2 Unix SMB/CIFS implementation.
3 SAM_ACCOUNT access routines
4 Copyright (C) Jeremy Allison 1996-2001
5 Copyright (C) Luke Kenneth Casson Leighton 1996-1998
6 Copyright (C) Gerald (Jerry) Carter 2000-2001
7 Copyright (C) Andrew Bartlett 2001-2002
8 Copyright (C) Stefan (metze) Metzmacher 2002
10 This program is free software; you can redistribute it and/or modify
11 it under the terms of the GNU General Public License as published by
12 the Free Software Foundation; either version 2 of the License, or
13 (at your option) any later version.
15 This program is distributed in the hope that it will be useful,
16 but WITHOUT ANY WARRANTY; without even the implied warranty of
17 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
18 GNU General Public License for more details.
20 You should have received a copy of the GNU General Public License
21 along with this program; if not, write to the Free Software
22 Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA.
28 #define DBGC_CLASS DBGC_PASSDB
31 * @todo Redefine this to NULL, but this changes the API becouse
32 * much of samba assumes that the pdb_get...() funtions
33 * return pstrings. (ie not null-pointers).
34 * See also pdb_fill_default_sam().
37 #define PDB_NOT_QUITE_NULL ""
39 /*********************************************************************
40 Collection of get...() functions for SAM_ACCOUNT.
41 ********************************************************************/
43 uint16
pdb_get_acct_ctrl (const SAM_ACCOUNT
*sampass
)
46 return (sampass
->private.acct_ctrl
);
48 return (ACB_DISABLED
);
51 time_t pdb_get_logon_time (const SAM_ACCOUNT
*sampass
)
54 return (sampass
->private.logon_time
);
59 time_t pdb_get_logoff_time (const SAM_ACCOUNT
*sampass
)
62 return (sampass
->private.logoff_time
);
67 time_t pdb_get_kickoff_time (const SAM_ACCOUNT
*sampass
)
70 return (sampass
->private.kickoff_time
);
75 time_t pdb_get_pass_last_set_time (const SAM_ACCOUNT
*sampass
)
78 return (sampass
->private.pass_last_set_time
);
83 time_t pdb_get_pass_can_change_time (const SAM_ACCOUNT
*sampass
)
86 return (sampass
->private.pass_can_change_time
);
91 time_t pdb_get_pass_must_change_time (const SAM_ACCOUNT
*sampass
)
94 return (sampass
->private.pass_must_change_time
);
99 uint16
pdb_get_logon_divs (const SAM_ACCOUNT
*sampass
)
102 return (sampass
->private.logon_divs
);
107 uint32
pdb_get_hours_len (const SAM_ACCOUNT
*sampass
)
110 return (sampass
->private.hours_len
);
115 const uint8
* pdb_get_hours (const SAM_ACCOUNT
*sampass
)
118 return (sampass
->private.hours
);
123 const uint8
* pdb_get_nt_passwd (const SAM_ACCOUNT
*sampass
)
126 SMB_ASSERT((!sampass
->private.nt_pw
.data
)
127 || sampass
->private.nt_pw
.length
== NT_HASH_LEN
);
128 return ((uint8
*)sampass
->private.nt_pw
.data
);
134 const uint8
* pdb_get_lanman_passwd (const SAM_ACCOUNT
*sampass
)
137 SMB_ASSERT((!sampass
->private.lm_pw
.data
)
138 || sampass
->private.lm_pw
.length
== LM_HASH_LEN
);
139 return ((uint8
*)sampass
->private.lm_pw
.data
);
145 /* Return the plaintext password if known. Most of the time
146 it isn't, so don't assume anything magic about this function.
148 Used to pass the plaintext to passdb backends that might
149 want to store more than just the NTLM hashes.
