struct
     omits  bc9e1fc   librpc:idl: define FSCTL_NET_IFACE_NONE_CAPABLE in ioctl.idl
     omits  a2894cf   s3:lib: add braces around if-block in my_sam_name()
     omits  d67d8e1   s3:lib: remove supefluous comments from map_my_name()
     omits  6eaf40f   s3:lib: fix white spaces in my_sam_name()
     omits  dee38e0   vfs_shadow_copy2: documentation for snapsharepath
     omits  bbb5a8a   vfs_shadow_copy2: add tests for snapsharepath
     omits  8433388   vfs_shadow_copy2: add snapsharepath parameter
     omits  57dab20   vfs_shadow_copy2: remove basedir state variable
     omits  500bc01   s3-parm: clean up defaults when removing global parameters
     omits  62c68bd   s3-client: Add a KRB5 wrapper for smbspool
     omits  1bf7905   WHATSNEW: Documentation CTDB changes for v4.4
     omits  b7da062   s3:utils/smbget make use of bool for flags
     omits  76f1679   s3:utils/smbget use C99 format identifiers
     omits  4d033ba   s3:utils/smbget code format
     omits  ec802d2   s3:utils/smbget fix recursive download
     omits  c8a5ab9   WHATSNEW: CTDB_NATGW_SLAVE_ONLY is no longer used
     omits  df6cca2   ctdb-tools: Drop support for setting and viewing NAT gateway capability
     omits  3b64c27   ctdb-scripts: No longer set the NAT gateway capability
     omits  411ccb9   ctdb/tools: Update ctdb CLI tool to call ctdb_natgw
     omits  e515968   ctdb-tests: Drop some unnecessary NAT gateway tests
     omits  bae9fea   ctdb: Call out to ctdb_natgw helper from 11.natgw
     omits  f1265f0   ctdb-tests: NAT gateway slave-only changes
     omits  7095c9b   ctdb-scripts: New function ctdb_natgw_slave_only()
     omits  3a2eebf   ctdb-tests: Test ctdb CLI tool via a stub
     omits  1538fc4   ctdb-tools: Add standalone ctdb_natgw tool script
     omits  d71f747   ctdb-scripts: Tests for monitoring of CTDB_NATGW_PUBLIC_IFACE
     omits  638117c   ctdb-scripts: Move monitoring of CTDB_NATGW_PUBLIC_IFACE to 11.natgw
     omits  df5845c   ctdb-scripts: CTDB_PARTIALLY_ONLINE_INTERFACES incompatible with NAT gateway
     omits  06901f4   ctdb-scripts: Rename variable: fail -> down_interfaces_found
     omits  d0f2143   ctdb-scripts: Drop functions mark_up() and mark_down()
     omits  85316c0   ctdb-scripts: Move interface monitoring code to functions file
     omits  fe64e76   ctdb-scripts: Rename get_real_iface() -> interface_get_real()
     omits  6f212aa   ctdb-scripts: Refactor function interface_monitor() to monitor one interface
     omits  cd86f20   s4:torture: add SMB2 test for directory creation initial allocation size
     omits  78ccbb0   s3:smbd: Ignore initial allocation size for directory creation
     omits  a1a8746   s3:smb2_sesssetup: implement SMB3 session bind (disabled)
     omits  edd781d   s3:smb2_sesssetup: treat BINDING in smbd_smb2_session_setup_auth_return
     omits  91770e3   s3:smb2_negprot: announce multi channel support (disabled)
     omits  d60ffcf   smbXsrv: introduce bool smbXsrv_client->server_multi_channel_enabled
     omits  3e08469   build: fix ldbsearch panic on FC22
     omits  8ec92e5   smbspool: Add string representation of nt_status
     omits  c3aaf64   waf: Only build the backupkey rpc test with AD DC enabled
     omits  f69b6dd   tests: Only execute heimdal tests if we build with heimdal
     omits  30419f2   tests: Rename heimdal blackbox tests
     omits  b74bef8   smbstatus: add support for SMB1 signing and CIFS UNIX extensions encryption
     omits  f955499   libcli/smb: add define SMB_ENCRYPTION_GSSAPI for CIFS encryption type
     omits  1e60a3f   smbstatus: show signing state of sessions and tcons
     omits  8d8af47   s3:lib/conn_tdb: store the connection dialect
     omits  9d28443   s3:smb2_server: add signing state tracking flags
     omits  fe5353c   s3:smb2_server: convert signing_required bool to flags bitmap
     omits  780743d   smbstatus: show encrpytion state of tree connects
     omits  83a557d   smbstatus: align tree connect header and output
     omits  e0fc931   smbstatus: show encrpytion state of sessions
     omits  5d75078   smbstatus: align session list header and ouput
     omits  603f1de   smbstatus: pass talloc context to traverse_connections
     omits  c2443d6   smbstatus: pass talloc context to traverse_sessionid
     omits  f59ef03   smbstatus: rework connection dialect printing
     omits  e501c73   s3:smb2_server: add encryption state tracking flags
     omits  736cd36   s3:smb2_server: store encryption cipher in the channel
     omits  bfdffea   s3:smb2_server: convert encryption desired and required bools to flags
     omits  63a13f4   smbstatus: remove obsolete verbose message
     omits  ef269c9   substitute: Fix talloc_sub_basic for %G in the case of a local user.
     omits  2f2b57a   passdb: change ABI version to 0.25.0 due to removed symbol.
     omits  8ff3257   s3:passdb: move my_sam_name() from passdb to util_name.c
     omits  a929913   s4-torture: let smb2.replay.replay5 test deal with scale out shares.
     omits  c9218c4   smbd:smb2_close: remove an irritating blank line
     omits  718007b   docs:smbdotconf: fix tabs/space mixup in logon parameter metadata
     omits  6ed3985   vfs_shadow_copy2: check crossmountpoints against snapdirseverywhere
     omits  6d82bdd   smbcacls: fix uninitialized variable
     omits  6cff009   smbcacls: fix uninitialized variable
     omits  d905179   ctdb-client: Use ctdb_rec_buffer_init() to initialize ctdb_rec_buffer
     omits  a7d54bb   ctdb-client: Add missing initialization for h->ev in transaction_start
     omits  5d5d88e   ctdb-client: Do not delete reqid explicitly
     omits  8ca76ad   ctdb-client: Add a disconnect callback for ctdb client
     omits  555237f   ctdb-client: Close ctdb socket connection when client context goes away
     omits  e59712b   ctdb-client: Use ctdb_ltdb_header_extract()
     omits  0ed60d7   ctdb-protocol: Fix marshaling of seqnum
     omits  006d4c1   docs: Bump version up to 4.4.
     omits  d51a635   ctdb-build: Fix -O3 developer build
     omits  594778e   ldb-samba: Expand testing of recursive search
     omits  10e3237   ldb-samba: Correct error reporting to match Windows
     omits  1d05f3b   ldb-samba: Reenable recursive search
     omits  a52bcaa   ldb-samba: critical bugfix on original recursive search implementation
     omits  177ac58   ldb-samba: Implement transitive extended matching
     omits  a2d49fa   pidl: Change PyGetSetDef in generated python bindings to use C99 initialisers
     omits  cff17f0   s3: smbd: Remove one more use of lp_posix_pathnames().
     omits  ecc7022   s3-util: skip S-1-18 sids in token generaion in sid_array_from_info3().
     omits  a924209   s3-util: add helper functions to deal with the S-1-18 domain.
     omits  cf163ac   security: Add Asserted Identity sids (S-1-18)
     omits  d1235c7   ldb: Fix CID 1348110 Uninitialized scalar variable
     omits  cf05ba5   s3-libads: Use the configured LDAP page size.
     omits  8c2609f   Change default LDAP page size to 1000.
     omits  19fffeb   ctdb-scripts: further untangle logic for success of interface monitoring
     omits  93e48df   ctdb: Fix the O3 developer build
     omits  2c72956   Revert "winbind: Retry after SESSION_EXPIRED error in ping-dc"
     omits  52b5636   winbindd: Retry on expired session in cm_connect_netlogon
     omits  dded902   winbindd: Retry on expired session in cm_connect_sam
     omits  423120f   winbindd: Retry on expired session in cm_connect_lsa
     omits  a0f2f52   winbindd: Remove double retry from some ADS methods
     omits  fa875e3   winbindd: Add retry also for ADS method calls
     omits  39e6b5b   winbindd: Reset connection for expired session before reconnecting
     omits  40bc9b0   vfs_shadow_copy2: add a blackbox test suite
     omits  0998c40   vfs_shadow_copy2: fix case where snapshots are outside the share
     omits  a453c78   vfs_shadow_copy2: add shadow_copy2_do_convert()
     omits  db70921   s3:smbd/oplock obey kernel oplock setting when releasing oplocks
     omits  43ade9a   selftest: more dfree command and smbclient disk usage tests
     omits  21d362e   smbclient: query disk usage relative to current directory
     omits  0f57acc   s4:acl LDB module - fix error message
     omits  39bc356   ctdb-ipalloc: Document the steps involved in a takeover run
     omits  e320725   ctdb-ipalloc: Split IP allocation into its own build subsystem
     omits  19d3fd1   s4-rpc_server: Add missing include for ROLE_ACTIVE_DIRECTORY_DC
     omits  7362c27   vfs_shadow_copy2: add a blackbox test suite
     omits  8a49a63   vfs_shadow_copy2: fix case where snapshots are outside the share
     omits  3703bca   vfs_shadow_copy2: add shadow_copy2_do_convert()
     omits  fba90fd   s3:smbd_smb2_reauth_generic_return: make use of smb2req->xconn
     omits  490a27b   pam_winbind: check != PAM_SUCCESS and != NULL explicitly
     omits  e8e9e7f   vfs:shadow_copy2: fix a debug message
     omits  25243af   docs: fix copy'n'paste error in vfs_shadow_copy2 manpage
     omits  f7583be   asn1: Make asn1_peek_tag_needed_size static
     omits  2aa1cf4   asn1: Fix a typo
     omits  5e1a84c   winbind: Properly error check init_lsa_ref_domain_list
     omits  5a2c305   idmap: Fix whitespace
     omits  9039f1f   libcli: Fix a typo
     omits  812e074   libsmb: Remove ip_service based resolve_lmhosts
     omits  c29188f   libsmb: Convert resolve_hosts to sockaddr_storage
     omits  da8674c   Rename 'errors' to 'samba-errors' and make it public.
     omits  218f96f   libcli: Make headers for private libraries private.
     omits  ffbd9c4   Add a new header file for functions in lib/util/util.c.
     omits  512d15d   Make libcli-smb-raw private, for now.
     omits  773cfba   Avoid including libds/common/roles.h in public loadparm.h header.
     omits  ce32f26   ldb: Only set public headers field when installing as a public library.
     omits  1860e98   time_basic.h: Remove unnecessary dependency on replace.h
     omits  620d5cb   Remove public library dcerpc-atsvc.
     omits  232726a   Make libregistry private, for now.
     omits  2f7dde3   Make libtorture private, for now.
     omits  c46a8cf   Make gensec private, for now.
     omits  5d67d55   talloc: Only set public headers field when installing as a public library.
     omits  3eb9065   Error when private libraries have public headers.
     omits  68a3576   tdb: Only set public headers field when installing as a public library.
     omits  48ebeaa   Add private_headers flag to SAMBA_*() functions.
     omits  2cba491   tevent: Only set public headers field when installing as a public library.
     omits  fddca39   samdb: Add explicit dependency on ldb.
     omits  3123e2c   Simplify handling of dependencies on external libraries in test_headers.
     omits  4ab7a00   Use full path to dlinklist.h in includes.
     omits  6f3656c   Revert "winbind: Retry after SESSION_EXPIRED error in ping-dc"
     omits  aa3883e   winbindd: Retry on expired session in cm_connect_netlogon
     omits  276d604   winbindd: Retry on expired session in cm_connect_sam
     omits  3b6b545   winbindd: Retry on expired session in cm_connect_lsa
     omits  4c6804e   winbindd: Remove double retry from some ADS methods
     omits  e4adf55   winbindd: Add retry also for ADS method calls
     omits  fb5b0ce   winbindd: Reset connection for expired session before reconnecting
     omits  3ac2d4b   ctdb-tests: Fix some incorrect memory allocations
     omits  a7ce00c   ctdb-scripts: Use more unique temporary file names
     omits  4afe822   ctdb-scripts: Don't remove temporary files before use
     omits  2083883   ctdb-scripts: Superficial clean-ups to 10.interface
     omits  c23744c   ctdb-scripts: Clarify logic for success of interface monitoring
     omits  d8e4c5a   ctdb-scripts: Fix regression in updateip code
     omits  18b0aea   ctdb-ipalloc: Fix a memory leak
     omits  24160ee   ctdb-daemon: Don't leak memory if not using recovery lock
     omits  56ce230   ctdb-recoverd: Fix some uninitialised memory issues
     omits  8f73ae0   ctdb-daemon: Drop the "schedule for deletion" messages to DEBUG level
     omits  9790abd   ctdb/web: Fix typo.
     omits  7c4d802   talloc: Fix a documentation typo
     omits  7cec309   nss_wrapper: bump version to 1.1.2
     omits  ae2a575   VERSION: Bump version up to 4.3.5...
     omits  da292b6   nwrap: Fix segfaults while reloading hosts file
     omits  19b2dcb   nwrap: Don't fail if we want to add an existing entry
     omits  9b79020   nwrap: Fix the build on Solaris
     omits  5f62197   nwrap: Don't leak memory from gethostbyname*() functions
     omits  b54bbb2   nwrap: Fix the build on FreeBSD
     omits  766e795   nwrap: fix a copy and paste error in the destructor.
     omits  554963d   nwrap: Cleanup shadow getspnam() memory
     omits  159fdb0   nwrap: fix leaking the entlists
     omits  bf49615   nwrap: catch error to add item to vector in nwrap_he_parse_line()
     omits  736fa61   nwrap: rename nwrap_he.entdata to nwrap_he.entries
     omits  e94a7c5   nwrap: remove unused member list from struct nwrap_he
     omits  16b71ae   nwrap: Small code shift in nwrap_ed_inventarize_add_to_existing()
     omits  db0ef5c   nwrap: Cast max_hostents to avoid warnings
     omits  8fad97b   nwrap: Fix initialization of e entry
     omits  f1acb0e   nwrap: remove ai_tail argument from nwrap_files_getaddrinfo()
     omits  d198cda   nwrap: rewrite the loop for duplication ai entries if socktype not given
     omits  ab2f41b   nwrap: add an explaining comment for the ai duplicating loop
     omits  062c97b   nwrap: move setting of ai_{flags|socktype|protocol} into nwrap_convert_he_ai
     omits  a66606c   nwrap: use symbols IPPROTO_TCP and IPPROTO_UDP
     omits  bf65160   nwrap: rename _ai -> ai_new in nwrap_files_getaddrinfo()
     omits  a42f658   nwrap: fix a memleak in nwrap_files_getaddrinfo()
     omits  07b6925   nwrap: rename ai_prev -> ai_cur in nwrap_files_getaddrinfo()
     omits  b996f0a   nwrap: Fix inventarization of IPs when loading hosts
     omits  07f1bef   nwrap: refactor nwrap_add_hname_* into one nwrap_ed_inventarize.
     omits  55e9606   nwrap: treat AI_NUMERICHOST correctly in getaddrinfo.
     omits  34cff9e   nwrap: fix treatment of EAI_ADDRINFO in nwrap_files_getaddrinfo
     omits  154080c   nwrap: correctly track EAI_ADDRINFO in nwrap_files_getaddrinfo
     omits  0dc34ea   nwrap: in nwrap_files_getaddrinfo, treat failure of nwrap_convert_he_ai as error
     omits  18be46d   nwrap: convert nwrap_files_getaddrinfo() to return EAI error codes
     omits  6078126   nwrap: use the error code from nwrap_files_cache_reload() in callers
     omits  fe7e163   nwrap: turn nwrap_files_cache_reload() into a bool function
     omits  4919f1c   nwrap: better error propagation in nwrap_he_parse_line()
     omits  ccb4076   nwrap: log NULL alias name at ERROR level in nwrap_add_hname()
     omits  f6e4c58   nwrap: better error propagation in nwrap_add_hname()
     omits  ddd0ca8   nwrap: better error propagation in nwrap_add_hname_alias
     omits  7ec5aae   nwrap: catch NULL list in nwrap_add_hname_add_to_existing
     omits  2974cef   nwrap: catch null h_name in nwrap_add_hname_add_new
     omits  be8c7dc   nwrap: catch NULL ip in nwrap_add_ai
     omits  a725bd7   nwrap: turn nwrap_add_hname_add_to_existing() into bool
     omits  d681a08   nwrap: simplify nwrap_file_getaddrinfo: remove a variable
     omits  28f0a8b   nwrap: simplify nwrap_files_gethostbyname: remove a variable
     omits  54c825b   nwrap: log hash table full message at error level
     omits  9502535   nwrap: rewrite linked-list datastructures to be properly separated.
     omits  19d5415   nwrap: remove superfluous comments from nwrap_add_hname()
     omits  4ec47e7   nwrap: remove superfluous comments from nwrap_add_hname_alias()
     omits  69af963   nwrap: remove a superfluous comment from nwrap_add_hname_add_new()
     omits  3cc12ec   nwrap: move var into scope in nwrap_add_hname()
     omits  f7b28bd   nwrap: simplify nwrap_add_hname
     omits  8f62cda   nwrap: simplify nwrap_add_hname_alias
     omits  067978d   nwrap: initialize some variables in nwrap_files_getaddrinfo
     omits  be182ba   nwrap: slightly clean flow by removing an else branch in nwrap_getaddrinfo
     omits  559ed74   nwrap: in nwrap_getaddrinfo, only call libc_getaddrinfo if we need it.
     omits  9927e49   nwrap: slightly simplify logic in nwrap_getaddrinfo()
     omits  b0569d4   nwrap: simplify logic in nwrap_getaddrinfo, calling nwrap_files_getaddrinfo
     omits  53e633e   nwrap: improve code readability in nwrap_getaddrinfo()
     omits  8da2110   nwrap: remove code duplication in nwrap_getaddrinfo
     omits  5bea2dc   nwrap: fix return code for getaddrinfo in case service is not valid
     omits  40f9bf7   nwrap: fix return code of getaddrinfo for AI_NUMERICSERV in error case
     omits  522631b   nwrap: fix numeric port detection in nwrap_getaddrinfo
     omits  72764a6   nwrap: Better check service string sanity.
     omits  200f5bf   nwrap: Fix memory leak in nwrap_gethostbyname_r()
     omits  43d470a   nwrap: Fix memory leak in nwrap_files_gethostbyname()
     omits  853b2ff   nwrap: Fix memory leak in nwrap_he_unload()
     omits  3cae3e5   nwrap: Rename cont to vector in nwrap_vector_add_item()
     omits  e1bb009   nwrap: Fix memory leak inside nwrap_getaddrinfo()
     omits  0f1ffb9   nwrap: Use nwrap_vector_foreach instead of for loop
     omits  9d71542   nwrap: Fix memory leak when getline() is used.
     omits  4505dcd   nwrap: Add basic locking for support multithreaded applications
     omits  1017031   nwrap: Add BSD libc support for gethost*_r functios.
     omits  960345e   nwrap: Use nwrap vectors as memory backend for getaddrinfo() and gethostbyname()
     omits  090dec2   nwrap: Add string manipulation functions.
     omits  270d6f9   nwrap: Add nwrap_add_hname() and nwrap_add_hname_alias().
     omits  442fc3f   nwrap: Add function nwrap_add_ai
     omits  15c1453   nwrap: Add a hash table to the nwrap structure
     omits  f3da6e4   nwrap: Simplify file loading.
     omits  ff65d01   nwrap: Add nwrap vector memory management functions
     omits  6706ee4   nwrap: Check for setspent and getspnam functions
     omits  22f159f   src: Add configure check for shadow.h
     omits  088887b   nwrap: Add support for getspnam()
     omits  608fa20   nwrap: Add (set|get|end)spent functions
     omits  e971a44   nwrap: Add nss_wrapper_shadow_enabled() function
     omits  4be5853   nwrap: Add shadow file parser
     omits  2a53352   nwrap: Remove unused struct member in nwrap_main
     omits  90585c4   nwrap: Implement nwrap_files_initgroups()
     omits  80abc70   nwrap: Remove unneeded memcpy in getgrouplist()
     omits  a104389   nwrap: Avoid a string comparsion in getgrouplist()
     omits  1c346a0   nwrap: Use ssize_t for aliases_count
     omits  02b5410   nwrap: Prevent compilation failure on machine without IPv4
     omits  90dbe7b   nwrap: Replace free() calls by SAFE_FREE macro where possible.
     omits  ea741de   nwrap: Fix the handle loops for older gcc versions.
     omits  77d0fce   torture: add torture comment output of name/ip to WinsBy{Ip,Name} tests
     omits  71ffd3b   torture: Fix winbind.wbclient.ResolveWinsByIp test
     omits  fcb1ca8   torture: fix check_pw_with_krb5 in the rpc:lsa test
     omits  688590f   torture: fix check_dom_trust_pw in the rpc:lsa test
     omits  38c2305   torture: fix the ldap.netlogon-udp test
     omits  9b443d2   torture: fix the ldap.cldap test
     omits  0c12970   VERSION: Disable git snapshots for the 4.3.4 release.
     omits  f700a19   WHATSNEW: Add release notes for Samba 4.3.4.
     omits  97d39ca   s3:torture: add traverse testing to LOCAL-RBTREE
     omits  49f04d1   dbwrap_rbt: fix modifying the db during traverse
     omits  4a0f277   dbwrap_rbt: add nested traverse protection
     omits  a9071dc   dbwrap_rbt: use talloc_zero_size() instead of a partial ZERO_STRUCT()
     omits  c36c6e9   Revert "Fix bug #11394 -  Crash: Bad talloc magic value - access after free"
     omits  2e2d4be   s3:wscript: fix spaces
     omits  551e268   tldap: Use struct initializer in tldap_search
     omits  8842235   tldap: Avoid includes.h
     omits  093a89f   tldap.h: References DATA_BLOB
     omits  5021974   lib: Introduce util_tsock.h
     omits  3df9e9c   tldap: tevent_req_create NULLs out "state"
     omits  e481849   tldap: Use "size_t" for talloc_array_length result
     omits  8215409   tldap: Remove an unneeded "return;"
     omits  245064d   tldap: Remove unneeded vars
     omits  5632000   Add dependency on libtevent-dev in samba-dev.
     omits  657610a   smbd: Fix 240393 Uninitialized pointer read
     omits  fc4c2dc   bind_dlz: Fix CID 1347318 Unchecked return value
     omits  0cb8b9d   ctdb: Fix CID 1347319 Unchecked return value
     omits  4a3ad42   samdb: Fix CID 1347320 Dereference null return value
     omits  78e9f1e   build: Add space before -D option
     omits  0e58705   python: Remove Python 2.4 support macros
     omits  8bac96d   ntvfs/python: Adjust to use of PY_SSIZE_T_CLEAN
     omits  516ec30   pyrpc: Adjust to use of PY_SSIZE_T_CLEAN
     omits  5c7822a   pyregistry: Adjust to use of PY_SSIZE_T_CLEAN
     omits  6a6aec7   pymessaging: Adjust to use of PY_SSIZE_T_CLEAN
     omits  0064f1d   pylibsmb: Adjust to use of PY_SSIZE_T_CLEAN
     omits  638c611   pidl: Use PY_SSIZE_T_CLEAN
     omits  4894811   ldb: Adjust to PY_SSIZE_T_CLEAN and  use Py_ssize_t consistently with PyArg_ParseTuple*()
     omits  46b8d7f   python: Assert that we use Py_ssize_t consistently for PyParseArgs*()
     omits  11de99a   asn1: Clean up includes
     omits  fe3c270   smbcontrol: Use procid_is_local
     omits  2948fb3   net: Use procid_is_local
     omits  8108f0d   s3: smbclient: asn1_extract_blob() stops further asn1 processing by setting has_error.
     omits  8ca6fe6   docs:smbdotconf: fix the description of 'machine password timeout'
     omits  0cae227   selftest: Add tests for ntlm-server-1 and --password mode in ntlm_auth
     omits  bfe4163   ntlm_auth: Allow --password force a local password check for ntlm-server-1 mode
     omits  234861b   password_lockout: test creds.get_kerberos_state()
     omits  7870c0c   auth: keep track of lastLogon and lastLogonTimestamp
     omits  5e60671   password_lockout tests: add assertLoginFailure()
     omits  fe51036   auth: increase resolution for password grace period calculation
     omits  ca7cd60   pycredentials: add get_kerberos_state() method
     omits  7c50b7a   smbd: do not disable "store dos attributes" on-the-fly
     omits  6be8237   s3:smbd: fix a corner case of the symlink verification
     omits  1ae26f8   s3: libsmb: Correctly initialize the list head when keeping a list of primary followed by DFS connections.
     omits  9d43c74   vfs_streams_xattr: fix and simplify streams_xattr_get_name()
     omits  deec633   vfs_fruit: hide the Netatalk metadata xattr in streaminfo
     omits  535812d   vfs_fruit: add and use define for the Netatalk metadata xattr
     omits  48bce69   s4:torture:vfs_fruit: add test test_read_afpinfo
     omits  dad33c3   s4:torture:vfs_fruit: add tests for AFP_Resource delete-on-close and eof
     omits  4c00711   vfs_fruit: ignore delete on the AFP_Resource stream
     omits  093575e   s4:torture:vfs_fruit: update AFP_AfpInfo IO tests
     omits  de829e6   vfs_fruit: fix offset and len handling for AFP_AfpInfo stream
     omits  f8bc71f   s4:torture:vfs_fruit: test nulling out AFP_AfpInfo stream
     omits  89f4adb   vfs_fruit: writing all 0 to AFP_AfpInfo stream
     omits  3a31406   s4:torture:vfs_fruit: add tests for AFP_AfpInfo delete-on-close and eof
     omits  f85e4e6   vfs_fruit: handling of ftruncate() on AFP_AfpInfo stream
     omits  a52778b   s4:torture:vfs_fruit: file without AFP_AfpInfo
     omits  a0d3a3a   vfs_fruit: stat AFP_AfpInfo must fail when it doesn't exist
     omits  2482f7a   vfs_fruit: fix some debug messages
     omits  e150a70   s3:lib/errmap_unix: map EOVERFLOW to NT_STATUS_ALLOTTED_SPACE_EXCEEDED
     omits  a9d4091   s4:torture:vfs_fruit: fix flakey test_write_atalk_rfork_io with OS X
     omits  ba97d85   s4:torture:vfs_fruit: fix test_rename_dir_openfile() to work with OS X
     omits  adbe3fd   s4:torture:vfs_fruit: fix test_aapl() to work with OS X
     omits  7ed3a98   s4:torture:vfs_fruit: skip test_stream_names() without "localdir"
     omits  33851cb   s4:torture:vfs_fruit: skip test_adouble_conversion() without "localdir"
     omits  2d9ddc1   s4:torture:vfs_fruit: skip test test_read_atalk_metadata() without "localdir" and rename it
     omits  8acd795   s4:torture:vfs_fruit: add explicit cleanup of testfiles
     omits  9aefc7d   s4:torture:vfs_fruit: add --option=torture:osx for enable_aapl()
     omits  86b653b   s4:torture:vfs_fruit: enhance check_stream
     omits  eb5df33   s4:torture:vfs_fruit: use AFPINFO_STREAM_NAME
     omits  7fb8371   s4:torture:vfs_fruit: tweak check_stream_list()
     omits  a985c92   s4:torture:vfs_fruit: rename tree1 -> tree
     omits  9215fc8   s4:torture:vfs_fruit: remove unused tree2
     omits  eda6aaf   s3:smbd/oplock obey kernel oplock setting when releasing oplocks
     omits  3e1b26b   selftest: more dfree command and smbclient disk usage tests
     omits  275da6c   smbclient: query disk usage relative to current directory
     omits  d865ed2   asn1: Make 'struct asn1_data' private
     omits  44c56fc   asn1: Remove a reference to asn1_data internals
     omits  3c340d8   libcli: Remove a reference to asn1->ofs
     omits  b7f0e29   lib: Use asn1_current_ofs()
     omits  927bbed   asn1: Add asn1_current_ofs()
     omits  1282f60   lib: Use asn1_has_nesting
     omits  2a5141a   asn1: Add asn1_has_nesting
     omits  a93946b   lib: Use asn1_extract_blob()
     omits  7b7aa01   asn1: Add asn1_extract_blob()
     omits  8cfb6a3   lib: Use asn1_set_error()
     omits  94b4459   asn1: Add asn1_set_error()
     omits  57a0bc9   lib: Use asn1_has_error()
     omits  fa207fe   asn1: Add asn1_has_error()
     omits  ef8049b   asn1: Make "struct nesting" private
     omits  f908e65   asn1: Add some early returns
     omits  249202d   asn1: Add overflow check to asn1_write
     omits  ad630a6   asn1: Make asn1_peek_full_tag return 0/errno
     omits  4580022   asn1: Remove an unused asn1 function
     omits  a44e4e9   ldb: validate ldb_dn_set_component input parameters even more strictly
     omits  30e92d0   ldb: Explain why this use of talloc_memdup() is safe
     omits  084bab5   ldb: Be strict about talloc_memdup() and passed in buffers in ldb_dn_set_component()
     omits  ff94a01   travis: Add metadata file for the Travis CI Open Source cloud build/test service
     omits  05c3481   autobuild: Use make -j on samba-libs/samba-static build as well
     omits  af89d18   autobuild: Put the static build in another stanza
     omits  cce1612   autobuild: Use cp --recursive --link --archive
     omits  9a91fce   autobuild: Give a clearer failure message
     omits  d60465c   build:wafsamba: Use the upstream version of gccdeps
     omits  88969d7   thirdparty:waf: Update gccdeps from upstream
     omits  1bc806a   Happy New Year 2016!
     omits  73f01cd   torture:smb2: fix copy'n'paste error in durable-open:open2:lease test
     omits  1be7e8b   smbd: remove function name from a DBG_INFO in a recent commit
     omits  d4c2395   smbd: do not disable "store dos attributes" on-the-fly
     omits  5b1a87e   dsdb subnets: warn when an IPv6 address is in IPv4 embedding range
     omits  906a53f   samldb: ensure subnets have proper net ranges
     omits  cbb9397   samba-tool: add sites subnet subcommands
     omits  8e6f2d9   samba-tool tests: Add command line tests for sites
     omits  12813ea   python/sites: Rework site  DN construction
     omits  dbcb13c   python.sites tests: remove excessive transaction management
     omits  bdb03c5   selftest: Allow sites test to run against a remote ldap:// host
     omits  9ac5e3c   samba.sites: reduce code duplication in Exception classes
     omits  358c0f2   dsdb.tests.sites: don't use global database, tidy long lines
     omits  b27dcb5   samba.sites: improve grammar in an error message
     omits  f26b227   dsdb.tests.sites: merge interdependent tests
     omits  fa2c668   samba-tool sites: use -H to set URL with standard handling
     omits  bb64abf   sambatool sites: PEP8/flake8 improvements
     omits  149c075   torture/gentest time_skew(): don't use labs() on unsigned NTTIME
     omits  d098e9c   repl: Skip new subdomains and partitions when replicating
     omits  8091f84   s4:samba-tool domain raise tool - make it aware of newer domain function levels
     omits  33ed975   s4:samba-tool domain raise tool - handle Windows 2000 mode AD domains correctly
     omits  ada59ec   s3:smbd: fix a corner case of the symlink verification
     omits  2efa2e0   s3: smbd: Replace lp_posix_pathnames() with req->posix_pathnames in dir.c. Only one remaining.
     omits  52bae79   s3: smbd: Remove lp_posix_pathnames() checks on paths sent in via old Win9X RPC calls.
     omits  398ee27   s3: smbd: Replace lp_posix_pathnames() with smbreq->posix_pathnames in smb2_query_directory.c.
     omits  944e940   s3: smbd: smb2_create.c - remove all uses of lp_posix_pathnames().
     omits  a2f025e   s3: smbd: Convert all but one use of lp_posix_pathnames() into req->posix_pathnames in trans2.c
     omits  3cd1b18   s3: smbd: Remove *all* uses of lp_posix_pathnames() from open.c
     omits  865bd48   s3: smbd: Replace most uses of lp_posix_pathnames() with req->posix_pathnames in nttrans.c
     omits  6db6bc2   s3: smbd: Replace most uses of lp_posix_pathnames() with req->posix_pathnames in reply.c
     omits  40df6f2   s3: smbd: Now struct smb_request has a bool posix_pathnames, remove the lp_posix_pathnames() call inside srvstr_get_path_req_wcard().
     omits  4587d83   s3: smbd: VFS change. Add new field bool posix_pathnames into struct smb_request.
     omits  cc729ae   s3: smbd: srvstr_get_path() is now only called when lp_posix_pathnames() is false.
     omits  88bb480   s3: smbd: Split all calls to srvstr_get_path() to calls to srvstr_get_path_posix() or srvstr_get_path() depending on lp_posix_pathnames().
     omits  c78d739   s3: smbd: Add srvstr_get_path_posix().
     omits  5740761   s3: smbd: We now know that srvstr_get_path_wcard() is only called when lp_posix_pathnames() is false.
     omits  41d62df   s3: smbd: Split all calls to srvstr_get_path_wcard() into srvstr_get_path_wcard_posix() or srvstr_get_path_wcard() depending on lp_posix_pathnames().
     omits  eb7198f   s3: smbd: Add srvstr_get_path_wcard_posix().
     omits  db36ee4   s3: smbd: Move lp_posix_pathnames() out into srvstr_get_path_req_wcard().
     omits  5a34069   s3: smbd: Move lp_posix_pathnames() out into srvstr_get_path().
     omits  4a6d7e1   s3: smbd: Move lp_posix_pathnames() out of srvstr_get_path_wcard_internal().
     omits  f33224d   net: Fix Coverity ID 241039 Unchecked return value
     omits  431cf20   s3: smbd: open_file: use FSP_POSIX_FLAGS_PATHNAMES
     omits  58bebcb   smbd: file_struct: factor out POSIX pathname processing out of POSIX open
     omits  035bd5f   s3: smbd: Remove lp_posix_pathnames() from filename.c
     omits  993122a   s3: smbd: In trans2.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  274e8b5   s3: smbd: In smb2_query_directory.c.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  31212e9   s3: smbd: In smb2_create.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  dae4b37   s3: smbd: In reply.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  6694c82   s3: smbd: In open.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  4ce5de5   s3: smbd: In srv_srvsvc_nt.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  7641c69   s3: smbd: In nttrans2.c, add in UCF_POSIX_PATHNAMES to the ucf_flags if lp_posix_pathnames() requested.
     omits  acf6600   s3: smbd: In smb2_query_directory.c Use ucf_flags variable instead of passing as parameter.
     omits  c783db3   s3: smbd: In smb2_create.c Use ucf_flags variable instead of passing as parameter.
     omits  5d03e75   s3: smbd: In srv_srvsvc_nt.c Use ucf_flags variable instead of passing as parameter.
     omits  f3f3426   s3: smbd: In trans2.c Use ucf_flags variable instead of passing as parameter.
     omits  b2c813f   s3: smbd: In reply.c Use ucf_flags variable instead of passing as parameter.
     omits  e5db676   s3: smbd: In open.c Use ucf_flags variable instead of passing as parameter.
     omits  5c183b2   s3: smbd: Use ucf_flags variable instead of passing as parameter.
     omits  5f407e3   Fix typo in winbindd_cm.c
     omits  00e952e   s3: fix encryption help messages
     omits  b165d52   s4:torture:vfs_fruit: add test test_read_afpinfo
     omits  21d4b5c   s4:torture:vfs_fruit: add tests for AFP_Resource delete-on-close and eof
     omits  ee431fc   vfs_fruit: ignore delete on the AFP_Resource stream
     omits  decde0b   s4:torture:vfs_fruit: update AFP_AfpInfo IO tests
     omits  f569fd5   vfs_fruit: fix offset and len handling for AFP_AfpInfo stream
     omits  666a55b   s4:torture:vfs_fruit: test nulling out AFP_AfpInfo stream
     omits  e94b177   vfs_fruit: writing all 0 to AFP_AfpInfo stream
     omits  e5588b4   s4:torture:vfs_fruit: add tests for AFP_AfpInfo delete-on-close and eof
     omits  4024153   vfs_fruit: handling of ftruncate() on AFP_AfpInfo stream
     omits  6f8c188   s4:torture:vfs_fruit: file without AFP_AfpInfo
     omits  0af7bf4   vfs_fruit: stat AFP_AfpInfo must fail when it doesn't exist
     omits  748adea   vfs_fruit: fix some debug messages
     omits  1650e79   s3:lib/errmap_unix: map EOVERFLOW to NT_STATUS_ALLOTTED_SPACE_EXCEEDED
     omits  ba00884   s4:torture:vfs_fruit: fix flakey test_write_atalk_rfork_io with OS X
     omits  3632609   s4:torture:vfs_fruit: fix test_rename_dir_openfile() to work with OS X
     omits  0fc2ed8   s4:torture:vfs_fruit: fix test_aapl() to work with OS X
     omits  56bf276   s4:torture:vfs_fruit: skip test_stream_names() without "localdir"
     omits  987e12b   s4:torture:vfs_fruit: skip test_adouble_conversion() without "localdir"
     omits  0a9a7c2   s4:torture:vfs_fruit: skip test test_read_atalk_metadata() without "localdir" and rename it
     omits  155397e   s4:torture:vfs_fruit: add explicit cleanup of testfiles
     omits  3c0ac9b   s4:torture:vfs_fruit: add --option=torture:osx for enable_aapl()
     omits  fdf937e   s4:torture:vfs_fruit: enhance check_stream
     omits  8694da4   s4:torture:vfs_fruit: use AFPINFO_STREAM_NAME
     omits  8e0cf77   s4:torture:vfs_fruit: tweak check_stream_list()
     omits  1d13744   s4:torture:vfs_fruit: rename tree1 -> tree
     omits  9d28f82   s4:torture:vfs_fruit: remove unused tree2
     omits  7ba9f82   s4-torture: add a negoex ndr pullpush test.
