granting SeSecurityPrivilege to user

Andrew Bartlett abartlet at samba.org
Tue Oct 19 22:17:00 MDT 2010


On Tue, 2010-10-19 at 20:39 -0700, Jeremy Allison wrote:
> On Wed, Oct 20, 2010 at 12:09:42PM +1100, Andrew Bartlett wrote:
> > 
> > I just wanted to note that in my recent libcli/security merges in
> > master, that the SeSecurityPrivilage can be easily made available in the
> > source3 code in master.  The only barrier is that currently the code
> > artificially limits the list of privileges in 'net rights' and LSA to
> > preserve the previous behaviour. 
> 
> Might be doable for 3.6.0, but not for 3.5.x, which is where
> the bug is being reported. We'd need to add that privilege
> into the privileges set etc. Let's see what tool is generating
> this issue first.

Yeah, I just wanted to give you a heads-up, before you wrote off adding
SeSecurityPrivilege as 'too hard for now', and to see if you wanted to
enable this in access_check.c

Andrew Bartlett
-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Cisco Inc.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 190 bytes
Desc: This is a digitally signed message part
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20101020/c7e923d2/attachment.pgp>


More information about the samba-technical mailing list