CVE-2020-10730: lib ldb: Check if ldb_lock_backend_callback called twice
[Samba.git] / selftest / knownfail
blob6fdeec1550dfab66f8914bd862302383e8f6b10d
1 # This file contains a list of regular expressions matching the names of
2 # tests that are expected to fail.
4 # "make test" will not report failures for tests listed here and will consider
5 # a successful run for any of these tests an error.
7 ^samba3.blackbox.failure.failure # this is designed to fail, for testing our test infrastructure
8 .*driver.add_driver_timestamps # we only can store dates, not timestamps
9  ^samba3.smbtorture_s3.crypt_server\(nt4_dc\).SMB2-SESSION-REAUTH # expected to give ACCESS_DENIED SMB2.1 doesn't have encryption
10 ^samba3.smbtorture_s3.crypt_server\(nt4_dc\).SMB2-SESSION-RECONNECT # expected to give CONNECTION_DISCONNECTED, we need to fix the test
11 ^samba3.smbtorture_s3.plain.*SMB2-DIR-FSYNC.*\(ad_dc_ntvfs\)
12 ^samba3.smbtorture_s3.plain.*SMB2-PATH-SLASH.*\(ad_dc_ntvfs\)
13 ^samba3.smbtorture_s3.plain.LOCK11.*\(ad_dc_ntvfs\)
14 ^samba3.smb2.session enc.reconnect # expected to give CONNECTION_DISCONNECTED, we need to fix the test
15 ^samba3.raw.session enc # expected to give ACCESS_DENIED as SMB1 encryption isn't used
16 ^samba3.smbtorture_s3.crypt_server # expected to give ACCESS_DENIED as SMB1 encryption isn't used
17 ^samba3.smbtorture_s3.*.LOCK12.*\(fileserver_smb1\)
18 ^samba3.smbtorture_s3.*.LOCK12.*\(nt4_dc_smb1\)
19 ^samba3.nbt.dgram.*netlogon2\(nt4_dc\)
20 ^samba3.*rap.sam.*.useradd # Not provided by Samba 3
21 ^samba3.*rap.sam.*.userdelete # Not provided by Samba 3
22 ^samba3.libsmbclient.opendir # This requires a workgroup called 'WORKGROUP' and for netbios browse lists to have been registered
23 # see bug 8412
24 ^samba3.smb2.rename.*.simple_nodelete
25 ^samba3.smb2.rename.*.no_share_delete_no_delete_access
26 ^samba3.blackbox.smbclient_machine_auth.plain.*nt4_dc:local # the NT4 DC does not currently set up a self-join
27 ^samba3.raw.samba3hide.samba3hide\(ad_dc_smb1\) # This test fails against the ad_dc environment.
28 ^samba3.raw.samba3closeerr.samba3closeerr\(nt4_dc_smb1\) # This test fails against an smbd environment with NT ACLs enabled
29 ^samba3.raw.samba3closeerr.samba3closeerr\(fileserver_smb1\) # This test fails against an smbd environment with NT ACLs enabled
30 ^samba3.raw.acls nfs4acl_xattr-simple-40.INHERITFLAGS\(nt4_dc_smb1\) # This (and the follow nfs4acl_xattr tests fail because our NFSv4 backend isn't a complete mapping yet.