     omits  f37a20e   releasing package samba version 2:4.3.3+dfsg-1
     omits  af00aa0   Add Replaces: samba to samba-libs because of moved libs.
     omits  a1774eb   docs: Fix typos in man vfs_gpfs.
     omits  dbd87b9   tdb: Refuse to load a database with hash size 0
     omits  bffcc17   libads: Remove "foreign" from ads_struct
     omits  bf1fa9e   negoex.idl: use DATA_BLOB for negoex_BYTE_VECTOR
     omits  a4fa489   negoex.idl: initial version
     omits  d7feb18   s3: libsmb: Correctly initialize the list head when keeping a list of primary followed by DFS connections.
     omits  f27ba17   vfs_glusterfs: Fix a memory leak in AIO
     omits  55d8bfc   s3:libsmb: remove unused spnego related includes
     omits  fbcc309   s3:smbd: remove unused spnego related includes
     omits  a7fa3a6   smbd: make "hide dot files" option work with "store dos attributes = yes"
     omits  76edbf5   lib/async_req: do not install async_connect_send_test.
     omits  795c543   lib/param: add a fixed unified lpcfg_string_{free,set,set_upper}() infrastructure
     omits  b8ecf97   samba-tool: fsmo.py throws an uncaught exception if no
     omits  95ed8b7   s4:torture:vfs_fruit: add a test for POSIX rename
     omits  685ad2d   vfs_fruit: enable POSIX directory rename semantics
     omits  dfbf293   vfs_fruit: add a flag that tracks whether use of AAPL was negotiated
     omits  02968ec   s3:smbd: file_struct: seperate POSIX directory rename cap from POSIX open
     omits  db3d0c6   s3:smbd: convert file_struct.posix_open to a bitmap with flags
     omits  e242d72   selftest: Ensure that if the SAMBA_PID is not set, that the env is not OK
     omits  b0aa686   selftest: Do not start tests on an environment that has failed to start up
     omits  af16d52   ldb torture: test ldb_unpack_data_only_attr_list
     omits  8644dd4   lib/ldb: Use talloc_memdup() because we know the length of the attribute already
     omits  8731e0c   lib/ldb: Rename variable for clarity
     omits  315049e   lib/ldb Add checks for overflow during ldb pack and parse
     omits  486fd45   lib/ldb: Use better variable names in ldb_unpack_only_attr_list
     omits  000249f   ldb: increment version due to added ldb_unpack_data_only_attr_list
     omits  61a84ca   lib/ldb: Clarify the intent of ldb_data_unpack_withlist
     omits  abcd35f   ldb: introduce ldb_unpack_data_withlist to unpack partial list of attributes
     omits  1595f56   CVE-2015-8467: samdb: Match MS15-096 behaviour for userAccountControl
     omits  bc2d859   CVE-2015-5296: libcli/smb: make sure we require signing when we demand encryption on a session
     omits  aef4113   CVE-2015-5296: s3:libsmb: force signing when requiring encryption in SMBC_server_internal()
     omits  f8b0f7f   CVE-2015-5296: s3:libsmb: force signing when requiring encryption in do_connect()
     omits  acbb4dd   CVE-2015-5299: s3-shadow-copy2: fix missing access check on snapdir
     omits  cc137fa   CVE-2015-5252: s3: smbd: Fix symlink verification (file access outside the share).
     omits  7606c0d   CVE-2015-5252: s3: smbd: Fix symlink verification (file access outside the share).
     omits  420f38f   VERSION: Bump version up to 4.3.4...
     omits  fba7e79   Merge tag 'samba-4.3.3' into v4-3-test
     omits  067640b   Merge tag 'ldb-1.1.24' into master
     omits  2058ce2   smbd: make "hide dot files" option work with "store dos attributes = yes"
     omits  0fd68d0   librpc: Fix typos
     omits  6aaa8b6   lib: Remove ntstatus.h from gencache.h
     omits  4767291   vfs_glusterfs: Attach missing destructor.
     omits  0062177   smbd: Fix CID 1343333 Uninitialized variables
     omits  5a72a2e   dns_server: Remove unused handle_question
     omits  6adec93   dns_server: Add handle_authoritative_send()
     omits  3b7f99e   dns_server: Add add_dns_res_rec()
     omits  b6aaf77   dns_server: Convert "ask_forwarder" params
     omits  4b54e14   dns_server: Simplify array length handling
     omits  3f2cbb6   dns_server: Simplify talloc handling
     omits  9de59c7   dns_server: Consolidate talloc_realloc
     omits  4807577   Fix bug 10881 Wrong keytab permissions when joining additional DC with BIND backend
     omits  dc20c30   samba_upgradedns: Set correct permissions on secrets.keytab for BIND9
     omits  308d645   samba_upgradedns: Improve search for existing accounts in secrets.ldb
     omits  d38e221   samba_dnsupdate: Simplify logic and add more verbose debugging
     omits  9bbb468   samba_dnsupdate: Expand output when --verbose is set
     omits  67b6346   python: Give a more helpful error message when we do not have an smb.conf
     omits  ab1ebb1   password_lockout: test creds.get_kerberos_state()
     omits  795f472   auth: keep track of lastLogon and lastLogonTimestamp
     omits  909ebe0   password_lockout tests: add assertLoginFailure()
     omits  d097e81   auth: increase resolution for password grace period calculation
     omits  8b26559   pycredentials: add get_kerberos_state() method
     omits  203f023   s4:torture/winbind: add more debug output to samba4.winbind.struct.domain_info
     omits  79f946c   lib: Remove unused talloc_append_blob
     omits  8ca3a58   gencache: Refactor gencache_set_data_blob
     omits  640870e   lib: Separate out xx_path() & callers
     omits  c281573   lib: Use directory_create_or_exist in xx_path
     omits  d547d03   gencache: True->true, False->false
     omits  5ef9184   lib: Add gencache.h
     omits  f3d140f   docs-xml: Update idmap_rfc2307 manpage for new realm handling
     omits  7cd99b4   idmap_rfc2307: Fix handling of cn realm
     omits  b36c621   s3: smbd: When requesting posix open in open_file_ntcreate() we need to set all posix flags.
     omits  07c4967   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  dea2add   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  0db1ad9   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  82fa4ec   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  cad35c5   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  c19eaf3   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  cc13120   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  a1deced   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  c808a63   s3: smbd: Moving lp_posix_pathnames() out of the lower-level code.
     omits  7fb3d28   ctdb-client: Only get capabilities from active nodes
     omits  569ce95   Fix bug #11394 -  Crash: Bad talloc magic value - access after free
     omits  36813a4   vfs_glusterfs: Move vfs_gluster_write and vfs_gluster_pwrite.
     omits  8d3b900   vfs_glusterfs: Add white space so vfs_glusterfs_pread_send and vfs_glusterfs_pwrite_send match.
     omits  640ecbb   vfs_glusterfs: Fix AIO crash on smb.conf reload.
     omits  79df4ca   docs: Fix typos in man vfs_gpfs.
     omits  defa49e   s4-torture: Remove obsolte code in backupkey_heimdal rpc test
     omits  39bd6f0   s4-torture: Improve backupkey test to validate the self signed cert
     omits  eb11fba   s4-torture: Add a GnuTLS based backupkey rpc test
     omits  59c11db   s4-torture: Rename backupkey test to backupkey_heimdal
     omits  97765d4   s4-rpc_server: Add a GnuTLS based backupkey implementation
     omits  53e8fee   waf: Check for GnuTLS 3.4.7
     omits  8e09669   s4-rpc-bkrp: Do not set the ca status
     omits  e8ce1f2   s4-rpc_server: Rename dcesrv_backupkey to dcesrv_backupkey_heimdal
     omits  39ec708   s4-torture: make sure we always verify ndr pull and push of bkrp_exported_RSA_key_pair struct.
     omits  2f16675   ping_pong: add -l option
     omits  b63e3b9   ldb: version 1.1.24
     omits  f36cb71   CVE-2015-5330: ldb_dn_explode: copy strings by length, not terminators
     omits  538d305   CVE-2015-5330: next_codepoint_handle_ext: don't short-circuit UTF16 low bytes
     omits  a118d42   CVE-2015-5330: strupper_talloc_n_handle(): properly count characters
     omits  ba5dbda   CVE-2015-5330: Fix handling of unicode near string endings
     omits  0454b95   CVE-2015-5330: ldb_dn_escape_value: use known string length, not strlen()
     omits  7f51ec8   CVE-2015-5330: ldb_dn: simplify and fix ldb_dn_escape_internal()
     omits  aa6c271   CVE-2015-3223: lib: ldb: Use memmem binary search, not strstr text search.
     omits  ec504db   CVE-2015-3223: lib: ldb: Cope with canonicalise_fn returning string "", length 0.
     omits  3c6ea32   lib/param: handle (ignore) substitution variable in smb.conf
     omits  ea6de66   libdns: Small cleanup
     omits  dfceb51   libdns: Convert dns_udp_request to 0/errno
     omits  190e2c0   libdns: Properly set ENOMEM
     omits  a0fcb7b   libdns: tsocket returns -1 and sets errno
     omits  557169d   lib: Use GUID_buf_string in discover_dc_dns
     omits  9bc3f48   lib: Lift lp_disable_netbios one level
     omits  7e5b4cd   lib: make debug_dsdcinfo_flags static
     omits  2bb0b47   lib: Avoid a includes.h
     omits  17bc0fa   Revert "s3: smbd: Tear down global_smbXsrv_client in the correct order."
     omits  fbcf1d2   samba-tool: user create examples show 'add' instead of 'create'
     omits  4735e5f   samba-tool: fsmo.py throws an uncaught exception if no
     omits  dd9b12a   ntlm_auth: Add --offline-logon
     omits  bd569c3   docs-xml: Document range parameter for idmap_autorid
     omits  fe91857   ctdb-ipalloc: Rename top level IP allocation algorithm functions
     omits  821aa24   ctdb-ipalloc: Rename ctdb_takeover_run_core() to ipalloc()
     omits  99abcc1   ctdb-ipalloc: Fold force_rebalance_candidates into IP allocation state
     omits  13aa583   ctdb-ipalloc: Fold all IPs list into IP allocation state
     omits  fb66232   ctdb-ipalloc: Tidy up some of the IP allocation functions
     omits  5dcc1d7   ctdb-daemon: Don't delete connection information for released IP
     omits  4261d6e   ctdb-daemon: Move VNN lookup out of ctdb_remove_tcp_connection()
     omits  473f1a7   ctdb-daemon: Do not process tickle updates for hosted IP addresses
     omits  80c0511   ctdb-docs: Rewrite event script documentation
     omits  d7424f9   ctdb-scripts: Add exportfs cache to NFS Linux kernel callout
     omits  bd7c94d   ctdb-recoverd: Drop function unban_all_nodes()
     omits  ad66858   ctdb-daemon: Drop handling of ban control sent to unexpected node
     omits  e153501   ldb torture: Test ldb unpacking and printing
     omits  5137daa   ldb: Move ldb_(un)pack_data into ldb_module.h for testing
     omits  60dc26b   ldb: Fix installation of _ldb_text.py
     omits  2a55a0b   Fix little typo in README file
     omits  c505076   Fix propagation of LDB errors through TDB.
     omits  99b2fd4   ldb: Fix bug triggered by having an empty message in database during search.
     omits  c118fbc   clitar: cope with functions of older versions of libarchive
     omits  f25d09a   selftest: fix tar test with Pax format archives
     omits  412cefc   client: Fix parameter mixup
     omits  392b2d3   docs: Fix some typos in the idmap backend section.
     omits  0230180   doc: fix a typo in the smb.conf manpage, explanation of idmap config
     omits  0583d5b   vfs: remove posix_flags hack, bump interface version to 34
     omits  0f0693d   s4:torture:vfs_fruit: add a test for POSIX rename
     omits  1d7bef5   vfs_fruit: enable POSIX directory rename semantics
     omits  89a7394   vfs_fruit: add a flag that tracks whether use of AAPL was negotiated
     omits  bf19575   s3:smbd: file_struct: seperate POSIX directory rename cap from POSIX open
     omits  d698cec   s3:smbd: convert file_struct.posix_open to a bitmap with flags
     omits  d2a0806   s4:torture/basic: Fix misleading test case names in aliases test
     omits  6321145   lib/async_req: do not install async_connect_send_test.
     omits  3bbd8d3   libcli/smb: fix BUFFER_OVERFLOW handling in tstream_smbXcli_np
     omits  0e8d33f   libcli/smb: correctly handle STATUS_BUFFER_OVERFLOW in smb1cli_readx*
     omits  68850f3   libcli/smb: correctly handle STATUS_BUFFER_OVERFLOW in smb2cli_query_info*
     omits  b47bfce   libcli/smb: correctly handle STATUS_BUFFER_OVERFLOW in smb2cli_read*
     omits  91e12e0   libcli/smb: make sure we have a body size of 0x31 before dereferencing an ioctl response
     omits  58d4e77   smbd: Fix a comment
     omits  797be47   smbd: Simplify a boolean expression
     omits  49912f2   smbd: Fix a typo
     omits  b3a9b88   librpc: Fix a possible array out of bounds access
     omits  87f8bdd   lib: Fix an array subscript is above array bounds error
     omits  c2de842   s3:talloc_dict: fix a SIGBUS when dereferencing unaligned pointers
     omits  a84eed5   lib/param: add a fixed unified lpcfg_string_{free,set,set_upper}() infrastructure
     omits  0548fc5   docs: change pdbedit --set-nt-hash to be consistent
     omits  9368917   passdb: Change ABI version to 0.24.2
     omits  576b92a   pdb: add a blackbox test for setting password with hash
     omits  1c91177   Add --set-nt-hash option to pdbedit to update user password from nt-hash hexstring.
     omits  bb9f13a   s3:torture: add traverse testing to LOCAL-RBTREE
     omits  0f46da0   dbwrap_rbt: fix modifying the db during traverse
     omits  5905079   dbwrap_rbt: add nested traverse protection
     omits  f3d1fc1   dbwrap_rbt: use talloc_zero_size() instead of a partial ZERO_STRUCT()
     omits  257ec9c   docs: Fix some typos in the idmap backend section.
     omits  1ee7053   ctdb-protocol: Fix marshalling for struct ctdb_rec_data
     omits  8ded8e8   ctdb-protocol: Add API to extract ctdb_ltdb_header from TDB_DATA
     omits  5f5b319   ctdb-protocol: Fix marshalling of struct ctdb_public_ip_list
     omits  5498b71   ctdb-protocol: Fix marshalling of struct ctdb_addr_info
     omits  5878177   ctdb-protocol: Do not expect a reply for SHUTDOWN control
     omits  3fc6a89   ctdb-protocol: Add marshalling for TDB_DATA
     omits  3d84399   ctdb-protocol: Add utility function ctdb_sock_addr_to_string
     omits  af13e56   ctdb-system: Use protocol/protocol.h instead of ctdb_private.h
     omits  2bad37d   ctdb-include: Make client header self contained
     omits  28fb899   ctdb-include: Make protocol headers self contained
     omits  8024e19   s3: smbd: Tear down global_smbXsrv_client in the correct order.
     omits  2b0df37   s3: docs: Fix "strict rename" doc to match code.
     omits  16f2028   s3: smbd: Change semantics of strict rename to search the file open db.
     omits  1582006   s3: smbd: have_file_open_below() fails to enumerate open files below an open directory handle.
     omits  9883599   smbd:dir: remove an extra empty line in files_below_forall()
     omits  3b2ae07   build:wafsamba: Ensure that check_group_ordering can be overridden
     omits  735cf06   build:wafsamba: Ensure that target clones get a different name
     omits  cc4f7e3   build:wafsamba: Specify whether node objects or flat lists in ant_glob
     omits  22386dc   samba-tool: replace use of os.popen
     omits  e6f88c1   libads: Fix picky const warning with krb5_set_password_using_ccache
     omits  0733ce3   gensec: Fix picky unused variable errors
     omits  ab0cbf9   auth: Fix picky const warnings in gssapi_pac
     omits  e0504a8   s4-auth: Fix picky unused variable warning
     omits  e9e306b   krb5_wrap: Fix picky const compiler warnings
     omits  bf10446   selftest: Fix Samba::bindir_path() with a valid directory.
     omits  8aab442   dbwrap_tdb: Fix a typo
     omits  33084a1   ctdb-ipalloc: Drop unnecessary struct ctdb_ipflags
     omits  e73496d   ctdb-ipalloc: Move memory allocation into ipalloc_state_init()
     omits  47c5e5a   ctdb-ipalloc: Have set_ipflags_internal() set ipalloc_state->ipflags
     omits  dd163e2   ctdb-ipalloc: Fold IP flags into IP allocation state
     omits  22a930a   ctdb-ipalloc: Use number of nodes from IP allocation state
     omits  1316241   ctdb-ipalloc: Allocate memory off IP allocation state
     omits  921e17d   ctdb-ipalloc: Add error handling to IP allocation
     omits  25c1093   ctdb-ipalloc: Drop CTDB context argument from set_ipflags_internal()
     omits  0111773   samba-tool:provision: fix bug 11600
     omits  8fdda6f   ctdb-scripts: Drop creation of database directories
     omits  5b7bb60   ctdb-ipalloc: ctdb_takeover_run_core() takes ipalloc_state
     omits  5fba874   ctdb-ipalloc: Tidy up create_merged_ip_list()
     omits  837483c   ctdb-ipalloc: Move IP list creation out to ctdb_takeover_run()
     omits  cc1637b   ctdb-ipalloc: Add no_ip_failback to ipalloc_state
     omits  47ddd62   ctdb-ipalloc: New enum ipalloc_algorithm in ipalloc_state
     omits  cfa0ffe   ctdb-ipalloc: Move IP allocation state into its own struct
     omits  d7739d8   ctdb-ipalloc: node_ip_coverage() doesn't need CTDB context
     omits  d451bba   selftest: add test for force user and well-known primary group
     omits  d8717a0   auth: consistent handling of well-known alias as primary gid
     omits  42b7d48   auth: remove a line that has no effect
     omits  7e9aaec   winbind: Don't crash on invalid idmap configs
     omits  5036c6e   build:wafsamba: remove check_orphaned_targets
     omits  155eeac   lib: Fix memalign_array overflow protection
     omits  69e427e   idl: Some CC can't find indented #defines
     omits  12b9b77   idl: Avoid // style comments
     omits  5f6c4fa   libreplace: Only check for malloc.h if needed
     omits  b64f249   libreplace: Put the malloc.h check on a line of its own
     omits  4dfa4ed   libreplace: Only check malloc.h once
     omits  bf06a51   Set LD_LIBRARY_PATH during tests.
     omits  39d0a81   lib: tevent: Whitespace cleanup.
     omits  2be3dd1   lib: tevent: Fix bug in poll backend - poll_event_loop_poll()
     omits  d967789   ctdb-scripts: Fix CTDB_DBDIR=tmpfs support
     omits  3968e33   ctdb: Remove unused ctdb_set_process_name
     omits  03b27bd   ctdb: Use prctl_set_comment from lib/util
     omits  9ec0938   lib/util: Move util_process from util to util-core
     omits  fd05d61   libcli/smb: Use helper function for finding session
     omits  8f9bf74   smbd: Simplify check_access()
     omits  c2d5fdb   smbd: Use check_access_fsp where appropriate
     omits  c056daf   smbd: Factor out check_access_fsp() from check_access()
     omits  c8485dd   smbd: Refactor check_access()
     omits  b8467dc   smbd: Early return from dos_mode_debug_print
     omits  b367dbc   smbd: Add hex value to dos_mode_debug_print
     omits  0f5c98f   smbd: Use dos_mode_debug_print in get_ea_dos_attribute
     omits  313986b   smbd: Use dos_mode_debug_print in dos_mode_from_sbuf
     omits  053cf16   smbd: Use dos_mode_debug_print in dos_mode_msdfs
     omits  89deffb   smbd: Streamline dos_mode_debug_print
     omits  5943f92   s4-backupkey: Don't use deprecated data structures
     omits  f4da068   s4-torture: Rename issuer unique id in backupkey test
     omits  3de5943   s3-vfs_snapper: Fix a possible use without init warning
     omits  f7e2399   s4-param: Make sure newname is not used uninitialized
     omits  b486398   smbd: Move a message_send_all to the cleanupd
     omits  de6fe2a   smbd: Move cleanupd revalidate to a separate fn
     omits  bbeabd3   smbd: Move brl_validate to the cleanupd
     omits  14fc901   smbd: Move serverid_deregister() to the cleanupd
     omits  99833c9   smbd: Move messaging_cleanup() to the cleanupd
     omits  1dddba5   smbd: Move smbprofile_cleanup() to the cleanupd
     omits  b4b4fd0   smbprofile: Add dst pid to smbprofile_cleanup
     omits  e3e0a29   smbd: Implement a cleanup daemon
     omits  db99742   build:wafsamba: Waf 1.8 compatible declaration of 'mandatory' configuration tests
     omits  7c0575d   build:wafsamba: Install named.conf only once
     omits  cfe8bec   build:wafsamba: Replace Options.is_install by bld.is_install
     omits  44bf7c2   ctdb-recoverd: Factor out recovery master validation
     omits  e44957f   ctdb-recmaster: Update capabilities before calling first election
     omits  c5e50a4   ctdb-recoverd: Move VNN map retrieval to where it is needed
     omits  d1f996a   ctdb-recoverd: Drop explicit check for recovery lock
     omits  1499f3e   ctdb-recoverd: Simplify using TALLOC_FREE()
     omits  050e64b   ctdb-recoverd: Clarify that recmaster is being set on the current node
     omits  0833e47   ctdb-recoverd: Do not sanity check recovery master with local daemon
     omits  d8decd0   ctdb-recoverd: Don't retrieve recovery master from local daemon
     omits  e90cab7   ctdb-recoverd: Explicitly set initial recovery master to unknown
     omits  018077f   ctdb-recoverd: Do not set recovery master during recovery
     omits  4b37cc7   ctdb-recoverd: Have recovery daemon remember election result
     omits  6f88375   ctdb-recoverd: Clarify recovery master validation logic
     omits  74fa62c   WHATSNEW: Document CTDB tunable change
     omits  9166c30   ctdb-daemon: Rename EventScriptTimeoutCount to MonitorTimeoutCount
     omits  55ad4d8   ctdb-daemon: Move script timeout count into monitor state
     omits  0d5db1c   ctdb-daemon: Reset script timeout count in monitor code
     omits  a33b50d   ctdb-daemon: Do not bother printing script timeout count
     omits  134ede8   ctdb-doc: Correct documentation for tunables for script timeout
     omits  bda2d9d   ctdb-ipalloc: Don't consider runstates in the IP takeover code
     omits  9ea3188   ctdb-ipalloc: Check for available IPs, not runstate, in takeover run
     omits  66574c9   ctdb-ipalloc: A VNN can only host IPs if node is in RUNNING runstate
     omits  6b4a961   ctdb-build: Remove ctdb-common-util subsystem
     omits  0fffdc1   ctdb-daemon: Remove unused ctdb_logging.[ch]
     omits  27bc80c   ctdb-tool: Use new debug level API
     omits  9c16aec   ctdb-common: Use new debug level API
     omits  8b1bf86   ctdb-tests: Build in common/logging.c
     omits  1757755   ctdb-tests: Replace ctdb_logging.h with common/logging.h
     omits  921d815   ctdb-transport: Replace ctdb_logging.h with common/logging.h
     omits  f50db5c   ctdb-server: Replace ctdb_logging.h with common/logging.h
     omits  3f31415   ctdb-common: Replace ctdb_logging.h with common/logging.h
     omits  7258e1d   ctdb-client: Replace ctdb_logging.h with common/logging.h
     omits  145da0b   ctdb-system: Replace ctdb_logging.h with common/logging.h
     omits  7e376f0   ctdb-logging: Remove duplicate definitions
     omits  dd7d2a4   ctdb-tests: Update test to set numeric debug levels
     omits  3d8c1ca   ctdb-logging: Allow numeric specification of debug level
     omits  2ddc527   ctdb-logging: Allow sub-string matching for debug level strings
     omits  64ef27b   ctdb-logging: Fix for loop condition
     omits  8534408   ctdb-logging: Add APIs to convert debug_level to and from integer
     omits  c170cdb   ctdb-logging: Move debug_extra definition to server/ctdb_logging.c
     omits  7dd2f1c   ctdb-daemon: Move ctdb_fork.c to server
     omits  848da80   ctdb-daemon: Move switch_from_server_to_client() to ctdb_daemon.c
     omits  eee4af5   WHATSNEW: Add async SMB2 flush and new aio parameter
     omits  90469a3   docs: Update doc for 'strict sync' parameter for async SMB2 flush
     omits  c4be0b7   s3: smbd: Change aio_pending_size static variable to a new "aio max threads" smb.conf parameter.
     omits  c83ecbb   s3: smbd: Remove checks causing fallback to sync on pread/pwrite/fsync.
     omits  5327c60   s3: smbd: Remove --with-aio-support. We no longer would ever prefer POSIX-RT aio, use pthread_aio instead.
     omits  e05d69f   docs: correct the name of the idmap config group of parameters
     omits  0aca421   ctdb: Fix the O3 developer build
     omits  f9b92cf   selftest: Use strict sync = yes
     omits  c737fae   smbd: Issue fsync for SMB2 FLUSH asynchronously
     omits  17f4110   s3: smbd: Remove outstanding_aio_calls from globals.
     omits  8039382   s3: smbd: Remove aio_pending_size from globals.
     omits  0137105   s4-auth: Fix some debugging and crash in error cases
     omits  c4267ce   smbd: Remove dead code
     omits  0886637   ctdb-recoverd: Reload remote IPs as part of takeover run
     omits  8cdae3a   ctdb-recoverd: Move ctdb_reload_remote_public_ips() to ctdb_takeover.c
     omits  c37e3c0   ctdb-recoverd: Remote IP validation can't cause a takeover run
     omits  8b7b153   ctdb-recoverd: Drop culprit argument from ctdb_reload_remote_public_ips()
     omits  1d7d5ab   ctdb-recoverd: Trigger takeover run after rebalance timeout
     omits  a7e8687   ctdb-recoverd: Remove unnecessary assignments of need_takeover_run
     omits  d608862   ctdb-recoverd: Do not run recovery-related events around IP takeover
     omits  bd0befa   ctdb-recoverd: Drop some sanity checking in local IP verification
     omits  ceb0988   ctdb-recoverd: Simplify using TALLOC_FREE()
     omits  8936281   gss: samba member server returns incorrect error code with some versions of krb5
     omits  6e6436a   ctdb-build: Don't try to install unavailable prebuilt manpages
     omits  85a2a2c   ctdb-tests: Try to connect few times before failing in comm_client_test
     omits  42d5b06   vfs: Remove smb_traffic_analyzer
     omits  2d6dca8   smbstatus: always initialize a messaing context
     omits  c701e46   lib: Fix CID 1338432 Unchecked return value
     omits  609a923   dns_server: Fix a clang warning
     omits  4749aec   s3-build: Avoid setting CTDB specific include path
     omits  be670ef   ctdb-scripts: Add support for CTDB_DBDIR in tmpfs
     omits  f05c6d3   ctdb-scripts: Improve CTDB wrapper shutdown code
     omits  3a7c73f   ctdb-tests: Fix "setreclock" test
     omits  1ed577e   ctdb-tests: Fix the name of the "setreclock" test
     omits  af26da1   vfs_acl_*: Only sha256 needed
     omits  dee23e9   vfs_cap: Fix a warning
     omits  9b2a4b1   lib: messages.h references struct iovec
     omits  c66592b   lib: Move some procid functions out of util.c
     omits  f0bfd61   lib: Increase a debuglevel
     omits  c526f5f   vfs_fruit: Fix a typo
     omits  c315fce   Fix various spelling errors
     omits  f3033a1   build:wafsamba: Remove the print_commands code from the build scripts
     omits  7c5a92a   build:wafsamba: Include the print_commands.py tool from upstream
     omits  963ccff   build:wafsamba: Remove samba_utils.runonce
     omits  1f4f081   build:wafsamba: Remove the unnecessary intltool module dependency
     omits  9731979   build:wafsamba: Moved samba_before_apply_obj_vars to samba_utils
     omits  40a2deb   build:wafsamba: Removed unnecessary and misleading variables
     omits  bae51eb   Fix up some aesthetics ... ie, align things as they were intended.
     omits  278c257   spec files: remove pam_smbpass
     omits  21d0082   source3/wscript: remove pam_smbpass option as it was removed
     omits  c6ae462   doc: fix a typo in the smb.conf manpage, explanation of idmap config
     omits  23663b9   vfs_gpfs: Re-enable share modes
     omits  2515ad7   vfs_gpfs: Fix the build with -Werror=declaration-after-statement
     omits  ce8068e   remove many valgrind errors for base.lock test
     omits  7ade519   fix uninitialised read in process_host_announce
     omits  17482d5   fix writev(vector[...]) points to uninitialised bytes in call_trans2findnext
     omits  0f2f8a4   fix 'Invalid read of size 1' in reply_search
     omits  9b2aba1   fix writev(vector[...]) points to uninitialised bytes in call_trans2findfirst
     omits  8a40da8   ldb: version 1.1.23
     omits  0d36d6d   pyldb: Improve test coverage
     omits  dd7baa2   pyldb: Fixes and Python3 compat for Dn component accessors
     omits  a4d9c87   pyldb: Prevent segfault when first module is NULL
     omits  2a29e36   ldb: Build for two Python versions at once
     omits  e958385   pyldb: Adapt tests to Python 3
     omits  d584d5e   pyldb: Split text/byte strings for compatibility with Python 3
     omits  0b384f6   pyldb: Modernize test suite
     omits  b509cbd   pyldb: Add Python 3 compatibility (except strings)
     omits  a04cfaa   pyldb: DECREF old debug function when resetting it
     omits  2e298c1   pyldb: Don't use the internal macro PyObject_REPR
     omits  7935796   pyldb: Properly increase refcount of returned values
     omits  c54fc3f   ldb: Run the Python testsuite
     omits  9884a8f   tevent: version 0.9.26
     omits  68077c6   lib: tevent: docs: Add tutorial on thread usage.
     omits  a132320   lib: tevent: tests: Add a second thread test that does request/reply.
     omits  187aebb   lib: tevent: Initial test of tevent threaded context code.
     omits  49bddd8   lib: tevent: Initial checkin of threaded tevent context calling code.
     omits  bb0050a   tdb: version 1.3.8
     omits  4f6eb58   talloc: version 2.1.5
     omits  fae40ec   uwrap: Bump version to 1.2.0
     omits  2dae19c   uwrap: Fix build warning with release build
     omits  3328bce   uwrap: Add the EINVAL check to setegid()
     omits  6e30b2e   uwrap: Allow setgid calls only for privileged users
     omits  be0cb8a   uwrap: Allow setregid calls only for privileged users
     omits  6b38879   uwrap: Allow setresgid calls only for privileged users
     omits  2232db8   uwrap: Move the EINVAL check down in seteuid()
     omits  56970b4   uwrap: Allow setuid calls only for privileged users
     omits  253f42c   uwrap: Allow setreuid calls only for privileged users
     omits  5a9c80d   uwrap: Allow setresuid calls only for privileged users
     omits  656f0db   uwrap: Fix a possible null pointer dereference
     omits  aad7019   uwrap: Improve debug output
     omits  8922654   uwrap: Fix debug line in uwrap_init()
     omits  e821e45   ntvfs: Add error debug statements for set_unix_security
     omits  3d7fdb8   selftest: Start Samba AD DC as root
     omits  3b7cbc2   s4-rpc_server: Get the real initial uid for selftest
     omits  796a05b   selftest: Start smbd, nmbd and winbindd as root
     omits  6361063   s3-lib: Get the real initial uid for selftest
     omits  77eb8e0   vfs_offline: add documentation
     omits  b3f3ffe   vfs_offline: add a blackbox test
     omits  b37ecbd   vfs_offline: add vfs_offline module
     omits  89940f3   s3: rpcclient: Prevent null ptr access by returning error if no creds available
     omits  e8fab02   s3: winbind: Prevent null ptr access by returning error if no creds available
     omits  aa3cc0b   s3: smbd: If EA's are turned off on a share don't allow an SMB2 create containing them.
