1
0
mirror of https://github.com/samba-team/samba.git synced 2025-01-11 05:18:09 +03:00
samba-mirror/source4/setup
Andrew Bartlett c82c9fe7bb r12599: This new LDB module (and associated changes) allows Samba4 to operate
using pre-calculated passwords for all kerberos key types.
(Previously we could only use these for the NT# type).

The module handles all of the hash/string2key tasks for all parts of
Samba, which was previously in the rpc_server/samr/samr_password.c
code.  We also update the msDS-KeyVersionNumber, and the password
history.  This new module can be called at provision time, which
ensures we start with a database that is consistent in this respect.

By ensuring that the krb5key attribute is the only one we need to
retrieve, this also simplifies the run-time KDC logic.  (Each value of
the multi-valued attribute is encoded as a 'Key' in ASN.1, using the
definition from Heimdal's HDB.  This simplfies the KDC code.).

It is hoped that this will speed up the KDC enough that it can again
operate under valgrind.
(This used to be commit e902274321)
2007-10-10 13:49:01 -05:00
..
display_specifiers.ldif r11499: added a minimal set of display specifiers for mmc to use to display 2007-10-10 13:45:45 -05:00
hklm.ldif r9951: Add another value to the default HKLM. 2007-10-10 13:36:24 -05:00
newuser r11113: fixed two small bugs in newuser 2007-10-10 13:44:52 -05:00
provision r10190: Do some very basic input checking when provisioning. 2007-10-10 13:38:06 -05:00
provision_init.ldif r12599: This new LDB module (and associated changes) allows Samba4 to operate 2007-10-10 13:49:01 -05:00
provision_templates.ldif r12598: Make the 'objectClass' part of the templating process actually work. 2007-10-10 13:49:01 -05:00
provision_users.ldif r12598: Make the 'objectClass' part of the templating process actually work. 2007-10-10 13:49:01 -05:00
provision.ldif r11496: add a minimal ads-compatible schema into our sam.ldb setup. This is 2007-10-10 13:45:45 -05:00
provision.smb.conf r10314: Apply the controvertial 'server role =' patch after discussion on the list: 2007-10-10 13:38:16 -05:00
provision.zone r12536: kerberos is on port 88, not port 389 2007-10-10 13:47:53 -05:00
schema.ldif r11496: add a minimal ads-compatible schema into our sam.ldb setup. This is 2007-10-10 13:45:45 -05:00
secrets.ldif r11995: A big kerberos-related update. 2007-10-10 13:46:56 -05:00
upgrade r11087: - add type,name,scope as attributes to winsRecords, 2007-10-10 13:44:46 -05:00