151 const char* pdb_get_plaintext_passwd (const SAM_ACCOUNT
*sampass
)
154 return (sampass
->private.plaintext_pw
);
159 const DOM_SID
*pdb_get_user_sid(const SAM_ACCOUNT
*sampass
)
162 return &sampass
->private.user_sid
;
167 const DOM_SID
*pdb_get_group_sid(const SAM_ACCOUNT
*sampass
)
170 return &sampass
->private.group_sid
;
176 * Get flags showing what is initalised in the SAM_ACCOUNT
177 * @param sampass the SAM_ACCOUNT in question
178 * @return the flags indicating the members initialised in the struct.
181 enum pdb_value_state
pdb_get_init_flags (const SAM_ACCOUNT
*sampass
, enum pdb_elements element
)
183 enum pdb_value_state ret
= PDB_DEFAULT
;
185 if (!sampass
|| !sampass
->private.change_flags
|| !sampass
->private.set_flags
)
188 if (bitmap_query(sampass
->private.set_flags
, element
)) {
189 DEBUG(11, ("element %d: SET\n", element
));
193 if (bitmap_query(sampass
->private.change_flags
, element
)) {
194 DEBUG(11, ("element %d: CHANGED\n", element
));
198 if (ret
== PDB_DEFAULT
) {
199 DEBUG(11, ("element %d: DEFAULT\n", element
));
205 const char* pdb_get_username (const SAM_ACCOUNT
*sampass
)
208 return (sampass
->private.username
);
213 const char* pdb_get_domain (const SAM_ACCOUNT
*sampass
)
216 return (sampass
->private.domain
);
221 const char* pdb_get_nt_username (const SAM_ACCOUNT
*sampass
)
224 return (sampass
->private.nt_username
);
229 const char* pdb_get_fullname (const SAM_ACCOUNT
*sampass
)
232 return (sampass
->private.full_name
);
237 const char* pdb_get_homedir (const SAM_ACCOUNT
*sampass
)
240 return (sampass
->private.home_dir
);
245 const char* pdb_get_unix_homedir (const SAM_ACCOUNT
*sampass
)
248 return (sampass
->private.unix_home_dir
);
253 const char* pdb_get_dir_drive (const SAM_ACCOUNT
*sampass
)
256 return (sampass
->private.dir_drive
);
261 const char* pdb_get_logon_script (const SAM_ACCOUNT
*sampass
)
264 return (sampass
->private.logon_script
);
269 const char* pdb_get_profile_path (const SAM_ACCOUNT
*sampass
)
272 return (sampass
->private.profile_path
);
277 const char* pdb_get_acct_desc (const SAM_ACCOUNT
*sampass
)
280 return (sampass
->private.acct_desc
);
285 const char* pdb_get_workstations (const SAM_ACCOUNT
*sampass
)
288 return (sampass
->private.workstations
);
293 const char* pdb_get_unknown_str (const SAM_ACCOUNT
*sampass
)
296 return (sampass
->private.unknown_str
);
301 const char* pdb_get_munged_dial (const SAM_ACCOUNT
*sampass
)
304 return (sampass
->private.munged_dial
);
309 uint32
pdb_get_unknown_3 (const SAM_ACCOUNT
*sampass
)
312 return (sampass
->private.unknown_3
);
317 uint32
pdb_get_unknown_5 (const SAM_ACCOUNT
*sampass
)
320 return (sampass
->private.unknown_5
);
325 uint32
pdb_get_unknown_6 (const SAM_ACCOUNT
*sampass
)
328 return (sampass
->private.unknown_6
);