     omits  b06544d   wafsamba: detect programmer errors in CHECK_BUNDLED_SYSTEM()
     omits  c474173   tests: Add tests for net ads (join|leave)
     omits  23932d3   ctdb-build: Add ctdb/ directory to include path for top-level build
     omits  38d9278   ctdb-include: Use new protocol definitions
     omits  8b84a82   ctdb-protocol: Rename G_LOCK_READ/WRITE to CTDB_G_LOCK_READ/WRITE
     omits  b8b737c   ctdb-client: Rename g_lock datatypes as per new protocol.h
     omits  03c69d8   ctdb-include: Remove unused definitions
     omits  3b71d05   ctdb-tools: Use replace headers instead of system headers
     omits  409c92b   ctdb-daemon: Remove explicit include of ctdb_protocol.h
     omits  44e611d   ctdb-daemon: Rename struct ctdb_control_get_ifaces to ctdb_iface_list_old
     omits  ecfaef5   ctdb-daemon: Rename struct ctdb_control_public_ip_info to ctdb_public_ip_info_old
     omits  c4e9d61   ctdb-daemon: Rename struct ctdb_control_iface_info to ctdb_iface
     omits  417077c   ctdb-daemon: Rename struct ctdb_control_transdb to ctdb_transdb
     omits  1278a5a   ctdb-daemon: Rename struct ctdb_control_set_tunable to ctdb_tunable_old
     omits  64d8bb6   ctdb-daemon: Rename struct ctdb_control_pulldb to ctdb_pulldb
     omits  f8c2dc3   ctdb-daemon: Rename struct ctdb_control_gratious_arp to ctdb_addr_info_old
     omits  357bc60   ctdb-daemon: Rename struct ctdb_control_ip_iface to ctdb_addr_info_old
     omits  cb0be41   ctdb-daemon: Rename struct ctdb_tunable to ctdb_tunable_list
     omits  ca48135   ctdb-daemon: Rename struct ctdb_control_tcp_tickle_list to ctdb_tickle_list_old
     omits  e34afd8   ctdb-daemon: Rename struct srvid_request_data to ctdb_disable_message
     omits  cf1ac77   ctdb-daemon: Rename struct srvid_request to ctdb_srvid_message
     omits  d4de452   ctdb-daemon: Rename struct ctdb_ban_time to ctdb_ban_state
     omits  92a6ac1   ctdb-daemon: Rename struct ctdb_tcp_connection to ctdb_connection
     omits  a82ee23   ctdb-daemon: Rename struct ctdb_control_tcp_addr to ctdb_connection
     omits  699ee0d   ctdb-daemon: Rename struct ctdb_server_id_list to ctdb_client_id_list_old
     omits  d858c21   ctdb-daemon: Rename struct ctdb_server_id to ctdb_client_id
     omits  22c84ff   ctdb-daemon: Rename enum ctdb_server_id_type to ctdb_client_id_type
     omits  645cd43   ctdb-daemon: Rename struct ctdb_dbid_map to ctdb_dbid_map_old
     omits  563f518   ctdb-daemon: Remove struct ctdb_client_notify_deregister
     omits  b936145   ctdb-daemon: Rename struct ctdb_client_notify_register to ctdb_notify_data_old
     omits  6e37bb7   ctdb-include: Remove unused structure definitions
     omits  a9f335f   ctdb-daemon: Rename struct ctdb_iface to ctdb_interface
     omits  75572bd   ctdb-daemon: Rename struct ctdb_db_statistics to ctdb_db_statistics_old
     omits  b45bc4c   ctdb-daemon: Rename struct ctdb_statistics_wire to ctdb_statistics_list_old
     omits  b99436e   ctdb-daemon: Rename struct ctdb_rec_data to ctdb_rec_data_old
     omits  9bf7d0d   ctdb-daemon: Rename struct latency_counter to ctdb_latency_counter
     omits  04eaa07   ctdb-daemon: Rename struct ctdb_all_public_ips to ctdb_public_ip_list_old
     omits  2b76e58   ctdb-daemon: Rename struct ctdb_public_ip_list to public_ip_list
     omits  afc5d8a   ctdb-daemon: Rename struct ctdb_node_map to ctdb_node_map_old
     omits  c43b381   ctdb-include: Remove unnecessary typedefs
     omits  e8f8c63   ctdb-daemon: Rename struct ctdb_req_keepalive to ctdb_req_keepalive_old
     omits  1c828b4   ctdb-daemon: Rename struct ctdb_reply_control to ctdb_reply_control_old
     omits  e1fed53   ctdb-daemon: Rename struct ctdb_req_control to ctdb_req_control_old
     omits  acf858d   ctdb-daemon: Rename struct ctdb_req_message to ctdb_req_message_old
     omits  296d9f4   ctdb-daemon: Rename struct ctdb_reply_dmaster to ctdb_reply_dmaster_old
     omits  555a2f3   ctdb-daemon: Rename struct ctdb_req_dmaster to ctdb_req_dmaster_old
     omits  e23a289   ctdb-daemon: Rename struct ctdb_reply_error to ctdb_reply_error_old
     omits  277c21f   ctdb-daemon: Rename struct ctdb_reply_call to ctdb_reply_call_old
     omits  e0c42c5   ctdb-daemon: Rename struct ctdb_req_call to ctdb_req_call_old
     omits  f55889d   ctdb-daemon: Rename enum ctdb_eventscript_call to ctdb_event
     omits  e7c9e50   ctdb-daemon: Rename struct ctdb_scripts_wire to ctdb_script_list_old
     omits  b9b4bfa   ctdb-daemon: Rename struct ctdb_script_wire to ctdb_script
     omits  18879da   Changing log level of two entries to DBG_NOTICE
     omits  d5cdfa0   backupkey: Fix CID 1338078 (RESOURCE_LEAK)
     omits  4f84372   notifyd: Do not include CTDB headers without CLUSTER_SUPPORT enabled
     omits  ed1e646   smbd: Do not include CTDB headers without CLUSTER_SUPPORT enabled
     omits  af92f1b   s4.torture.smb2/session : Replace CHECK_VAL with torture macros
     omits  ad85c89   s3:smb2_server: make the logic of SMB2_CANCEL DLIST_REMOVE() clearer
     omits  d66863b   manpage: corrected small typo error
     omits  861018f   build:wafsamba: Remove the now unneeded special treatment of rpath flags
     omits  77afc1b   build:wafsamba: Update waf/wafadmin/Tools/config_c.py from upstream
     omits  9ef47d2   buildtools: Ignore exact Python version for ABI checking
     omits  2f61906   s4:heimdal_build: also use check_system_heimdal_lib() for "com_err"
     omits  3cb1d6e   s4:heimdal_build: handle CHECK_BUNDLED_SYSTEM returning False in check_system_heimdal_lib()
     omits  db04752   script/autobuild.py: exclude !pytalloc-util and !pyldb-util from bundling in samba-libs
     omits  a19bb29   s3: Remove unnecessary __P() macro
     omits  89d254d   lib/replace: Make sure that replacement strto[u]ll does not reset errno unexpectedly
     omits  8343c70   lib/replace: Replace BSD strtoull by wrapping strtoull instead of strtouq
     omits  f30a8a2   s4.torture.smb2/session: Add torture assert for close
     omits  e8a2dda   s4.torture.smb2/session: Add torture assert for unlink
     omits  9582a48   s4.torture.smb2/session : Replace CHECK_STATUS with torture macros
     omits  9e87465   smbd: Fix/simplify scavenger routines
     omits  db9e10d   s3-smbd: Fix use after issue in smbd_smb2_request_dispatch()
     omits  d8f3b49   ctdb-banning: Do not set recovery mode to ACTIVE in daemon
     omits  30a6a22   ctdb-include: Order function prototypes as per ctdb_client.c
     omits  d2bd076   ctdb-include: Remove unused structures and prototypes
     omits  03beaa3   ctdb-include: Move client function prototypes to ctdb_client.h
     omits  404c91e   ctdb-include: Move protocol structures from ctdb_private.h to ctdb_protocol.h
     omits  1e782e6   ctdb-include: Move protocol structures from ctdb_client.h to ctdb_protocol.h
     omits  6ce1aa9   ctdb-include: Group function prototypes from server/eventscript.c
     omits  819f862   ctdb-include: Group function prototypes from server/ctdb_vacuum.c
     omits  860f2edc6 ctdb-include: Group function prototypes from server/ctdb_uptime.c
     omits  bdce6c4   ctdb-include: Group function prototypes from server/ctdb_update_record.c
     omits  a24e2ae   ctdb-include: Group function prototypes from server/ctdb_tunables.c
     omits  7ffd56d   ctdb-include: Group function prototypes from server/ctdb_traverse.c
     omits  28b33b5   ctdb-include: Group function prototypes from server/ctdb_takeover.c
     omits  2d0f917   ctdb-include: Group function prototypes from server/ctdb_statistics.c
     omits  b0f10a4   ctdb-include: Group function prototypes from server/ctdb_serverids.c
     omits  beadc50   ctdb-include: Group function prototypes from server/ctdb_server.c
     omits  c0a20b9   ctdb-include: Group function prototypes from server/ctdb_recoverd.c
     omits  af95b2f   ctdb-include: Group function prototypes from server/ctdb_recover.c
     omits  19f87a0   ctdb-include: Group function prototypes from server/ctdb_persistent.c
     omits  9bb5e7d   ctdb-include: Group function prototypes from server/ctdb_monitor.c
     omits  3723eed   ctdb-include: Group function prototypes from server/ctdb_ltdb_server.c
     omits  ae35699   ctdb-include: Group function prototypes from server/ctdb_logging_syslog.c
     omits  930a620   ctdb-include: Group function prototypes from server/ctdb_logging_file.c
     omits  bc14982   ctdb-include: Group function prototypes from server/ctdb_logging.c
     omits  8a4b342   ctdb-include: Group function prototypes from server/ctdb_lock.c
     omits  568a4ce   ctdb-include: Group function prototypes from server/ctdb_keepalive.c
     omits  d85e13b   ctdb-include: Group function prototypes from server/ctdb_freeze.c
     omits  9c52c3d   ctdb-include: Group function prototypes from server/ctdb_daemon.c
     omits  740bb90   ctdb-include: Group function prototypes from server/ctdb_control.c
     omits  171299d   ctdb-include: Group function prototypes from server/ctdb_call.c
     omits  3132720   ctdb-include: Group function prototypes from server/ctdb_banning.c
     omits  8558b76   ctdb-include: Group function prototypes from tcp and ib
     omits  4647787   ctdb-daemon: Separate prototypes for common client/server functions
     omits  f1b9d8f   ctdb-common: Add missing prototype for ctdb_cmdline_client()
     omits  ded94c4   ctdb-build: Calculate correct version when building from tarball
     omits  f50ac68   ctdb-daemon: Remove unused header file include/internal/includes.h
     omits  01c6c90   ctdb-daemon: Remove dependency on includes.h
     omits  2fdb332   ctdb-daemon: Stop using tevent compatibility definitions
     omits  7084cb9   ctdb-include: Move include/internal/cmdline.h to common/
     omits  b900adc   ctdb-daemon: Separate prototypes for system specific functions
     omits  4346fe6   KCC: allow --test-all-reps-from to work with --import-ldif
     omits  8bdfb25   KCC: samba_kcc --tmpdb X won't run if X already exists
     omits  e29fba6   KCC: with --import-ldif, don't default to standard DB url
     omits  46ac3a5   KCC: kcc.import_ldif doesn't need creds
     omits  6f93ffa   KCC: remove NTDSConnection API methods that are never used
     omits  b93205e   KCC: whitespace for pep8
     omits  1d5bb59   KCC: fix pep8 line length in load_ip_transport()
     omits  ab63f1a   KCC: Correct capitalisation of KCCError
     omits  e9f0799   KCC: raise KCCError, not Exception, in multiple places
     omits  2638419   KCC: NTDSConnection.load_connection() requires objectGUID
     omits  8f59362   KCC: remove debug print statements from intrasite and intersite
     omits  8fe9992   KCC: load samdb before calling kcc.run()
     omits  47b3334   KCC: load the object GUID with --import-ldif
     omits  30330b4   KCC: avoid logging alarming things about exected events
     omits  ad009be   KCC: shift --test-all-reps-from call to after kcc loading
     omits  a9ddca0   KCC: Simplify RNG seeding logic, dropping the default value
     omits  e442726   KCC: more debug info when --import-ldif goes badly
     omits  acd7728   KCC: default to not loading new samdb when we already have one
     omits  76f195a   KCC: fix typo in error path
     omits  6f78ad2   KCC: better explain our confusion in colour_vertices comment
     omits  310aa2f   KCC: clarify debugging messages in bridgehead finding code
     omits  5f60c4b   KCC: keep track of IP transport for dsa.new_connection()
     omits  059e283   KCC: set system flags for new intrasite connections
     omits  704fd83   KCC: correctly use dsa.new_connection() system_flags argument
     omits  4bf95b6   KCC: Use detect_failed in create_connections
     omits  0f8f99f   KCC: remove useless comments and simplify get_dsa_for_implied_replica()
     omits  24ae662   KCC: stop --forget-intersite-links forgetting local links
     omits  eec0d11   KCC: simplify get_dsa_for_implied_replica(), using IP invariant
     omits  5bbcbe3   KCC: Share commit wrapper between forget_ntdsconn and intrasite
     omits  03e3522   KCC: pull apart remove_unneeded_ntdsconn(), fixing intersite
     omits  472735f   KCC: shift common is_generated() check out of branches
     omits  6e3cb6b   s4:torture: fix a comment typo.
     omits  1466e27   build:wafsamba: Removed hard-coded class names from build scripts
     omits  6404c07   ldb: Fix a "ignoring return value" warning
     omits  c17df7c   messages: messages.h needs data_blob.h
     omits  7e45bec   examples: Fix unchecked result warnings
     omits  af03f5b   lib: Remove a includes.h reference
     omits  e11008ea  lib: Include samba_util.h in server_id_db.h
     omits  58418df   lib: dbwrap_local_open references loadparm_context
     omits  ed833d5   smbd: Fix a comment
     omits  f33e618   ctdb-include: Remove unused header file include/ctdb_typesafe_cb.h
     omits  20b82ea   ctdb-include: Remove unused header file include/ctdb.h
     omits  2666d06   build:wafsamba: removed most import * statements
     omits  859e341   lib: util: Make non-critical message a warning.
     omits  86111fc   ctdb-scripts: Fix an incorrect comment
     omits  b9903d7   ctdb-scripts: Remove PID file only if it existed
     omits  0a90ed5   ctdb: open the RO tracking db with perms 0600 instead of 0000
     omits  cbae31c   build: --picky-developer implies --enable-developer
     omits  151a7da   ctdb-build: Define CTDB_SOCKET at configure time
     omits  af99846   ctdb-tool: Remove repack command
     omits  47cddb6   ctdb-ib: Fix build for infiniband transport
     omits  42b1d30   ctdb-daemon: Keep protocol.h in sync with ctdb_protocol.h
     omits  84b7a9f   build:wafsamba: dead code removal in gettext detection
     omits  f9d6be3   selftest: Avoid system krb5.conf in "none" test env
     omits  8d3106b   selftest: Avoid system krb5.conf in some test envs that don't use kerberos
     omits  63c8919   selftest: Avoid system krb5.conf in testenv provisioning
     omits  843cb8e   Documentation : Add GitHub notes to README.
     omits  5350945   WHATSNEW: Describe nss_wins changes
     omits  5ab1452   nss_wins: Use libwbclient to query wins server
     omits  0abbfb2   nss_wins: Use lp_global_no_reinit()
     omits  0d962e0   selftest: Confirm a demote of a real network works
     omits  be2e0e6   selftest: Add sample provision of master-c596ac6 with multiple DCs
     omits  97577fd   Add samba4.smb2.create.mkdir-dup(ad_dc_ntvfs) as flapping
     omits  55a13e1   samba-tool domain demote: Add support for removing by NTDS GUID
     omits  e57dcdd   samba-tool domain demote: Add --verbose and --quiet options
     omits  642de91   samba-tool domain demote: Remove dns-SERVER object as well
     omits  145bb6f   samba-tool domain demote: Remove all references to the demoted host, even in DNS
     omits  3226077   pydns: Add replace_by_dn()
     omits  a3b92a5   samba-tool domain demote: Use dn.add_base/dn.add_child
     omits  00ffb67   samba-tool domain demote: Remove correct DNs and from the correct locations
     omits  fff09da   dns_server: Give WERR_DNS_ERROR_NAME_DOES_NOT_EXIST on empty records
     omits  27039a7   selftest: Add tests confirming the demote actually removes objects
     omits  e432c1b   samba-tool domain demote: Refuse to remove ourself
     omits  097435c   selftest: Run samba-tool domain demote while we have a clone of the DB handy
     omits  1f88353   samba-tool domain demote: Rework to allow cleanup of partial demotion, catch more errors
     omits  8086900   selftest: Make it clear that the first argument to KCC.run() is unused
     omits  6965c98   selftest: Run demote test against the RODC environment also
     omits  cf075f2   selftest: Reorder tests.py to ensure that demote, then dbcheck run last.
     omits  f121173   samba-tool domain demote: Allow to operate on an RODC and a subdomain
     omits  1874f59   samba-tool domain demote: Add --remove-other-dead-server
     omits  2191fca   dns_server: Add python method to extract a DNS entry from a ldb.MessageElement
     omits  b48776d   pydsdb: Also accept ldb.MessageElement values to dsdb routines
     omits  87cd68c   dns_server: Add a python module directly accessing DNS records in sam.ldb
     omits  0504065   dns_server: Put more code in common
     omits  2715805   selftest: Add tests for samdb_to_ldif_file
     omits  dadfffb   python/kcc: Write correct module list into the file during ldif_to_samdb
     omits  1c02f28   ldb: Fix python bindings to accept a string as a DN
     omits  ffe8090   samba-tool drs clone-dc-database: Require --targetdir
     omits  04512d1   repl: Use DSDB_REPL_FLAG_PRIORITISE_INCOMING in samba-tool drs replicate --local
     omits  d1d5ec3   samba-tool drs clone-dc: Add --include-secrets option
     omits  4b25650   repl: Give an error if we get a secret when not expecting one
     omits  6d301ad   samba-tool: Add new command 'samba-tool drs clone-dc-database'
     omits  80171dd   samba-tool: Remove vampire subcommand and now unused libnet_Vampire()
     omits  6cd8e79   repl_meta_data: Print more detail into the LDB error string, not just DEBUG()
     omits  0a924d1   smbd: Send SMB2 oplock breaks unencrypted
     omits  11620ae   smbd/quotas: Remove invalid quota status switch case
     omits  3e6af71   autobuild: Confirm we can build without --enable-developer
     omits  d7cc5d4   Add samba4.smb2.create.mkdir-dup(ad_dc_ntvfs) as flapping
     omits  71dcc76   build: Enable NTVFS file server to be omitted
     omits  0ccf842   ctdb-scripts: Use "ctdb ip all" instead of "ctdb ip -n all"
     omits  94898dd   ctdb-doc: Stop using "ctdb -n all ..."
     omits  f7c414d   ctdb-tests: Change "ctdb ip -n all" to "ctdb ip all"
     omits  8c2048b   ctdb-tools: Support "ctdb ip all" as equivalent to "ctdb ip -n all"
     omits  5d2c943   ctdb-tests: Do not test "ctdb nodestatus -n all"
     omits  a94378e   ctdb-tests: Drop use of "ctdb delip -n all" in simple tests
     omits  c607989   ctdb-tests: Drop simple uses of "ctdb -n all ..." from simple tests
     omits  c466ad4   texpect: undefined symbol rep_fprintf
     omits  d4059e1   auth: gensec: Parameters out_mem_ctx and ev are passed in the wrong order to gensec_spnego_server_try_fallback().
     omits  f1c49d7   messaging: Fix creating the dgm lockfile
     omits  3e705ad   lib/tsocket: fix non-blockging connect() error handling
     omits  41fe3cf   README.Coding: Update section about debug macros
     omits  b041a58   Remove function name from callers of DBG_*
     omits  1d3df7e   debug: Prefix messages from DBG_* with function name
     omits  38d547b   dcerpc.idl: accept invalid dcerpc_bind_nak pdus
     omits  7cf4553   selftest: Fix memset parameters in test for async_connect_send()
     omits  f99d0b9   script/release.sh: make it possible to create stable .x releases (x >= 1)
     omits  800437c   autobuild: add some system information to the autobuild tarball
     omits  f1835d8   dynconfig: Use replace.h and memory.h directly, not via includes.h
     omits  e4054f2   s3-torture: Remove (incorrect) samba3-specific behavior in samba3.raw.unlink now the server is correct
     omits  618d3dd   s3-torture: Add WILDDELETE test to smbtorture3 to test old wildcard delete with zero attribute
     omits  1d51119   s3-smbd: Fix old DOS client doing wildcard delete - gives a attribute type of zero
     omits  7f8f1ab   net: print file path in serverid wipedbs --verbose
     omits  f00dd4a   provision: Allow more OS levels in sambadns
     omits  35f2673   dsdb: Add functional levels for 2012 and 2012R2
     omits  e8bab90   samba_upgradedns: Remove unused variable
     omits  5701b99   samba-tool dns: Trap on conneciton errors and give useful info
     omits  751ea34   selftest: Correct comment about MAX_WRAPPED_INTERFACES
     omits  56dd83b   torture: Add better debug message when tsocket_address_inet_from_strings fails
     omits  05d4dbd   async_req: fix non-blocking connect()
     omits  aa96c75   selftest: add a test for async_connect_send()
     omits  6c81ecc   README.Coding: initialize pointers
     omits  1dba498   s4:lib/messaging: use a helper variable for tdb flags
     omits  79ec9cb   s4:lib/messaging: use correct path for names.tdb
     omits  19a0a7f   script/release.sh: make it possible to create stable .0 releases
     omits  3194a4d   lib: Remove unused serverid_get_random_unique_id
     omits  22b320c   lib: Add some debug to dgm_ref
     omits  01d7e26   lib: Push down unique generation one level
     omits  a788fd3   lib: Remove unused global my_unique_id
     omits  62f2b86   lib: Remove unused procid_is_me()
     omits  da88b0d   lib: Remove unused procid_self()
     omits  6eb6622   lib: Remove procid_self() from messages.c
     omits  b9fd6e2   lib: Fix pid_to_procid()
     omits  ad924ab   winbindd: Remove reference to procid_self()
     omits  bcc1521   fssd: Remove reference to procid_self()
     omits  46308bb   auth: Remove procid_self() from auth_samba4
     omits  7c48369   smbd: Fix file name buflen and padding in notify repsonse
     omits  2881679   vfs_streams_xattr: fix and simplify streams_xattr_get_name()
     omits  fedd096   vfs_fruit: hide the Netatalk metadata xattr in streaminfo
     omits  c8ee1a0   vfs_fruit: add and use define for the Netatalk metadata xattr
     omits  c4bdba9   s3.lib: Remove invalid switch case from sysquotas_nfs
     omits  2bad085   build: Build *_wrapper without -DNDEBUG for in-tree use
     omits  8bb44c5   ntlm auth: spelling fixes
     omits  7163e08   samba-tool --help: possessive pronoun "its" has no apostrophe
     omits  6456b06   ctdb-scripts: Lock debugging should print kernel stack for process in D state
     omits  dfc84fd   ctdb-daemon: Change handling of default capabilities
     omits  5aab31a   ctdb-recovery: Update vnnmap before database recovery
     omits  30460fc   s4:torture: Add test case for Replay of Persistent Handle on a Single Channel.
     omits  8bcbb6f   s3: test: Fix standalone valid users fileserver test.
     omits  2f6dc26   s3: lsa: lookup_name() logic for unqualified (no DOMAIN\ component) names is incorrect.
     omits  23f6744   s3:lib: validate domain name in lookup_wellknown_name()
     omits  808f29c   s4: torture: Add SMB2 access-based enumeration test. Passes against Win2k12R2.
     omits  b1bd84e   lib: cli: Add accessor function smb2cli_tcon_flags() to get tcon flags.
     omits  cc05f73   s3: smbd: Fix our access-based enumeration on "hide unreadable" to match Windows.
     omits  5538e2a   ctdb: fix typos in wscript comment.
     omits  cf89c7f   ctdb-tests: Fix CID 1327218-1327221
     omits  880b79a   s3:lib/messages: fix error check in messaging_filtered_read_send()
     omits  74013ae   ctdb: Fix CID 1327223 Unbounded source buffer
     omits  593bdb9   ctdb: Fix CID 1327224 Unbounded source buffer
     omits  826bffc   lib: Fix CID 1327227 Uninitialized scalar variable
     omits  8eedd5c   libdap: Fix a '\0' vs NULL mixup
     omits  d527ab1   ctdbd: Fix a typo
     omits  65e4829   Fixes for server role parameter in smb.conf manpage
     omits  9610805   build:wafsamba: Enable feature-compatible declaration for Waf 1.8
     omits  e73ccc0   Rely on /dev/urandom
     omits  5380f7b   lib: Add a little tool to perftest generate_random_buffer()
     omits  258ce91   lib: Move sys_rw* to lib/util
     omits  0ef9c67   s3:locking: initialize lease pointer in share_mode_traverse_fn()
     omits  cd0c2a5   s3:smbstatus: add stream name to share_entry_forall()
     omits  d643aaf   s3:smbd: remove unused arg oplock_request
     omits  3c00e8d   pam_smbpass: REMOVE this PAM module
     omits  8807ad1   dynconfig: Fix deps, no talloc required
     omits  b5cf80a   talloc: Fix the O3 developer build
     omits  2f7bee4   wbinfo: make --verbose --pam-logon print sids
     omits  b95b2be   A small improvement to the DEBUG message when pass-through authentication fails with ACCESS_DENIED. Increased it to log level 1 so it will print out and pointed to Restrict NTLM as the setting so people know what to look for.
     omits  7b6d1a2   talloc: Test that talloc magic differs between processes.
     omits  2b9bfab   talloc: Increment minor version due to added talloc_test_get_magic.
     omits  906a26a   talloc: Provide tests access to talloc_magic
     omits  f5135bd   talloc: Test magic protection measures.
     omits  4a4664a   lib/talloc: Provide multiple-loading detection for libtalloc via rand()
     omits  30ea897   lib/talloc: Disrupt buffer overflow attacks on Samba by using random magic
     omits  1dc0538   build: Move __attribute__ ((destructor)) and ((constructor)) tests to wafsamba
     omits  f25a5c9   Fix a few small spelling mistakes in DEBUG messages to reduce confusion for those trying to debug stuff.
     omits  5709dec   vfs_commit: set the fd on open before calling SMB_VFS_FSTAT
     omits  2bc55c5   lib: Make messaging_send_iov_from return 0/errno
     omits  678ad95   lib: Make messaging_ctdbd_init return 0/errno
     omits  7ae6943   lib: Use poll_intr_one_fd in ctdb_read_packet
     omits  a599b96   lib: Remove messaging_tevent_context() dependency from ctdbd_conn.c
     omits  6cc1e66   lib: Make ctdbd_probe return 0/errno
     omits  a6ddb99   lib: Make ctdb_unwatch return 0/errno
     omits  b02fd99   lib: Make ctdb_watch_us return 0/errno
     omits  2d00fcd   lib: Make ctdbd_control_local return 0/errno
     omits  a039463   lib: Make ctdbd_register_ips return 0/errno
     omits  4caf48e   lib: Make ctdbd_traverse return 0/errno
     omits  b78c282   lib: Make ctdbd_parse return 0/errno
     omits  4636912   lib: Make ctdbd_migrate return 0/errno
     omits  210e1fb   lib: Make ctdbd_db_attach return 0/errno
     omits  fdfc729   lib: Make ctdbd_messaging_send_iov return 0/errno
     omits  546d8b4   lib: Make ctdbd_messaging_connection return 0/errno
     omits  9da6cce   lib: Make ctdbd_init_connection return 0/errno
     omits  03fd13f   lib: Make ctdbd_register_msg_ctx return 0/errno
     omits  f3c88bd   lib: Make get_cluster_vnn return 0/errno
     omits  84ad1a1   lib: Make register_with_ctdbd return 0/errno
     omits  7b8853f   lib: Rename ctdbd_control_unix to ctdbd_control
     omits  fd6293c   lib: Remove ctdbd_control
     omits  108b627   lib: Use ctdbd_control_unix in ctdbd_register_ips
     omits  dae02e9   lib: Use ctdbd_control_unix in ctdbd_db_attach
     omits  a448945   lib: Use ctdbd_control_unix in ctdbd_db_attach
     omits  24d0add   lib: Use ctdbd_control_unix in ctdbd_dbpath
     omits  ab79b95   lib: Use ctdbd_control_unix in ctdbd_working
     omits  4d43101   lib: Rename a variable
     omits  a8c035f   lib: Use ctdbd_control_unix in get_cluster_vnn
     omits  a5438e0   lib: Use ctdbd_control_unix in register_with_ctdbd
     omits  858af0b   lib: Add ctdbd_control_unix
     omits  7b9016a   lib: Fix error talloc leaks in ctdb_read_packet()
     omits  0101748   ctdb-recoverd: Always check for recmaster before doing recovery
     omits  3cf93d9   ctdb-recoverd: Get rid of connected-ness comparison in election
     omits  fbd9c9f   ctdb-recoverd: Do not freeze databases for election
     omits  ffff66b   ctdb-call: Improve a log message
     omits  e6ff365   ctdb-recoverd: Add code for parallel database recovery
     omits  cbfabd8   ctdb-daemon: Add parallel database recovery capability
     omits  f0613ac   ctdb-daemon: Use a define for default capabilities
     omits  4b39a77   ctdb-recoverd: Update flags on all nodes before database recovery
     omits  9843363   ctdb-recoverd: Update capabilities before the database recovery
     omits  14cacd2   ctdb-recovery: Factor out existing database recovery code
     omits  9514319   ctdb-recoverd: Add parallel database recovery helper
     omits  b04c48d   ctdb-client: Add client API for new database controls
     omits  81ac247   ctdb-protocol: Add controls for parallel DB recovery
     omits  c6a50b9   ctdb-client: Add new client API implementation
     omits  34a6c99   ctdb-protocol: Add ctdb protocol serialization routines
     omits  8b45bad   ctdb-include: Remove unused structure definitions
     omits  54da5c6   ctdb-common: Add logging utilities
     omits  1543eed   ctdb-common: Add communication endpoint abstraction
     omits  e01c0ee   ctdb-common: Add packet write abstraction
     omits  c77d3bb   ctdb-common: Add packet read abstraction
     omits  facd3c8   ctdb-packaging: Package public library and header for tevent-unix-util
     omits  606b909   ctdb-build: Placeholder for public headers from lib/util
     omits  670db6a   lib/util: Create a new library for tevent_unix.c
     omits  9c16fe4   ctdb-build: Set PKGCONFIGDIR for public libraries in standalone build
     omits  100917b   ctdb-packaging: Install header files in ctdb subdirectory
     omits  b25c113   ctdb-daemon: Use reqid abstraction
     omits  9fd4d07   ctdb-common: Add request id abstraction
     omits  a7ea6b0   ctdb-include: Remove unused definition
     omits  7c6115e   ctdb-daemon: whitespace fix
     omits  9d75bf3   ctdb-daemon: formatting fix
     omits  62f1e25   ctdb-daemon: Replace ctdb_message with srvid abstraction
     omits  6272ef0   ctdb-common: Add srvid abstraction
     omits  e5592f9   ctdb-common: Add db_hash abstraction
     omits  acf5ebf   ctdb-daemon: whitespace fix
     omits  6672dee   ctdb-daemon: formatting fix
     omits  ba56d85   ctdb-daemon: Remove ctdb from traverse_callback
     omits  3f287ec   ctdb-build: Do not split ctdb-system subsystem
     omits  90b633e   ctdb-build: Do not mark ctdb private headers public
     omits  42f7722   ctdb-daemon: Remove freeze requirement for updating vnnmap
     omits  3cbd040   ctdb-daemon: Add a check for database generation consistency
     omits  0ff90f4   ctdb-daemon: Check packet generation against database generation
     omits  d701072   ctdb-call: Delete old defer queue if recovery occurs
     omits  3d11efe   ctdb-daemon: Use database generation in packet headers for database requests
     omits  1df2594   ctdb-daemon: Introduce per database generation
     omits  b81d4cc   ctdb-freeze: Use individual database freeze in blocking freeze
     omits  5d9dd4d   ctdb-freeze: Ensure all databases get frozen during freeze
     omits  8a5039d   ctdb-freeze: Make function ctdb_start_freeze static
     omits  b4357a7   ctdb-banning: Do not freeze databases on ban in the daemon
     omits  fafd35b   ctdb-freeze: Fix a log message
     omits  d14ff2d   ctdb-freeze: Use database specific information in wipe database
     omits  8580562   ctdb-freeze: Use single database transactions for global transactions
     omits  3d325e7   ctdb-daemon: Add controls for transactions on a single database
     omits  4f155e7   ctdb-daemon: Rename ctdb_control_wipe_database to ctdb_control_transdb
     omits  9f779f1   ctdb-freeze: simplify code with TALLOC_FREE
     omits  979f1c5   ctdb-freeze: Improve log message to indicate subsequent freeze operation
     omits  66c7bcc   ctdb-daemon: Use database specific mark/unmark routines
     omits  e0fa182   ctdb-daemon: Use database specific freeze check routine
     omits  e170bd4   ctdb-locking: Add mark/unmark functions for a single database
     omits  d139f87   ctdb-freeze: Use single database freeze/thaw code for existing controls
     omits  fd7ceaf   ctdb-freeze: Move destructor closer to where it is used
     omits  5447864   ctdb-daemon: Add controls to freeze/thaw a single database
     omits  7afabb1   ctdb-daemon: Avoid the use of ctdb->freeze_handle variable
     omits  8c58c73   ctdb-daemon: Avoid the use of ctdb->freeze_mode variable
     omits  056c44f   ctdb-freeze: Refactor code to check if databases are frozen
     omits  6a212d1   ctdb-call: Convert pending calls list to per database list
     omits  2116c55   ctdb-freeze: Use ctdb_db_iterator to commit transaction on databases
     omits  bc9a685   ctdb-freeze: Use ctdb_db_iterator to start transaction on databases
     omits  4576188   ctdb-freeze: Use ctdb_db_iterator to cancel transaction on databases
     omits  74f7eeb   ctdb-freeze: Use ctdb_db_prio_iterator to cancel transaction on databases
     omits  fb23760   ctdb-locking: Add ctdb_db_iterator to iterate through all databases
     omits  ecb858f   ctdb-locking: Expose ctdb_db_prio_iterator function
     omits  b1f4680   ctdb-locking: Rename ctdb_db_iterator to ctdb_db_prio_iterator
     omits  8df0916   ctdb-locking: Remove unused priority argument from db_handler_t
     omits  b15a65e   ctdb-freeze: Remove commented test code
     omits  036203e   ctdb-freeze: Do an early exit if freeze is pending
     omits  6d37cd3   s3:smbd: pass expected_seq_low to smbd_initialize_smb2
     omits  9893888   Change the libreadline word-break character set to only space, TAB and NL so that we can attempt to do tab completion across backslashes.
     omits  1bb46da   s3:smb3: rename smbd_smb2_first_negprot and pass expected seq_low
     omits  c0aa94e   s3:smbd: add expected_seq_low arg to smbd_initialize_smb2
     omits  8de1ed6   s4: fix linking smbtorture on Solaris.
     omits  5d7eaf9   vfs_fruit: return value of ad_pack in vfs_fruit.c
     omits  cc93469   lib: Fix CID 1128553 Unchecked return value from library
     omits  0db470d   lib: Fix CID 1325733 Uninitialized scalar variable
     omits  70dbba9   s3:ctdbd_conn: make sure we destroy tevent_fd before closing the socket
     omits  97bb100   lib: Pass sockname and timeout to ctdbd_probe()
     omits  770b0e4   lib: Pass sockname and timeout to ctdbd_messaging_connection
     omits  025fb48   lib: Move lp_ctdbd_socket() to cluster_support.c
     omits  ccd31e0   lib: Pass parameters to ctdbd_init_connection()
     omits  0bc244e   lib: Store sockname in ctdbd_connection
     omits  6c86062   lib: Remove temporary ctdb_connection in ctdb_control
     omits  2aedb2d   lib: Store ctdb_timeout in ctdb_connection
     omits  54c7b05   lib: Lift lp_ctdbd_socket() call up one level
     omits  6755376   kerberos: make sure we only use prompter type when available.
     omits  e524ab9   winbind: Fix 100% loop
     omits  f9ceaf4   s3: smbd: Fix NULL pointer bug introduced by previous 'raw' stream fix (bug #11522).
     omits  bec685f   s3: smbd: fix a crash in unix_convert()
     omits  00954a9   lib: We can do ACCRIGHTS style fdpassing
     omits  0499cee   lib: Support fd passing using the 4.3BSD way
     omits  f4e06a9   lib: Move some routines around in msghdr.c
     omits  2c675aa   lib: We only need the fd-passing check once
     omits  b191632   lib: Fix the build on Solaris
     omits  d9000cb   libreplace: Fix the build on Solaris
     omits  22c5699   lib: Fix server_id_db_set_exclusive
     omits  2c12b51   lib: Add "pid/unique" format for server_id_from_string
     omits  a4f6450   lib: Fix server_id_from_string
     omits  8044e2d   lib: Add server_id_str_buf_unique
     omits  620b746   lib: Remove ctdb_serverids_exist
     omits  103658d   lib: Remove serverids_exist
     omits  b542ce7   lib: Use messaging_dgm_get_unique in serverid_exists
     omits  c793fb8   lib: Use serverid_exists in server_id_db_check_exclusive
     omits  37f01c8   messages_dgm: Add messaging_dgm_get_unique
     omits  beb7c6b   net: Add "serverid exists"
     omits  e119f95   net: Fix some tiny memleaks
     omits  348dd41   s3:lib:interface: break an overly long line
     omits  d8b2421   s4-scripting: fix minor indent issue for hresult generation.
     omits  f5109df   s4-scripting: fix wrong indent that caused gen_ntstatus.py to fail.
     omits  dea49cc   ldb: Fix CID 1034781 Unsigned compared against 0
     omits  edd18f7   messages_dgm: Fix an incorrect cast
     omits  cfca46a   messages_dgm: No includes.h necessary
     omits  ae43867   s4-torture: trying to make clusapi resource online/offline testing a bit more robust
     omits  6ef2d28   s3-rpcclient: protect against empty witness async notify messages.
     omits  08e260e   librpc: properly quote uuids so that wireshark dissectors can be built from them.
     omits  4827d49   clusapi: remove security.idl dependency from IDL.
     omits  71a168e   build:wafsamba: Set the default installation prefix for Waf 1.8
     omits  875beef   samba-tool: add command to dump dosinfo xattr from a file
     omits  44aff1a   ctdb-build: Use socket_wrapper only with selftest
     omits  d493ec1   s4: torture: Fix directory test against a server that actually uses index returns.
     omits  e224e62   net: fix a crash with net ads keytab create
     omits  1b8ea12   witness: fix length calculation in witness_IPaddrInfoList IDL.
     omits  f2fcbf2   witness: fix IP address endianess in witness_IPaddrInfo IDL.
     omits  23c17d9   s4-torture: add test to verify WITNESS_NOTIFY_CLIENT_MOVE message marshalling.
     omits  2266e24   smbd: Set process name for notifyd process
     omits  0b455a5   smbd: Set process name for async echo handler
     omits  96c48b3   s3: Move call to prctl_set_comment to reinit_after_fork
     omits  6788a5f   lib: Fix prctl detection for prctl_set_comment
     omits  969d043   s4: torture: Test mkdir race condition.
     omits  b1c823d   s3: smbd: Fix mkdir race condition.
     omits  ce62124   docs: Fix references to async smb echo handler in smb.conf manpage
     omits  dec34db   s4:torture: add a test for 0 byte sized streams
     omits  e9c5b63   s4: torture: Fix double-free on error.
     omits  a1187bb   dbwrap: Remove talloc from dbwrap_watch_record_stored()
     omits  1a8750a   dbwrap: Convert dbwrap_record_watchers_key to not use talloc
     omits  2e0e06c   dbwrap: Simplify dbwrap_record_watchers_key()
     omits  9964d60   dbwrap: Make dbwrap_db_id return size_t
     omits  71a407e   dbwrap: Remove talloc_reference()
     omits  225cba6   dbwrap: Remove unused dbwrap_hash_size()
     omits  5d12eb8   dbwrap: Remove loadparm_context from db_open_tdb
     omits  1399198   build: improve stack protector check
     omits  b4747b6   s4:torture:smb2:rename: Fix typo in simple_nodelete testcase.
     omits  25dcdc9   lib/param: fix hiding of FLAG_SYNONYM values
     omits  8262ecb   build:wafsamba: Use the samba-provided CHECK_CFG method in configuration tests
     omits  3408591   ctdb-doc: Fix a typo in the definition of CTDB_NODE_ADDRESS
     omits  a36a734   Revert "tdb: Add tdbdump -u"
     omits  6ce3643   s3: tests: smbclient test to ensure we can create and see a :foobar stream on the top level directory in a share.
