New approach to "valid users" fix

Gerald (Jerry) Carter jerry at samba.org
Sat Aug 12 00:18:26 GMT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Jeremy Allison wrote:

> Yes we're ok - it's the code in here :
> 
> pdb_get_group_sid()
> 
> than ensures the primary group sid is always a domain group
> sid and is called by the SAMR calls to get the token to
> return to a member server.
> 
> The user token listed here is how the user is represented
> on a connection to the PDC, not how the token is returned
> to a netlogon.

Yeah.  That's my reasoning as well.  I'm pretty confident
about this fix.  But to be sure, we need multiple people
confirming that it's ok.





cheers, jerry
=====================================================================
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.4 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFE3R5SIR7qMdg1EfYRAso+AKCRtwo3bf4ZsLv2P+2N91sOOiq9YQCfd2dp
7nTEM1DE3DDjgt7gBtbXY1Q=
=sPm4
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list