333 /*********************************************************************
334 Collection of set...() functions for SAM_ACCOUNT.
335 ********************************************************************/
337 BOOL
pdb_set_acct_ctrl (SAM_ACCOUNT
*sampass
, uint16 acct_ctrl
, enum pdb_value_state flag
)
342 sampass
->private.acct_ctrl
= acct_ctrl
;
344 return pdb_set_init_flags(sampass
, PDB_ACCTCTRL
, flag
);
347 BOOL
pdb_set_logon_time (SAM_ACCOUNT
*sampass
, time_t mytime
, enum pdb_value_state flag
)
352 sampass
->private.logon_time
= mytime
;
354 return pdb_set_init_flags(sampass
, PDB_LOGONTIME
, flag
);
357 BOOL
pdb_set_logoff_time (SAM_ACCOUNT
*sampass
, time_t mytime
, enum pdb_value_state flag
)
362 sampass
->private.logoff_time
= mytime
;
364 return pdb_set_init_flags(sampass
, PDB_LOGOFFTIME
, flag
);
367 BOOL
pdb_set_kickoff_time (SAM_ACCOUNT
*sampass
, time_t mytime
, enum pdb_value_state flag
)
372 sampass
->private.kickoff_time
= mytime
;
374 return pdb_set_init_flags(sampass
, PDB_KICKOFFTIME
, flag
);
377 BOOL
pdb_set_pass_can_change_time (SAM_ACCOUNT
*sampass
, time_t mytime
, enum pdb_value_state flag
)
382 sampass
->private.pass_can_change_time
= mytime
;
384 return pdb_set_init_flags(sampass
, PDB_CANCHANGETIME
, flag
);
387 BOOL
pdb_set_pass_must_change_time (SAM_ACCOUNT
*sampass
, time_t mytime
, enum pdb_value_state flag
)
392 sampass
->private.pass_must_change_time
= mytime
;
394 return pdb_set_init_flags(sampass
, PDB_MUSTCHANGETIME
, flag
);
397 BOOL
pdb_set_pass_last_set_time (SAM_ACCOUNT
*sampass
, time_t mytime
, enum pdb_value_state flag
)
402 sampass
->private.pass_last_set_time
= mytime
;
404 return pdb_set_init_flags(sampass
, PDB_PASSLASTSET
, flag
);
407 BOOL
pdb_set_hours_len (SAM_ACCOUNT
*sampass
, uint32 len
, enum pdb_value_state flag
)
412 sampass
->private.hours_len
= len
;
414 return pdb_set_init_flags(sampass
, PDB_HOURSLEN
, flag
);
417 BOOL
pdb_set_logon_divs (SAM_ACCOUNT
*sampass
, uint16 hours
, enum pdb_value_state flag
)
422 sampass
->private.logon_divs
= hours
;
424 return pdb_set_init_flags(sampass
, PDB_LOGONDIVS
, flag
);
428 * Set flags showing what is initalised in the SAM_ACCOUNT
429 * @param sampass the SAM_ACCOUNT in question
430 * @param flag The *new* flag to be set. Old flags preserved
431 * this flag is only added.
434 BOOL
pdb_set_init_flags (SAM_ACCOUNT
*sampass
, enum pdb_elements element
, enum pdb_value_state value_flag
)
436 if (!sampass
|| !sampass
->mem_ctx
)
439 if (!sampass
->private.set_flags
) {
440 if ((sampass
->private.set_flags
=
441 bitmap_talloc(sampass
->mem_ctx
,
443 DEBUG(0,("bitmap_talloc failed\n"));
447 if (!sampass
->private.change_flags
) {
448 if ((sampass
->private.change_flags