     omits  74fd4f9   s3: smbd: Fix opening/creating :stream files on the root share directory.
     omits  94e7e70   s3: smbd: Remove unused parameter from build_stream_path().
     omits  a47012d   s3: smbclient: Move cmd_setmode out of clitar.c and back into client.c
     omits  ea53e86   tdb: Add tdbdump -u
     omits  1d2a1a6   s4:lib/messaging: use 'msg.lock' and 'msg.sock' for messaging related subdirs
     omits  1aabd92   s3:lib/messages: use 'msg.lock' and 'msg.sock' for messaging related subdirs
     omits  b0fa831   s3:lib/messages: add missing allocation check for priv_path
     omits  5866fcc   s4: tests: Fix nss_tests build on Solaris.
     omits  4276ec7   Makefile: Add option to list all tests
     omits  f54b2f7   ctdb: Fix CID 1324447 Double close
     omits  3ddd351   ctdb-build: Install pre-built manpages when xsltproc not available
     omits  f1bb641   ctdb-doc: Update out-of-date documentation for CTDB socket options
     omits  b933b91   ctdb-scripts: Update important installed files to use build-time defaults
     omits  56fd37b   ctdb-tools: Drop vacuum.log from ctdb_diagnostics
     omits  121d1a8   ctdb-scripts: Rename variable CTDB_ETCDIR to CTDB_SYS_ETCDIR
     omits  014a1eb   ctdb-scripts: CTDB_BASE must be set when including functions file
     omits  c58d582   ctdb-scripts: Factor out possible creation of rt_tables file
     omits  6774676   ctdb-scripts: Move remaining state files into CTDB_SCRIPT_VARDIR
     omits  3aa11b1   ctdb-scripts: New internal variable CTDB_SCRIPT_VARDIR
     omits  d064620   ctdb-scripts: Properly set CTDB_VARDIR in scripts at install time
     omits  bd77a97   ctdb-build: Add missing manual pages to pre-generate list for tarball
     omits  36a1473   ctdb-docs: Update "ctdb reloadnodes" documentation
     omits  e7a139b   ctdb-scripts: Drop internal file-level variables referencing $CTDB_VARDIR
     omits  143ec9e   ctdb-scripts: Drop file removal involving $ctdb_managed_dir
     omits  353c27d   ctdb-scripts: Drop functions ctdb_checkstatus() and ctdb_setstatus()
     omits  8c2948e   ctdb-scripts: Drop 62.cnfs eventscript
     omits  9d49dfa   ctdb-scripts: New internal variable CTDB_NFS_CALLOUT_STATE_DIR
     omits  12153af   s3: dfs: Fix a crash when the dfs targets are disabled.
     omits  b0f41c0   build: use as-needed linker flag also on OpenBSD
     omits  d3e51b9   nss_winbind: fix hang on Solaris on big groups
     omits  a997c77   nss_wins: add module for FreeBSD
     omits  b7eb725   smbXsrv_session: factor smbXsrv_session_add_channel() out of smbXsrv_session_create()
     omits  57053c5   s3:smb2_sesssetup: let smbd_smb2_reauth_generic_return() cope with channels
     omits  69d2af1   s3:smb2_sesssetup: let smbd_smb2_auth_generic_return() cope with channels
     omits  6f95bc5   s3:smb2_sesssetup: change talloc hierarchy in smbd_smb2_session_setup_gensec_done
     omits  cf5c28d   replace: Fix check for gettimeofday()
     omits  36830db   net: reformat usage text for 'net ads join'
     omits  d7a617f   docs: mention new --no-dns-updates parameter in manpage of net.
     omits  ae81a40   net: add option --no-dns-updates for net ads join
     omits  a44a0c4   libsmb: Fix CID 1034606 Incorrect pointer comparison
     omits  b63b53c   libsmb: Fix CID 1034605 Incorrect pointer comparison
     omits  736397e   winbindd: Fix CID 1273310 Remove structurally dead code
     omits  76ef9c1   build: line-break deps for 'param' subsystem
     omits  123e658   build: fix quotation of deps for 'param' subsystem.
     omits  7d49d9b   ctdb-server: fix a possible fd leak in ctdb_tcp_listen_automatic()
     omits  4010c03   ctdb: improve a misleading help text.
     omits  3f402eb   ctdb-doc: remove description of removed --syslog option from ctdbd manpage
     omits  7d84cd6   pam_winbind: Fix a segfault if initialization fails
     omits  e7b6990   swrap: Bump version to 1.1.4
     omits  9fe5eac9  swrap: Call dlclose() in the destructor
     omits  5bd1ec1   swrap: Fix signed comparsion warnings
     omits  830e3dd   swrap: Add environment variable to specify mtu size
     omits  5543243   swrap: Fix TCP support with sendmsg/recvmsg
     omits  049b7c8   swrap: Correctly update the msg_name in recvmsg()
     omits  73a62af   rwrap: Bump version to 1.1.3
     omits  278facd   rwrap: Fix strict aliasing warnings for symbol binding
     omits  fee8437   Find the correct symbol when res_* is a define to __res_*
     omits  48d4aac   fruit: Fix CID 1323186 Dereference before null check
     omits  04c8655   dsdb: Fix a confusing parameter
     omits  facb11b   samdb: Fix CID 1034736 Dereference after null check
     omits  6b44ce6   configure: Fix aio_suspend detection
     omits  a7b6dd4   libsmbclient: Fix 32-bit problems
     omits  e79877a   ctdb-tools: Add dbstatistics to ctdb_diagnostics
     omits  bce6a38   ctdb-daemon: Drop struct ctdb_control_killtcp
     omits  2a8b21e   vfs_gpfs: Avoid calling gpfs_is_offline on every i/o
     omits  53a8cc7   vfs_gpfs: Introduce vfs_gpfs_fsp_is_offline
     omits  0fb8ea7   winbind: Don't delete an existing krb5 ticket on cached logon.
     omits  239062a   ctdb: Fix a 32-bit problem
     omits  e4b0ea1   Fix memory leak in dns resolution during spnego authentication using kerberos.
     omits  22a37c4   tls: increase Diffie-Hellman group size to 2048 bits
     omits  b49b1bd   doc: fix description of tls dh params file parameter
     omits  2d0e301   s4:torture:vfs_fruit: created empty resourceforks
     omits  c1e1891   s4:torture:vfs_fruit: add a resource fork truncation test
     omits  6263495   vfs_fruit: delete ._ file when deleting the basefile
     omits  db1c074   vfs_fruit: split and simplify fruit_ftruncate
     omits  34759c8   vfs_fruit: handling of empty resource fork
     omits  ba6c7df   build:wafsamba: Use the Waf 1.8 API get_tgen_by_name instead of name_to_obj
     omits  ffea9a1   build:wafsamba: Close file handles in the build scripts too
     omits  da9eee8   third_party:waf: fix a mis-merge - Utils.check_dir issue
     omits  bcf5f45   third_party:waf: Backport parts of the waf 1.8 API
     omits  841845d   samr4: Use <SID=%s> in GetGroupsForUser
     omits  b3f906f   Revert "winbind: Fix 100% loop"
     omits  5aefea8   python/tests: Add more assertions that we get back the value we expect
     omits  1f50e19   python/tests: Add tests for 64 bit signed integers
     omits  e6fbeb8   pidl/python: also add a ndr_PyLong_FromLongLong() for symnetric reasons
     omits  d1416d6   pidl/python: Provide static inline helper function ndr_PyLong_FromUnsignedLongLong
     omits  c2f4e32   pidl/python: Calculate maximum integer values using a lookup table
     omits  88b27eb   spoolss: handle SetPrinter for info level 4
     omits  2947a70   ldb:wscript: make it possible to build samba with a system ldb again
     omits  770fb8c   selftest: add a check for disabled change notify
     omits  b9c5612   selftest: add change notify = no to simpleserver env
     omits  098b8a5   notify: check for valid notify_ctx in notify_remove
     omits  c3647ec   web_server: Fix server not to segfault on startup
     omits  615d9b7   web_server: Use talloc_get_type_abort()
     omits  ac25a8a   lib/tls: Ensure SSLv3 is disabled in the web server by default
     omits  cdaa122   lib/tls: Remove unused tls_init_client code
     omits  4164d7b   ctdb-scripts: Add default filesystem usage warnings
     omits  0f28ccf   ctdb-scripts: Add default system memory usage warnings
     omits  2c601f1   ctdb-scripts: Enable system monitoring eventscript by default
     omits  b18e4ae   ctdb-scripts: Throttle system resource monitoring warnings
     omits  e6b5163   ctdb-scripts: Don't shutdown CTDB when memory monitoring fails
     omits  b6a0e4b   ctdb-scripts: New consistent system memory and swap monitoring
     omits  02fa6c3   ctdb-scripts: Factor out new function check_thresholds()
     omits  b7b6e25   ctdb-scripts: Memory monitoring uses thresholds expressed as percentages
     omits  bd2845d   ctdb-scripts: Use MemAvailable if it is in /proc/meminfo
     omits  99b8ef5   ctdb-scripts: Only use /proc/meminfo for memory checks, not "free"
     omits  ab58c7a   ctdb-scripts: Move system memory checking to 05.system
     omits  b27ff25   ctdb-tests: Remove unwanted trailing whitespace
     omits  23acbd2   ctdb-tests: Add tests for filesystem usage monitoring
     omits  fa10506   ctdb-scripts: New configuration variable CTDB_MONITOR_FILESYSTEM_USAGE
     omits  8f713c8   ctdb-scripts: Don't fail monitoring if sanity checks fail
     omits  6b4a46e   ctdb-scripts: Move filesystem monitoring into a function, clean it up
     omits  47f7d1b   ctdb-scripts: Rename 40.fs_use to 05.system
     omits  e139f19   s3: add suport for SMB3_10 and SMB3_11 protocols in smbstatus
     omits  f1f47ac   python: Remove uuid module
     omits  e551cdb   winbind: Fix 100% loop
     omits  16c14ae   s3:smb2_create: #if 0 unused variable
     omits  e6c234d   Move the error handling for svhdx to vfswrap_create to give VFS module writers a chance to handle RSVD opens if they want to.
     omits  d9166eb   lib/crypto: make it possible to use only parts of aes.[ch]
     omits  aaad9e9   lib/crypto: sync AES_cfb8_encrypt() from heimdal
     omits  e9d3379   lib/crypto: make use of aes_test.h in aes_gcm_128_test.c
     omits  965f04d   lib/crypto: optimize aes_gcm_128
     omits  7e8333d   lib/crypto: optimize aes_ccm_128
     omits  8795ad2   lib/crypto: optimize aes_cmac_128
     omits  0824221   lib/crypto: add optimized helper functions aes_block_{xor,lshift,rshift}()
     omits  77c3d50   lib/crypto: add aes_ccm_128 tests
     omits  80c8a1c   lib/crypto: verify 0 updates in aes_gcm_128 tests
     omits  683eda2   lib/crypto: run all aes_gcm_128 testcases
     omits  7c4117f   lib/crypto: add aes_cmac_128 chunked tests
     omits  64c6cc3   s3:vfs_smb_traffic_analyzer: remove samba_ prefix from AES_* function calls
     omits  c9d97e3   lib: Make sid_linearize take a uint8_t
     omits  de421d8   lib: Remove unused sid_blob_parse
     omits  aa38175   lib: Convert callers of sid_blob_parse to sid_parse
     omits  4a442e2   lib: Make sid_parse take a uint8_t
     omits  dba9e63   Prevent a crash in Python modules that try to authenticate by ensuring we reject cases where credendials fields are not intialized.
     omits  4e178ed   s3-util: Compare the maximum allowed length of a NetBIOS name
     omits  dcc657a   selftest: Add assertion that we actually fix the replPropertyMetaData sort order
     omits  5504502   selftest: Add in steps to re-create this database
     omits  a6957ba   Update release-4-1-0rc3 to include data using schema modifications
     omits  6122aca   ldb: create a cache of known wellknown objects instead of continously searching in the db
     omits  c049106   dbcheck: Use set() operations to make dbcheck more efficient
     omits  fb88f9c   dbcheck: Try to avoid duplicate searches
     omits  2ff9b17   dbcheck: Add additional tests for the attributeID list
     omits  2766bad   dbcheck: Add explict tests for unknown and unsorted attributeID values
     omits  e3cf25b   pidl: Assert that python arrays will not overflow the C array
     omits  bed29f3   pydsdb: Allow the full range of uint32_t values for attributeID
     omits  336d411   python/tests: Add tests for integer overflow handling
     omits  5206ccd   pidl: Change PIDL to correctly use and validate python integer types
     omits  3faa7dc   python: Use an unsigned integer for buf_size, not -1
     omits  4ef468e   dnsserver: Remove incorrect and not required include of ldb_private.h
     omits  617bc3f   winbind: Remove "have_idmap_config" from winbindd_domain
     omits  b62c7e2   winbind: Do not look for the domain in wb_gid2sid
     omits  2387d03   winbind: Do not look for the domain in wb_uid2sid
     omits  8856555   idmap: Remove dom_name from wbint_Gid2Sid
     omits  d473047   idmap: Remove dom_name from wbint_Uid2Sid
     omits  2f4dad5   idmap: Remove "domname" from idmap_gid_to_sid
     omits  0f8c9b8   idmap: Remove "domname" from idmap_uid_to_sid
     omits  ac4cc24   idmap: Remove "domname" from idmap_backends_unixid_to_sid
     omits  ad626b9   idmap: Use a range search in idmap_backends_unixid_to_sid
     omits  ef0c911   idmap: Initialize all idmap domains at startup
     omits  d36de86   idmap: Move idmap_init() under the static vars
     omits  443dd9b   loadparm3: Add lp_wi_scan_global_parametrics()
     omits  f504681   uwrap: Bump version to 1.1.1
     omits  a71610c   uwrap: Removed double newline
     omits  fc68e84   uwrap: Fix build if getres(uid|gid) are not available.
     omits  6363c02   s3-auth: Fix a memory leak in make_server_info_info3()
     omits  e8c7693   s3-auth: Pass nt_username to check_account()
     omits  34965d4   s3-auth: Fix 'map to guest = Bad Uid' support
     omits  53e8d52   param: Use talloc_pooled_object
     omits  0f600c3   param: Simplify set_param_opt()
     omits  78d7512   lib: Remove unused parmlist code
     omits  59e955b   vfs_scannedonly: Remove vfs_scannedonly from samba source tree.
     omits  ba4c9bd   script/autobuild.py: make sure --nonshared-binary=smbtorture,smbd/smbd keeps working
     omits  86fa1d9   script/autobuild.py: test some --with-{static,shared}-modules combinations
     omits  3b1aa7a   script/autobuild.py: use -Wmissing-prototypes and --picky-developer for samba-libs*
     omits  3030325   script/autobuild.py: split out a samba_libs_configure variable
     omits  43d1c92   s3:wscript: make --with-{static,shared}-modules options more flexible
     omits  d830cec   s3:wscript: simplify ABI matching for pdb_*_init()
     omits  bbd82b0   s3:winbindd/idmap_*: make function prototypes available via static_decl_idmap;
     omits  7b2ff4c   s3:modules/perfcount_*: make function prototypes available via static_decl_perfcount;
     omits  37b2677   s3:modules/vfs_*: make function prototypes available via static_decl_vfs;
     omits  fd6eb8b   examples/VFS: make function prototypes available via static_decl_vfs;
     omits  4451d0a   examples/pdb: fix and validate pdb_test_init() prototype via static_decl_pdb;
     omits  f8fca7d   s4:ntvfs/posix: fix forward declaration of struct pvfs_state
     omits  72e0885   s3:wscript: remove leftover from vfs_notify_fam
     omits  a184951   s3:idmap: we need to allow undefined symbols in idmap_tdb
     omits  5134d29   s3:wscript: fix the build without any idmap module
     omits  345ef6b   smbd: Remove an unnecessary else branch
     omits  22e1fb3   vfs: Add some {}
     omits  796c77d   lib: Use dom_sid_equal where appropriate
     omits  2146f39   ctdb: Use talloc_report_str in ctdb
     omits  a44a7c7   lib: Add the pointer itself to talloc_report_str
     omits  2fbce8a   gensec: Fix CID 242642 Unchecked return value
     omits  62d08ea   replace: Fix bug 11455
     omits  9638742   ctdb: Fix some clang uninitialized errors
     omits  1d79f6c   ctdb: Fix the build on FreeBSD 10.1
     omits  e8c602d   s4:torture/rpc: fix ndr_security.h include in fsrvp.c
     omits  b2986dc   release-scripts/build-manpages-nogit: run make realdistclean at the end
     omits  bd0ec51   s3:smb2_negprot: prefer AES128_CCM if the client supports it
     omits  05dbd3b   libcli/smb: prefer AES128_CCM
     omits  dc2d5cc   Revert "ldb-samba: Implement transitive extended matching"
     omits  8cacd5b   Revert "dsdb: Only parse SAMBA_LDAP_MATCH_RULE_TRANSITIVE_EVAL as a DN"
     omits  ce3c77f   s3:lib: fix some corner cases of open_socket_out_cleanup()
     omits  c93e2cd   waf: Check for Linux has 32-bit credential calls
     omits  e6c8452   libcli: Use iov_buflen in smb2_signing.c
     omits  a431828   python:samba/upgrade.py Fix format string syntax in error condition
     omits  5d141a3   lib: Remove some unused code
     omits  f0f23d6   lib: Remove some unused code
     omits  f85c2a6   smbd: Use a struct initializer
     omits  ba116fa   smbd: Remove a confusing comment
     omits  b5ce90e   nfs4acls: Remove type_name param from smbacl4_get_vfs_params
     omits  173dca4   nfs4acls: Fix a small memleak
     omits  9287b67   nfs4acls: Introduce a helper variable
     omits  5caaf00   nfs4acls: Remove a few unnecessary casts
     omits  fafd0a0   nfs4acls: Use talloc_realloc()
     omits  7e630c3   nfs4acls: Use talloc_zero_array()
     omits  68c64c7   nfs4acls: Use talloc_zero()
     omits  8125503   nfs4acls: Use talloc_zero()
     omits  1ba9bbd   nfs4acls: Remove get_validated_aceint
     omits  aeef821   nfs4acls: Remove get_validated_aclint
     omits  45e1ef0   nfs4acls: Remove the SMB_ACE4_INT_T typedef
     omits  1d30e86   nfs4acls: Remove the SMB_ACL4_INT_T typedef
     omits  3314717   nfs4acls: Use SMB4ACE_T instead of _SMB_ACE4_INT_T
     omits  5a7997f   nfs4acls: Use SMB4ACL_T instead of _SMB_ACL4_INT_T
     omits  cf97ec5   nfs4acls: Remove an obsolete comment
     omits  157711c   nfs4acls: Use an anon struct for SMB4ACE_T
     omits  f15ad38   nfs4acls: Use an anon struct for SMB4ACL_T
     omits  9db523b   nfs4acls: Use ZERO_STRUCTP
     omits  1fcad53   dns_server: Fix a small memleak
     omits  9386368   dns_server: Don't call tevent_req_finish twice
     omits  7258061   s4:torture:vfs_fruit: add a test for stream names
     omits  fe4909f   s4:torture:vfs_fruit: pass xattr name as arg to torture_setup_local_xattr()
     omits  1db1199   vfs_catia: run translation on stream names
     omits  fb9a64e   vfs_streams_xattr: stream names may contain colons
     omits  eba1212   ctdb-tests: Add a policy routing test with misconfiguration
     omits  5a6a932   ctdb-tests: Make fake gateway different to actual public IPs
     omits  7d04778   ctdb-scripts: Improve error handling for 50.samba testparm failure
     omits  6538ba5   ctdb-pmda: Add missing prototype declaration for non-static function
     omits  7949ce1   ctdb-daemon: Reset database statistics when resetting statistics
     omits  d9030d8   ctdb-system: Remove unused system specific calls
     omits  e45b0d4   source3/rpc_client: Fix CID 1273041 Condition is redundant
     omits  661b4ed   lib/talloc: Fix CID 1291639 Missing unlock
     omits  f57a235   lib/talloc: Fix CID 1291640 Missing unlock
     omits  9ae65b2   smbd: Log smb2 requests returning !OK with higher log level
     omits  d3ac3da   s4:rpc_server/netlogon: Fix for NetApp
     omits  42f38fe   dns: always add authority records
     omits  d9a3f19   dns: Add a SOA record to error replies
     omits  bda1a73   dns: Also pass nsrecs to handle_question()
     omits  0e11c08   dns: Just pass the name to create_response_rr
     omits  d7a54f3   dns: Add dns_get_authoritative_zone helper function
     omits  54cbecb   script/librelease.sh: this is replaced by script/release.sh now
     omits  71128e0   script/release.sh: This is a new script to do releases
     omits  9d9a767   wafsamba: don't add -DSTATIC_%s_MODULES* arguments for SAMBA_LIBRARY(pyembed=True)
     omits  711a420   selftest: Add test for GSSAPI with no authenticator checksum mode
     omits  ddee603   heimdal/gssapi: Allow a NULL authenticator
     omits  6224ac9   gensec: Add an option emulating another mode a client building GSSAPI/krb5 manually uses
     omits  78075cf   waf: Add talloc as a dependency
     omits  38d7617   sdb: Assert if the HDB flags will change
     omits  ab08575   hdb-samba: Translate SDB errors to HDB errors
     omits  a3af166   s4-torture: add test for CLUSCTL_NODE_GET_ID in clusapi_NodeControl.
     omits  321fe41   s3-rpcclient: add client for create enum ex.
     omits  93572c9   s4-torture: add more ndr tests for property lists.
     omits  d6a8e35   s4-torture: add torture test for clusapi_NodeControl.
     omits  7cea0aa   clusapi: add clusapi_NodeControlCode to IDL.
     omits  d621099   s4-torture: add tests for GroupControl.
     omits  e1373ea   clusapi: add clusapi_GroupControlCode enum to IDL.
     omits  2654ac3   s4-torture: also test ClusterControl with a large initial buffer size.
     omits  0f125f8   clusapi: use winreg_Type in clusapi registry IDL.
     omits  2a08aa0   s4-torture: add ndr testsuite for complex clusapi_PROPERTY_LIST structs.
     omits  5e009e1   clusapi: use ClusterEnumType in clusapi_CreateEnumEx.
     omits  d13535d   s4-torture: add test for clusapi_CreateEnumEx().
     omits  b378329   clusapi: add PROPERTY_LIST IDL.
     omits  e68ce4b   s4-torture: add test for GetResourceNetworkName.
     omits  bc14440   s3-clusapi: add test for GetResourceDependencyExpression.
     omits  1f51628   s4-torture: add more tests for clusapi_OpenResource().
     omits  95eb6db   s3-net: use talloc array in share allowedusers
     omits  9c48dbd   dns_server: Fix CNAME handling
     omits  3fbcd78   dns_server: Add NULL check
     omits  28de101   lib/util/debug.h uses va_list, needs stdarg.h
     omits  c64e3a8   net: Print time of last password change in 'net ads info'
     omits  487119d   secrets: Add function to fetch only password change timestamp
     omits  3bbf384   doc: mention that `smbd -i` exits after first connection
     omits  10374dd   param: update the README with instructions for adding a parameter
     omits  3f5e874   param: remove the static param_table.
     omits  8ad079d   tests:docs: don't load or test the static param_table.
     omits  c102ac2   tests:docs: remove testing the diff between the static and generated table
     omits  33dfaf7   param: use the generated parameter table.
     omits  cf16ae5   tests:docs: test the diff between the static and generated table
     omits  93c8e8d   tests:docs: load the full data from the generated param_table
     omits  5efa507   tests:docs: load the full data from the existing param_table.
     omits  2ede42e   tests:docs: add a function to load the full data structures from the table
     omits  a918735   tests:docs: print more complicated structures than strings in the message.
     omits  3de5d29   tests:docs: common initialization in docs test.
     omits  b138d57   build: generate param_table_gen.c from docs in the build
     omits  5deeba6   generate_param: add a means to generate param_table_gen.c from the docs
     omits  bbd55f6   param: move the actual table out into param_table_static.c
     omits  0dfa9e29  docs:smbdotconf: change type to ustring where needed.
     omits  955e77c   docs:smbdotconf: change type to octal where needed
     omits  0e6fe4c   docs:smbdotconf: change type to bytes where needed
     omits  46069ed   docs:smbdotconf: change type to cmdlist where needed.
     omits  317bd29   tests:docs: teach the test the types cmdlist, bytes, octal, and ustring
     omits  223aad4   generate_param: teach missing types cmdlist, bytes, octal, ustring.
     omits  ca861f2   generate_param: more uniform formatting of various type dicts
     omits  99d0c3b   docs:smbdotconf: add deprecated flags where missing.
     omits  2b7396b   docs:smbdotconf: make preload a synonym of 'auto services'
     omits  c6a81dc   docs:smbdotconf: 'write ok' is a synonym of 'writeable' not of 'read only'
     omits  3c35dd4   param: don't list '-valid' and 'copy' as synonyms - they aren't
     omits  179d715   param: make 'timestamp logs' the default writing of 'debug timestamp'
     omits  e5ac180   param: add SYNONYM flag where missing
     omits  c03891c   param: move dnsdomain from generate_param to EXTRA_GLOBALS
     omits  ff41343   generate_param: generate struct entries if we don't generate access functions.
     omits  36abb6f   generate_param: make it possible to handle generated and synonym flags in iteration
     omits  d1615ab   docs:smbdotconf: add 'function' argument to writeable
     omits  df6c339   docs:smbdotconf: add 'function' parameter to enablespoolss
     omits  f19ede5   docs:smbdotconf: add 'function' parameter to valid
     omits  3723403   param: rename szIdmapGID -> idmap_gid
     omits  3566e7d   param: rename szIdmapUID -> idmap_uid
     omits  8c0217c   param: rename szIdmapBackend -> idmap_backend
     omits  6b1d1a4   param: rename szInclude -> include
     omits  bd92bc0   param: rename szCopy -> copy
     omits  5820c31   param: rename bAvailable -> available
     omits  c644890   param: make 'realm' use the standard 'realm' variable.
     omits  4ae289c   param: turn 'cups encrypt' into a generated function
     omits  5c18d00   param: rename CupsEncrypt -> cups_encrypt
     omits  496f275   param: make 'winbind max domain connections' a generated function.
     omits  78e276a   param: rename winbindMaxDomainConnections -> _winbind_max_domain_connections
     omits  866fd3b   param: turn 'wide links' into a generated funcion
     omits  b7172b8   param: rename bWidelinks -> wide_links
     omits  44619ad   param: turn 'smb2 max credits' into generated option
     omits  ea6d35c   param: treat negative values of 'smb2 max credits' as default.
     omits  a6e387d   param: turn 'printcap name' into a generated function
     omits  3732456   param: rename szPrintcapName -> printcap_name
     omits  b68d13e   param: turn 'min receivefile size' into a generated function
     omits  863f7b9   param: rename iminreceivefile -> min_receivefile_size
     omits  217ce6d   param: turn 'preferred master' into a generated function
     omits  20c84b8   param: rename iPreferredMaster -> _preferred_master
     omits  c377f63   param: use lp[cfg]_max_print_jobs() in lp[cfg]_maxprintjobs()
     omits  6fdffc8   param: generate lp[cfg]_max_print_jobs()
     omits  521468e   param: rename variable of 'max print jobs' to default.
     omits  f1846fb   param: turn ldap idmap suffix into a generated function
     omits  614a0b9   param: rename szLdapMachineSuffix -> _ldap_machine_suffix
     omits  a5ddd03   param: turn ldap idmap suffix into a generated function
     omits  bbe74ae   param: rename szLdapIdmapSuffix -> _ldap_sz_idmap_suffix
     omits  e65b7ec   param: turn ldap user suffix into a generated function
     omits  10b36db   param: rename szLdapUserSuffix -> _ldap_user_suffix
     omits  d4fd07d   param: turn ldap group suffix into a generated function
     omits  cd0016d   param: rename szLdapGroupSuffix -> _ldap_group_suffix
     omits  63e3c75   docs:smbdotconf: add enumlist property to parameters where missing
     omits  ba2ea7f   docs:smbdotconf: add param flag 'enumlist' to the DTD
     omits  31e106b   docs:smbdotconf: add handler info to smbdotconf docs where missing
     omits  4bc1f77   docs:smbdotconf: add param flags 'handler' and 'deprecated' to the DTD
     omits  854bbaf   docs:smbdotconf: add param flag 'synonym' to the DTD
     omits  c72defc   docs:smbdotconf: fix type to bool-rev for reverse synonyms.
     omits  3bd477e   tests: teach the docs test about boolean-rev
     omits  9abf7b4   docs:smbdotconf: fix context of 'include' in doc
     omits  c3fc084   docs:smbdotconf: fix type of "preferred master" parameter.
     omits  64b720d   docs:smbdotconf: make formatting of headers uniform.
     omits  a4aaea6   s3:lib: remove unused dummyparam.c
     omits  04da5a8   param: accompany FN_LOCAL_PARM_CHAR with FN_LOCAL_CHAR
     omits  eab9417   param: make set_variable() static.
     omits  7e60050   lib/dcom: use HRESULT in dcom_create_object.
     omits  4e5ee71   s4-torture: fix ResolveOxid2 test, filling in missing ref,out pointers.
     omits  f6f5438   s4-torture: fix ResolveOxid test, filling in missing ref,out pointers.
     omits  a0544cb   remact: use imp_levels enum in RemoteActivation IDL.
     omits  195faed   remact: use HRESULT in RemoteActivation IDL and tests.
     omits  04e1f2e   lib/torture: add torture_assert_hresult_{equal,ok} macros.
     omits  03b59a8   s4-torture: fix remact test from crashing.
     omits  2ec5918   s4-torture: fix test for RemoteActivation.
     omits  60be14a   remact: fix IDL for RemoteActivation.
     omits  0cf5c89   s4-torture: use torture_assert macros for RemoteActivation test.
     omits  7b155c3   oxidresolver: fix ServerAlive2 IDL and test.
     omits  08e6d24   rot: fix indent in rot.idl
     omits  1baf31e   rot: remove trailing whitespace from rot.idl
     omits  abf0188   s4-torture: fix indent of remact test.
     omits  71051a9   remact: fix indent of remact.idl
     omits  b3b7701   oxidresolver: fix indent in oxidresolver.idl
     omits  22c9f11   dcom: fix ident in dcom.idl.
     omits  8b5536a   oxidresolver: fix indent of ResolveOxid2 in IDL.
     omits  3aaeaea   s4-torture: remove trailing whitespace from remact test.
     omits  82be958   s4-torture: remove trailing whitespace from oxidresolve test.
     omits  5bc2f91   remact: remove trailing whitespace from remact.idl
     omits  a6976b2   oxidresolver: remove trailing whitespace from oxidresolver.idl
     omits  b36aa1e   orpc: remove trailing whitespace from orpc.idl
     omits  5af738a   dcom: remove trailing whitespace from dcom.idl
     omits  38136c1   source3 torture: don't segfault if filename query fails
     omits  86dd7b9   smbXsrv_session:idl: remove the preauth and gensec members
     omits  321862d   s3:sesssetup: use session->pending_auth in smb1 session setup
     omits  d391f6d   s3:smb2_sesssetup: use session->pending_auth
     omits  2c39036   smbXsrv_session: add smbXsrv_session_create_auth()
     omits  e9885cf   smbXsrv_session: add smbXsrv_session_find_auth()
     omits  5e463b5   smbXsrv_session:idl: add smbXsrv_session_auth0
     omits  56f2f2b   lib/param: move function typedef to after forward declaration of struct loadparm_context
     omits  a51ee19   s3:smb2_sesssetup: remove now unneeded declaration of smb2srv_session_lookup_raw
     omits  d49b4aa   s4-kdc: Use sdb in db-glue and hdb-samba4
     omits  99d3719   s4-kdc: Introduce a simple sdb_hdb shim layer
     omits  85a041b   s4-kdc: Introduce sdb a KDC backend abstraction
     omits  535035a   s4-kdc: PAC_GLUE does not depend on hdb anymore.
     omits  b9203dc   krb5-wrap: Use the principal returned by the KDC to create the ccache
     omits  217d4c1   s4-auth: Call krb5_get_init_creds_opt_set_canonicalize() in MIT case.
     omits  80509df   s3-auth: Add MIT return code for KDC not reachable
     omits  1c4dc00   s4-kdc: Use smb_krb5_principal_get_(type|realm) in db-glue
     omits  3c0f934   tests: Add regression test for s3-passdb: Respect LOOKUP_NAME_GROUP flag in sid lookup.
     omits  8c41cbb   s3:smb2_server: defer channel/session validation to the session setup code.
     omits  8ab4b05   s3:smb2_sesssetup: check that the connection belongs to the session in sess.setup
     omits  19ec5f3   smbXsrv: use smb2srv_session_lookup_client in smbXsrv_session_close_loop
     omits  f6816ae   smbXsrv: add smb2srv_session_lookup_client().
     omits  d6acf95   smbXsrv: rename smb2srv_session_lookup -> smb2srv_session_lookup_conn
     omits  c765d11   smbXsrv: add a smbXsrv_connection argument to smb2srv_session_lookup_raw
     omits  66bf0e5   smbXsrv: add a smbXsrv_connection argument to smbXsrv_session_local_lookup()
     omits  d57e4ac   build: fix build with gpfs support - add missing dependency to samba-debug
     omits  b9bef36   configure: add --with-gpfs option for selecting directory with gpfs headers
     omits  cef8897   s3:wscript: fix indentation
     omits  952a504   ctdb-daemon: Check if updates are in flight when releasing all IPs
     omits  8eb04d0   ctdb-banning: If node is already banned, do not run ctdb_local_node_got_banned()
     omits  1286b02   ctdb-client: Return the correct status sent from the daemon
     omits  f07b746   lib: replace: Add strsep function (missing on Solaris).
     omits  dc99d45   s3-passdb: Respect LOOKUP_NAME_GROUP flag in sid lookup.
     omits  adbd6d3   pidl: merge multiple 'genpad' implementations into one.
     omits  3d0b23d   vfs: fix build warning in smb traffic analyzer.
     omits  2443c34   s4-torture: don't build the lsa forest trust krb5 tests when building with MIT Kerberos.
     omits  c596ac6   install_with_python: Secure Python download with sha256 checks.
     omits  509c37d   tdb: Fix broken build with --disable-python
     omits  5f8bad2   tdb_wrap: Use a struct initializer
     omits  28e4616   tdb_wrap: Use talloc_pooled_object
     omits  00ec3c4   ctdb-daemon: Correctly process the exit code from failed eventscripts
     omits  71b89b2   ctdb-tool: Correctly print timed out event scripts output
     omits  45e3b05   vfs: Fix CID 1312072 Failure to restore non-local value
     omits  d7a33d8   vfs: Fix CID 1312073 Argument cannot be negative
     omits  c3c024f   WHATSNEW: Clear release notes for Samba 4.4.0pre1.
     omits  8eb5731   VERSION: Bump version up to 4.4.0pre1

This update removed existing revisions from the reference, leaving the
reference pointing at a previous point in the repository history.

 * -- * -- N   refs/heads/experimental (592a5be)
            \
             O -- O -- O   (a699730)

Any revisions marked "omits" are not gone; other references still
refer to them.  Any revisions marked "discards" are gone forever.

No new revisions were added by this update.