31 ^samba3.raw.acls nfs4acl_xattr-simple-40.create_owner_file\(nt4_dc_smb1\)
32 ^samba3.raw.acls nfs4acl_xattr-simple-40.create_owner_dir\(nt4_dc_smb1\)
33 ^samba3.raw.acls nfs4acl_xattr-simple-40.nulldacl\(nt4_dc_smb1\)
34 ^samba3.raw.acls nfs4acl_xattr-simple-41.create_owner_file\(nt4_dc_smb1\)
35 ^samba3.raw.acls nfs4acl_xattr-simple-41.create_owner_dir\(nt4_dc_smb1\)
36 ^samba3.raw.acls nfs4acl_xattr-simple-41.nulldacl\(nt4_dc_smb1\)
37 ^samba3.raw.acls nfs4acl_xattr-special-40.INHERITFLAGS\(nt4_dc_smb1\)
38 ^samba3.raw.acls nfs4acl_xattr-special-40.create_owner_file\(nt4_dc_smb1\)
39 ^samba3.raw.acls nfs4acl_xattr-special-40.create_owner_dir\(nt4_dc_smb1\)
40 ^samba3.raw.acls nfs4acl_xattr-special-40.nulldacl\(nt4_dc_smb1\)
41 ^samba3.raw.acls nfs4acl_xattr-special-40.inherit_creator_owner\(nt4_d_smb1\)
42 ^samba3.raw.acls nfs4acl_xattr-special-40.inherit_creator_group\(nt4_dc\)
43 ^samba3.raw.acls nfs4acl_xattr-xdr-40.INHERITFLAGS\(nt4_dc_smb1\)
44 ^samba3.raw.acls nfs4acl_xattr-xdr-40.create_owner_file\(nt4_dc_smb1\)
45 ^samba3.raw.acls nfs4acl_xattr-xdr-40.create_owner_dir\(nt4_dc_smb1\)
46 ^samba3.raw.acls nfs4acl_xattr-xdr-40.nulldacl\(nt4_dc_smb1\)
47 ^samba3.raw.acls nfs4acl_xattr-xdr-40.inherit_creator_owner\(nt4_dc_smb1\)
48 ^samba3.raw.acls nfs4acl_xattr-xdr-40.inherit_creator_group\(nt4_dc_smb1\)
49 ^samba3.raw.acls nfs4acl_xattr-xdr-41.create_owner_file\(nt4_dc_smb1\)
50 ^samba3.raw.acls nfs4acl_xattr-xdr-41.create_owner_dir\(nt4_dc_smb1\)
51 ^samba3.raw.acls nfs4acl_xattr-xdr-41.nulldacl\(nt4_dc_smb1\)
52 ^samba3.raw.acls nfs4acl_xattr-nfs-40.INHERITFLAGS\(nt4_dc_smb1\)
53 ^samba3.raw.acls nfs4acl_xattr-nfs-40.create_owner_file\(nt4_dc_smb1\)
54 ^samba3.raw.acls nfs4acl_xattr-nfs-40.create_owner_dir\(nt4_dc_smb1\)
55 ^samba3.raw.acls nfs4acl_xattr-nfs-40.nulldacl\(nt4_dc_smb1\)
56 ^samba3.raw.acls nfs4acl_xattr-nfs-40.inherit_creator_owner\(nt4_dc_smb1\)
57 ^samba3.raw.acls nfs4acl_xattr-nfs-40.inherit_creator_group\(nt4_dc_smb1\)
58 ^samba3.raw.acls nfs4acl_xattr-nfs-41.create_owner_file\(nt4_dc_smb1\)
59 ^samba3.raw.acls nfs4acl_xattr-nfs-41.create_owner_dir\(nt4_dc_smb1\)
60 ^samba3.raw.acls nfs4acl_xattr-nfs-41.nulldacl\(nt4_dc_smb1\)
61 ^samba3.base.delete.deltest16a
62 ^samba3.base.delete.deltest17a
63 ^samba3.unix.whoami anonymous connection.whoami\(ad_dc_smb1\) # We need to resolve if we should be including SID_NT_WORLD and SID_NT_NETWORK in this token
64 # smbclient4 behaves differently from smbclient (s3) when encountering
65 # logon failures when possesing a valid ticket. Test below has been
66 # changed to use smbclient (in order to support SMB2) and this part of the
67 # test fails due to this difference
