1
0
mirror of https://github.com/samba-team/samba.git synced 2025-08-05 12:22:11 +03:00
Commit Graph

75 Commits

Author SHA1 Message Date
fa6085a5bf r5847: Fixes from Lars Müller and Vince Brimhall @Novell for NDS
schema.
Jeremy.
(This used to be commit 0d3075b2c0)
2007-10-10 10:56:05 -05:00
90dfded4df r5689: Allow for better protection of sensitive attributes in IBM Directory Server.
(This used to be commit dafdd8d074)
2007-10-10 10:55:55 -05:00
a3ee24ec7f r5600: Bring IBM Directory Server schema up to date with openldap schema
(This used to be commit 639de6afc0)
2007-10-10 10:55:49 -05:00
df52925865 r5132: netscape DS 5.2 schema update from Richard Renard <rrenard@idealx.com>
(This used to be commit 33ac88c6a7)
2007-10-10 10:55:29 -05:00
575ff39625 r5060: BUG 2286: fix typoe on sambaConfig oc definition
(This used to be commit e2ce048654)
2007-10-10 10:55:13 -05:00
b1288c61a9 r4965: comment out some unused attributes and oc's
(This used to be commit d95c9c4d74)
2007-10-10 10:55:09 -05:00
b4afdc08d5 r4925: Migrate Account Policies to passdb (esp. replicating ldapsam).
Does automated migration from account_policy.tdb v1 and v2 and offers a
pdbedit-Migration interface. Jerry, please feel free to revert that if
you have other plans.

Guenther
(This used to be commit 75af83dfcd)
2007-10-10 10:55:08 -05:00
e86235fbdc r4867: Removing smbldap-tools from the svn tree. I'll include
the latest version in the actual release tarballs.
Have spoken to the idealx developers about this.

Updated README to reflect the changte for people using svn.

Removed ldapsync.pl since it is no longer needed when using
the smbldap-tools (only keep things you support).
(This used to be commit f745e5119f)
2007-10-10 10:55:03 -05:00
1e8cb54308 r3088: update nds schema file from Uli Iske <iske@elkb.de>
(This used to be commit 3e28c57695)
2007-10-10 10:53:01 -05:00
0211bf0dee r2189: adding some comments to the schema file
(This used to be commit 1438c2960f)
2007-10-10 10:52:35 -05:00
455bc1db41 r1964: more schema fixes syncing between branches
(This used to be commit 49fba32217)
2007-10-10 10:52:25 -05:00
feea4517e3 r1962: fixing schema file; synching with trunk; trying to prevent this from happening again
(This used to be commit f1a0fae13f)
2007-10-10 10:52:25 -05:00
7b56819678 r1960: sambaPasswordHistory had a duplicate OID
bump up the attribute number to 52 to avoid conflicts
(This used to be commit 9368f0c1d2)
2007-10-10 10:52:25 -05:00
7af1265368 r1809: Patch from Richard Renard <rrenard@idealx.com> to store
logon hours attributes in an LDAP database.
Jeremy.
(This used to be commit ac0fdf9503)
2007-10-10 10:52:21 -05:00
161d3eeb4b r1663: fixing syntax error in OID for sambaUnixIdPool, sambaSidEntry, & sambaIdmapEntry
(This used to be commit 6e4c58b26d)
2007-10-10 10:52:18 -05:00
76cf406197 r1390: Improve description of attribute.
Jeremy.
(This used to be commit ff7236a5f2)
2007-10-10 10:52:09 -05:00
1c5867502a r1388: Adding password history code for ldap backend, based on a patch from
"Jianliang Lu" <j.lu@tiesse.com>. Multi-string attribute changed to
linearised pstring due to ordering issues. A few other changes to
fix race conditions. I will add the tdb backend code next. This code
compiles but has not yet been tested with password history policy
set to greater than zero. Targeted for 3.0.6.
Jeremy.
(This used to be commit dd54b2a3c4)
2007-10-10 10:52:09 -05:00
81996162d6 r223: According to Thomas Mueller, thomas.mueller@christ-wasser.de, the two lines
removed (modifiersName and modifyTimestamp) lead to warnings upon startup of
the netscape directory server. I can't check this, but it sounds logical.