Summary of changes:
 .travis.yml                                        |   31 -
 Makefile                                           |    3 -
 README                                             |   20 +-
 README.Coding                                      |   59 +-
 VERSION                                            |    2 +-
 WHATSNEW.txt                                       | 1384 +++-----
 auth/credentials/credentials.h                     |    5 +-
 auth/credentials/credentials_ntlm.c                |   12 +-
 auth/credentials/pycredentials.c                   |  168 +-
 auth/credentials/pycredentials.h                   |    5 +
 auth/credentials/wscript_build                     |    2 +-
 auth/gensec/gensec.c                               |  113 +-
 auth/gensec/gensec.h                               |    4 -
 auth/gensec/gensec.pc.in                           |   11 +
 auth/gensec/gensec_internal.h                      |    7 -
 auth/gensec/gensec_start.c                         |   18 +-
 auth/gensec/gensec_util.c                          |    2 +-
 auth/gensec/schannel.c                             |   22 +-
 auth/gensec/spnego.c                               |  358 +-
 auth/gensec/wscript_build                          |    7 +-
 auth/kerberos/gssapi_pac.c                         |   12 +-
 auth/ntlmssp/gensec_ntlmssp.c                      |    9 -
 auth/ntlmssp/gensec_ntlmssp_server.c               |   38 +-
 auth/ntlmssp/ntlmssp.c                             |   91 +-
 auth/ntlmssp/ntlmssp.h                             |   17 -
 auth/ntlmssp/ntlmssp_client.c                      |  533 +--
 auth/ntlmssp/ntlmssp_ndr.c                         |    1 -
 auth/ntlmssp/ntlmssp_private.h                     |   10 +-
 auth/ntlmssp/ntlmssp_server.c                      |  464 +--
 auth/ntlmssp/ntlmssp_sign.c                        |  103 +-
 auth/ntlmssp/ntlmssp_util.c                        |  176 +-
 auth/ntlmssp/wscript_build                         |    2 +-
 buildtools/wafsamba/configure_file.py              |   13 +-
 buildtools/wafsamba/gccdeps.py                     |  127 +
 buildtools/wafsamba/nothreads.py                   |    7 +-
 buildtools/wafsamba/pkgconfig.py                   |   15 +-
 buildtools/wafsamba/samba_abi.py                   |    9 +-
 buildtools/wafsamba/samba_autoconf.py              |   36 +-
 buildtools/wafsamba/samba_autoproto.py             |    3 +-
 buildtools/wafsamba/samba_bundled.py               |   58 +-
 buildtools/wafsamba/samba_conftests.py             |   93 +-
 buildtools/wafsamba/samba_cross.py                 |    4 +-
 buildtools/wafsamba/samba_deps.py                  |  101 +-
 buildtools/wafsamba/samba_dist.py                  |    6 +-
 buildtools/wafsamba/samba_headers.py               |    5 +-
 buildtools/wafsamba/samba_install.py               |   11 +-
 buildtools/wafsamba/samba_optimisation.py          |   30 +-
 buildtools/wafsamba/samba_patterns.py              |   12 +-
 buildtools/wafsamba/samba_perl.py                  |    9 +-
 buildtools/wafsamba/samba_pidl.py                  |   11 +-
 buildtools/wafsamba/samba_python.py                |   26 +-
 buildtools/wafsamba/samba_third_party.py           |    4 +-
 buildtools/wafsamba/samba_utils.py                 |   85 +-
 buildtools/wafsamba/samba_version.py               |    5 +-
 buildtools/wafsamba/samba_wildcard.py              |    9 +-
 buildtools/wafsamba/symbols.py                     |   21 +-
 buildtools/wafsamba/wafsamba.py                    |   42 +-
 buildtools/wafsamba/wscript                        |   60 +-
 ctdb/client/client.h                               |  842 -----
 ctdb/client/client_call.c                          |  177 -
 ctdb/client/client_connect.c                       |  338 --
 ctdb/client/client_control.c                       |  429 ---
 ctdb/client/client_control_sync.c                  | 3119 ----------------
 ctdb/client/client_db.c                            | 2133 -----------
 ctdb/client/client_message.c                       |  227 --
 ctdb/client/client_message_sync.c                  |  196 -
 ctdb/client/client_private.h                       |   82 -
 ctdb/client/client_util.c                          |  155 -
 ctdb/client/ctdb_client.c                          |  482 +--
 ctdb/common/cmdline.c                              |   40 +-
 ctdb/common/cmdline.h                              |   13 -
 ctdb/common/comm.c                                 |  404 ---
 ctdb/common/comm.h                                 |  101 -
 ctdb/common/common.h                               |  146 -
 ctdb/{server => common}/ctdb_fork.c                |   19 +-
 ctdb/common/ctdb_io.c                              |   46 +-
 ctdb/common/ctdb_logging.c                         |   85 +
 ctdb/common/ctdb_ltdb.c                            |   13 +-
 ctdb/common/ctdb_message.c                         |  286 ++
 ctdb/common/ctdb_util.c                            |  117 +-
 ctdb/common/db_hash.c                              |  268 --
 ctdb/common/db_hash.h                              |  159 -
 ctdb/common/logging.c                              |  103 -
 ctdb/common/pkt_read.c                             |  190 -
 ctdb/common/pkt_read.h                             |   98 -
 ctdb/common/pkt_write.c                            |  101 -
 ctdb/common/pkt_write.h                            |   79 -
 ctdb/common/rb_tree.c                              |   16 +-
 ctdb/common/reqid.c                                |   89 -
 ctdb/common/reqid.h                                |   89 -
 ctdb/common/srvid.c                                |  269 --
 ctdb/common/srvid.h                                |  115 -
 ctdb/common/system.h                               |   65 -
 ctdb/common/system_aix.c                           |   40 +-
 ctdb/common/system_common.c                        |   11 +-
 ctdb/common/system_freebsd.c                       |   56 +-
 ctdb/common/system_gnu.c                           |   42 +-
 ctdb/common/system_kfreebsd.c                      |   55 +-
 ctdb/common/system_linux.c                         |  222 +-
 ctdb/common/system_util.c                          |   10 +-
 ctdb/config/ctdb.sudoers                           |    4 +-
 ctdb/config/ctdbd_wrapper                          |   74 +-
 ctdb/config/debug-hung-script.sh                   |    2 +-
 ctdb/config/debug_locks.sh                         |   24 +-
 ctdb/config/events.d/00.ctdb                       |   60 +-
 ctdb/config/events.d/05.system                     |  176 -
 ctdb/config/events.d/10.interface                  |  161 +-
 ctdb/config/events.d/11.natgw                      |   59 +-
 ctdb/config/events.d/13.per_ip_routing             |   44 +-
 ctdb/config/events.d/40.fs_use                     |   55 +
 ctdb/config/events.d/49.winbind                    |    7 +
 ctdb/config/events.d/50.samba                      |   45 +-
 ctdb/config/events.d/60.nfs                        |    3 -
 ctdb/config/events.d/62.cnfs                       |   78 +
 ctdb/config/events.d/README                        |  271 +-
 ctdb/config/functions                              |  256 +-
 ctdb/config/nfs-linux-kernel-callout               |   32 +-
 ctdb/config/statd-callout                          |   15 +-
 ctdb/ctdb.pc.in                                    |   19 +
 ctdb/doc/ctdb-statistics.7                         |    4 +-
 ctdb/doc/ctdb-statistics.7.html                    |  134 +-
 ctdb/doc/ctdb-tunables.7                           |   19 +-
 ctdb/doc/ctdb-tunables.7.html                      |  124 +-
 ctdb/doc/ctdb-tunables.7.xml                       |   28 +-
 ctdb/doc/ctdb.1                                    |  231 +-
 ctdb/doc/ctdb.1.html                               |  351 +-
 ctdb/doc/ctdb.1.xml                                |  189 +-
 ctdb/doc/ctdb.7                                    |   50 +-
 ctdb/doc/ctdb.7.html                               |   97 +-
 ctdb/doc/ctdb.7.xml                                |   71 +-
 ctdb/doc/ctdbd.1                                   |   39 +-
 ctdb/doc/ctdbd.1.html                              |   45 +-
 ctdb/doc/ctdbd.1.xml                               |   44 +-
 ctdb/doc/ctdbd.conf.5                              |  161 +-
 ctdb/doc/ctdbd.conf.5.html                         |  240 +-
 ctdb/doc/ctdbd.conf.5.xml                          |  228 +-
 ctdb/doc/ctdbd_wrapper.1                           |    4 +-
 ctdb/doc/ctdbd_wrapper.1.html                      |    4 +-
 ctdb/doc/ltdbtool.1                                |    4 +-
 ctdb/doc/ltdbtool.1.html                           |   10 +-
 ctdb/doc/onnode.1                                  |   39 +-
 ctdb/doc/onnode.1.html                             |   43 +-
 ctdb/doc/onnode.1.xml                              |   37 +-
 ctdb/doc/ping_pong.1                               |    4 +-
 ctdb/doc/ping_pong.1.html                          |    8 +-
 ctdb/ib/ibw_ctdb.c                                 |   41 +-
 ctdb/ib/ibw_ctdb.h                                 |    5 +-
 ctdb/ib/ibw_ctdb_init.c                            |   26 +-
 ctdb/ib/ibwrapper.c                                |   46 +-
 ctdb/ib/ibwrapper.h                                |    2 +-
 ctdb/ib/ibwrapper_internal.h                       |    6 +-
 ctdb/ib/ibwrapper_test.c                           |   68 +-
 ctdb/include/common/srvid.h                        |    1 -
 ctdb/include/ctdb.h                                | 1236 +++++++
 ctdb/include/ctdb_client.h                         |  839 ++---
 ctdb/{common/logging.h => include/ctdb_logging.h}  |   33 +-
 ctdb/include/ctdb_private.h                        | 1371 ++++---
 ctdb/include/ctdb_protocol.h                       |  700 +++-
 ctdb/include/ctdb_typesafe_cb.h                    |  177 +
 ctdb/include/internal/cmdline.h                    |   10 +
 ctdb/include/internal/includes.h                   |   24 +
 ctdb/include/public/util/README.txt                |    6 -
 ctdb/packaging/RPM/ctdb.spec.in                    |   47 +-
 ctdb/packaging/mkversion.sh                        |   13 +-
 ctdb/protocol/protocol.h                           | 1022 ------
 ctdb/protocol/protocol_api.h                       |  669 ----
 ctdb/protocol/protocol_call.c                      |  446 ---
 ctdb/protocol/protocol_client.c                    | 2470 -------------
 ctdb/protocol/protocol_control.c                   | 2087 -----------
 ctdb/protocol/protocol_header.c                    |   73 -
 ctdb/protocol/protocol_message.c                   |  395 --
 ctdb/protocol/protocol_packet.c                    |   44 -
 ctdb/protocol/protocol_private.h                   |  279 --
 ctdb/protocol/protocol_types.c                     | 2575 --------------
 ctdb/protocol/protocol_util.c                      |  142 -
 ctdb/server/ctdb_banning.c                         |   93 +-
 ctdb/server/ctdb_call.c                            |  217 +-
 ctdb/server/ctdb_control.c                         |  160 +-
 ctdb/server/ctdb_daemon.c                          |  232 +-
 ctdb/server/ctdb_event_helper.c                    |    9 +-
 ctdb/server/ctdb_freeze.c                          |  852 +----
 ctdb/server/ctdb_keepalive.c                       |   35 +-
 ctdb/server/ctdb_lock.c                            |  139 +-
 ctdb/server/ctdb_lock_helper.c                     |    9 +-
 ctdb/server/ctdb_logging.c                         |   36 +-
 ctdb/server/ctdb_logging_file.c                    |   14 +-
 ctdb/server/ctdb_logging_syslog.c                  |    6 +-
 ctdb/server/ctdb_ltdb_server.c                     |   94 +-
 ctdb/server/ctdb_monitor.c                         |  154 +-
 ctdb/server/ctdb_persistent.c                      |   43 +-
 ctdb/server/ctdb_recover.c                         |  182 +-
 ctdb/server/ctdb_recoverd.c                        | 1387 ++++----
 ctdb/server/ctdb_recovery_helper.c                 | 1888 ----------
 ctdb/server/ctdb_server.c                          |   29 +-
 ctdb/server/ctdb_serverids.c                       |   45 +-
 ctdb/server/ctdb_statistics.c                      |   35 +-
 ctdb/server/ctdb_takeover.c                        | 1754 ++++++---
 ctdb/server/ctdb_traverse.c                        |   69 +-
 ctdb/server/ctdb_tunables.c                        |  136 +-
 ctdb/server/ctdb_update_record.c                   |   49 +-
 ctdb/server/ctdb_uptime.c                          |   14 +-
 ctdb/server/ctdb_vacuum.c                          |  118 +-
 ctdb/server/ctdbd.c                                |   45 +-
 ctdb/server/eventscript.c                          |  104 +-
 ctdb/server/ipalloc.c                              |   53 -
 ctdb/server/ipalloc.h                              |   63 -
 ctdb/server/ipalloc_common.c                       |  206 --
 ctdb/server/ipalloc_deterministic.c                |   62 -
 ctdb/server/ipalloc_lcp2.c                         |  515 ---
 ctdb/server/ipalloc_nondeterministic.c             |  147 -
 ctdb/server/ipalloc_private.h                      |   43 -
 ctdb/tcp/ctdb_tcp.h                                |    6 +-
 ctdb/tcp/tcp_connect.c                             |   60 +-
 ctdb/tcp/tcp_init.c                                |   28 +-
 ctdb/tcp/tcp_io.c                                  |   14 +-
 ctdb/tests/complex/18_ctdb_reloadips.sh            |    6 +-
 ctdb/tests/cunit/comm_test_001.sh                  |    7 -
 ctdb/tests/cunit/comm_test_002.sh                  |   24 -
 ctdb/tests/cunit/db_hash_test_001.sh               |    7 -
 ctdb/tests/cunit/pkt_read_001.sh                   |    7 -
 ctdb/tests/cunit/pkt_write_001.sh                  |    7 -
 ctdb/tests/cunit/protocol_test_001.sh              |    9 -
 ctdb/tests/cunit/protocol_test_002.sh              |   36 -
 ctdb/tests/cunit/reqid_test_001.sh                 |   13 -
 ctdb/tests/cunit/srvid_test_001.sh                 |    7 -
 ctdb/tests/eventscripts/00.ctdb.monitor.001.sh     |   15 +
 ctdb/tests/eventscripts/00.ctdb.monitor.002.sh     |   15 +
 ctdb/tests/eventscripts/00.ctdb.monitor.003.sh     |   19 +
 ctdb/tests/eventscripts/00.ctdb.monitor.004.sh     |   17 +
 ctdb/tests/eventscripts/00.ctdb.monitor.005.sh     |   21 +
 ctdb/tests/eventscripts/05.system.monitor.001.sh   |   14 -
 ctdb/tests/eventscripts/05.system.monitor.002.sh   |   12 -
 ctdb/tests/eventscripts/05.system.monitor.003.sh   |   14 -
 ctdb/tests/eventscripts/05.system.monitor.004.sh   |   12 -
 ctdb/tests/eventscripts/05.system.monitor.005.sh   |   14 -
 ctdb/tests/eventscripts/05.system.monitor.006.sh   |   14 -
 ctdb/tests/eventscripts/05.system.monitor.007.sh   |   12 -
 ctdb/tests/eventscripts/05.system.monitor.011.sh   |   16 -
 ctdb/tests/eventscripts/05.system.monitor.012.sh   |   14 -
 ctdb/tests/eventscripts/05.system.monitor.013.sh   |   19 -
 ctdb/tests/eventscripts/05.system.monitor.014.sh   |   16 -
 ctdb/tests/eventscripts/05.system.monitor.015.sh   |   18 -
 ctdb/tests/eventscripts/05.system.monitor.016.sh   |   16 -
 ctdb/tests/eventscripts/05.system.monitor.017.sh   |   40 -
 ctdb/tests/eventscripts/05.system.monitor.018.sh   |  123 -
 .../tests/eventscripts/10.interface.monitor.015.sh |    2 +-
 .../tests/eventscripts/10.interface.monitor.016.sh |    2 +-
 ctdb/tests/eventscripts/11.natgw.005.sh            |   24 +
 ctdb/tests/eventscripts/11.natgw.041.sh            |    5 +-
 ctdb/tests/eventscripts/11.natgw.042.sh            |    5 +-
 ctdb/tests/eventscripts/11.natgw.051.sh            |   16 -
 ctdb/tests/eventscripts/11.natgw.052.sh            |   20 -
 ctdb/tests/eventscripts/11.natgw.053.sh            |   16 -
 ctdb/tests/eventscripts/11.natgw.054.sh            |   20 -
 ctdb/tests/eventscripts/13.per_ip_routing.023.sh   |   26 -
 ctdb/tests/eventscripts/50.samba.monitor.110.sh    |   20 -
 ctdb/tests/eventscripts/50.samba.monitor.111.sh    |   25 -
 ctdb/tests/eventscripts/50.samba.monitor.112.sh    |   13 -
 ctdb/tests/eventscripts/50.samba.monitor.113.sh    |   16 -
 ctdb/tests/eventscripts/scripts/local.sh           |  150 +-
 ctdb/tests/eventscripts/stubs/ctdb                 |   77 +-
 ctdb/tests/eventscripts/stubs/ctdb_natgw           |   34 -
 ctdb/tests/eventscripts/stubs/df                   |   38 -
 ctdb/tests/eventscripts/stubs/free                 |    9 +
 ctdb/tests/eventscripts/stubs/ip                   |   10 -
 ctdb/tests/eventscripts/stubs/ps                   |    2 +-
 ctdb/tests/eventscripts/stubs/testparm             |   38 +-
 ctdb/tests/eventscripts/stubs/timeout              |    8 -
 ctdb/tests/onnode/functions                        |    1 -
 ctdb/tests/run_tests.sh                            |    2 +-
 ctdb/tests/scripts/integration.bash                |   30 +-
 ctdb/tests/simple/06_ctdb_getpid.sh                |   10 +-
 ctdb/tests/simple/11_ctdb_ip.sh                    |    4 +-
 ctdb/tests/simple/12_ctdb_getdebug.sh              |   10 +-
 ctdb/tests/simple/13_ctdb_setdebug.sh              |   16 +-
 ctdb/tests/simple/14_ctdb_statistics.sh            |    7 +-
 ctdb/tests/simple/16_ctdb_config_add_ip.sh         |    2 +-
 ctdb/tests/simple/20_delip_iface_gc.sh             |    2 +-
 ctdb/tests/simple/23_ctdb_moveip.sh                |    4 +-
 ctdb/tests/simple/25_dumpmemory.sh                 |   17 +
 .../{35_set_reclock.sh => 35_set_recmaster.sh}     |   31 +-
 ctdb/tests/simple/60_recoverd_missing_ip.sh        |    2 +-
 ctdb/tests/simple/functions                        |    1 -
 ctdb/tests/simple/scripts/local.bash               |    5 -
 ctdb/tests/simple/scripts/local_daemons.bash       |    3 +-
 ctdb/tests/src/comm_client_test.c                  |  216 --
 ctdb/tests/src/comm_server_test.c                  |  367 --
 ctdb/tests/src/comm_test.c                         |  260 --
 ctdb/tests/src/ctdb_bench.c                        |  120 +-
 ctdb/tests/src/ctdb_fetch.c                        |   96 +-
 ctdb/tests/src/ctdb_fetch_one.c                    |   28 +-
 ctdb/tests/src/ctdb_fetch_readonly_loop.c          |   26 +-
 ctdb/tests/src/ctdb_fetch_readonly_once.c          |   24 +-
 ctdb/tests/src/ctdb_lock_tdb.c                     |    6 +-
 ctdb/tests/src/ctdb_persistent.c                   |   39 +-
 ctdb/tests/src/ctdb_porting_tests.c                |   40 +-
 ctdb/tests/src/ctdb_randrec.c                      |   26 +-
 ctdb/tests/src/ctdb_store.c                        |   29 +-
 ctdb/tests/src/ctdb_takeover_tests.c               |  198 +-
 ctdb/tests/src/ctdb_test.c                         |   20 +-
 ctdb/tests/src/ctdb_test_stubs.c                   |   47 +-
 ctdb/tests/src/ctdb_trackingdb_test.c              |   21 +-
 ctdb/tests/src/ctdb_transaction.c                  |   38 +-
 ctdb/tests/src/ctdb_traverse.c                     |   33 +-
 ctdb/tests/src/ctdb_update_record.c                |   25 +-
 ctdb/tests/src/ctdb_update_record_persistent.c     |   28 +-
 ctdb/tests/src/ctdbd_test.c                        |   25 +-
 ctdb/tests/src/db_hash_test.c                      |  101 -
 ctdb/tests/src/pkt_read_test.c                     |  242 --
 ctdb/tests/src/pkt_write_test.c                    |  370 --
 ctdb/tests/src/protocol_client_test.c              | 2353 ------------
 ctdb/tests/src/protocol_types_test.c               | 1287 -------
 ctdb/tests/src/rb_test.c                           |   19 +-
 ctdb/tests/src/reqid_test.c                        |   72 -
 ctdb/tests/src/srvid_test.c                        |   78 -
 ctdb/tests/takeover/scripts/local.sh               |    2 +-
 ctdb/tests/takeover/simulation/ctdb_takeover.py    |    4 +-
 ctdb/tests/test_check_tcp_ports.sh                 |    3 +-
 ctdb/tests/tool/scripts/local.sh                   |   38 +-
 ctdb/tests/tool/stubby.getcapabilities.001.sh      |    1 +
 ctdb/tests/tool/stubby.getcapabilities.002.sh      |    1 +
 ctdb/tests/tool/stubby.getcapabilities.004.sh      |    5 +-
 ctdb/tests/tool/stubby.natgwlist.006.sh            |    6 +-
 ctdb/tests/tool/stubby.natgwlist.007.sh            |   14 +-
 ctdb/tests/tool/stubby.natgwlist.009.sh            |   36 +
 ctdb/tests/tool/stubby.natgwlist.010.sh            |   37 +
 ctdb/tests/tool/stubby.nodestatus.002.sh           |    8 +-
 ....nodestatus.002.sh => stubby.nodestatus.003.sh} |    0
 ....nodestatus.002.sh => stubby.nodestatus.004.sh} |   13 +-
 ....nodestatus.002.sh => stubby.nodestatus.005.sh} |    8 +-
 ctdb/tests/tool/stubs/ctdb                         |   27 -
 ctdb/tools/ctdb.c                                  |  572 +--
 ctdb/tools/ctdb_diagnostics                        |   18 +-
 ctdb/tools/ctdb_natgw                              |  199 --
 ctdb/tools/ctdb_vacuum.c                           |  193 +
 ctdb/tools/ltdbtool.c                              |   21 +-
 ctdb/tools/onnode                                  |   17 +-
 ctdb/utils/ping_pong/ping_pong.c                   |   65 +-
 ctdb/utils/pmda/pmda_ctdb.c                        |   22 +-
 ctdb/utils/smnotify/smnotify.c                     |    8 +-
 ctdb/web/iscsi.html                                |    2 +-
 ctdb/web/testing.html                              |    4 +-
 ctdb/wscript                                       |  328 +-
 debian/.gitignore                                  |    3 -
 debian/NEWS                                        |   85 -
 debian/changelog                                   |  190 +-
 debian/control                                     |   86 +-
 debian/copyright                                   |   50 +-
 debian/ctdb.docs                                   |    4 +-
 debian/ctdb.install                                |   13 +-
 debian/ctdb.lintian-overrides                      |    1 -
 debian/gbp.conf                                    |    2 +-
 debian/libsamba-heimdal.install                    |    1 +
 debian/libsmbclient.manpages                       |    1 -
 debian/patches/Skip-raw.write-tests.patch          |   25 -
 .../ctdb-Fix-detection-of-gnukfreebsd.patch        |   34 -
 debian/patches/disable-socketwrapper.diff          |   24 +
 debian/patches/no_build_env.patch                  |   32 -
 debian/patches/no_build_system.patch               |   12 -
 debian/patches/pam-examples.patch                  |   17 +
 debian/patches/series                              |    6 +-
 debian/patches/usershare.patch                     |   30 +-
 debian/patches/waf_smbpasswd_location              |    2 +-
 debian/rules                                       |   81 +-
 debian/samba-common-bin.dirs                       |    1 +
 debian/samba-common.dhcp                           |    2 +-
 debian/samba-common.dirs                           |    2 +-
 debian/samba-common.docs                           |    2 +-
 debian/samba-dev.examples                          |    4 +-
 debian/samba-dev.install                           |   72 +-
 debian/samba-libs.install                          |  134 +-
 debian/samba-libs.lintian-overrides                |    3 +-
 debian/samba-testsuite.install                     |    4 +-
 debian/samba-vfs-modules.install                   |    2 +-
 debian/samba.examples                              |    2 +-
 debian/samba.install                               |   22 +-
 debian/samba.lintian-overrides                     |    1 -
 debian/samba.postinst                              |    2 +-
 debian/samba.ufw.profile                           |    4 -
 debian/smbclient.install                           |    3 -
 debian/watch                                       |    2 +-
 debian/winbind.dirs                                |    1 +
 debian/winbind.install                             |    9 +-
 dfs_server/dfs_server_ad.c                         |    1 -
 docs-xml/Samba3-HOWTO/TOSHARG-Passdb.xml           |    2 +-
 docs-xml/archives/THANKS                           |    2 +-
 docs-xml/build/DTD/samba-doc                       |    4 -
 docs-xml/manpages/cifsdd.8.xml                     |  101 -
 docs-xml/manpages/dbwrap_tool.1.xml                |    2 +-
 docs-xml/manpages/eventlogadm.8.xml                |    2 +-
 docs-xml/manpages/findsmb.1.xml                    |    2 +-
 docs-xml/manpages/idmap_ad.8.xml                   |    2 +-
 docs-xml/manpages/idmap_autorid.8.xml              |   17 +-
 docs-xml/manpages/idmap_hash.8.xml                 |    2 +-
 docs-xml/manpages/idmap_ldap.8.xml                 |    2 +-
 docs-xml/manpages/idmap_nss.8.xml                  |    2 +-
 docs-xml/manpages/idmap_rfc2307.8.xml              |   17 +-
 docs-xml/manpages/idmap_rid.8.xml                  |    2 +-
 docs-xml/manpages/idmap_script.8.xml               |    2 +-
 docs-xml/manpages/idmap_tdb.8.xml                  |    2 +-
 docs-xml/manpages/idmap_tdb2.8.xml                 |    2 +-
 docs-xml/manpages/libsmbclient.7.xml               |    2 +-
 docs-xml/manpages/lmhosts.5.xml                    |    2 +-
 docs-xml/manpages/log2pcap.1.xml                   |    2 +-
 docs-xml/manpages/net.8.xml                        |   24 +-
 docs-xml/manpages/nmbd.8.xml                       |    2 +-
 docs-xml/manpages/nmblookup.1.xml                  |    2 +-
 docs-xml/manpages/ntlm_auth.1.xml                  |    8 +-
 docs-xml/manpages/pam_winbind.8.xml                |    4 +-
 docs-xml/manpages/pam_winbind.conf.5.xml           |    4 +-
 docs-xml/manpages/pdbedit.8.xml                    |   24 +-
 docs-xml/manpages/profiles.1.xml                   |    2 +-
 docs-xml/manpages/rpcclient.1.xml                  |    2 +-
 docs-xml/manpages/samba-regedit.8.xml              |    2 +-
 docs-xml/manpages/samba-tool.8.xml                 |    2 +-
 docs-xml/manpages/samba.7.xml                      |    2 +-
 docs-xml/manpages/samba.8.xml                      |    2 +-
 docs-xml/manpages/sharesec.1.xml                   |    2 +-
 docs-xml/manpages/smb.conf.5.xml                   |    2 +-
 docs-xml/manpages/smbcacls.1.xml                   |    2 +-
 docs-xml/manpages/smbclient.1.xml                  |    2 +-
 docs-xml/manpages/smbcontrol.1.xml                 |    2 +-
 docs-xml/manpages/smbcquotas.1.xml                 |    2 +-
 docs-xml/manpages/smbd.8.xml                       |   10 +-
 docs-xml/manpages/smbget.1.xml                     |   24 +-
 docs-xml/manpages/smbgetrc.5.xml                   |   10 +-
 docs-xml/manpages/smbpasswd.5.xml                  |    2 +-
 docs-xml/manpages/smbpasswd.8.xml                  |    2 +-
 docs-xml/manpages/smbspool.8.xml                   |    7 +-
 docs-xml/manpages/smbspool_krb5_wrapper.8.xml      |   64 -
 docs-xml/manpages/smbstatus.1.xml                  |    2 +-
 docs-xml/manpages/smbta-util.8.xml                 |  115 +
 docs-xml/manpages/smbtar.1.xml                     |    2 +-
 docs-xml/manpages/smbtree.1.xml                    |    2 +-
 docs-xml/manpages/testparm.1.xml                   |    2 +-
 docs-xml/manpages/vfs_acl_tdb.8.xml                |    2 +-
 docs-xml/manpages/vfs_acl_xattr.8.xml              |    2 +-
 docs-xml/manpages/vfs_aio_fork.8.xml               |    2 +-
 docs-xml/manpages/vfs_aio_linux.8.xml              |    2 +-
 docs-xml/manpages/vfs_aio_pthread.8.xml            |    2 +-
 docs-xml/manpages/vfs_audit.8.xml                  |    2 +-
 docs-xml/manpages/vfs_btrfs.8.xml                  |    2 +-
 docs-xml/manpages/vfs_cacheprime.8.xml             |    2 +-
 docs-xml/manpages/vfs_cap.8.xml                    |    2 +-
 docs-xml/manpages/vfs_catia.8.xml                  |    2 +-
 docs-xml/manpages/vfs_ceph.8.xml                   |    4 +-
 docs-xml/manpages/vfs_commit.8.xml                 |    2 +-
 docs-xml/manpages/vfs_crossrename.8.xml            |    2 +-
 docs-xml/manpages/vfs_default_quota.8.xml          |    2 +-
 docs-xml/manpages/vfs_dirsort.8.xml                |    2 +-
 docs-xml/manpages/vfs_extd_audit.8.xml             |    2 +-
 docs-xml/manpages/vfs_fake_perms.8.xml             |    2 +-
 docs-xml/manpages/vfs_fileid.8.xml                 |    2 +-
 docs-xml/manpages/vfs_fruit.8.xml                  |    2 +-
 docs-xml/manpages/vfs_full_audit.8.xml             |    2 +-
 docs-xml/manpages/vfs_glusterfs.8.xml              |    2 +-
 docs-xml/manpages/vfs_gpfs.8.xml                   |    8 +-
 docs-xml/manpages/vfs_linux_xfs_sgid.8.xml         |    2 +-
 docs-xml/manpages/vfs_media_harmony.8.xml          |    2 +-
 docs-xml/manpages/vfs_netatalk.8.xml               |    2 +-
 docs-xml/manpages/vfs_offline.8.xml                |   72 -
 docs-xml/manpages/vfs_prealloc.8.xml               |    2 +-
 docs-xml/manpages/vfs_preopen.8.xml                |    2 +-
 docs-xml/manpages/vfs_readahead.8.xml              |    2 +-
 docs-xml/manpages/vfs_readonly.8.xml               |    2 +-
 docs-xml/manpages/vfs_recycle.8.xml                |    2 +-
 docs-xml/manpages/vfs_scannedonly.8.xml            |  243 ++
 docs-xml/manpages/vfs_shadow_copy.8.xml            |    2 +-
 docs-xml/manpages/vfs_shadow_copy2.8.xml           |   50 +-
 docs-xml/manpages/vfs_shell_snap.8.xml             |    2 +-
 docs-xml/manpages/vfs_smb_traffic_analyzer.8.xml   |  299 ++
 docs-xml/manpages/vfs_snapper.8.xml                |    2 +-
 docs-xml/manpages/vfs_streams_depot.8.xml          |    2 +-
 docs-xml/manpages/vfs_streams_xattr.8.xml          |    2 +-
 docs-xml/manpages/vfs_syncops.8.xml                |    2 +-
 docs-xml/manpages/vfs_time_audit.8.xml             |    2 +-
 docs-xml/manpages/vfs_tsmsm.8.xml                  |    2 +-
 docs-xml/manpages/vfs_unityed_media.8.xml          |    2 +-
 docs-xml/manpages/vfs_worm.8.xml                   |    2 +-
 docs-xml/manpages/vfs_xattr_tdb.8.xml              |    2 +-
 docs-xml/manpages/vfs_zfsacl.8.xml                 |    2 +-
 docs-xml/manpages/vfstest.1.xml                    |    2 +-
 docs-xml/manpages/wbinfo.1.xml                     |    4 +-
 docs-xml/manpages/winbind_krb5_locator.7.xml       |    2 +-
 docs-xml/manpages/winbindd.8.xml                   |    2 +-
 docs-xml/smbdotconf/base/bindinterfacesonly.xml    |    2 +-
 docs-xml/smbdotconf/base/comment.xml               |    2 +-
 docs-xml/smbdotconf/base/configbackend.xml         |    3 +-
 docs-xml/smbdotconf/base/doscharset.xml            |    5 +-
 docs-xml/smbdotconf/base/interfaces.xml            |   25 +-
 docs-xml/smbdotconf/base/multicastdnsregister.xml  |    2 +-
 docs-xml/smbdotconf/base/netbiosaliases.xml        |    3 +-
 docs-xml/smbdotconf/base/netbiosname.xml           |    2 +-
 docs-xml/smbdotconf/base/netbiosscope.xml          |    2 +-
 docs-xml/smbdotconf/base/realm.xml                 |    3 +-
 docs-xml/smbdotconf/base/sharebackend.xml          |    2 +-
 docs-xml/smbdotconf/base/unixcharset.xml           |    5 +-
 docs-xml/smbdotconf/base/workgroup.xml             |    2 +-
 docs-xml/smbdotconf/browse/browseable.xml          |    4 +-
 docs-xml/smbdotconf/browse/browselist.xml          |    2 +-
 docs-xml/smbdotconf/browse/domainmaster.xml        |    3 +-
 docs-xml/smbdotconf/browse/enhancedbrowsing.xml    |    2 +-
 docs-xml/smbdotconf/browse/lmannounce.xml          |    3 +-
 docs-xml/smbdotconf/browse/lminterval.xml          |    2 +-
 docs-xml/smbdotconf/browse/oslevel.xml             |    2 +-
 docs-xml/smbdotconf/browse/preferredmaster.xml     |    5 +-
 docs-xml/smbdotconf/domain/allowdnsupdates.xml     |    1 -
 docs-xml/smbdotconf/domain/dnsupdatecommand.xml    |    2 +-
 .../smbdotconf/domain/machinepasswordtimeout.xml   |   13 +-
 docs-xml/smbdotconf/domain/nsupdatecommand.xml     |    2 +-
 docs-xml/smbdotconf/domain/rndccommand.xml         |    2 +-
 docs-xml/smbdotconf/domain/spnupdatecommand.xml    |    2 +-
 docs-xml/smbdotconf/filename/casesensitive.xml     |    3 +-
 docs-xml/smbdotconf/filename/defaultcase.xml       |    6 +-
 docs-xml/smbdotconf/filename/deletevetofiles.xml   |    2 +-
 docs-xml/smbdotconf/filename/hidedotfiles.xml      |    2 +-
 docs-xml/smbdotconf/filename/hidespecialfiles.xml  |    2 +-
 docs-xml/smbdotconf/filename/hideunreadable.xml    |    2 +-
 .../smbdotconf/filename/hideunwriteablefiles.xml   |    2 +-
 docs-xml/smbdotconf/filename/manglednames.xml      |    2 +-
 docs-xml/smbdotconf/filename/mangleprefix.xml      |    2 +-
 docs-xml/smbdotconf/filename/manglingchar.xml      |    2 +-
 docs-xml/smbdotconf/filename/manglingmethod.xml    |    4 +-
 docs-xml/smbdotconf/filename/maparchive.xml        |    4 +-
 docs-xml/smbdotconf/filename/maphidden.xml         |    2 +-
 docs-xml/smbdotconf/filename/mapreadonly.xml       |    3 +-
 docs-xml/smbdotconf/filename/mapsystem.xml         |    2 +-
 docs-xml/smbdotconf/filename/maxstatcachesize.xml  |    2 +-
 docs-xml/smbdotconf/filename/preservecase.xml      |    2 +-
 docs-xml/smbdotconf/filename/shortpreservecase.xml |    2 +-
 docs-xml/smbdotconf/filename/statcache.xml         |    2 +-
 .../smbdotconf/filename/storedosattributes.xml     |    2 +-
 docs-xml/smbdotconf/filename/vetofiles.xml         |    2 +-
 docs-xml/smbdotconf/filename/vetooplockfiles.xml   |    2 +-
 .../smbdotconf/ldap/clientldapsaslwrapping.xml     |    3 +-
 docs-xml/smbdotconf/ldap/ldapadmindn.xml           |    4 +-
 docs-xml/smbdotconf/ldap/ldapconnectiontimeout.xml |    6 +-
 docs-xml/smbdotconf/ldap/ldapdeletedn.xml          |    2 +-
 docs-xml/smbdotconf/ldap/ldapderef.xml             |    7 +-
 docs-xml/smbdotconf/ldap/ldapfollowreferral.xml    |    7 +-
 docs-xml/smbdotconf/ldap/ldapgroupsuffix.xml       |    4 +-
 docs-xml/smbdotconf/ldap/ldapidmapsuffix.xml       |    4 +-
 docs-xml/smbdotconf/ldap/ldapmachinesuffix.xml     |    8 +-
 docs-xml/smbdotconf/ldap/ldappagesize.xml          |    8 +-
 docs-xml/smbdotconf/ldap/ldappasswdsync.xml        |    7 +-
 docs-xml/smbdotconf/ldap/ldapreplicationsleep.xml  |    2 +-
 docs-xml/smbdotconf/ldap/ldapsameditposix.xml      |    4 +-
 docs-xml/smbdotconf/ldap/ldapsamtrusted.xml        |    4 +-
 .../ldap/ldapserverrequirestrongauth.xml           |   26 -
 docs-xml/smbdotconf/ldap/ldapssl.xml               |    3 +-
 docs-xml/smbdotconf/ldap/ldapsslads.xml            |    6 +-
 docs-xml/smbdotconf/ldap/ldapsuffix.xml            |    2 +-
 docs-xml/smbdotconf/ldap/ldaptimeout.xml           |    2 +-
 docs-xml/smbdotconf/ldap/ldapusersuffix.xml        |    8 +-
 docs-xml/smbdotconf/locking/blockinglocks.xml      |    2 +-
 docs-xml/smbdotconf/locking/cscpolicy.xml          |    3 +-
 docs-xml/smbdotconf/locking/fakeoplocks.xml        |    2 +-
 docs-xml/smbdotconf/locking/kerneloplocks.xml      |    4 +-
 docs-xml/smbdotconf/locking/kernelsharemodes.xml   |    4 +-
 docs-xml/smbdotconf/locking/level2oplocks.xml      |    2 +-