68 ^samba4.blackbox.chgdcpass.Test login with kerberos ccache after 2nd password change\(chgdcpass\)
69 # these show that we still have some differences between our system
70 # with our internal iconv because it passes except when we bypass our
71 # internal iconv modules
72 ^samba4.local.convert_string_handle.system.iconv.gd_ascii
73 ^samba4.local.convert_string_handle.system.iconv.gd_iso8859_cp850
74 ^samba4..*base.delete.*.deltest17\(
75 ^samba4..*base.delete.*.deltest17b
76 ^samba4..*base.delete.*.deltest17c
77 ^samba4..*base.delete.*.deltest17e
78 ^samba4..*base.delete.*.deltest17f
79 ^samba4..*base.delete.*.deltest20a
80 ^samba4..*base.delete.*.deltest20b
81 ^samba4.raw.session.reauth
82 ^samba4.raw.session.expire1
83 ^samba4.raw.rename.*.osxrename
84 ^samba4.raw.rename.*.directory rename
85 ^samba4.rpc.winreg.*security
86 ^samba4.local.registry.(dir|ldb).check hive security
87 ^samba4.local.registry.local.security
88 ^samba4.rpc.wkssvc
89 ^samba4.rpc.handles.*.lsarpc-shared
90 ^samba4.rpc.epmapper
91 ^samba4.rpc.lsalookup on ncalrpc
92 ^samba4.rpc.lsalookup on ncacn_np
93 ^samba4.rpc.lsalookup with seal,padcheck
94 ^samba4.rpc.lsalookup with validate
95 ^samba4.rpc.lsalookup with bigendian
96 ^samba4.rpc.lsa on ncacn_np with seal # This gives NT_STATUS_LOCAL_USER_SESSION_KEY
97 ^samba4.rpc.lsa with seal # This gives NT_STATUS_LOCAL_USER_SESSION_KEY
98 ^samba4.rpc.lsa.secrets.*seal # This gives NT_STATUS_LOCAL_USER_SESSION_KEY
99 ^samba4.rpc.netlogon.*.LogonUasLogon
100 ^samba4.rpc.netlogon.*.LogonUasLogoff
101 ^samba4.rpc.netlogon.*.DatabaseSync
102 ^samba4.rpc.netlogon.*.DatabaseSync2
103 ^samba4.rpc.netlogon.*.NetrEnumerateTrustedDomains
104 ^samba4.rpc.netlogon.*.NetrEnumerateTrustedDomainsEx
105 ^samba4.rpc.netlogon.*.GetPassword
106 ^samba4.rpc.netlogon.*.DatabaseRedo
107 ^samba4.rpc.netlogon.*.netlogon.lsa_over_netlogon\(ad_dc\) #Broken by split of \\pipe\lsass from \\pipe\netlogon in the IDL
108 ^samba4.rpc.netlogon.*.netlogon.SetupCredentialsDowngrade\(ad_dc_ntvfs\) # Broken by allowing NT4 crypto on this environment
109 ^samba4.rpc.netlogon.*.netlogon.SetupCredentialsDowngrade\(ad_dc_ntvfs:local\) # Broken by allowing NT4 crypto on this environment
110 ^samba4.rpc.drsuapi.*ncacn_ip_tcp.*validate # should only work with seal
111 ^samba4.rpc.drsuapi.*ncacn_ip_tcp.*bigendian # should only work with seal
112 ^samba4.rpc.samr.passwords.validate.*ncacn_ip_tcp.*with.validate # should only work with seal
113 ^samba4.rpc.samr.passwords.validate.*ncacn_ip_tcp.*with.bigendian # should only work with seal
114 ^samba4.base.charset.*.Testing partial surrogate
115 ^samba4.smb2.charset.*.Testing partial surrogate # This test is currently broken
