]> git.ipfire.org Git - thirdparty/samba.git/commitdiff
IPA DC: add missing checks
authorAlexander Bokovoy <ab@samba.org>
Fri, 12 Nov 2021 17:06:01 +0000 (19:06 +0200)
committerAlexander Bokovoy <ab@samba.org>
Sat, 13 Nov 2021 07:01:26 +0000 (07:01 +0000)
When introducing FreeIPA support, two places were forgotten:

 - schannel gensec module needs to be aware of IPA DC
 - _lsa_QueryInfoPolicy should treat IPA DC as PDC

BUG: https://bugzilla.samba.org/show_bug.cgi?id=14903

Signed-off-by: Alexander Bokovoy <ab@samba.org>
Reviewed-by: Guenther Deschner <gd@samba.org>
Autobuild-User(master): Alexander Bokovoy <ab@samba.org>
Autobuild-Date(master): Sat Nov 13 07:01:26 UTC 2021 on sn-devel-184

auth/gensec/schannel.c
source3/rpc_server/lsa/srv_lsa_nt.c

index 0cdae141ead1767b9cbeee41c4e8da83315f8652..6ebbe8f3179d17a919dadf17e332ff1ed9f7b723 100644 (file)
@@ -1080,6 +1080,7 @@ static NTSTATUS schannel_server_start(struct gensec_security *gensec_security)
        case ROLE_DOMAIN_BDC:
        case ROLE_DOMAIN_PDC:
        case ROLE_ACTIVE_DIRECTORY_DC:
+       case ROLE_IPA_DC:
                return NT_STATUS_OK;
        default:
                return NT_STATUS_NOT_IMPLEMENTED;
index 8d71b5252ab2363363e648bb3506abe8a2714955..ea92a22cbc9ad4fbc995c8c2d2e8889d4559dcf4 100644 (file)
@@ -683,6 +683,7 @@ NTSTATUS _lsa_QueryInfoPolicy(struct pipes_struct *p,
                switch (lp_server_role()) {
                        case ROLE_DOMAIN_PDC:
                        case ROLE_DOMAIN_BDC:
+                       case ROLE_IPA_DC:
                                name = get_global_sam_name();
                                sid = dom_sid_dup(p->mem_ctx, get_global_sam_sid());
                                if (!sid) {