[cifs-protocol] Backing store linkage for MS-NRPC, trust account details

Andrew Bartlett abartlet at samba.org
Sun Aug 10 23:35:40 GMT 2008


The MS-NRPC document does not specify the linkage to the backing store
for any of it's operations. 

For example, the NetServerAuthenticate3 query talks only about client
computer accounts, but in 2.2.1.3.12 NETLOGON_SECURE_CHANNEL_TYPE,
interdomain trust accounts are described.

It makes sense that these both refer to computer and domain trust
accounts found under cn=users, but this is not specified, nor are the
attributes used specified.

Similarly, the NetrSetPassword2 call sets a trust account password, but
the operation of this call - what LDAP/DRS visible attribute it changes
- are not specified.

Please start with these, but to also note that, the 3.5.4.5.2
NetrDatabaseSync{,2} calls need the same level of specification.

These are just examples - like in my request regarding LSA, can you
please clarify for the whole document which protocol buffers line up
with which objects and attributes in the underlying database. 

Thanks,

Andrew Bartlett
-- 
Andrew Bartlett
http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/cifs-protocol/attachments/20080811/545b136e/attachment.bin


More information about the cifs-protocol mailing list