 docs-xml/smbdotconf/locking/locking.xml            |    2 +-
 docs-xml/smbdotconf/locking/lockspintime.xml       |    2 +-
 .../smbdotconf/locking/oplockbreakwaittime.xml     |    2 +-
 .../smbdotconf/locking/oplockcontentionlimit.xml   |    2 +-
 docs-xml/smbdotconf/locking/oplocks.xml            |    2 +-
 docs-xml/smbdotconf/locking/posixlocking.xml       |    2 +-
 docs-xml/smbdotconf/locking/smb2leases.xml         |    2 +-
 docs-xml/smbdotconf/locking/strictlocking.xml      |    3 +-
 docs-xml/smbdotconf/logging/debugclass.xml         |    2 +-
 .../smbdotconf/logging/debughirestimestamp.xml     |    2 +-
 docs-xml/smbdotconf/logging/debugpid.xml           |    2 +-
 .../smbdotconf/logging/debugprefixtimestamp.xml    |    2 +-
 .../{timestamplogs.xml => debugtimestamp.xml}      |   11 +-
 docs-xml/smbdotconf/logging/debuguid.xml           |    2 +-
 docs-xml/smbdotconf/logging/ldapdebuglevel.xml     |    7 +-
 docs-xml/smbdotconf/logging/ldapdebugthreshold.xml |    6 +-
 docs-xml/smbdotconf/logging/logfile.xml            |    3 +-
 docs-xml/smbdotconf/logging/logging.xml            |    6 +-
 docs-xml/smbdotconf/logging/loglevel.xml           |    5 +-
 docs-xml/smbdotconf/logging/maxlogsize.xml         |    2 +-
 docs-xml/smbdotconf/logging/syslog.xml             |    3 +-
 docs-xml/smbdotconf/logging/syslogonly.xml         |    3 +-
 docs-xml/smbdotconf/logon/domainlogons.xml         |    2 +-
 docs-xml/smbdotconf/logon/enableprivileges.xml     |    3 +-
 .../smbdotconf/logon/initlogondelayedhosts.xml     |    2 +-
 docs-xml/smbdotconf/logon/logondrive.xml           |    2 +-
 docs-xml/smbdotconf/logon/logonhome.xml            |    2 +-
 docs-xml/smbdotconf/logon/logonpath.xml            |    2 +-
 docs-xml/smbdotconf/logon/logonscript.xml          |    2 +-
 docs-xml/smbdotconf/misc/addsharecommand.xml       |    2 +-
 docs-xml/smbdotconf/misc/afsshare.xml              |    6 +-
 docs-xml/smbdotconf/misc/afsusernamemap.xml        |    2 +-
 .../smbdotconf/misc/allowinsecurewidelinks.xml     |    6 +-
 docs-xml/smbdotconf/misc/asyncsmbechohandler.xml   |    2 +-
 docs-xml/smbdotconf/misc/auto_services.xml         |   21 -
 docs-xml/smbdotconf/misc/available.xml             |    6 +-
 docs-xml/smbdotconf/misc/cachedirectory.xml        |    4 +-
 docs-xml/smbdotconf/misc/changenotify.xml          |    2 +-
 docs-xml/smbdotconf/misc/changesharecommand.xml    |    2 +-
 docs-xml/smbdotconf/misc/clusteraddresses.xml      |    6 +-
 docs-xml/smbdotconf/misc/clustering.xml            |    2 +-
 docs-xml/smbdotconf/misc/configfile.xml            |    2 +-
 docs-xml/smbdotconf/misc/copy.xml                  |    1 -
 .../smbdotconf/misc/ctdblocktimewarnthreshold.xml  |    2 +-
 docs-xml/smbdotconf/misc/ctdbtimeout.xml           |    2 +-
 docs-xml/smbdotconf/misc/defaultservice.xml        |    2 +-
 docs-xml/smbdotconf/misc/deletereadonly.xml        |    6 +-
 docs-xml/smbdotconf/misc/deletesharecommand.xml    |    2 +-
 docs-xml/smbdotconf/misc/dfreecachetime.xml        |    6 +-
 .../smbdotconf/misc/directorynamecachesize.xml     |    6 +-
 docs-xml/smbdotconf/misc/dmapisupport.xml          |    2 +-
 docs-xml/smbdotconf/misc/dontdescend.xml           |    6 +-
 docs-xml/smbdotconf/misc/dosfilemode.xml           |    6 +-
 docs-xml/smbdotconf/misc/dosfiletimeresolution.xml |    6 +-
 docs-xml/smbdotconf/misc/dosfiletimes.xml          |    8 +-
 .../smbdotconf/misc/fakedirectorycreatetimes.xml   |    6 +-
 docs-xml/smbdotconf/misc/followsymlinks.xml        |    6 +-
 docs-xml/smbdotconf/misc/fssprunestale.xml         |    2 +-
 docs-xml/smbdotconf/misc/fsssequencetimeout.xml    |    2 +-
 docs-xml/smbdotconf/misc/fstype.xml                |    6 +-
 docs-xml/smbdotconf/misc/homedirmap.xml            |    6 +-
 docs-xml/smbdotconf/misc/include.xml               |    7 +-
 docs-xml/smbdotconf/misc/kernelchangenotify.xml    |    2 +-
 docs-xml/smbdotconf/misc/lockdirectory.xml         |    2 +-
 .../smbdotconf/misc/logwriteablefilesonexit.xml    |    6 +-
 docs-xml/smbdotconf/misc/magicoutput.xml           |    6 +-
 docs-xml/smbdotconf/misc/magicscript.xml           |    6 +-
 docs-xml/smbdotconf/misc/messagecommand.xml        |    6 +-
 .../smbdotconf/misc/nbtclientsocketaddress.xml     |    7 +-
 docs-xml/smbdotconf/misc/ncalrpcdir.xml            |    6 +-
 docs-xml/smbdotconf/misc/nishomedir.xml            |    6 +-
 .../smbdotconf/misc/nmbdbindexplicitbroadcast.xml  |    6 +-
 docs-xml/smbdotconf/misc/panicaction.xml           |    6 +-
 docs-xml/smbdotconf/misc/perfcountmodule.xml       |    6 +-
 docs-xml/smbdotconf/misc/piddirectory.xml          |    2 +-
 docs-xml/smbdotconf/misc/postexec.xml              |    6 +-
 docs-xml/smbdotconf/misc/preexec.xml               |    8 +-
 docs-xml/smbdotconf/misc/preload.xml               |   22 +
 docs-xml/smbdotconf/misc/registryshares.xml        |    2 +-
 docs-xml/smbdotconf/misc/remoteannounce.xml        |    6 +-
 docs-xml/smbdotconf/misc/remotebrowsesync.xml      |    6 +-
 docs-xml/smbdotconf/misc/resetonzerovc.xml         |    6 +-
 docs-xml/smbdotconf/misc/rootpostexec.xml          |    6 +-
 docs-xml/smbdotconf/misc/rootpreexec.xml           |    6 +-
 docs-xml/smbdotconf/misc/rootpreexecclose.xml      |    6 +-
 docs-xml/smbdotconf/misc/rpcdaemon.xml             |    4 +-
 docs-xml/smbdotconf/misc/rpcserver.xml             |    4 +-
 docs-xml/smbdotconf/misc/smbdprofilinglevel.xml    |    7 +-
 docs-xml/smbdotconf/misc/statedirectory.xml        |    4 +-
 docs-xml/smbdotconf/misc/usershareallowguests.xml  |    6 +-
 docs-xml/smbdotconf/misc/usersharemaxshares.xml    |    8 +-
 docs-xml/smbdotconf/misc/usershareowneronly.xml    |    6 +-
 docs-xml/smbdotconf/misc/usersharepath.xml         |    6 +-
 .../smbdotconf/misc/usershareprefixallowlist.xml   |    6 +-
 .../smbdotconf/misc/usershareprefixdenylist.xml    |    6 +-
 .../smbdotconf/misc/usersharetemplateshare.xml     |    6 +-
 docs-xml/smbdotconf/misc/utmpdirectory.xml         |    2 +-
 docs-xml/smbdotconf/misc/valid.xml                 |    7 +-
 docs-xml/smbdotconf/misc/volume.xml                |    6 +-
 docs-xml/smbdotconf/misc/widelinks.xml             |    7 +-
 docs-xml/smbdotconf/misc/wtmpdirectory.xml         |    2 +-
 docs-xml/smbdotconf/printing/addportcommand.xml    |    2 +-
 docs-xml/smbdotconf/printing/addprintercommand.xml |    2 +-
 docs-xml/smbdotconf/printing/cupsencrypt.xml       |    8 +-
 docs-xml/smbdotconf/printing/cupsoptions.xml       |    2 +-
 docs-xml/smbdotconf/printing/cupsserver.xml        |    2 +-
 docs-xml/smbdotconf/printing/defaultdevmode.xml    |    2 +-
 .../smbdotconf/printing/deleteprintercommand.xml   |    2 +-
 docs-xml/smbdotconf/printing/disablespoolss.xml    |    2 +-
 docs-xml/smbdotconf/printing/enablespoolss.xml     |    3 +-
 docs-xml/smbdotconf/printing/enumportscommand.xml  |    2 +-
 docs-xml/smbdotconf/printing/forceprintername.xml  |    2 +-
 docs-xml/smbdotconf/printing/iprintserver.xml      |    2 +-
 docs-xml/smbdotconf/printing/loadprinters.xml      |    2 +-
 docs-xml/smbdotconf/printing/lppausecommand.xml    |    2 +-
 docs-xml/smbdotconf/printing/lpqcachetime.xml      |    6 +-
 docs-xml/smbdotconf/printing/lpqcommand.xml        |    2 +-
 docs-xml/smbdotconf/printing/lpresumecommand.xml   |    2 +-
 docs-xml/smbdotconf/printing/lprmcommand.xml       |    2 +-
 docs-xml/smbdotconf/printing/maxprintjobs.xml      |    3 +-
 .../smbdotconf/printing/maxreportedprintjobs.xml   |    2 +-
 docs-xml/smbdotconf/printing/os2drivermap.xml      |    2 +-
 docs-xml/smbdotconf/printing/printable.xml         |    2 +-
 docs-xml/smbdotconf/printing/printcapcachetime.xml |    4 +-
 docs-xml/smbdotconf/printing/printcapname.xml      |    6 +-
 docs-xml/smbdotconf/printing/printcommand.xml      |    2 +-
 docs-xml/smbdotconf/printing/printername.xml       |    2 +-
 docs-xml/smbdotconf/printing/printing.xml          |    4 +-
 docs-xml/smbdotconf/printing/printjobusername.xml  |    2 +-
 .../smbdotconf/printing/printnotifybackchannel.xml |    6 +-
 docs-xml/smbdotconf/printing/queuepausecommand.xml |    2 +-
 .../smbdotconf/printing/queueresumecommand.xml     |    2 +-
 .../smbdotconf/printing/showaddprinterwizard.xml   |    2 +-
 .../smbdotconf/printing/spoolssarchitecture.xml    |    6 +-
 docs-xml/smbdotconf/printing/spoolssosversion.xml  |    6 +-
 docs-xml/smbdotconf/printing/useclientdriver.xml   |    2 +-
 .../smbdotconf/protocol/aclcheckpermissions.xml    |    3 +-
 docs-xml/smbdotconf/protocol/aclmapfullcontrol.xml |    6 +-
 docs-xml/smbdotconf/protocol/cldapport.xml         |    2 +-
 .../smbdotconf/protocol/clientipcmaxprotocol.xml   |   29 -
 .../smbdotconf/protocol/clientipcminprotocol.xml   |   29 -
 docs-xml/smbdotconf/protocol/clientmaxprotocol.xml |   18 +-
 docs-xml/smbdotconf/protocol/clientminprotocol.xml |   13 +-
 docs-xml/smbdotconf/protocol/clientusespnego.xml   |    7 +-
 .../smbdotconf/protocol/dcerpcendpointservers.xml  |    2 +-
 .../smbdotconf/protocol/defersharingviolations.xml |    2 +-
 docs-xml/smbdotconf/protocol/dgramport.xml         |    2 +-
 docs-xml/smbdotconf/protocol/disablenetbios.xml    |    2 +-
 docs-xml/smbdotconf/protocol/easupport.xml         |    2 +-
 docs-xml/smbdotconf/protocol/enableasusupport.xml  |    6 +-
 docs-xml/smbdotconf/protocol/eventloglist.xml      |    2 +-
 docs-xml/smbdotconf/protocol/largereadwrite.xml    |    2 +-
 docs-xml/smbdotconf/protocol/mapaclinherit.xml     |    2 +-
 docs-xml/smbdotconf/protocol/maxmux.xml            |    2 +-
 docs-xml/smbdotconf/protocol/maxttl.xml            |    2 +-
 docs-xml/smbdotconf/protocol/maxwinsttl.xml        |    2 +-
 docs-xml/smbdotconf/protocol/maxxmit.xml           |    2 +-
 .../smbdotconf/protocol/minreceivefilesize.xml     |    7 +-
 docs-xml/smbdotconf/protocol/minwinsttl.xml        |    2 +-
 docs-xml/smbdotconf/protocol/nameresolveorder.xml  |    2 +-
 docs-xml/smbdotconf/protocol/nbtport.xml           |    2 +-
 docs-xml/smbdotconf/protocol/ntaclsupport.xml      |    2 +-
 docs-xml/smbdotconf/protocol/ntpipesupport.xml     |    2 +-
 docs-xml/smbdotconf/protocol/ntstatussupport.xml   |    2 +-
 docs-xml/smbdotconf/protocol/profileacls.xml       |    2 +-
 docs-xml/smbdotconf/protocol/readraw.xml           |    6 +-
 docs-xml/smbdotconf/protocol/rpcbigendian.xml      |    2 +-
 docs-xml/smbdotconf/protocol/servermaxprotocol.xml |    7 +-
 docs-xml/smbdotconf/protocol/serverminprotocol.xml |    7 +-
 .../protocol/servermultichannelsupport.xml         |   21 -
 docs-xml/smbdotconf/protocol/sharefakefscaps.xml   |    4 +-
 docs-xml/smbdotconf/protocol/smb2maxcredits.xml    |    8 +-
 docs-xml/smbdotconf/protocol/smb2maxread.xml       |    6 +-
 docs-xml/smbdotconf/protocol/smb2maxtrans.xml      |    6 +-
 docs-xml/smbdotconf/protocol/smb2maxwrite.xml      |    6 +-
 docs-xml/smbdotconf/protocol/smbports.xml          |    3 +-
 docs-xml/smbdotconf/protocol/svcctllist.xml        |    2 +-
 docs-xml/smbdotconf/protocol/timeserver.xml        |    2 +-
 docs-xml/smbdotconf/protocol/unicode.xml           |    2 +-
 docs-xml/smbdotconf/protocol/unixextensions.xml    |    2 +-
 docs-xml/smbdotconf/protocol/usespnego.xml         |    3 +-
 docs-xml/smbdotconf/protocol/webport.xml           |    2 +-
 docs-xml/smbdotconf/protocol/writeraw.xml          |    6 +-
 .../smbdotconf/security/accessbasedshareenum.xml   |    4 +-
 docs-xml/smbdotconf/security/aclgroupcontrol.xml   |    2 +-
 docs-xml/smbdotconf/security/adminusers.xml        |    2 +-
 .../smbdotconf/security/algorithmicridbase.xml     |    4 +-
 .../security/allowdcerpcauthlevelconnect.xml       |   27 -
 .../smbdotconf/security/allowtrusteddomains.xml    |    4 +-
 docs-xml/smbdotconf/security/authmethods.xml       |    4 +-
 .../smbdotconf/security/checkpasswordscript.xml    |    2 +-
 docs-xml/smbdotconf/security/clientipcsigning.xml  |   26 -
 docs-xml/smbdotconf/security/clientlanmanauth.xml  |    2 +-
 docs-xml/smbdotconf/security/clientntlmv2auth.xml  |    7 +-
 .../smbdotconf/security/clientplaintextauth.xml    |    4 +-
 docs-xml/smbdotconf/security/clientschannel.xml    |    5 +-
 docs-xml/smbdotconf/security/clientsigning.xml     |   17 +-
 .../security/clientusepsnegoprincipal.xml          |    3 +-
 docs-xml/smbdotconf/security/createmask.xml        |    2 +-
 .../smbdotconf/security/dedicatedkeytabfile.xml    |    4 +-
 docs-xml/smbdotconf/security/directorymask.xml     |    4 +-
 .../smbdotconf/security/directorysecuritymask.xml  |    8 +-
 docs-xml/smbdotconf/security/encryptpasswords.xml  |    4 +-
 docs-xml/smbdotconf/security/forcecreatemode.xml   |    2 +-
 .../smbdotconf/security/forcedirectorymode.xml     |    2 +-
 .../security/forcedirectorysecuritymode.xml        |    8 +-
 docs-xml/smbdotconf/security/forcegroup.xml        |    2 +-
 .../smbdotconf/security/forceunknownacluser.xml    |    2 +-
 docs-xml/smbdotconf/security/forceuser.xml         |    2 +-
 docs-xml/smbdotconf/security/guestaccount.xml      |    4 +-
 docs-xml/smbdotconf/security/guestok.xml           |    4 +-
 docs-xml/smbdotconf/security/guestonly.xml         |    2 +-
 docs-xml/smbdotconf/security/hostsallow.xml        |    2 +-
 docs-xml/smbdotconf/security/hostsdeny.xml         |    2 +-
 docs-xml/smbdotconf/security/inheritacls.xml       |    2 +-
 docs-xml/smbdotconf/security/inheritowner.xml      |    2 +-
 .../smbdotconf/security/inheritpermissions.xml     |    2 +-
 docs-xml/smbdotconf/security/invalidusers.xml      |    2 +-
 docs-xml/smbdotconf/security/kerberosmethod.xml    |    5 +-
 docs-xml/smbdotconf/security/kpasswdport.xml       |    2 +-
 docs-xml/smbdotconf/security/krb5port.xml          |    2 +-
 docs-xml/smbdotconf/security/lanmanauth.xml        |    4 +-
 docs-xml/smbdotconf/security/maptoguest.xml        |    5 +-
 .../smbdotconf/security/mapuntrustedtodomain.xml   |    4 +-
 docs-xml/smbdotconf/security/ntlmauth.xml          |    2 +-
 docs-xml/smbdotconf/security/nullpasswords.xml     |    5 +-
 .../smbdotconf/security/obeypamrestrictions.xml    |    4 +-
 .../security/oldpasswordallowedperiod.xml          |    4 +-
 docs-xml/smbdotconf/security/onlyuser.xml          |    3 +-
 docs-xml/smbdotconf/security/pampasswordchange.xml |    4 +-
 docs-xml/smbdotconf/security/passdbbackend.xml     |    4 +-
 .../smbdotconf/security/passdbexpandexplicit.xml   |    4 +-
 docs-xml/smbdotconf/security/passwdchatdebug.xml   |    2 +-
 docs-xml/smbdotconf/security/passwdchattimeout.xml |    2 +-
 docs-xml/smbdotconf/security/passwdprogram.xml     |    4 +-
 docs-xml/smbdotconf/security/passwordserver.xml    |    4 +-
 docs-xml/smbdotconf/security/preloadmodules.xml    |    6 +-
 docs-xml/smbdotconf/security/privatedir.xml        |    4 +-
 docs-xml/smbdotconf/security/rawntlmv2auth.xml     |   19 -
 docs-xml/smbdotconf/security/readlist.xml          |    2 +-
 docs-xml/smbdotconf/security/readonly.xml          |    3 +-
 docs-xml/smbdotconf/security/renameuserscript.xml  |    4 +-
 docs-xml/smbdotconf/security/restrictanonymous.xml |    2 +-
 docs-xml/smbdotconf/security/rootdirectory.xml     |    6 +-
 docs-xml/smbdotconf/security/sambakcccommand.xml   |    2 +-
 docs-xml/smbdotconf/security/security.xml          |   11 +-
 docs-xml/smbdotconf/security/serverrole.xml        |   11 +-
 docs-xml/smbdotconf/security/serverschannel.xml    |    5 +-
 docs-xml/smbdotconf/security/serversigning.xml     |    7 +-
 docs-xml/smbdotconf/security/smbencrypt.xml        |    5 +-
 docs-xml/smbdotconf/security/smbpasswdfile.xml     |    4 +-
 docs-xml/smbdotconf/security/tlsdhparamsfile.xml   |    2 +-
 docs-xml/smbdotconf/security/tlsverifypeer.xml     |   47 -
 docs-xml/smbdotconf/security/unixpasswordsync.xml  |    2 +-
 docs-xml/smbdotconf/security/username.xml          |    5 +-
 docs-xml/smbdotconf/security/usernamelevel.xml     |    2 +-
 docs-xml/smbdotconf/security/usernamemap.xml       |    2 +-
 .../smbdotconf/security/usernamemapcachetime.xml   |    2 +-
 docs-xml/smbdotconf/security/usernamemapscript.xml |    2 +-
 docs-xml/smbdotconf/security/validusers.xml        |    2 +-
 docs-xml/smbdotconf/security/writeable.xml         |    4 +-
 docs-xml/smbdotconf/security/writelist.xml         |    2 +-
 docs-xml/smbdotconf/tuning/aiomaxthreads.xml       |   19 -
 docs-xml/smbdotconf/tuning/aioreadsize.xml         |    2 +-
 docs-xml/smbdotconf/tuning/aiowritesize.xml        |    2 +-
 .../smbdotconf/tuning/allocationroundupsize.xml    |    2 +-
 docs-xml/smbdotconf/tuning/blocksize.xml           |    2 +-
 docs-xml/smbdotconf/tuning/maxdisksize.xml         |    2 +-
 docs-xml/smbdotconf/tuning/strictrename.xml        |   15 +-
 docs-xml/smbdotconf/tuning/strictsync.xml          |    6 +-
 docs-xml/smbdotconf/tuning/writecachesize.xml      |    2 +-
 docs-xml/smbdotconf/vfs/vfsobjects.xml             |    2 +-
 docs-xml/smbdotconf/winbind/createkrb5conf.xml     |    4 +-
 docs-xml/smbdotconf/winbind/idmapbackend.xml       |    4 +-
 docs-xml/smbdotconf/winbind/idmapcachetime.xml     |    2 +-
 docs-xml/smbdotconf/winbind/idmapconfig.xml        |   17 +-
 docs-xml/smbdotconf/winbind/idmapgid.xml           |    6 +-
 .../smbdotconf/winbind/idmapnegativecachetime.xml  |    2 +-
 docs-xml/smbdotconf/winbind/idmapuid.xml           |    4 +-
 docs-xml/smbdotconf/winbind/templatehomedir.xml    |    2 +-
 docs-xml/smbdotconf/winbind/templateshell.xml      |    2 +-
 docs-xml/smbdotconf/winbind/winbindcachetime.xml   |    2 +-
 docs-xml/smbdotconf/winbind/winbindenumgroups.xml  |    2 +-
 .../smbdotconf/winbind/winbindexpandgroups.xml     |    2 +-
 docs-xml/smbdotconf/winbind/winbindmaxclients.xml  |    2 +-
 .../winbind/winbindmaxdomainconnections.xml        |    8 +-
 .../smbdotconf/winbind/winbindnestedgroups.xml     |    2 +-
 .../smbdotconf/winbind/winbindnormalizenames.xml   |    2 +-
 docs-xml/smbdotconf/winbind/winbindnssinfo.xml     |    2 +-
 .../smbdotconf/winbind/winbindofflinelogon.xml     |    4 +-
 .../smbdotconf/winbind/winbindreconnectdelay.xml   |    2 +-
 .../smbdotconf/winbind/winbindrefreshtickets.xml   |    2 +-
 .../smbdotconf/winbind/winbindrequesttimeout.xml   |    2 +-
 docs-xml/smbdotconf/winbind/winbindrpconly.xml     |    4 +-
 docs-xml/smbdotconf/winbind/winbindseparator.xml   |    2 +-
 .../winbind/winbindtrusteddomainsonly.xml          |    2 +-
 .../smbdotconf/winbind/winbindusedefaultdomain.xml |    2 +-
 docs-xml/smbdotconf/wins/dnsproxy.xml              |    2 +-
 docs-xml/smbdotconf/wins/winsserver.xml            |    2 +-
 docs-xml/using_samba/ch02.xml                      |    2 +-
 docs-xml/using_samba/ch05.xml                      |    2 +-
 docs-xml/wscript_build                             |   12 +-
 docs/manpages/dbwrap_tool.1                        |   58 +-
 docs/manpages/eventlogadm.8                        |    6 +-
 docs/manpages/findsmb.1                            |    6 +-
 docs/manpages/idmap_ad.8                           |    6 +-
 docs/manpages/idmap_autorid.8                      |   11 +-
 docs/manpages/idmap_hash.8                         |    6 +-
 docs/manpages/idmap_ldap.8                         |    6 +-
 docs/manpages/idmap_nss.8                          |    6 +-
 docs/manpages/idmap_rfc2307.8                      |   17 +-
 docs/manpages/idmap_rid.8                          |    6 +-
 docs/manpages/idmap_script.8                       |    6 +-
 docs/manpages/idmap_tdb.8                          |    6 +-
 docs/manpages/idmap_tdb2.8                         |    6 +-
 docs/manpages/libsmbclient.7                       |    6 +-
 docs/manpages/lmhosts.5                            |    6 +-
 docs/manpages/log2pcap.1                           |   11 +-
 docs/manpages/net.8                                |  155 +-
 docs/manpages/nmbd.8                               |   61 +-
 docs/manpages/nmblookup.1                          |   89 +-
 docs/manpages/ntlm_auth.1                          |   26 +-
 docs/manpages/pam_winbind.8                        |    8 +-
 docs/manpages/pam_winbind.conf.5                   |    8 +-
 docs/manpages/pdbedit.8                            |   74 +-
 docs/manpages/profiles.1                           |   58 +-
 docs/manpages/rpcclient.1                          |  170 +-
 docs/manpages/samba-regedit.8                      |  165 +-
 docs/manpages/samba-tool.8                         |   48 +-
 docs/manpages/samba.7                              |    6 +-
 docs/manpages/samba.8                              |   58 +-
 docs/manpages/sharesec.1                           |   53 +-
 docs/manpages/smb.conf.5                           |  433 +--
 docs/manpages/smbcacls.1                           |  170 +-
 docs/manpages/smbclient.1                          |  170 +-
 docs/manpages/smbcontrol.1                         |   65 +-
 docs/manpages/smbcquotas.1                         |  139 +-
 docs/manpages/smbd.8                               |   61 +-
 docs/manpages/smbget.1                             |   29 +-
 docs/manpages/smbgetrc.5                           |   15 +-
 docs/manpages/smbpasswd.5                          |    6 +-
 docs/manpages/smbpasswd.8                          |   10 +-
 docs/manpages/smbspool.8                           |   19 +-
 docs/manpages/smbspool_krb5_wrapper.8              |   49 -
 docs/manpages/smbstatus.1                          |   53 +-
 docs/manpages/{cifsdd.8 => smbta-util.8}           |   75 +-
 docs/manpages/smbtar.1                             |    6 +-
 docs/manpages/smbtree.1                            |  139 +-
 docs/manpages/testparm.1                           |   44 +-
 docs/manpages/vfs_acl_tdb.8                        |    6 +-
 docs/manpages/vfs_acl_xattr.8                      |    6 +-
 docs/manpages/vfs_aio_fork.8                       |    6 +-
 docs/manpages/vfs_aio_linux.8                      |    6 +-
 docs/manpages/vfs_aio_pthread.8                    |    6 +-
 docs/manpages/vfs_audit.8                          |    6 +-
 docs/manpages/vfs_btrfs.8                          |    6 +-
 docs/manpages/vfs_cacheprime.8                     |    6 +-
 docs/manpages/vfs_cap.8                            |    6 +-
 docs/manpages/vfs_catia.8                          |    6 +-
 docs/manpages/vfs_ceph.8                           |    8 +-
 docs/manpages/vfs_commit.8                         |    6 +-
 docs/manpages/vfs_crossrename.8                    |    6 +-
 docs/manpages/vfs_default_quota.8                  |    6 +-
 docs/manpages/vfs_dirsort.8                        |    6 +-
 docs/manpages/vfs_extd_audit.8                     |    6 +-
 docs/manpages/vfs_fake_perms.8                     |    6 +-
 docs/manpages/vfs_fileid.8                         |    6 +-
 docs/manpages/vfs_fruit.8                          |    6 +-
 docs/manpages/vfs_full_audit.8                     |    6 +-
 docs/manpages/vfs_glusterfs.8                      |    6 +-
 docs/manpages/vfs_gpfs.8                           |   14 +-
 docs/manpages/vfs_linux_xfs_sgid.8                 |    6 +-
 docs/manpages/vfs_media_harmony.8                  |    6 +-
 docs/manpages/vfs_netatalk.8                       |    6 +-
 docs/manpages/vfs_offline.8                        |   65 -
 docs/manpages/vfs_prealloc.8                       |    6 +-
 docs/manpages/vfs_preopen.8                        |    6 +-
 docs/manpages/vfs_readahead.8                      |    6 +-
 docs/manpages/vfs_readonly.8                       |    6 +-
 docs/manpages/vfs_recycle.8                        |    6 +-
 docs/manpages/vfs_scannedonly.8                    |  164 +
 docs/manpages/vfs_shadow_copy.8                    |    6 +-
 docs/manpages/vfs_shadow_copy2.8                   |   77 +-
 docs/manpages/vfs_shell_snap.8                     |    6 +-
 docs/manpages/vfs_smb_traffic_analyzer.8           |  385 ++
 docs/manpages/vfs_snapper.8                        |    6 +-
 docs/manpages/vfs_streams_depot.8                  |    6 +-
 docs/manpages/vfs_streams_xattr.8                  |    6 +-
 docs/manpages/vfs_syncops.8                        |    6 +-
 docs/manpages/vfs_time_audit.8                     |    6 +-
 docs/manpages/vfs_tsmsm.8                          |    6 +-
 docs/manpages/vfs_unityed_media.8                  |    6 +-
 docs/manpages/vfs_worm.8                           |    6 +-
 docs/manpages/vfs_xattr_tdb.8                      |    6 +-
 docs/manpages/vfs_zfsacl.8                         |    6 +-
 docs/manpages/vfstest.1                            |   53 +-
 docs/manpages/wbinfo.1                             |   18 +-
 docs/manpages/winbind_krb5_locator.7               |    6 +-
 docs/manpages/winbindd.8                           |   58 +-
 dynconfig/dynconfig.c                              |    7 +-
 dynconfig/wscript                                  |    8 +-
 examples/VFS/shadow_copy_test.c                    |    1 -
 examples/VFS/skel_opaque.c                         |    6 +-
 examples/VFS/skel_transparent.c                    |    8 +-
 examples/libsmbclient/get_auth_data_fn.h           |   16 +-
 examples/libsmbclient/teststat.c                   |   16 +-
 examples/libsmbclient/teststat2.c                  |   16 +-
 examples/libsmbclient/testutime.c                  |   16 +-
 examples/pdb/test.c                                |    4 +-
 install_with_python.sh                             |   41 +-
 lib/async_req/wscript_build                        |    3 +-
 lib/crypto/REQUIREMENTS                            |    3 +
 lib/dbwrap/dbwrap.c                                |    9 +-
 lib/dbwrap/dbwrap.h                                |    6 +-
 lib/dbwrap/dbwrap_cache.c                          |    8 +-
 lib/dbwrap/dbwrap_local_open.c                     |    9 +-
 lib/dbwrap/dbwrap_private.h                        |    4 +-
 lib/dbwrap/dbwrap_rbt.c                            |  167 +-
 lib/dbwrap/dbwrap_tdb.c                            |   23 +-
 lib/dbwrap/dbwrap_tdb.h                            |    1 +
 lib/dbwrap/dbwrap_util.c                           |   20 +-
 lib/dbwrap/wscript_build                           |    2 +-
 lib/krb5_wrap/krb5_samba.c                         |   21 +-
 lib/ldb-samba/ldb_ildap.c                          |   12 +-
 lib/ldb-samba/ldb_matching_rules.c                 |  342 --
 lib/ldb-samba/ldb_matching_rules.h                 |   28 -
 lib/ldb-samba/ldb_wrap.c                           |    8 +-
 lib/ldb-samba/ldif_handlers.c                      |    6 -
 lib/ldb-samba/tests/match_rules.py                 | 1427 +-------
 lib/ldb-samba/wscript_build                        |    4 +-
 lib/ldb/ABI/ldb-1.1.22.sigs                        |  264 --
 lib/ldb/ABI/ldb-1.1.23.sigs                        |  264 --
 lib/ldb/ABI/ldb-1.1.24.sigs                        |  264 --
 lib/ldb/ABI/ldb-1.1.25.sigs                        |  265 --
 lib/ldb/ABI/ldb-1.1.26.sigs                        |  265 --
 lib/ldb/ABI/pyldb-util-1.1.22.sigs                 |    2 -
 lib/ldb/ABI/pyldb-util-1.1.23.sigs                 |    2 -
 lib/ldb/ABI/pyldb-util-1.1.24.sigs                 |    2 -
 lib/ldb/ABI/pyldb-util-1.1.25.sigs                 |    2 -
 lib/ldb/ABI/pyldb-util-1.1.26.sigs                 |    2 -
 lib/ldb/ABI/pyldb-util.py3-1.1.23.sigs             |    2 -
 lib/ldb/ABI/pyldb-util.py3-1.1.24.sigs             |    2 -
 lib/ldb/ABI/pyldb-util.py3-1.1.25.sigs             |    2 -
 lib/ldb/ABI/pyldb-util.py3-1.1.26.sigs             |    2 -
 lib/ldb/_ldb_text.py                               |  148 -
 lib/ldb/common/ldb_controls.c                      |   73 +-
 lib/ldb/common/ldb_dn.c                            |   38 +-
 lib/ldb/common/ldb_ldif.c                          |   77 +-
 lib/ldb/common/ldb_match.c                         |    5 +-
 lib/ldb/common/ldb_modules.c                       |    6 +-
 lib/ldb/common/ldb_pack.c                          |  274 +-
 lib/ldb/include/dlinklist.h                        |   15 +-
 lib/ldb/include/ldb.h                              |    7 -
 lib/ldb/include/ldb_module.h                       |   18 -
 lib/ldb/include/ldb_private.h                      |   13 +-
 lib/ldb/ldb_ldap/ldb_ldap.c                        |   18 +-
 lib/ldb/ldb_sqlite3/ldb_sqlite3.c                  |   11 +-
 lib/ldb/ldb_tdb/ldb_search.c                       |   19 +-
 lib/ldb/ldb_tdb/ldb_tdb.c                          |   14 +-
 lib/ldb/ldb_tdb/ldb_tdb.h                          |    3 -
 lib/ldb/pyldb.c                                    | 1043 ++----
 lib/ldb/pyldb.h                                    |    7 -
 lib/ldb/pyldb_util.c                               |   21 +-
 lib/ldb/tests/python/api.py                        |  845 +----
 lib/ldb/tests/test-tdb.sh                          |    7 +
 lib/ldb/tools/cmdline.c                            |   33 -
 lib/ldb/wscript                                    |   73 +-
 lib/nss_wrapper/nss_wrapper.c                      | 2017 ++---------
 lib/nss_wrapper/wscript                            |    5 +-
 lib/param/README                                   |   20 +-
 lib/param/loadparm.c                               |  252 +-
 lib/param/loadparm.h                               |   41 +-
 lib/param/param.h                                  |   10 +-
 lib/param/param_table.c                            | 3755 +++++++++++++++++++-
 lib/param/util.c                                   |    1 -
 lib/param/wscript_build                            |    6 -
 lib/replace/replace.c                              |   17 +-
 lib/replace/wscript                                |   37 +-
 lib/resolv_wrapper/resolv_wrapper.c                |  227 +-
 lib/resolv_wrapper/wscript                         |    3 +-
 lib/socket/interfaces.c                            |   66 -
 lib/socket/interfaces.h                            |    3 -
 lib/socket/wscript                                 |    7 -
 lib/socket_wrapper/socket_wrapper.c                |  121 +-
 lib/socket_wrapper/wscript                         |    3 +-
 lib/talloc/ABI/pytalloc-util-2.1.4.sigs            |    6 -
 lib/talloc/ABI/pytalloc-util-2.1.5.sigs            |    6 -
 lib/talloc/ABI/pytalloc-util-2.1.6.sigs            |   13 -
 lib/talloc/ABI/pytalloc-util.py3-2.1.5.sigs        |    5 -
 lib/talloc/ABI/pytalloc-util.py3-2.1.6.sigs        |   12 -
 lib/talloc/ABI/talloc-2.1.4.sigs                   |   65 -
 lib/talloc/ABI/talloc-2.1.5.sigs                   |   65 -
 lib/talloc/ABI/talloc-2.1.6.sigs                   |   65 -
 lib/talloc/pytalloc.c                              |   86 -
 lib/talloc/pytalloc.h                              |   23 +-
 lib/talloc/pytalloc_guide.txt                      |   40 +-
 lib/talloc/pytalloc_util.c                         |  199 +-
 lib/talloc/talloc.c                                |   89 +-
 lib/talloc/talloc.h                                |    4 +-
 lib/talloc/test_magic_differs.sh                   |   16 -
 lib/talloc/test_magic_differs_helper.c             |   12 -
 lib/talloc/test_pytalloc.c                         |   83 +-
 lib/talloc/test_pytalloc.py                        |   73 +-
 lib/talloc/testsuite.c                             |   71 -
 lib/talloc/wscript                                 |   23 +-
 lib/tdb/ABI/tdb-1.3.8.sigs                         |   69 -
 lib/tdb/common/open.c                              |    7 -
 lib/tdb/docs/mutex.txt                             |    4 +-
 lib/tdb/wscript                                    |    4 +-
 lib/tdb_wrap/tdb_wrap.c                            |   12 +-
 lib/tevent/ABI/tevent-0.9.26.sigs                  |   90 -
 lib/tevent/ABI/tevent-0.9.27.sigs                  |   90 -
 lib/tevent/ABI/tevent-0.9.28.sigs                  |   90 -
 lib/tevent/doc/tevent_thread.dox                   |  322 --
 lib/tevent/doc/tevent_tutorial.dox                 |    2 -
 lib/tevent/testsuite.c                             |  330 --
 lib/tevent/tevent.h                                |   52 -
 lib/tevent/tevent_epoll.c                          |    6 +-
 lib/tevent/tevent_immediate.c                      |    2 +-
 lib/tevent/tevent_poll.c                           |    7 +-
 lib/tevent/tevent_port.c                           |   22 +-
 lib/tevent/tevent_queue.c                          |    2 +-
 lib/tevent/tevent_select.c                         |    2 +-
 lib/tevent/tevent_signal.c                         |    4 -
 lib/tevent/tevent_threads.c                        |  370 --
 lib/tevent/tevent_util.h                           |   15 +-
 lib/tevent/wscript                                 |    9 +-
 lib/torture/torture.c                              |   14 +-
 lib/torture/torture.h                              |   11 -
 lib/torture/torture.pc.in                          |   12 +
 lib/torture/wscript_build                          |   11 +-
 lib/tsocket/tsocket_bsd.c                          |   75 +-
 lib/uid_wrapper/uid_wrapper.c                      |  646 +---
 lib/uid_wrapper/wscript                            |   75 +-
 lib/util/asn1.c                                    |  121 +-
 lib/util/asn1.h                                    |   27 +-
 lib/util/charset/util_str.c                        |    4 +-
 lib/util/debug.c                                   |    2 +-
 lib/util/debug.h                                   |   20 +-
 lib/util/dlinklist.h                               |   15 +-
 lib/util/genrand.c                                 |  259 +-
 lib/util/genrand.h                                 |   11 +
 lib/util/idtree.c                                  |    7 +-
 lib/util/parmlist.c                                |  111 +
 lib/util/parmlist.h                                |   57 +
 lib/util/samba_util.h                              |   32 +-
 lib/util/server_id.c                               |  110 +-
 lib/util/server_id_db.c                            |   23 +-
 lib/util/talloc_report.c                           |    4 +-
 lib/util/tests/asn1_tests.c                        |    6 +-
 lib/util/tests/dlinklist.c                         |    8 +-
 lib/util/tests/genrand.c                           |   12 +
 lib/util/tests/genrandperf.c                       |   39 -
 lib/util/tests/parmlist.c                          |  107 +
 lib/util/time_basic.c                              |    3 +-
 lib/util/time_basic.h                              |    3 +-
 lib/util/util.c                                    |    2 +-
 lib/util/util.h                                    |   53 -
 lib/util/util_net.c                                |  247 +-
 lib/util/util_net.h                                |    1 -