=
449 bitmap_talloc(sampass
->mem_ctx
,
451 DEBUG(0,("bitmap_talloc failed\n"));
458 if (!bitmap_set(sampass
->private.change_flags
, element
)) {
459 DEBUG(0,("Can't set flag: %d in change_flags.\n",element
));
462 if (!bitmap_set(sampass
->private.set_flags
, element
)) {
463 DEBUG(0,("Can't set flag: %d in set_flags.\n",element
));
466 DEBUG(11, ("element %d -> now CHANGED\n", element
));
469 if (!bitmap_clear(sampass
->private.change_flags
, element
)) {
470 DEBUG(0,("Can't set flag: %d in change_flags.\n",element
));
473 if (!bitmap_set(sampass
->private.set_flags
, element
)) {
474 DEBUG(0,("Can't set flag: %d in set_flags.\n",element
));
477 DEBUG(10, ("element %d -> now SET\n", element
));
481 if (!bitmap_clear(sampass
->private.change_flags
, element
)) {
482 DEBUG(0,("Can't set flag: %d in change_flags.\n",element
));
485 if (!bitmap_clear(sampass
->private.set_flags
, element
)) {
486 DEBUG(0,("Can't set flag: %d in set_flags.\n",element
));
489 DEBUG(11, ("element %d -> now DEFAULT\n", element
));
496 BOOL
pdb_set_user_sid (SAM_ACCOUNT
*sampass
, DOM_SID
*u_sid
, enum pdb_value_state flag
)
498 if (!sampass
|| !u_sid
)
501 sid_copy(&sampass
->private.user_sid
, u_sid
);
503 DEBUG(10, ("pdb_set_user_sid: setting user sid %s\n",
504 sid_string_static(&sampass
->private.user_sid
)));
506 return pdb_set_init_flags(sampass
, PDB_USERSID
, flag
);
509 BOOL
pdb_set_user_sid_from_string (SAM_ACCOUNT
*sampass
, fstring u_sid
, enum pdb_value_state flag
)
513 if (!sampass
|| !u_sid
)
516 DEBUG(10, ("pdb_set_user_sid_from_string: setting user sid %s\n",
519 if (!string_to_sid(&new_sid
, u_sid
)) {
520 DEBUG(1, ("pdb_set_user_sid_from_string: %s isn't a valid SID!\n", u_sid
));
524 if (!pdb_set_user_sid(sampass
, &new_sid
, flag
)) {
525 DEBUG(1, ("pdb_set_user_sid_from_string: could not set sid %s on SAM_ACCOUNT!\n", u_sid
));
532 BOOL
pdb_set_group_sid (SAM_ACCOUNT
*sampass
, DOM_SID
*g_sid
, enum pdb_value_state flag
)
534 if (!sampass
|| !g_sid
)
537 sid_copy(&sampass
->private.group_sid
, g_sid
);
539 DEBUG(10, ("pdb_set_group_sid: setting group sid %s\n",
540 sid_string_static(&sampass
->private.group_sid
)));
542 return pdb_set_init_flags(sampass
, PDB_GROUPSID
, flag
);
545 BOOL
pdb_set_group_sid_from_string (SAM_ACCOUNT
*sampass
, fstring g_sid
, enum pdb_value_state flag
)
548 if (!sampass
|| !g_sid
)
551 DEBUG(10, ("pdb_set_group_sid_from_string: setting group sid %s\n",
554 if (!string_to_sid(&new_sid
, g_sid
)) {
555 DEBUG(1, ("pdb_set_group_sid_from_string: %s isn't a valid SID!\n", g_sid
));
559 if (!pdb_set_group_sid(sampass
, &new_sid
, flag
)) {
560 DEBUG(1, ("pdb_set_group_sid_from_string: could not set sid %s on SAM_ACCOUNT!\n", g_sid
));