Thanks,

Volker
(This used to be commit 770b85c32f)
2007-10-10 10:51:14 -05:00
60670f27ab r119: missed a file in volker patch
(This used to be commit bccee79653)
2007-10-10 10:51:10 -05:00
b9c35e961d Add bad password count/time attributes
(This used to be commit 184bef8413)
2004-02-22 20:25:43 +00:00
88129f85c0 Fix whitespace to reduce diff from HEAD
(This used to be commit eba512ee1c)
2004-02-14 14:25:40 +00:00
590a53b62c sync IBM Directory Server schema with openldap schema...add munged dial
(This used to be commit 3b1d922ab4)
2004-02-14 14:05:17 +00:00
db21c4e336 fix case in objectclass name (not that it really matters); patch from Darren Chew <darrenc@vicscouts.asn.au>
(This used to be commit 86e0015b06)
2004-01-06 14:40:35 +00:00
2ff5ed9555 Small fix from Jérôme Tournier <jerome.tournier@IDEALX.com>
Jeremy.
(This used to be commit 6ce7932520)
2003-12-16 18:14:10 +00:00
8dc02df11c removing RCS tags
(This used to be commit 9a7774306d)
2003-12-05 14:06:55 +00:00
814591c0c5 * removing extra file
* updating version in Makefile
(This used to be commit 3249e69274)
2003-12-05 13:57:02 +00:00
dc058d980b updating top 0.8.2-1 of the smbldap tools
(This used to be commit b798f30f0a)
2003-12-04 21:59:20 +00:00
83c64db054 sync OID with HEAD
(This used to be commit d463abb035)
2003-12-04 05:02:53 +00:00
5df2fd4175 support munged dial for ldapsam; patch from Aurlien Degrmont; bug 800
(This used to be commit 1c3c16abc9)
2003-12-04 04:52:00 +00:00
3886d6a7a1 added note about stripping comments from LDIF; bug 642
(This used to be commit 3f67b2bbfd)
2003-11-05 04:17:21 +00:00
79cb5593a8 update smbldap-tool sscripts from Jérôme Tournier
(This used to be commit c1546a5311)
2003-09-23 20:39:22 +00:00
af7ed6225c fix from Brad Langhorst to correctly check if the primaryGroupID has been set
(This used to be commit 5c45b799d1)
2003-09-20 15:28:24 +00:00
d1b4886688 updates to SunOne DS schema from André Fiebach
(This used to be commit bd9b90a391)
2003-09-20 15:20:31 +00:00
05d50e91cc insert missing sh-bang
(This used to be commit 64fa24dbab)
2003-09-19 18:53:07 +00:00
150d3d535c Updated 3.0 schema files for IBM Directory Server 5.1
Keeps with IBM convention of separate attributetype and objectclass definitions.
(This used to be commit 5dcf974c22)
2003-09-11 18:32:44 +00:00
314b7f7cca syncing files
(This used to be commit 88725350d2)
2003-09-09 03:54:11 +00:00
09ea546e5c samba 3.0 schema filr netscape DS 5.x from Darren Chew
(This used to be commit 3f97a5ce47)
2003-09-08 15:59:45 +00:00
c7dbe58a36 updated schema for 3.0 for eDirectory 8.7 and Netscape DS 4.x
(This used to be commit c9c7150a62)
2003-09-05 04:09:25 +00:00
1e5411ca82 updating README file after I removed some scripts
(This used to be commit 9013355807)
2003-08-29 16:56:59 +00:00
a75430992f remove rcs tag
(This used to be commit 7105f4bcab)
2003-08-28 17:00:36 +00:00
b3f1b28e1e removing outdated scripts and adding comments about 'ldap password syc'
(This used to be commit 29885eae59)
2003-08-28 16:38:59 +00:00
bdccf7fca8 add --help to script
(This used to be commit 5b20494aff)
2003-08-27 14:44:36 +00:00
5e6c6d766f sync with changes from Jerome Tournier @ IDEALX; should now work with sambaSamAccount schema
(This used to be commit 5f41cd76b7)
2003-08-26 04:36:27 +00:00
92d05d1f40 include enhancements from Buchan Milne to generate LDIF modify output in addition to add
(This used to be commit 49457669f3)
2003-08-26 04:17:05 +00:00
873f925a51 adding old NDS schema so I can update it
(This used to be commit 25753e2a33)
2003-08-20 21:53:18 +00:00
a750624f4d checlking in initial version of 2.2 scripts so I can start updating them
(This used to be commit 766a5070d5)
2003-08-20 21:52:52 +00:00
0722fc16a4 fix comments about schema dependencies
(This used to be commit f72f51d39f)
2003-08-20 16:08:39 +00:00
4168d61fb2 This patch cleans up some of our ldap code, for better behaviour:
We now always read the Domain SID out of LDAP.  If the local secrets.tdb
is ever different to LDAP, it is overwritten out of LDAP.   We also
store the 'algorithmic rid base' into LDAP, and assert if it changes.
(This ensures cross-host synchronisation, and allows for possible
integration with idmap).  If we fail to read/add the domain entry, we just
fallback to the old behaviour.

We always use an existing DN when adding IDMAP entries to LDAP, unless
no suitable entry is available.  This means that a user's posixAccount
will have a SID added to it, or a user's sambaSamAccount will have a UID
added.  Where we cannot us an existing DN, we use
'sambaSid=S-x-y-z,....' as the DN.

The code now allows modifications to the ID mapping in many cases.

Likewise, we now check more carefully when adding new user entires to LDAP,
to not duplicate SIDs (for users, at this stage), and to add the sambaSamAccount
onto the idmap entry for that user, if it is already established (ensuring
we do not duplicate sambaSid entries in the directory).

The allocated UID code has been expanded to take into account the space
between '1000 - algorithmic rid base'.  This much better fits into what
an NT4 does - allocating in the bottom part of the RID range.

On the code cleanup side of things, we now share as much code as
possible between idmap_ldap and pdb_ldap.

We also no longer use the race-prone 'enumerate all users' method for
finding the next RID to allocate.  Instead, we just start at the bottom
of the range, and increment again if the user already exists.  The first
time this is run, it may well take a long time, but next time will just
be able to use the next Rid.

Thanks to metze and AB for double-checking parts of this.

Andrew Bartlett
(This used to be commit 9c595c8c23)
2003-07-04 13:29:42 +00:00
a220e983d0 applying fix for group map conversion (patch from Kristyan Osborne)
(This used to be commit 6237fae9b8)
2003-07-01 15:21:43 +00:00
5d4937c2b6 This patch is Vorlon's fault!
(This used to be commit 56d2049561)
2003-06-15 05:14:28 +00:00