 lib/util/util_process.c                            |    1 -
 lib/util/util_strlist.c                            |   18 +-
 lib/util/wscript_build                             |   54 +-
 lib/util/wscript_configure                         |    6 +-
 libcli/auth/netlogon_creds_cli.c                   |   15 +-
 libcli/auth/proto.h                                |    6 -
 libcli/auth/smbencrypt.c                           |  170 +-
 libcli/auth/spnego.h                               |    8 +-
 libcli/auth/spnego_parse.c                         |   55 +-
 libcli/auth/wscript_build                          |    2 +-
 libcli/cldap/cldap.c                               |   14 +-
 libcli/dns/dns.c                                   |   34 +-
 libcli/dns/libdns.h                                |   10 +-
 libcli/drsuapi/drsuapi.h                           |    1 -
 libcli/drsuapi/repl_decrypt.c                      |    6 -
 libcli/drsuapi/wscript_build                       |    2 +-
 libcli/ldap/ldap_message.c                         |   34 +-
 libcli/ldap/wscript_build                          |    7 +-
 libcli/nbt/libnbt.h                                |    2 -
 libcli/nbt/nbtsocket.c                             |    7 +-
 libcli/security/dom_sid.h                          |    6 +-
 libcli/security/secace.c                           |   19 +
 libcli/security/secace.h                           |    1 +
 libcli/security/secdesc.c                          |   21 +-
 libcli/security/secdesc.h                          |    5 +
 libcli/security/security_token.c                   |    5 -
 libcli/security/security_token.h                   |    2 -
 libcli/security/session.c                          |    4 -
 libcli/security/session.h                          |    1 -
 libcli/security/util_sid.c                         |   31 +-
 libcli/smb/smb1cli_read.c                          |   53 +-
 libcli/smb/smb2_signing.c                          |   17 +-
 libcli/smb/smb2cli_ioctl.c                         |   84 +-
 libcli/smb/smb2cli_query_info.c                    |   24 +-
 libcli/smb/smb2cli_read.c                          |   26 +-
 libcli/smb/smbXcli_base.c                          |   79 +-
 libcli/smb/smbXcli_base.h                          |    3 -
 libcli/smb/smb_constants.h                         |    8 +-
 libcli/smb/smb_signing.c                           |    4 -
 libcli/smb/smb_unix_ext.h                          |    2 +-
 libcli/smb/tstream_smbXcli_np.c                    |   17 +-
 libcli/smb/wscript                                 |    6 +-
 libcli/smbreadline/smbreadline.c                   |    6 -
 libcli/util/wscript_build                          |    6 +-
 libds/common/flags.h                               |    4 +-
 libds/common/wscript_build                         |    6 +-
 libgpo/gpo_ldap.c                                  |    2 +-
 librpc/idl/clusapi.idl                             |  154 +-
 librpc/idl/dcerpc.idl                              |   15 +-
 librpc/idl/dcom.idl                                |  131 +-
 librpc/idl/dns.idl                                 |   18 +-
 librpc/idl/dnsp.idl                                |    4 +-
 librpc/idl/dnsserver.idl                           |    2 +-
 librpc/idl/epmapper.idl                            |    2 +-
 librpc/idl/ioctl.idl                               |    1 -
 librpc/idl/messaging.idl                           |    1 -
 librpc/idl/negoex.idl                              |  156 -
 librpc/idl/ntlmssp.idl                             |   48 +-
 librpc/idl/orpc.idl                                |   36 +-
 librpc/idl/oxidresolver.idl                        |   52 +-
 librpc/idl/remact.idl                              |   44 +-
 librpc/idl/rot.idl                                 |   58 +-
 librpc/idl/security.idl                            |   12 -
 librpc/idl/witness.idl                             |    6 +-
 librpc/idl/wmi.idl                                 |    8 +-
 librpc/idl/wscript_build                           |    2 +-
 librpc/idl/xattr.idl                               |    1 -
 librpc/ndr/libndr.h                                |    6 +-
 librpc/ndr/ndr_basic.c                             |    4 +-
 librpc/ndr/ndr_dns.c                               |   29 +-
 librpc/ndr/ndr_dnsp.c                              |   24 -
 librpc/ndr/ndr_dnsp.h                              |    4 -
 librpc/ndr/ndr_nbt.c                               |    2 +-
 librpc/ndr/ndr_negoex.c                            |  520 ---
 librpc/ndr/ndr_negoex.h                            |   37 -
 librpc/ndr/ndr_ntlmssp.c                           |   16 -
 librpc/ndr/ndr_ntlmssp.h                           |    2 -
 librpc/rpc/binding.c                               |    4 +-
 librpc/rpc/dcerpc_error.c                          |    6 +-
 librpc/rpc/dcerpc_util.c                           |  141 +-
 librpc/rpc/rpc_common.h                            |   10 +-
 librpc/tools/wscript_build                         |    2 +-
 librpc/wscript_build                               |   31 +-
 nsswitch/libwbclient/tests/wbclient.c              |   20 +-
 nsswitch/libwbclient/wbc_pam.c                     |   21 +-
 nsswitch/pam_winbind.c                             |   28 +-
 nsswitch/wb_common.c                               |    4 +-
 nsswitch/wbinfo.c                                  |   10 -
 nsswitch/winbind_struct_protocol.h                 |    1 -
 nsswitch/wins.c                                    |  245 +-
 nsswitch/wins_freebsd.c                            |   81 -
 nsswitch/wscript_build                             |    9 +-
 packaging/RHEL-CTDB/configure.rpm                  |    2 +
 packaging/RHEL-CTDB/samba.spec.tmpl                |   10 +-
 packaging/RHEL/samba.spec.tmpl                     |    6 +-
 pidl/lib/Parse/Pidl/Samba3/ClientNDR.pm            |   11 +-
 pidl/lib/Parse/Pidl/Samba3/Template.pm             |   11 +-
 pidl/lib/Parse/Pidl/Samba4/NDR/Client.pm           |   11 +-
 pidl/lib/Parse/Pidl/Samba4/Python.pm               |   43 +-
 pidl/lib/Parse/Pidl/Samba4/Template.pm             |   11 +-
 pidl/lib/Parse/Pidl/Util.pm                        |   16 +-
 pidl/wscript                                       |    5 +-
 python/pyglue.c                                    |   11 -
 python/samba/__init__.py                           |   25 -
 python/samba/dbchecker.py                          |  162 +-
 python/samba/join.py                               |  163 +-
 python/samba/kcc/__init__.py                       |  372 +-
 python/samba/kcc/kcc_utils.py                      |  105 +-
 python/samba/kcc/ldif_import_export.py             |   10 +-
 python/samba/netcmd/dns.py                         |    6 +-
 python/samba/netcmd/domain.py                      |  288 +-
 python/samba/netcmd/drs.py                         |   46 -
 python/samba/netcmd/fsmo.py                        |    3 +-
 python/samba/netcmd/main.py                        |    2 +
 python/samba/netcmd/ntacl.py                       |   24 +-
 python/samba/netcmd/sites.py                       |  163 +-
 python/samba/netcmd/user.py                        |   10 +-
 python/samba/netcmd/vampire.py                     |   55 +
 python/samba/ntacls.py                             |    8 -
 python/samba/provision/__init__.py                 |   11 +-
 python/samba/provision/sambadns.py                 |   15 +-
 python/samba/remove_dc.py                          |  435 ---
 python/samba/samdb.py                              |   25 +-
 python/samba/sites.py                              |   52 +-
 python/samba/subnets.py                            |  186 -
 python/samba/tests/__init__.py                     |  527 +--
 python/samba/tests/blackbox/samba_tool_drs.py      |  169 +-
 python/samba/tests/core.py                         |   16 -
 python/samba/tests/dcerpc/array.py                 |  171 -
 python/samba/tests/dcerpc/dnsserver.py             |    2 +-
 python/samba/tests/dcerpc/raw_protocol.py          | 2623 --------------
 python/samba/tests/dcerpc/rpc_talloc.py            |   14 +-
 python/samba/tests/dns.py                          |  674 +---
 python/samba/tests/docs.py                         |  142 +-
 python/samba/tests/{get_opt.py => getopt.py}       |    0
 python/samba/tests/kcc/ldif_import_export.py       |   37 +-
 python/samba/tests/provision.py                    |    3 +
 python/samba/tests/samba_tool/sites.py             |  136 -
 python/samba/upgradehelpers.py                     |    2 +-
 python/uuidmodule.c                                |   58 +
 python/wscript_build                               |    8 +
 script/autobuild.py                                |   89 +-
 script/generate_param.py                           |  159 +-
 script/release.sh                                  |   44 +-
 selftest/flapping                                  |    2 -
 selftest/knownfail                                 |   46 +-
 .../DC-addc.addom.samba.example.com-S02-cert.pem   |  191 -
 .../DC-addc.addom.samba.example.com-S02-key.pem    |   54 -
 ...DC-addc.addom.samba.example.com-S02-openssl.cnf |  250 --
 ...ddc.addom.samba.example.com-S02-private-key.pem |   51 -
 .../DC-addc.addom.samba.example.com-S02-req.pem    |   30 -
 .../DC-addc.addom.samba.example.com-cert.pem       |    1 -
 ...DC-addc.addom.samba.example.com-private-key.pem |    1 -
 .../DC-localdc.samba.example.com-S00-cert.pem      |  190 -
 .../DC-localdc.samba.example.com-S00-key.pem       |   54 -
 .../DC-localdc.samba.example.com-S00-openssl.cnf   |  250 --
 ...C-localdc.samba.example.com-S00-private-key.pem |   51 -
 .../DC-localdc.samba.example.com-S00-req.pem       |   30 -
 .../DC-localdc.samba.example.com-cert.pem          |    1 -
 .../DC-localdc.samba.example.com-private-key.pem   |    1 -
 .../manage-ca/CA-samba.example.com/NewCerts/00.pem |  190 -
 .../manage-ca/CA-samba.example.com/NewCerts/01.pem |  169 -
 .../manage-ca/CA-samba.example.com/NewCerts/02.pem |  191 -
 .../manage-ca/CA-samba.example.com/NewCerts/03.pem |  169 -
 .../Private/CA-samba.example.com-crlnumber.txt     |    1 -
 .../Private/CA-samba.example.com-crlnumber.txt.old |    1 -
 .../Private/CA-samba.example.com-index.txt         |    4 -
 .../Private/CA-samba.example.com-index.txt.attr    |    1 -
 .../CA-samba.example.com-index.txt.attr.old        |    1 -
 .../Private/CA-samba.example.com-index.txt.old     |    3 -
 .../Private/CA-samba.example.com-openssl.cnf       |  203 --
 .../Private/CA-samba.example.com-private-key.pem   |  102 -
 .../Private/CA-samba.example.com-serial.txt        |    1 -
 .../Private/CA-samba.example.com-serial.txt.old    |    1 -
 .../Public/CA-samba.example.com-cert.pem           |   62 -
 .../Public/CA-samba.example.com-crl.pem            |   32 -
 ...inistrator at addom.samba.example.com-S03-cert.pem |  169 -
 ...ministrator at addom.samba.example.com-S03-key.pem |   30 -
 ...strator at addom.samba.example.com-S03-openssl.cnf |  242 --
 ...tor at addom.samba.example.com-S03-private-key.pem |   27 -
 ...ministrator at addom.samba.example.com-S03-req.pem |   19 -
 ...-administrator at addom.samba.example.com-cert.pem |    1 -
 ...strator at addom.samba.example.com-private-key.pem |    1 -
 ...ER-administrator at samba.example.com-S01-cert.pem |  169 -
 ...SER-administrator at samba.example.com-S01-key.pem |   30 -
 ...administrator at samba.example.com-S01-openssl.cnf |  242 --
 ...nistrator at samba.example.com-S01-private-key.pem |   27 -
 ...SER-administrator at samba.example.com-S01-req.pem |   19 -
 .../USER-administrator at samba.example.com-cert.pem  |    1 -
 ...administrator at samba.example.com-private-key.pem |    1 -
 selftest/manage-ca/manage-CA-samba.example.com.cnf |   21 -
 selftest/manage-ca/manage-CA-samba.example.com.sh  |   18 -
 selftest/manage-ca/manage-ca.sh                    |  387 --
 .../manage-CA-example.com.cnf                      |   17 -
 .../openssl-BASE-template.cnf                      |  201 --
 .../manage-ca.templates.d/openssl-CA-template.cnf  |    2 -
 .../manage-ca.templates.d/openssl-DC-template.cnf  |   49 -
 .../openssl-USER-template.cnf                      |   41 -
 selftest/quick                                     |    3 +-
 selftest/selftest.pl                               |   50 +-
 selftest/selftesthelpers.py                        |    2 -
 selftest/target/Samba.pm                           |  124 +-
 selftest/target/Samba3.pm                          |  225 +-
 selftest/target/Samba4.pm                          |  365 +-
 selftest/tests.py                                  |    6 +-
 source3/auth/auth.c                                |    2 +-
 source3/auth/auth_builtin.c                        |   47 +-
 source3/auth/auth_domain.c                         |    2 +-
 source3/auth/auth_samba4.c                         |   13 +-
 source3/auth/auth_util.c                           |   15 -
 source3/auth/pampass.c                             |    2 +-
 source3/client/README.smbspool                     |   17 -
 source3/client/client.c                            |    4 +-
 source3/client/clitar.c                            |   12 +-
 source3/client/dnsbrowse.c                         |    2 +-
 source3/client/smbspool.c                          |    4 +-
 source3/client/smbspool_krb5_wrapper.c             |  210 --
 source3/include/MacExtensions.h                    |   10 +-
 source3/include/ads.h                              |    2 +
 source3/include/auth_generic.h                     |    7 +-
 source3/include/ctdbd_conn.h                       |  102 +-
 source3/include/messages.h                         |   18 +-
 source3/include/ntquotas.h                         |    2 +-
 source3/include/passdb.h                           |    2 +-
 source3/include/proto.h                            |  116 +-
 source3/include/samba_linux_quota.h                |    2 +-
 source3/include/secrets.h                          |    1 -
 source3/include/serverid.h                         |   13 +-
 source3/include/session.h                          |    5 +-
 source3/include/smb.h                              |   10 +-
 source3/include/smb_ldap.h                         |    2 +-
 source3/include/smbprofile.h                       |    4 +-
 source3/include/tldap.h                            |    1 -
 source3/include/vfs.h                              |   24 +-
 source3/include/vfs_macros.h                       |    8 +-
 source3/lib/background.c                           |    2 +-
 source3/lib/cluster_support.c                      |   16 -
 source3/lib/cluster_support.h                      |    1 -
 source3/lib/conn_tdb.c                             |   10 -
 source3/lib/conn_tdb.h                             |    4 -
 source3/lib/ctdb_dummy.c                           |   68 +-
 source3/lib/ctdbd_conn.c                           |  783 ++--
 source3/lib/dbwrap/dbwrap_ctdb.c                   |  148 +-
 source3/lib/dbwrap/dbwrap_open.c                   |    1 -
 source3/lib/dbwrap/dbwrap_watch.c                  |  188 +-
 .../pytalloc_private.h => source3/lib/dummyparam.c |   22 +-
 source3/lib/errmap_unix.c                          |    3 -
 source3/lib/events.c                               |    2 +-
 source3/lib/gencache.c                             |   42 +-
 source3/lib/gencache.h                             |   52 -
 source3/lib/interface.c                            |  113 +-
 source3/lib/messages.c                             |   69 +-
 source3/lib/messages_ctdbd.c                       |   62 +-
 source3/lib/messages_dgm.c                         |  113 +-
 source3/lib/messages_dgm.h                         |    3 +-
 source3/lib/messages_dgm_ref.c                     |   17 +-
 source3/lib/messages_dgm_ref.h                     |    2 +-
 source3/lib/netapi/cm.c                            |    2 +-
 .../examples/netdomjoin-gui/netdomjoin-gui.c       |    2 +-
 source3/lib/poll_funcs/poll_funcs_tevent.c         |    2 +-
 source3/lib/popt_common.c                          |    2 +-
 source3/lib/privileges.c                           |    2 +-
 source3/lib/pthreadpool/pthreadpool.c              |   11 +-
 source3/lib/recvfile.c                             |    2 +-
 source3/lib/server_id_db_util.c                    |   10 +-
 source3/lib/serverid.c                             |  243 +-
 source3/lib/sessionid_tdb.c                        |   33 +-
 source3/lib/smbldap.c                              |    6 +-
 source3/lib/substitute.c                           |    4 +-
 {lib/util => source3/lib}/sys_rw.c                 |    2 +-
 {lib/util => source3/lib}/sys_rw.h                 |    0
 {lib/util => source3/lib}/sys_rw_data.c            |    4 +-
 {lib/util => source3/lib}/sys_rw_data.h            |    0
 source3/lib/sysquotas_nfs.c                        |    7 +
 source3/lib/talloc_dict.c                          |    7 +-
 source3/lib/tldap.c                                |   29 +-
 source3/lib/tldap_util.c                           |    2 +-
 source3/lib/unix_msg/unix_msg.c                    |    4 +-
 source3/lib/util.c                                 |  184 +-
 source3/lib/util_cluster.c                         |    9 +-
 source3/lib/util_ea.c                              |    2 +-
 source3/lib/util_file.c                            |    2 +-
 source3/lib/util_names.c                           |   14 -
 source3/lib/util_path.c                            |   95 -
 source3/lib/util_path.h                            |   31 -
 source3/lib/util_procid.c                          |   69 -
 source3/lib/util_procid.h                          |   37 -
 source3/lib/util_sec.c                             |   14 -
 source3/lib/util_sid.c                             |   11 +-
 source3/lib/util_sock.c                            |    6 +-
 source3/lib/util_specialsids.c                     |   40 -
 source3/lib/util_transfer_file.c                   |    2 +-
 source3/lib/util_tsock.c                           |    5 +-
 source3/lib/util_tsock.h                           |   38 -
 source3/libads/ads_proto.h                         |    7 +-
 source3/libads/ads_struct.c                        |   12 +-
 source3/libads/krb5_setpw.c                        |   13 +-
 source3/libads/ldap.c                              |  196 +-
 source3/libads/ldap_utils.c                        |    4 +-
 source3/libads/ndr.c                               |    2 +-
 source3/libads/sasl.c                              |  684 ++--
 source3/libnet/libnet_dssync.c                     |    1 -
 source3/libnet/libnet_join.c                       |  245 +-
 source3/librpc/crypto/gse.c                        |   96 +-
 source3/librpc/idl/libnet_join.idl                 |    4 +-
 source3/librpc/idl/smbXsrv.idl                     |  117 +-
 source3/librpc/rpc/dcerpc.h                        |   10 +-
 source3/librpc/rpc/dcerpc_helpers.c                |   98 +-
 source3/libsmb/auth_generic.c                      |   51 +-
 source3/libsmb/cli_smb2_fnum.c                     |    5 +-
 source3/libsmb/cli_smb2_fnum.h                     |    1 -
 source3/libsmb/cliconnect.c                        |  717 ++--
 source3/libsmb/clidfs.c                            |    2 +-
 source3/libsmb/clientgen.c                         |    9 -
 source3/libsmb/clifile.c                           |  135 +-
 source3/libsmb/clifsinfo.c                         |    2 +
 source3/libsmb/clilist.c                           |    2 +-
 source3/libsmb/cliquota.c                          |    6 +-
 source3/libsmb/clireadwrite.c                      |    8 +-
 source3/libsmb/clispnego.c                         |  283 +-
 source3/libsmb/dsgetdcname.c                       |   40 +-
 source3/libsmb/libsmb_printjob.c                   |    4 +-
 source3/libsmb/libsmb_server.c                     |    4 +-
 source3/libsmb/namequery.c                         |   80 +-
 source3/libsmb/ntlmssp.c                           |  765 ++++
 source3/libsmb/ntlmssp_wrap.c                      |  135 +
 source3/libsmb/passchange.c                        |    7 +-
 source3/libsmb/proto.h                             |   20 +-
 source3/libsmb/pylibsmb.c                          |    2 +-
 source3/libsmb/unexpected.c                        |    3 +-
 source3/locale/net/de.po                           |    8 +-
 source3/locking/locking.c                          |    3 +-
 source3/modules/nfs4_acls.c                        |  248 +-
 source3/modules/nfs4_acls.h                        |   32 +-
 source3/modules/perfcount_test.c                   |    1 -
 source3/modules/vfs_acl_common.c                   |  151 +-
 source3/modules/vfs_acl_tdb.c                      |    3 +-
 source3/modules/vfs_acl_xattr.c                    |    3 +-
 source3/modules/vfs_aio_fork.c                     |   15 +-
 source3/modules/vfs_aio_linux.c                    |   25 +-
 source3/modules/vfs_aio_posix.c                    |  301 ++
 source3/modules/vfs_aio_pthread.c                  |    6 +-
 source3/modules/vfs_aixacl2.c                      |   16 +-
 source3/modules/vfs_audit.c                        |    1 -
 source3/modules/vfs_cacheprime.c                   |    2 +-
 source3/modules/vfs_cap.c                          |   21 +-
 source3/modules/vfs_catia.c                        |    7 +-
 source3/modules/vfs_ceph.c                         |    5 +-
 source3/modules/vfs_default.c                      |   48 +-
 source3/modules/vfs_default_quota.c                |   13 +-
 source3/modules/vfs_dirsort.c                      |    1 -
 source3/modules/vfs_extd_audit.c                   |    1 -
 source3/modules/vfs_fake_dfq.c                     |  174 -
 source3/modules/vfs_fruit.c                        |  191 +-
 source3/modules/vfs_full_audit.c                   |    9 +-
 source3/modules/vfs_glusterfs.c                    |  170 +-
 source3/modules/vfs_gpfs.c                         |  134 +-
 source3/modules/vfs_nfs4acl_xattr.c                |   36 +-
 source3/modules/vfs_offline.c                      |   47 -
 source3/modules/vfs_posix_eadb.c                   |    2 +-
 source3/modules/vfs_preopen.c                      |    2 +-
 source3/modules/vfs_scannedonly.c                  | 1043 ++++++
 source3/modules/vfs_shadow_copy2.c                 |  223 +-
 source3/modules/vfs_smb_traffic_analyzer.c         |  946 +++++
 source3/modules/vfs_smb_traffic_analyzer.h         |  157 +
 source3/modules/vfs_snapper.c                      |   36 +-
 source3/modules/vfs_streams_xattr.c                |   39 +-
 source3/modules/vfs_syncops.c                      |    1 -
 source3/modules/vfs_time_audit.c                   |    6 +-
 source3/modules/vfs_zfsacl.c                       |   13 +-
 source3/modules/wscript_build                      |   42 +-
 source3/nmbd/asyncdns.c                            |    4 +-
 source3/nmbd/nmbd.c                                |    3 +-
 source3/nmbd/nmbd_browserdb.c                      |    2 +-
 source3/nmbd/nmbd_packets.c                        |    2 +-
 source3/nmbd/nmbd_responserecordsdb.c              |    2 +-
 source3/nmbd/nmbd_serverlistdb.c                   |    2 +-
 source3/pam_smbpass/CHANGELOG                      |   31 +
 source3/pam_smbpass/INSTALL                        |   64 +
 source3/pam_smbpass/README                         |   68 +
 source3/pam_smbpass/TODO                           |    7 +
 source3/pam_smbpass/general.h                      |  134 +
 source3/pam_smbpass/pam_smb_acct.c                 |  150 +
 source3/pam_smbpass/pam_smb_auth.c                 |  264 ++
 source3/pam_smbpass/pam_smb_passwd.c               |  365 ++
 source3/pam_smbpass/samples/README                 |    3 +
 source3/pam_smbpass/samples/kdc-pdc                |   15 +
 source3/pam_smbpass/samples/password-mature        |   14 +
 source3/pam_smbpass/samples/password-migration     |   18 +
 source3/pam_smbpass/samples/password-sync          |   15 +
 source3/pam_smbpass/support.c                      |  698 ++++
 source3/pam_smbpass/support.h                      |   57 +
 source3/pam_smbpass/wscript_build                  |   16 +
 source3/param/loadparm.c                           |  477 ++-
 source3/passdb/ABI/samba-passdb-0.24.2.sigs        |  313 --
 source3/passdb/ABI/samba-passdb-0.25.0.sigs        |  312 --
 source3/passdb/machine_account_secrets.c           |   32 +-
 source3/passdb/passdb.c                            |   21 +-
 source3/passdb/pdb_get_set.c                       |   24 +-
 source3/passdb/pdb_ipa.c                           |    2 +-
 source3/passdb/py_passdb.c                         |  285 +-
 source3/passdb/secrets.c                           |   29 +
 source3/passdb/wscript_build                       |    2 +-
 source3/printing/notify.c                          |    2 +-
 source3/printing/print_cups.c                      |    4 +-
 source3/printing/printing.c                        |    2 +-
 source3/printing/queue_process.c                   |    4 +-
 source3/printing/spoolssd.c                        |   12 +-
 source3/profile/profile.c                          |    4 +-
 source3/registry/reg_backend_db.c                  |    7 +-
 source3/registry/reg_objects.c                     |    4 +-
 source3/registry/regfio.c                          |    2 +-
 source3/rpc_client/cli_pipe.c                      |  314 +-
 source3/rpc_client/rpc_transport_np.c              |    3 +-
 source3/rpc_server/epmd.c                          |    6 +-
 source3/rpc_server/fss/srv_fss_agent.c             |    9 +-
 source3/rpc_server/fss/srv_fss_state.c             |   12 +-
 source3/rpc_server/fssd.c                          |    4 +-
 source3/rpc_server/lsa/srv_lsa_nt.c                |    2 +-
 source3/rpc_server/lsasd.c                         |   10 +-
 source3/rpc_server/mdssd.c                         |   11 +-
 source3/rpc_server/netlogon/srv_netlog_nt.c        |   57 +-
 source3/rpc_server/rpc_handles.c                   |    1 -
 source3/rpc_server/rpc_ncacn_np.c                  |    3 +-
 source3/rpc_server/rpc_pipes.h                     |   11 -
 source3/rpc_server/rpc_server.c                    |   12 -
 source3/rpc_server/samr/srv_samr_chgpasswd.c       |    2 +-
 source3/rpc_server/samr/srv_samr_nt.c              |   21 +-
 source3/rpc_server/spoolss/srv_spoolss_nt.c        |   83 -
 source3/rpc_server/srv_pipe.c                      |  494 +--
 source3/rpc_server/srvsvc/srv_srvsvc_nt.c          |   23 +-
 source3/rpcclient/cmd_clusapi.c                    |   58 -
 source3/rpcclient/cmd_witness.c                    |    5 -
 source3/rpcclient/rpcclient.c                      |    5 +-
 source3/script/build_env.sh                        |   11 +
 source3/script/tests/test_dfree_command.sh         |   17 +-
 source3/script/tests/test_dfree_quota.sh           |  174 -
 source3/script/tests/test_forceuser_validusers.sh  |   59 -
 source3/script/tests/test_ntlm_auth_s3.sh          |  198 +-
 source3/script/tests/test_offline.sh               |   33 -
 source3/script/tests/test_rpcclient_samlogon.sh    |   11 +-
 source3/script/tests/test_shadow_copy.sh           |  291 --
 source3/script/tests/test_smbclient_auth.sh        |   13 +-
 source3/script/tests/test_smbclient_ntlm.sh        |   40 -
 source3/script/tests/test_smbclient_s3.sh          |   60 -
 source3/script/tests/test_smbclient_tarmode.pl     |    6 +-
 source3/script/tests/test_smbget.sh                |  236 --
 source3/script/tests/test_valid_users.sh           |   70 -
 source3/selftest/tests.py                          |   23 +-
 source3/smbd/aio.c                                 |   64 +-
 source3/smbd/blocking.c                            |    2 +-
 source3/smbd/close.c                               |    6 +-
 source3/smbd/dfree.c                               |   24 +-
 source3/smbd/dir.c                                 |   13 +-
 source3/smbd/dosmode.c                             |   93 +-
 source3/smbd/fileio.c                              |    8 +-
 source3/smbd/filename.c                            |   55 +-
 source3/smbd/globals.c                             |    3 +
 source3/smbd/globals.h                             |   63 +-
 source3/smbd/negprot.c                             |  159 +-
 source3/smbd/notify.c                              |    3 +-
 source3/smbd/notify_inotify.c                      |    2 +-
 source3/smbd/notifyd/notifyd.c                     |   67 +-
 source3/smbd/ntquotas.c                            |    2 +-
 source3/smbd/nttrans.c                             |  108 +-
 source3/smbd/open.c                                |   56 +-
 source3/smbd/oplock.c                              |    3 +-
 source3/smbd/posix_acls.c                          |   69 +-
 source3/smbd/process.c                             |  112 +-
 source3/smbd/proto.h                               |   28 +-
 source3/smbd/quotas.c                              |   42 +-
 source3/smbd/reply.c                               |  228 +-
 source3/smbd/scavenger.c                           |   57 +-
 source3/smbd/seal.c                                |    2 +
 source3/smbd/server.c                              |  227 +-
 source3/smbd/server_exit.c                         |   10 +-
 source3/smbd/sesssetup.c                           |   56 +-
 source3/smbd/smb2_break.c                          |    8 +-
 source3/smbd/smb2_close.c                          |    3 +-
 source3/smbd/smb2_create.c                         |  138 +-
 source3/smbd/smb2_flush.c                          |   60 +-
 source3/smbd/smb2_ioctl_filesys.c                  |    7 +-
 source3/smbd/smb2_ioctl_network_fs.c               |  136 -
 source3/smbd/smb2_negprot.c                        |   87 +-
 source3/smbd/smb2_query_directory.c                |   12 +-
 source3/smbd/smb2_read.c                           |    2 +-
 source3/smbd/smb2_server.c                         |  201 +-
 source3/smbd/smb2_sesssetup.c                      |  337 +-
 source3/smbd/smb2_setinfo.c                        |   18 -
 source3/smbd/smb2_tcon.c                           |   12 +-
 source3/smbd/smbXsrv_client.c                      |  781 ----
 source3/smbd/smbXsrv_open.c                        |  288 +-
 source3/smbd/smbXsrv_session.c                     |  345 +-
 source3/smbd/smbXsrv_tcon.c                        |  119 +-
 source3/smbd/smbd_cleanupd.c                       |  156 -
 source3/smbd/smbd_cleanupd.h                       |   33 -
 source3/smbd/trans2.c                              |  487 +--
 source3/smbd/vfs.c                                 |   86 +-
 source3/torture/nbio.c                             |    2 +-
 source3/torture/test_ntlm_auth.py                  |  553 ++-
 source3/torture/torture.c                          |  426 +--
 source3/utils/net.c                                |    8 +-
 source3/utils/net.h                                |    1 -
 source3/utils/net_ads.c                            |   66 +-
 source3/utils/net_rpc.c                            |    2 +-
 source3/utils/net_serverid.c                       |   62 +-
 source3/utils/net_util.c                           |    2 +-
 source3/utils/ntlm_auth.c                          |  896 ++++-
 source3/utils/pdbedit.c                            |   43 +-
 source3/utils/smbcacls.c                           |    2 +-
 source3/utils/smbcontrol.c                         |    2 +-
 source3/utils/smbcquotas.c                         |    2 +-
 source3/utils/smbfilter.c                          |    2 +-
 source3/utils/smbget.c                             |  774 ++--
 source3/utils/smbta-util.c                         |  211 ++
 source3/utils/status.c                             |  207 +-
 source3/winbindd/idmap.c                           |   41 -
 source3/winbindd/idmap_ad.c                        |    1 -
 source3/winbindd/idmap_autorid.c                   |    1 -
 source3/winbindd/idmap_hash/idmap_hash.c           |   33 +-
 source3/winbindd/idmap_nss.c                       |    8 +-
 source3/winbindd/idmap_rfc2307.c                   |   40 +-
 source3/winbindd/idmap_rid.c                       |    7 +-
 source3/winbindd/idmap_script.c                    |    1 -
 source3/winbindd/idmap_tdb2.c                      |    1 -
 source3/winbindd/idmap_util.c                      |    4 +-
 source3/winbindd/wb_sids2xids.c                    |   14 +-
 source3/winbindd/winbindd.c                        |   13 +-
 source3/winbindd/winbindd_ads.c                    |   28 +-
 source3/winbindd/winbindd_cache.c                  |    6 +-
 source3/winbindd/winbindd_ccache_access.c          |   44 +-
 source3/winbindd/winbindd_cm.c                     |  114 +-
 source3/winbindd/winbindd_cred_cache.c             |   24 +
 source3/winbindd/winbindd_dual.c                   |    6 +-
 source3/winbindd/winbindd_dual_srv.c               |    8 +
 source3/winbindd/winbindd_misc.c                   |   13 +-
 source3/winbindd/winbindd_msrpc.c                  |    2 +-
 source3/winbindd/winbindd_ndr.c                    |    3 -
 source3/winbindd/winbindd_pam.c                    |   13 +-
 source3/winbindd/winbindd_proto.h                  |    5 -
 source3/winbindd/winbindd_reconnect.c              |   38 +-
 source3/winbindd/winbindd_reconnect_ads.c          |  324 --
 source3/winbindd/winbindd_util.c                   |  155 +-
 source3/winbindd/wscript_build                     |   16 +-
 source3/wscript                                    |  256 +-
 source3/wscript_build                              |   81 +-
 source4/auth/gensec/gensec_gssapi.c                |    5 +-
 source4/auth/gensec/gensec_krb5.c                  |   24 +-
 source4/auth/gensec/gensec_tstream.c               |    6 +-
 source4/auth/gensec/pygensec.c                     |  162 +-
 source4/auth/kerberos/kerberos-notes.txt           |    2 +-
 source4/auth/kerberos/kerberos_util.c              |   13 +-
 source4/auth/kerberos/wscript_build                |    2 +-
 source4/auth/ntlm/auth.c                           |    3 +-
 source4/auth/ntlm/auth_anonymous.c                 |   30 -
 source4/auth/ntlm/auth_sam.c                       |   10 +-
 source4/auth/ntlm/auth_unix.c                      |    6 +-
 source4/auth/ntlm/auth_util.c                      |    4 +-
 source4/auth/ntlm/auth_winbind.c                   |   15 +-
 source4/auth/pyauth.c                              |   14 +-
 source4/auth/sam.c                                 |  158 +-
 source4/cldap_server/cldap_server.c                |    1 -