566 /*********************************************************************
567 Set the user's UNIX name.
568 ********************************************************************/
570 BOOL
pdb_set_username(SAM_ACCOUNT
*sampass
, const char *username
, enum pdb_value_state flag
)
576 DEBUG(10, ("pdb_set_username: setting username %s, was %s\n", username
,
577 (sampass
->private.username
)?(sampass
->private.username
):"NULL"));
579 sampass
->private.username
= talloc_strdup(sampass
->mem_ctx
, username
);
581 if (!sampass
->private.username
) {
582 DEBUG(0, ("pdb_set_username: talloc_strdup() failed!\n"));
587 sampass
->private.username
= PDB_NOT_QUITE_NULL
;
590 return pdb_set_init_flags(sampass
, PDB_USERNAME
, flag
);
593 /*********************************************************************
595 ********************************************************************/
597 BOOL
pdb_set_domain(SAM_ACCOUNT
*sampass
, const char *domain
, enum pdb_value_state flag
)
603 DEBUG(10, ("pdb_set_domain: setting domain %s, was %s\n", domain
,
604 (sampass
->private.domain
)?(sampass
->private.domain
):"NULL"));
606 sampass
->private.domain
= talloc_strdup(sampass
->mem_ctx
, domain
);
608 if (!sampass
->private.domain
) {
609 DEBUG(0, ("pdb_set_domain: talloc_strdup() failed!\n"));
614 sampass
->private.domain
= PDB_NOT_QUITE_NULL
;
617 return pdb_set_init_flags(sampass
, PDB_DOMAIN
, flag
);
620 /*********************************************************************
621 Set the user's NT name.
622 ********************************************************************/
624 BOOL
pdb_set_nt_username(SAM_ACCOUNT
*sampass
, const char *nt_username
, enum pdb_value_state flag
)
630 DEBUG(10, ("pdb_set_nt_username: setting nt username %s, was %s\n", nt_username
,
631 (sampass
->private.nt_username
)?(sampass
->private.nt_username
):"NULL"));
633 sampass
->private.nt_username
= talloc_strdup(sampass
->mem_ctx
, nt_username
);
635 if (!sampass
->private.nt_username
) {
636 DEBUG(0, ("pdb_set_nt_username: talloc_strdup() failed!\n"));
641 sampass
->private.nt_username
= PDB_NOT_QUITE_NULL
;
644 return pdb_set_init_flags(sampass
, PDB_NTUSERNAME
, flag
);
647 /*********************************************************************
648 Set the user's full name.
649 ********************************************************************/
651 BOOL
pdb_set_fullname(SAM_ACCOUNT
*sampass
, const char *full_name
, enum pdb_value_state flag
)
657 DEBUG(10, ("pdb_set_full_name: setting full name %s, was %s\n", full_name
,
658 (sampass
->private.full_name
)?(sampass
->private.full_name
):"NULL"));
660 sampass
->private.full_name
= talloc_strdup(sampass
->mem_ctx
, full_name
);
662 if (!sampass
->private.full_name
) {
663 DEBUG(0, ("pdb_set_fullname: talloc_strdup() failed!\n"));
668 sampass
->private.full_name
= PDB_NOT_QUITE_NULL
;
671 return pdb_set_init_flags(sampass
, PDB_FULLNAME
, flag
);
674 /*********************************************************************
675 Set the user's logon script.
676 ********************************************************************/
678 BOOL
pdb_set_logon_script(SAM_ACCOUNT
*sampass
, const char *logon_script
, enum pdb_value_state flag
)
684 DEBUG(10, ("pdb_set_logon_script: setting logon script %s, was %s\n", logon_script
,
685 (sampass
->private.logon_script
)?(sampass
->private.logon_script
):"NULL"));
687 sampass
->private.logon_script
= talloc_strdup(sampass
->mem_ctx
, logon_script
);
689 if (!sampass
->private.logon_script
) {
690 DEBUG(0, ("pdb_set_logon_script: talloc_strdup() failed!\n"));
695 sampass
->private.logon_script
= PDB_NOT_QUITE_NULL
;
698 return pdb_set_init_flags(sampass
, PDB_LOGONSCRIPT
, flag
);
