freeipa/daemons/ipa-slapi-plugins
Sumit Bose 091e8fac34 Use the right attribute with ipapwd_entry_checks for MagicRegen
There is a special mode to set the ipaNTHash attribute if a RC4 Kerberos
key is available for the corresponding user. This is typically triggered
by samba via the ipa_sam passdb plugin. The principal used by samba to
connect to the IPA directory server has the right to modify ipaNTHash
but no other password attribute. This means that the current check on
the userPassword attribute is too strict for this case and leads to a
failure of the whole operation.

With this patch the access right on ipaNTHash are checked if no other
password operations are requested.
2013-10-08 09:18:57 +02:00
..
common include <stdint.h> for uintptr_t 2011-09-22 09:42:11 -04:00
ipa-cldap CLDAP: do not read IPA domain from hostname 2013-09-27 15:06:21 +02:00
ipa-dns Remove build warnings 2013-03-29 08:59:36 +01:00
ipa-enrollment Fix -Wformat-security warnings 2013-09-16 17:35:22 +02:00
ipa-extdom-extop EXTDOM: Do not overwrite domain_name for INP_SID 2013-08-29 15:30:38 +02:00
ipa-lockout Re-order NULL check in ipa_lockout. 2013-08-29 15:26:46 +02:00
ipa-modrdn Remove build warnings 2013-03-29 08:59:36 +01:00
ipa-pwd-extop Use the right attribute with ipapwd_entry_checks for MagicRegen 2013-10-08 09:18:57 +02:00
ipa-range-check Remove build warnings 2013-03-29 08:59:36 +01:00
ipa-sidgen Fix type of printf argument 2013-06-10 10:56:59 +02:00
ipa-uuid Remove build warnings 2013-03-29 08:59:36 +01:00
ipa-version Remove build warnings 2013-03-29 08:59:36 +01:00
ipa-winsync Remove unused variable 2013-07-15 15:40:43 +02:00
Makefile.am Add 389 DS plugin for special idnsSOASerial attribute handling 2013-03-22 14:31:22 +01:00
README Mass tree reorganization for IPAv2. To view previous history of files use: 2009-02-03 15:27:14 -05:00