 source4/client/cifsdd.c                            |    2 +-
 source4/dns_server/dlz_bind9.c                     |   16 +-
 source4/dns_server/dns_query.c                     |  584 +--
 source4/dns_server/dns_server.c                    |   73 +-
 source4/dns_server/dns_server.h                    |   11 +-
 source4/dns_server/dns_update.c                    |   31 +-
 source4/dns_server/dns_utils.c                     |   92 +-
 source4/dns_server/dnsserver_common.c              |  192 +-
 source4/dns_server/dnsserver_common.h              |   18 +-
 source4/dns_server/pydns.c                         |  319 --
 source4/dns_server/wscript_build                   |    8 +-
 source4/dsdb/common/util.c                         |    2 +-
 source4/dsdb/common/util_trusts.c                  |    2 +-
 source4/dsdb/dns/dns_update.c                      |    1 -
 source4/dsdb/kcc/kcc_drs_replica_info.c            |    2 +-
 source4/dsdb/kcc/kcc_service.c                     |    1 -
 source4/dsdb/pydsdb.c                              |  171 +-
 source4/dsdb/repl/drepl_notify.c                   |    2 +-
 source4/dsdb/repl/drepl_out_helpers.c              |    3 -
 source4/dsdb/repl/drepl_out_pull.c                 |    2 +-
 source4/dsdb/repl/drepl_partitions.c               |    4 +-
 source4/dsdb/repl/drepl_service.c                  |    1 -
 source4/dsdb/repl/replicated_objects.c             |   92 +-
 source4/dsdb/samdb/ldb_modules/acl.c               |    2 +-
 source4/dsdb/samdb/ldb_modules/descriptor.c        |    4 +-
 source4/dsdb/samdb/ldb_modules/dns_notify.c        |    2 +-
 source4/dsdb/samdb/ldb_modules/extended_dn_in.c    |    4 +-
 source4/dsdb/samdb/ldb_modules/linked_attributes.c |    2 +-
 source4/dsdb/samdb/ldb_modules/operational.c       |    2 +-
 source4/dsdb/samdb/ldb_modules/repl_meta_data.c    |  121 +-
 source4/dsdb/samdb/ldb_modules/rootdse.c           |    2 +-
 source4/dsdb/samdb/ldb_modules/samldb.c            |  289 +-
 source4/dsdb/samdb/ldb_modules/secrets_tdb_sync.c  |    2 +-
 source4/dsdb/samdb/ldb_modules/update_keytab.c     |    2 +-
 .../dsdb/samdb/ldb_modules/wscript_build_server    |    2 +-
 source4/dsdb/samdb/samdb.h                         |    1 -
 source4/dsdb/schema/schema_query.c                 |    8 +-
 source4/dsdb/schema/schema_syntax.c                |   12 +-
 source4/dsdb/tests/python/acl.py                   |    2 +-
 source4/dsdb/tests/python/ldap_schema.py           |   31 +-
 source4/dsdb/tests/python/password_lockout.py      |  359 +-
 source4/dsdb/tests/python/sites.py                 |  447 +--
 source4/dsdb/wscript_build                         |    4 +-
 source4/echo_server/echo_server.c                  |    3 +-
 .../heimdal/lib/gssapi/krb5/accept_sec_context.c   |   71 +-
 source4/heimdal/lib/roken/resolve.c                |    1 -
 source4/heimdal_build/wscript_build                |   10 +-
 source4/heimdal_build/wscript_configure            |   10 +-
 source4/kdc/db-glue.c                              |  206 +-
 source4/kdc/db-glue.h                              |    8 +-
 source4/kdc/hdb-samba4.c                           |  145 +-
 source4/kdc/kdc.c                                  |    1 -
 source4/kdc/pac-glue.c                             |    1 +
 source4/kdc/sdb.c                                  |  131 -
 source4/kdc/sdb.h                                  |  126 -
 source4/kdc/sdb_to_hdb.c                           |  347 --
 source4/kdc/wscript_build                          |   19 +-
 source4/ldap_server/ldap_backend.c                 |    2 +-
 source4/ldap_server/ldap_bind.c                    |   50 +-
 source4/ldap_server/ldap_server.c                  |    7 -
 source4/ldap_server/ldap_server.h                  |    2 -
 source4/lib/com/dcom/dcom.h                        |    2 +-
 source4/lib/com/dcom/main.c                        |    8 +-
 source4/lib/http/http.c                            |    2 +-
 source4/lib/messaging/messaging.c                  |   10 +-
 source4/lib/messaging/pymessaging.c                |    2 +-
 source4/lib/messaging/wscript_build                |    2 +-
 source4/lib/registry/pyregistry.c                  |   19 +-
 source4/lib/registry/registry.pc.in                |   12 +
 source4/lib/registry/wscript_build                 |    5 +-
 source4/lib/socket/interface.c                     |   11 +-
 source4/lib/socket/wscript_build                   |    2 +-
 source4/lib/stream/packet.c                        |    2 +-
 source4/lib/tls/tls.c                              |   90 +-
 source4/lib/tls/tls.h                              |   30 +-
 source4/lib/tls/tls_tstream.c                      |  251 +-
 source4/lib/tls/tlscert.c                          |   18 +-
 source4/lib/tls/wscript                            |   31 +-
 source4/lib/wmi/tools/wmis.c                       |    3 +-
 source4/lib/wmi/wmi_wrap.c                         |    2 +-
 source4/lib/wmi/wmicore.c                          |    3 +-
 source4/libcli/cliconnect.c                        |    2 +-
 source4/libcli/dgram/dgramsocket.c                 |    2 +-
 source4/libcli/ldap/ldap_bind.c                    |   62 +-
 source4/libcli/ldap/ldap_client.c                  |   61 +-
 source4/libcli/ldap/ldap_controls.c                |   49 +-
 source4/libcli/ldap/wscript_build                  |    4 +-
 source4/libcli/pysmb.c                             |  116 +-
 source4/libcli/raw/libcliraw.h                     |    1 -
 source4/libcli/raw/rawnegotiate.c                  |   11 +-
 source4/libcli/raw/smbclient-raw.pc.in             |   10 +
 source4/libcli/resolve/resolve.c                   |    2 +-
 source4/libcli/smb2/connect.c                      |    7 +-
 source4/libcli/smb2/wscript_build                  |    2 +-
 source4/libcli/smb_composite/connect.c             |    1 -
 source4/libcli/smb_composite/sesssetup.c           |   35 +-
 source4/libcli/wbclient/wscript_build              |    2 +-
 source4/libcli/wscript_build                       |   16 +-
 source4/libnet/libnet_vampire.c                    |  293 +-
 source4/libnet/py_net.c                            |   59 +
 source4/libnet/wscript_build                       |    2 +-
 source4/librpc/dcerpc_atsvc.pc.in                  |   11 +
 source4/librpc/rpc/dcerpc.c                        |  357 +-
 source4/librpc/rpc/dcerpc.h                        |   14 +-
 source4/librpc/rpc/dcerpc_auth.c                   |   93 +-
 source4/librpc/rpc/dcerpc_connect.c                |   22 -
 source4/librpc/rpc/dcerpc_roh.c                    |   13 +-
 source4/librpc/rpc/dcerpc_util.c                   |   22 +-
 source4/librpc/rpc/pyrpc.c                         |    8 +-
 source4/librpc/rpc/pyrpc_util.c                    |    3 -
 source4/librpc/wscript_build                       |   22 +-
 source4/nbt_server/dgram/netlogon.c                |    1 -
 source4/nbt_server/register.c                      |    3 +-
 source4/nbt_server/wins/winsserver.c               |    2 +-
 source4/ntvfs/ntvfs_base.c                         |    2 +-
 source4/ntvfs/posix/posix_eadb.h                   |    2 +-
 source4/ntvfs/posix/pvfs_notify.c                  |    2 +-
 source4/ntvfs/posix/python/pyposix_eadb.c          |    4 +-
 source4/ntvfs/posix/python/pyxattr_native.c        |    4 +-
 source4/ntvfs/posix/python/pyxattr_tdb.c           |   19 +-
 source4/ntvfs/sysdep/wscript_configure             |   13 +-
 source4/ntvfs/unixuid/vfs_unixuid.c                |    3 -
 source4/param/loadparm.c                           |    3 +-
 source4/param/pyparam.c                            |   87 +-
 source4/param/secrets.c                            |   53 +
 source4/param/secrets.h                            |    8 +
 source4/param/share_ldb.c                          |    2 +-
 source4/param/tests/loadparm.c                     |    1 -
 source4/param/wscript_build                        |    2 +-
 source4/rpc_server/backupkey/dcesrv_backupkey.c    | 1053 +++---
 .../backupkey/dcesrv_backupkey_heimdal.c           | 1854 ----------
 source4/rpc_server/common/reply.c                  |   59 +-
 source4/rpc_server/common/server_info.c            |    1 -
 source4/rpc_server/dcerpc_server.c                 |  834 +----
 source4/rpc_server/dcerpc_server.h                 |   57 +-
 source4/rpc_server/dcesrv_auth.c                   |  261 +-
 source4/rpc_server/dcesrv_mgmt.c                   |    8 -
 source4/rpc_server/dnsserver/dcerpc_dnsserver.c    |   15 +-
 source4/rpc_server/dnsserver/dnsdb.c               |    6 +-
 source4/rpc_server/drsuapi/dcesrv_drsuapi.c        |    8 -
 source4/rpc_server/drsuapi/getncchanges.c          |   10 -
 source4/rpc_server/echo/rpc_echo.c                 |    7 -
 source4/rpc_server/epmapper/rpc_epmapper.c         |    8 -
 source4/rpc_server/handles.c                       |    8 +-
 source4/rpc_server/lsa/dcesrv_lsa.c                |    9 -
 source4/rpc_server/lsa/lsa_lookup.c                |   12 +-
 source4/rpc_server/netlogon/dcerpc_netlogon.c      |   46 +-
 source4/rpc_server/remote/dcesrv_remote.c          |    8 +-
 source4/rpc_server/samr/dcesrv_samr.c              |   12 -
 source4/rpc_server/samr/dcesrv_samr.h              |    1 -
 source4/rpc_server/samr/samr_password.c            |   25 +-
 source4/rpc_server/spoolss/dcesrv_spoolss.c        |    2 +-
 source4/rpc_server/wscript_build                   |   24 +-
 source4/scripting/bin/gen_hresult.py               |    2 +-
 source4/scripting/bin/gen_ntstatus.py              |   30 +-
 source4/scripting/bin/samba_dnsupdate              |   34 +-
 source4/scripting/bin/samba_kcc                    |   74 +-
 source4/scripting/bin/samba_upgradedns             |   28 +-
 source4/scripting/bin/samba_upgradeprovision       |    2 +-
 source4/scripting/devel/createtrust                |   18 +-
 source4/selftest/tests.py                          |  125 +-
 source4/setup/wscript_build                        |    2 +-
 source4/smb_server/smb/negprot.c                   |    6 +-
 source4/smb_server/smb/sesssetup.c                 |   10 -
 source4/smb_server/smb/wscript_build               |    2 +-
 source4/smb_server/smb2/negprot.c                  |    7 +-
 source4/smb_server/smb2/receive.c                  |    2 +-
 source4/smb_server/smb2/sesssetup.c                |    8 +
 source4/smb_server/smb2/wscript_build              |    2 +-
 source4/smb_server/smb_server.h                    |    2 +-
 source4/smb_server/wscript_build                   |    4 +-
 source4/smbd/process_standard.c                    |    6 +
 source4/smbd/server.c                              |    9 +-
 source4/smbd/service.c                             |    2 +-
 source4/torture/basic/aliases.c                    |    4 +-
 source4/torture/basic/base.c                       |   21 +-
 source4/torture/basic/misc.c                       |    4 +-
 source4/torture/drs/wscript_build                  |    2 +-
 source4/torture/gentest.c                          |    7 +-
 source4/torture/ldap/cldap.c                       |   13 +-
 source4/torture/ldap/netlogon.c                    |   13 +-
 source4/torture/ldb/ldb.c                          |  463 +--
 source4/torture/local/fsrvp_state.c                |   20 +-
 source4/torture/local/local.c                      |    1 +
 source4/torture/local/wscript_build                |    2 +-
 source4/torture/nbench/nbio.c                      |    4 +-
 source4/torture/nbt/wins.c                         |    3 +-
 source4/torture/ndr/backupkey.c                    |    6 +-
 source4/torture/ndr/clusapi.c                      |  383 --
 source4/torture/ndr/ndr.c                          |    6 +-
 source4/torture/ndr/negoex.c                       |  100 -
 source4/torture/ndr/ntlmssp.c                      |  183 +-
 source4/torture/ndr/witness.c                      |   44 -
 source4/torture/raw/pingpong.c                     |    2 +-
 source4/torture/raw/samba3misc.c                   |    7 -
 source4/torture/raw/session.c                      |    2 +-
 source4/torture/rpc/backupkey.c                    |  820 ++---
 source4/torture/rpc/backupkey_heimdal.c            | 2147 -----------
 source4/torture/rpc/clusapi.c                      |  459 +--
 source4/torture/rpc/forest_trust.c                 |   12 +-
 source4/torture/rpc/fsrvp.c                        |    2 +-
 source4/torture/rpc/lsa.c                          |   34 +-
 source4/torture/rpc/netlogon.c                     |  101 +-
 source4/torture/rpc/netlogon.h                     |    7 -
 source4/torture/rpc/oxidresolve.c                  |  100 +-
 source4/torture/rpc/remact.c                       |   47 +-
 source4/torture/rpc/remote_pac.c                   |   39 +-
 source4/torture/rpc/rpc.c                          |    4 +-
 source4/torture/rpc/samba3rpc.c                    |   61 +-
 source4/torture/rpc/samlogon.c                     |    3 +-
 source4/torture/rpc/samr.c                         |    4 +-
 source4/torture/rpc/schannel.c                     |   29 +-
 source4/torture/rpc/spoolss.c                      |    2 +-
 source4/torture/rpc/spoolss_notify.c               |    2 +-
 source4/torture/rpc/testjoin.c                     |   35 +-
 source4/torture/smb2/connect.c                     |   89 +-
 source4/torture/smb2/create.c                      |   64 -
 source4/torture/smb2/dir.c                         |   28 -
 source4/torture/smb2/durable_open.c                |    2 +-
 source4/torture/smb2/rename.c                      |    2 +-
 source4/torture/smb2/replay.c                      | 1383 +------
 source4/torture/smb2/session.c                     |  340 +-
 source4/torture/smb2/smb2.c                        |    4 +-
 source4/torture/smb2/streams.c                     |   74 -
 source4/torture/unix/whoami.c                      |   16 +-
 source4/torture/util_smb.c                         |    6 +-
 source4/torture/vfs/fruit.c                        | 1361 +------
 source4/torture/vfs/vfs.c                          |    2 +-
 source4/torture/winbind/struct_based.c             |   15 +-
 source4/torture/wscript_build                      |   47 +-
 source4/utils/man/ntlm_auth4.1.xml                 |    2 +-
 source4/web_server/web_server.c                    |   15 +-
 source4/web_server/wsgi.c                          |    7 +
 source4/wrepl_server/wrepl_server.c                |    4 +-
 testprogs/blackbox/dbcheck-oldrelease.sh           |   82 +-
 testprogs/blackbox/demote-saveddb.sh               |   67 -
 testprogs/blackbox/dfree.sh                        |    8 +-
 .../{test_kinit_heimdal.sh => test_kinit.sh}       |    2 +-
 ...init_trusts_heimdal.sh => test_kinit_trusts.sh} |    0
 testprogs/blackbox/test_ldb_simple.sh              |   41 -
 testprogs/blackbox/test_net_ads.sh                 |   35 -
 testprogs/blackbox/test_pdbtest.sh                 |    7 -
 .../{test_pkinit_heimdal.sh => test_pkinit.sh}     |    0
 testprogs/win32/spoolss/README.win32               |    2 +-
 testprogs/win32/spoolss/testspoolss.c              |    4 +-
 tests/oldquotas.c                                  |  174 -
 testsuite/headers/wscript_build                    |   13 +-
 third_party/waf/wafadmin/3rdparty/gccdeps.py       |    2 +-
 .../waf/wafadmin/3rdparty/print_commands.py        |   25 -
 third_party/waf/wafadmin/Build.py                  |    4 -
 third_party/waf/wafadmin/Node.py                   |    7 -
 third_party/waf/wafadmin/TaskGen.py                |    3 -
 third_party/waf/wafadmin/Tools/cc.py               |    6 +-
 third_party/waf/wafadmin/Tools/ccroot.py           |   10 +-
 third_party/waf/wafadmin/Tools/config_c.py         |    4 -
 third_party/waf/wafadmin/Tools/msvc.py             |    2 +-
 third_party/waf/wafadmin/Tools/osx.py              |    6 +-
 third_party/waf/wafadmin/Utils.py                  |   44 +-
 wscript                                            |   25 +-
 wscript_configure_system_mitkrb5                   |    4 +-
 1942 files changed, 41139 insertions(+), 98762 deletions(-)
 delete mode 100644 .travis.yml
 create mode 100644 auth/gensec/gensec.pc.in
 create mode 100644 buildtools/wafsamba/gccdeps.py
 delete mode 100644 ctdb/client/client.h
 delete mode 100644 ctdb/client/client_call.c
 delete mode 100644 ctdb/client/client_connect.c
 delete mode 100644 ctdb/client/client_control.c
 delete mode 100644 ctdb/client/client_control_sync.c
 delete mode 100644 ctdb/client/client_db.c
 delete mode 100644 ctdb/client/client_message.c
 delete mode 100644 ctdb/client/client_message_sync.c
 delete mode 100644 ctdb/client/client_private.h
 delete mode 100644 ctdb/client/client_util.c
 delete mode 100644 ctdb/common/cmdline.h
 delete mode 100644 ctdb/common/comm.c
 delete mode 100644 ctdb/common/comm.h
 delete mode 100644 ctdb/common/common.h
 rename ctdb/{server => common}/ctdb_fork.c (93%)
 create mode 100644 ctdb/common/ctdb_logging.c
 create mode 100644 ctdb/common/ctdb_message.c
 delete mode 100644 ctdb/common/db_hash.c
 delete mode 100644 ctdb/common/db_hash.h
 delete mode 100644 ctdb/common/logging.c
 delete mode 100644 ctdb/common/pkt_read.c
 delete mode 100644 ctdb/common/pkt_read.h
 delete mode 100644 ctdb/common/pkt_write.c
 delete mode 100644 ctdb/common/pkt_write.h
 delete mode 100644 ctdb/common/reqid.c
 delete mode 100644 ctdb/common/reqid.h
 delete mode 100644 ctdb/common/srvid.c
 delete mode 100644 ctdb/common/srvid.h
 delete mode 100644 ctdb/common/system.h
 delete mode 100755 ctdb/config/events.d/05.system
 create mode 100644 ctdb/config/events.d/40.fs_use
 create mode 100755 ctdb/config/events.d/62.cnfs
 create mode 100644 ctdb/ctdb.pc.in
 delete mode 120000 ctdb/include/common/srvid.h
 create mode 100644 ctdb/include/ctdb.h
 rename ctdb/{common/logging.h => include/ctdb_logging.h} (56%)
 create mode 100644 ctdb/include/ctdb_typesafe_cb.h
 create mode 100644 ctdb/include/internal/cmdline.h
 create mode 100644 ctdb/include/internal/includes.h
 delete mode 100644 ctdb/include/public/util/README.txt
 delete mode 100644 ctdb/protocol/protocol.h
 delete mode 100644 ctdb/protocol/protocol_api.h
 delete mode 100644 ctdb/protocol/protocol_call.c
 delete mode 100644 ctdb/protocol/protocol_client.c
 delete mode 100644 ctdb/protocol/protocol_control.c
 delete mode 100644 ctdb/protocol/protocol_header.c
 delete mode 100644 ctdb/protocol/protocol_message.c
 delete mode 100644 ctdb/protocol/protocol_packet.c
 delete mode 100644 ctdb/protocol/protocol_private.h
 delete mode 100644 ctdb/protocol/protocol_types.c
 delete mode 100644 ctdb/protocol/protocol_util.c
 delete mode 100644 ctdb/server/ctdb_recovery_helper.c
 delete mode 100644 ctdb/server/ipalloc.c
 delete mode 100644 ctdb/server/ipalloc.h
 delete mode 100644 ctdb/server/ipalloc_common.c
 delete mode 100644 ctdb/server/ipalloc_deterministic.c
 delete mode 100644 ctdb/server/ipalloc_lcp2.c
 delete mode 100644 ctdb/server/ipalloc_nondeterministic.c
 delete mode 100644 ctdb/server/ipalloc_private.h
 delete mode 100755 ctdb/tests/cunit/comm_test_001.sh
 delete mode 100755 ctdb/tests/cunit/comm_test_002.sh
 delete mode 100755 ctdb/tests/cunit/db_hash_test_001.sh
 delete mode 100755 ctdb/tests/cunit/pkt_read_001.sh
 delete mode 100755 ctdb/tests/cunit/pkt_write_001.sh
 delete mode 100755 ctdb/tests/cunit/protocol_test_001.sh
 delete mode 100755 ctdb/tests/cunit/protocol_test_002.sh
 delete mode 100755 ctdb/tests/cunit/reqid_test_001.sh
 delete mode 100755 ctdb/tests/cunit/srvid_test_001.sh
 create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.001.sh
 create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.002.sh
 create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.003.sh
 create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.004.sh
 create mode 100755 ctdb/tests/eventscripts/00.ctdb.monitor.005.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.001.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.002.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.003.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.004.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.005.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.006.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.007.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.011.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.012.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.013.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.014.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.015.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.016.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.017.sh
 delete mode 100755 ctdb/tests/eventscripts/05.system.monitor.018.sh
 create mode 100755 ctdb/tests/eventscripts/11.natgw.005.sh
 delete mode 100755 ctdb/tests/eventscripts/11.natgw.051.sh
 delete mode 100755 ctdb/tests/eventscripts/11.natgw.052.sh
 delete mode 100755 ctdb/tests/eventscripts/11.natgw.053.sh
 delete mode 100755 ctdb/tests/eventscripts/11.natgw.054.sh
 delete mode 100755 ctdb/tests/eventscripts/13.per_ip_routing.023.sh
 delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.110.sh
 delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.111.sh
 delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.112.sh
 delete mode 100755 ctdb/tests/eventscripts/50.samba.monitor.113.sh
 delete mode 100755 ctdb/tests/eventscripts/stubs/ctdb_natgw
 delete mode 100755 ctdb/tests/eventscripts/stubs/df
 create mode 100755 ctdb/tests/eventscripts/stubs/free
 delete mode 100755 ctdb/tests/eventscripts/stubs/timeout
 delete mode 120000 ctdb/tests/onnode/functions
 rename ctdb/tests/simple/{35_set_reclock.sh => 35_set_recmaster.sh} (78%)
 delete mode 120000 ctdb/tests/simple/functions
 delete mode 100644 ctdb/tests/src/comm_client_test.c
 delete mode 100644 ctdb/tests/src/comm_server_test.c
 delete mode 100644 ctdb/tests/src/comm_test.c
 delete mode 100644 ctdb/tests/src/db_hash_test.c
 delete mode 100644 ctdb/tests/src/pkt_read_test.c
 delete mode 100644 ctdb/tests/src/pkt_write_test.c
 delete mode 100644 ctdb/tests/src/protocol_client_test.c
 delete mode 100644 ctdb/tests/src/protocol_types_test.c
 delete mode 100644 ctdb/tests/src/reqid_test.c
 delete mode 100644 ctdb/tests/src/srvid_test.c
 create mode 100755 ctdb/tests/tool/stubby.natgwlist.009.sh
 create mode 100755 ctdb/tests/tool/stubby.natgwlist.010.sh
 copy ctdb/tests/tool/{stubby.nodestatus.002.sh => stubby.nodestatus.003.sh} (100%)
 copy ctdb/tests/tool/{stubby.nodestatus.002.sh => stubby.nodestatus.004.sh} (55%)
 copy ctdb/tests/tool/{stubby.nodestatus.002.sh => stubby.nodestatus.005.sh} (65%)
 delete mode 100755 ctdb/tests/tool/stubs/ctdb
 delete mode 100755 ctdb/tools/ctdb_natgw
 create mode 100644 ctdb/tools/ctdb_vacuum.c
 delete mode 100644 debian/patches/Skip-raw.write-tests.patch
 delete mode 100644 debian/patches/ctdb-Fix-detection-of-gnukfreebsd.patch
 create mode 100644 debian/patches/disable-socketwrapper.diff
 delete mode 100644 debian/patches/no_build_env.patch
 delete mode 100644 debian/patches/no_build_system.patch
 create mode 100644 debian/patches/pam-examples.patch
 delete mode 100644 debian/samba.ufw.profile
 create mode 100644 debian/winbind.dirs
 delete mode 100644 docs-xml/manpages/cifsdd.8.xml
 delete mode 100644 docs-xml/manpages/smbspool_krb5_wrapper.8.xml
 create mode 100644 docs-xml/manpages/smbta-util.8.xml
 delete mode 100644 docs-xml/manpages/vfs_offline.8.xml
 create mode 100644 docs-xml/manpages/vfs_scannedonly.8.xml
 create mode 100644 docs-xml/manpages/vfs_smb_traffic_analyzer.8.xml
 delete mode 100644 docs-xml/smbdotconf/ldap/ldapserverrequirestrongauth.xml
 rename docs-xml/smbdotconf/logging/{timestamplogs.xml => debugtimestamp.xml} (68%)
 delete mode 100644 docs-xml/smbdotconf/misc/auto_services.xml
 create mode 100644 docs-xml/smbdotconf/misc/preload.xml
 delete mode 100644 docs-xml/smbdotconf/protocol/clientipcmaxprotocol.xml
 delete mode 100644 docs-xml/smbdotconf/protocol/clientipcminprotocol.xml
 delete mode 100644 docs-xml/smbdotconf/protocol/servermultichannelsupport.xml
 delete mode 100644 docs-xml/smbdotconf/security/allowdcerpcauthlevelconnect.xml
 delete mode 100644 docs-xml/smbdotconf/security/clientipcsigning.xml
 delete mode 100644 docs-xml/smbdotconf/security/rawntlmv2auth.xml
 delete mode 100644 docs-xml/smbdotconf/security/tlsverifypeer.xml
 delete mode 100644 docs-xml/smbdotconf/tuning/aiomaxthreads.xml
 delete mode 100644 docs/manpages/smbspool_krb5_wrapper.8
 rename docs/manpages/{cifsdd.8 => smbta-util.8} (53%)
 delete mode 100644 docs/manpages/vfs_offline.8
 create mode 100644 docs/manpages/vfs_scannedonly.8
 create mode 100644 docs/manpages/vfs_smb_traffic_analyzer.8
 delete mode 100644 lib/ldb-samba/ldb_matching_rules.c
 delete mode 100644 lib/ldb-samba/ldb_matching_rules.h
 delete mode 100644 lib/ldb/ABI/ldb-1.1.22.sigs
 delete mode 100644 lib/ldb/ABI/ldb-1.1.23.sigs
 delete mode 100644 lib/ldb/ABI/ldb-1.1.24.sigs
 delete mode 100644 lib/ldb/ABI/ldb-1.1.25.sigs
 delete mode 100644 lib/ldb/ABI/ldb-1.1.26.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.22.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.23.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.24.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.25.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util-1.1.26.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.23.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.24.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.25.sigs
 delete mode 100644 lib/ldb/ABI/pyldb-util.py3-1.1.26.sigs
 delete mode 100644 lib/ldb/_ldb_text.py
 delete mode 100644 lib/socket/wscript
 delete mode 100644 lib/talloc/ABI/pytalloc-util-2.1.4.sigs
 delete mode 100644 lib/talloc/ABI/pytalloc-util-2.1.5.sigs
 delete mode 100644 lib/talloc/ABI/pytalloc-util-2.1.6.sigs
 delete mode 100644 lib/talloc/ABI/pytalloc-util.py3-2.1.5.sigs
 delete mode 100644 lib/talloc/ABI/pytalloc-util.py3-2.1.6.sigs
 delete mode 100644 lib/talloc/ABI/talloc-2.1.4.sigs
 delete mode 100644 lib/talloc/ABI/talloc-2.1.5.sigs
 delete mode 100644 lib/talloc/ABI/talloc-2.1.6.sigs
 delete mode 100755 lib/talloc/test_magic_differs.sh
 delete mode 100644 lib/talloc/test_magic_differs_helper.c
 delete mode 100644 lib/tdb/ABI/tdb-1.3.8.sigs
 delete mode 100644 lib/tevent/ABI/tevent-0.9.26.sigs
 delete mode 100644 lib/tevent/ABI/tevent-0.9.27.sigs
 delete mode 100644 lib/tevent/ABI/tevent-0.9.28.sigs
 delete mode 100644 lib/tevent/doc/tevent_thread.dox
 delete mode 100644 lib/tevent/tevent_threads.c
 create mode 100644 lib/torture/torture.pc.in
 create mode 100644 lib/util/parmlist.c
 create mode 100644 lib/util/parmlist.h
 delete mode 100644 lib/util/tests/genrandperf.c
 create mode 100644 lib/util/tests/parmlist.c
 delete mode 100644 lib/util/util.h
 delete mode 100644 librpc/idl/negoex.idl
 delete mode 100644 librpc/ndr/ndr_negoex.c
 delete mode 100644 librpc/ndr/ndr_negoex.h
 delete mode 100644 nsswitch/wins_freebsd.c
 create mode 100644 python/samba/netcmd/vampire.py
 delete mode 100644 python/samba/remove_dc.py
 delete mode 100644 python/samba/subnets.py
 delete mode 100644 python/samba/tests/dcerpc/array.py
 delete mode 100755 python/samba/tests/dcerpc/raw_protocol.py
 rename python/samba/tests/{get_opt.py => getopt.py} (100%)
 delete mode 100644 python/samba/tests/samba_tool/sites.py
 create mode 100644 python/uuidmodule.c
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-cert.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-openssl.cnf
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-S02-req.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-cert.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/addc.addom.samba.example.com/DC-addc.addom.samba.example.com-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-cert.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-openssl.cnf
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-S00-req.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-cert.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/DCs/localdc.samba.example.com/DC-localdc.samba.example.com-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/00.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/01.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/02.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/NewCerts/03.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-crlnumber.txt
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-crlnumber.txt.old
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt.attr
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt.attr.old
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-index.txt.old
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-openssl.cnf
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-serial.txt
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Private/CA-samba.example.com-serial.txt.old
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Public/CA-samba.example.com-cert.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Public/CA-samba.example.com-crl.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-cert.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-openssl.cnf
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-S03-req.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-cert.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at addom.samba.example.com/USER-administrator at addom.samba.example.com-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-cert.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-openssl.cnf
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-private-key.pem
 delete mode 100644 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-S01-req.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-cert.pem
 delete mode 120000 selftest/manage-ca/CA-samba.example.com/Users/administrator at samba.example.com/USER-administrator at samba.example.com-private-key.pem
 delete mode 100644 selftest/manage-ca/manage-CA-samba.example.com.cnf
 delete mode 100644 selftest/manage-ca/manage-CA-samba.example.com.sh
 delete mode 100755 selftest/manage-ca/manage-ca.sh
 delete mode 100644 selftest/manage-ca/manage-ca.templates.d/manage-CA-example.com.cnf
 delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-BASE-template.cnf
 delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-CA-template.cnf
 delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-DC-template.cnf
 delete mode 100644 selftest/manage-ca/manage-ca.templates.d/openssl-USER-template.cnf
 delete mode 100644 source3/client/README.smbspool
 delete mode 100644 source3/client/smbspool_krb5_wrapper.c
 rename lib/talloc/pytalloc_private.h => source3/lib/dummyparam.c (67%)
 delete mode 100644 source3/lib/gencache.h
 rename {lib/util => source3/lib}/sys_rw.c (99%)
 rename {lib/util => source3/lib}/sys_rw.h (100%)
 rename {lib/util => source3/lib}/sys_rw_data.c (97%)
 rename {lib/util => source3/lib}/sys_rw_data.h (100%)
 delete mode 100644 source3/lib/util_path.c
 delete mode 100644 source3/lib/util_path.h
 delete mode 100644 source3/lib/util_procid.c
 delete mode 100644 source3/lib/util_procid.h
 delete mode 100644 source3/lib/util_specialsids.c
 delete mode 100644 source3/lib/util_tsock.h
 create mode 100644 source3/libsmb/ntlmssp.c
 create mode 100644 source3/libsmb/ntlmssp_wrap.c
 create mode 100644 source3/modules/vfs_aio_posix.c
 delete mode 100644 source3/modules/vfs_fake_dfq.c
 delete mode 100644 source3/modules/vfs_offline.c
 create mode 100644 source3/modules/vfs_scannedonly.c
 create mode 100644 source3/modules/vfs_smb_traffic_analyzer.c
 create mode 100644 source3/modules/vfs_smb_traffic_analyzer.h
 create mode 100644 source3/pam_smbpass/CHANGELOG
 create mode 100644 source3/pam_smbpass/INSTALL
 create mode 100644 source3/pam_smbpass/README
 create mode 100644 source3/pam_smbpass/TODO
 create mode 100644 source3/pam_smbpass/general.h
 create mode 100644 source3/pam_smbpass/pam_smb_acct.c
 create mode 100644 source3/pam_smbpass/pam_smb_auth.c
 create mode 100644 source3/pam_smbpass/pam_smb_passwd.c
 create mode 100644 source3/pam_smbpass/samples/README
 create mode 100644 source3/pam_smbpass/samples/kdc-pdc
 create mode 100644 source3/pam_smbpass/samples/password-mature
 create mode 100644 source3/pam_smbpass/samples/password-migration
 create mode 100644 source3/pam_smbpass/samples/password-sync
 create mode 100644 source3/pam_smbpass/support.c
 create mode 100644 source3/pam_smbpass/support.h
 create mode 100644 source3/pam_smbpass/wscript_build
 delete mode 100644 source3/passdb/ABI/samba-passdb-0.24.2.sigs
 delete mode 100644 source3/passdb/ABI/samba-passdb-0.25.0.sigs
 delete mode 100755 source3/script/tests/test_dfree_quota.sh
 delete mode 100755 source3/script/tests/test_forceuser_validusers.sh
 delete mode 100755 source3/script/tests/test_offline.sh
 delete mode 100755 source3/script/tests/test_shadow_copy.sh
 delete mode 100755 source3/script/tests/test_smbclient_ntlm.sh
 delete mode 100755 source3/script/tests/test_smbget.sh
 delete mode 100755 source3/script/tests/test_valid_users.sh
 delete mode 100644 source3/smbd/smbXsrv_client.c
 delete mode 100644 source3/smbd/smbd_cleanupd.c
 delete mode 100644 source3/smbd/smbd_cleanupd.h
 create mode 100644 source3/utils/smbta-util.c
 delete mode 100644 source3/winbindd/winbindd_reconnect_ads.c
 delete mode 100644 source4/dns_server/pydns.c
 delete mode 100644 source4/kdc/sdb.c
 delete mode 100644 source4/kdc/sdb.h
 delete mode 100644 source4/kdc/sdb_to_hdb.c
 create mode 100644 source4/lib/registry/registry.pc.in
 create mode 100644 source4/libcli/raw/smbclient-raw.pc.in
 create mode 100644 source4/librpc/dcerpc_atsvc.pc.in
 delete mode 100644 source4/rpc_server/backupkey/dcesrv_backupkey_heimdal.c
 delete mode 100644 source4/torture/ndr/clusapi.c
 delete mode 100644 source4/torture/ndr/negoex.c
 delete mode 100644 source4/torture/rpc/backupkey_heimdal.c
 mode change 100755 => 100644 source4/torture/smb2/rename.c
 delete mode 100755 testprogs/blackbox/demote-saveddb.sh
 rename testprogs/blackbox/{test_kinit_heimdal.sh => test_kinit.sh} (99%)
 rename testprogs/blackbox/{test_kinit_trusts_heimdal.sh => test_kinit_trusts.sh} (100%)
 delete mode 100755 testprogs/blackbox/test_ldb_simple.sh
 delete mode 100755 testprogs/blackbox/test_net_ads.sh
 rename testprogs/blackbox/{test_pkinit_heimdal.sh => test_pkinit.sh} (100%)
 delete mode 100644 tests/oldquotas.c
 delete mode 100644 third_party/waf/wafadmin/3rdparty/print_commands.py

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-samba/samba.git




More information about the Pkg-samba-maint mailing list