701 /*********************************************************************
702 Set the user's profile path.
703 ********************************************************************/
705 BOOL
pdb_set_profile_path (SAM_ACCOUNT
*sampass
, const char *profile_path
, enum pdb_value_state flag
)
711 DEBUG(10, ("pdb_set_profile_path: setting profile path %s, was %s\n", profile_path
,
712 (sampass
->private.profile_path
)?(sampass
->private.profile_path
):"NULL"));
714 sampass
->private.profile_path
= talloc_strdup(sampass
->mem_ctx
, profile_path
);
716 if (!sampass
->private.profile_path
) {
717 DEBUG(0, ("pdb_set_profile_path: talloc_strdup() failed!\n"));
722 sampass
->private.profile_path
= PDB_NOT_QUITE_NULL
;
725 return pdb_set_init_flags(sampass
, PDB_PROFILE
, flag
);
728 /*********************************************************************
729 Set the user's directory drive.
730 ********************************************************************/
732 BOOL
pdb_set_dir_drive (SAM_ACCOUNT
*sampass
, const char *dir_drive
, enum pdb_value_state flag
)
738 DEBUG(10, ("pdb_set_dir_drive: setting dir drive %s, was %s\n", dir_drive
,
739 (sampass
->private.dir_drive
)?(sampass
->private.dir_drive
):"NULL"));
741 sampass
->private.dir_drive
= talloc_strdup(sampass
->mem_ctx
, dir_drive
);
743 if (!sampass
->private.dir_drive
) {
744 DEBUG(0, ("pdb_set_dir_drive: talloc_strdup() failed!\n"));
749 sampass
->private.dir_drive
= PDB_NOT_QUITE_NULL
;
752 return pdb_set_init_flags(sampass
, PDB_DRIVE
, flag
);
755 /*********************************************************************
756 Set the user's home directory.
757 ********************************************************************/
759 BOOL
pdb_set_homedir (SAM_ACCOUNT
*sampass
, const char *home_dir
, enum pdb_value_state flag
)
765 DEBUG(10, ("pdb_set_homedir: setting home dir %s, was %s\n", home_dir
,
766 (sampass
->private.home_dir
)?(sampass
->private.home_dir
):"NULL"));
768 sampass
->private.home_dir
= talloc_strdup(sampass
->mem_ctx
, home_dir
);
770 if (!sampass
->private.home_dir
) {
771 DEBUG(0, ("pdb_set_home_dir: talloc_strdup() failed!\n"));
776 sampass
->private.home_dir
= PDB_NOT_QUITE_NULL
;
779 return pdb_set_init_flags(sampass
, PDB_SMBHOME
, flag
);
782 /*********************************************************************
783 Set the user's unix home directory.
784 ********************************************************************/
786 BOOL
pdb_set_unix_homedir (SAM_ACCOUNT
*sampass
, const char *unix_home_dir
, enum pdb_value_state flag
)
792 DEBUG(10, ("pdb_set_unix_homedir: setting home dir %s, was %s\n", unix_home_dir
,
793 (sampass
->private.unix_home_dir
)?(sampass
->private.unix_home_dir
):"NULL"));
795 sampass
->private.unix_home_dir
= talloc_strdup(sampass
->mem_ctx
,
798 if (!sampass
->private.unix_home_dir
) {
799 DEBUG(0, ("pdb_set_unix_home_dir: talloc_strdup() failed!\n"));
804 sampass
->private.unix_home_dir
= PDB_NOT_QUITE_NULL
;
807 return pdb_set_init_flags(sampass
, PDB_UNIXHOMEDIR
, flag
);
810 /*********************************************************************
811 Set the user's account description.
812 ********************************************************************/
814 BOOL
pdb_set_acct_desc (SAM_ACCOUNT
*sampass
, const char *acct_desc
, enum pdb_value_state flag
)
820 sampass
->private.acct_desc
= talloc_strdup(sampass
->mem_ctx
, acct_desc
);
822 if (!sampass
->private.acct_desc
) {
823 DEBUG(0, ("pdb_set_acct_desc: talloc_strdup() failed!\n"));
828 sampass
->private.acct_desc
= PDB_NOT_QUITE_NULL
;
831 return pdb_set_init_flags(sampass
, PDB_ACCTDESC
, flag
);
834 /*********************************************************************
835 Set the user's workstation allowed list.
836 ********************************************************************/
838 BOOL
pdb_set_workstations (SAM_ACCOUNT
*sampass
, const char *workstations
, enum pdb_value_state flag
)
844 DEBUG(10, ("pdb_set_workstations: setting workstations %s, was %s\n", workstations
,
845 (sampass
->private.workstations
)?(sampass
->private.workstations
):"NULL"));
847 sampass
->private.workstations
= talloc_strdup(sampass
->mem_ctx
, workstations
);
849 if (!sampass
->private.workstations
) {
850 DEBUG(0, ("pdb_set_workstations: talloc_strdup() failed!\n"));
855 sampass
->private.workstations
= PDB_NOT_QUITE_NULL
;
858 return pdb_set_init_flags(sampass
, PDB_WORKSTATIONS
, flag
);
861 /*********************************************************************
862 Set the user's 'unknown_str', whatever the heck this actually is...
863 ********************************************************************/
865 BOOL
pdb_set_unknown_str (SAM_ACCOUNT
*sampass
, const char *unknown_str
, enum pdb_value_state flag
)
871 sampass
->private.unknown_str
= talloc_strdup(sampass
->mem_ctx
, unknown_str
);
873 if (!sampass
->private.unknown_str
) {
874 DEBUG(0, ("pdb_set_unknown_str: talloc_strdup() failed!\n"));
879 sampass
->private.unknown_str
= PDB_NOT_QUITE_NULL
;
882 return pdb_set_init_flags(sampass
, PDB_UNKNOWNSTR
, flag
);
885 /*********************************************************************
886 Set the user's dial string.
887 ********************************************************************/
889 BOOL
pdb_set_munged_dial (SAM_ACCOUNT
*sampass
, const char *munged_dial
, enum pdb_value_state flag
)
895 sampass
->private.munged_dial
= talloc_strdup(sampass
->mem_ctx
, munged_dial
);
897 if (!sampass
->private.munged_dial
) {
898 DEBUG(0, ("pdb_set_munged_dial: talloc_strdup() failed!\n"));
903 sampass
->private.munged_dial
= PDB_NOT_QUITE_NULL
;
906 return pdb_set_init_flags(sampass
, PDB_MUNGEDDIAL
, flag
);
909 /*********************************************************************
910 Set the user's NT hash.
911 ********************************************************************/
913 BOOL
pdb_set_nt_passwd (SAM_ACCOUNT
*sampass
, const uint8 pwd
[NT_HASH_LEN
], enum pdb_value_state flag
)
918 data_blob_clear_free(&sampass
->private.nt_pw
);
920 sampass
->private.nt_pw
= data_blob(pwd
, NT_HASH_LEN
);
922 return pdb_set_init_flags(sampass
, PDB_NTPASSWD
, flag
);
925 /*********************************************************************
926 Set the user's LM hash.
927 ********************************************************************/
929 BOOL
pdb_set_lanman_passwd (SAM_ACCOUNT
*sampass
, const uint8 pwd
[LM_HASH_LEN
], enum pdb_value_state flag
)
934 data_blob_clear_free(&sampass
->private.lm_pw
);
936 sampass
->private.lm_pw
= data_blob(pwd
, LM_HASH_LEN
);
938 return pdb_set_init_flags(sampass
, PDB_LMPASSWD
, flag
);
941 /*********************************************************************
942 Set the user's plaintext password only (base procedure, see helper
944 ********************************************************************/
946 BOOL
pdb_set_plaintext_pw_only (SAM_ACCOUNT
*sampass
, const char *password
, enum pdb_value_state flag
)
952 if (sampass
->private.plaintext_pw
!=NULL
)
953 memset(sampass
->private.plaintext_pw
,'\0',strlen(sampass
->private.plaintext_pw
)+1);
955 sampass
->private.plaintext_pw
= talloc_strdup(sampass
->mem_ctx
, password
);
957 if (!sampass
->private.plaintext_pw
) {
958 DEBUG(0, ("pdb_set_unknown_str: talloc_strdup() failed!\n"));
963 sampass
->private.plaintext_pw
= NULL
;
966 return pdb_set_init_flags(sampass
, PDB_PLAINTEXT_PW
, flag
);
969 BOOL
pdb_set_unknown_3 (SAM_ACCOUNT
*sampass
, uint32 unkn
, enum pdb_value_state flag
)
974 sampass
->private.unknown_3
= unkn
;
976 return pdb_set_init_flags(sampass
, PDB_UNKNOWN3
, flag
);
979 BOOL
pdb_set_unknown_5 (SAM_ACCOUNT
*sampass
, uint32 unkn
, enum pdb_value_state flag
)
984 sampass
->private.unknown_5
= unkn
;
986 return pdb_set_init_flags(sampass
, PDB_UNKNOWN5
, flag
);
989 BOOL
pdb_set_unknown_6 (SAM_ACCOUNT
*sampass
, uint32 unkn
, enum pdb_value_state flag
)
994 sampass
->private.unknown_6
= unkn
;
996 return pdb_set_init_flags(sampass
, PDB_UNKNOWN6
, flag
);
999 BOOL
pdb_set_hours (SAM_ACCOUNT
*sampass
, const uint8
*hours
, enum pdb_value_state flag
)
1005 memset ((char *)sampass
->private.hours
, 0, MAX_HOURS_LEN
);
1009 memcpy (sampass
->private.hours
, hours
, MAX_HOURS_LEN
);
1011 return pdb_set_init_flags(sampass
, PDB_HOURS
, flag
);
1015 /* Helpful interfaces to the above */
1017 /*********************************************************************
1018 Sets the last changed times and must change times for a normal
1020 ********************************************************************/
1022 BOOL
pdb_set_pass_changed_now (SAM_ACCOUNT
*sampass
)
1030 if (!pdb_set_pass_last_set_time (sampass
, time(NULL
), PDB_CHANGED
))
1033 if (!account_policy_get(AP_MAX_PASSWORD_AGE
, &expire
)
1034 || (expire
==(uint32
)-1)) {
1035 if (!pdb_set_pass_must_change_time (sampass
, get_time_t_max(), PDB_CHANGED
))
1038 if (!pdb_set_pass_must_change_time (sampass
,
1039 pdb_get_pass_last_set_time(sampass
)
1040 + expire
, PDB_CHANGED
))
1044 if (!account_policy_get(AP_MIN_PASSWORD_AGE
, &min_age
)
1045 || (min_age
==(uint32
)-1)) {
1046 if (!pdb_set_pass_can_change_time (sampass
, 0, PDB_CHANGED
))
1049 if (!pdb_set_pass_can_change_time (sampass
,
1050 pdb_get_pass_last_set_time(sampass
)
1051 + min_age
, PDB_CHANGED
))
1057 /*********************************************************************
1058 Set the user's PLAINTEXT password. Used as an interface to the above.
1059 Also sets the last change time to NOW.
1060 ********************************************************************/
1062 BOOL
pdb_set_plaintext_passwd (SAM_ACCOUNT
*sampass
, const char *plaintext
)
1064 uchar new_lanman_p16
[16];
1065 uchar new_nt_p16
[16];
1067 if (!sampass
|| !plaintext
)
1070 nt_lm_owf_gen (plaintext
, new_nt_p16
, new_lanman_p16
);
1072 if (!pdb_set_nt_passwd (sampass
, new_nt_p16
, PDB_CHANGED
))
1075 if (!pdb_set_lanman_passwd (sampass
, new_lanman_p16
, PDB_CHANGED
))
1078 if (!pdb_set_plaintext_pw_only (sampass
, plaintext
, PDB_CHANGED
))
1081 if (!pdb_set_pass_changed_now (sampass
))