116 ^samba3.smb2.charset.*.Testing partial surrogate # This test is currently broken
117 ^samba4.*.base.maximum_allowed          # broken until we implement NTCREATEX_OPTIONS_BACKUP_INTENT
118 ^samba..*.smb2.maximum_allowed
119 .*net.api.delshare.*                            # DelShare isn't implemented yet
120 ^samba4.smb2.oplock.doc
121 ^samba4.smb2.lock.valid-request
122 ^samba4.raw.lock.multilock6.ad_dc_ntvfs
123 ^samba4.ldap.python \(ad_dc_default\).Test add_ldif\(\) with BASE64 security descriptor input using WRONG domain SID\(.*\)$
124 ^samba4.raw.lock.*.async # bug 6960
125 ^samba4.raw.open.ntcreatex_supersede
126 ^samba4.smb2.lock.*.multiple-unlock # bug 6959
127 ^samba4.raw.sfileinfo.*.end-of-file\(.*\)$ # bug 6962
128 ^samba4.raw.oplock.*.batch22 # bug 6963
129 ^samba4.raw.oplock.*.doc1
130 ^samba4.raw.oplock.*.exclusive5
131 ^samba4.raw.oplock.*.exclusive9
132 ^samba4.raw.oplock.*.level_ii_1
133 ^samba4.raw.lock.*.zerobyteread # bug 6974
134 ^samba4.smb2.lock.*.zerobyteread # bug 6974
135 ^samba4.raw.streams.*.delete
136 ^samba4.raw.streams.*.createdisp
137 ^samba4.raw.streams.*.sumtab
138 ^samba4.raw.streams.*.perms
139 ^samba4.raw.acls.INHERITFLAGS
140 ^samba4.raw.acls.*.create_dir
141 ^samba4.raw.acls.*.create_owner_dir
142 ^samba4.raw.acls.*.create_owner_file
143 ^samba4.smb2.create.*.acldir
144 ^samba4.smb2.create.*.impersonation
145 ^samba4.smb2.acls.*.generic
146 ^samba4.smb2.acls.*.inheritflags
147 ^samba4.smb2.acls.*.owner
148 ^samba4.smb2.acls.*.ACCESSBASED
149 ^samba4.ldap.dirsync.python.ad_dc_ntvfs..__main__.ExtendedDirsyncTests.test_dirsync_deleted_items
150 #^samba4.ldap.dirsync.python.ad_dc_ntvfs..__main__.ExtendedDirsyncTests.*
151 ^samba4.libsmbclient.opendir.(NT1|SMB3).opendir # This requires netbios browsing
152 ^samba4.rpc.drsuapi.*.drsuapi.DsGetDomainControllerInfo\(.*\)$
153 ^samba4.smb2.oplock.exclusive2\(.*\)$ # samba 4 oplocks are a mess
154 ^samba4.smb2.oplock.exclusive5\(.*\)$ # samba 4 oplocks are a mess
155 ^samba4.smb2.oplock.exclusive6\(.*\)$ # samba 4 oplocks are a mess
156 ^samba4.smb2.oplock.exclusive9\(.*\)$
157 ^samba4.smb2.oplock.brl3\(.*\)$ # samba 4 oplocks are a mess
158 ^samba4.smb2.oplock.levelii500\(.*\)$ # samba 4 oplocks are a mess
159 ^samba4.smb2.oplock.levelii502\(.*\)$ # samba 4 oplocks are a mess
160 ^samba4.smb2.oplock.brl1\(.*\)$ # samba 4 oplocks are a mess
161 ^samba4.smb2.oplock.batch22\(.*\)$ # samba 4 oplocks are a mess
162 ^samba4.smb2.oplock.batch19\(.*\)$ # samba 4 oplocks are a mess
163 ^samba4.smb2.oplock.batch12\(.*\)$ # samba 4 oplocks are a mess
164 ^samba4.smb2.oplock.batch11\(.*\)$ # samba 4 oplocks are a mess
165 ^samba4.smb2.oplock.batch1\(.*\)$ # samba 4 oplocks are a mess
166 ^samba4.smb2.oplock.batch6\(.*\)$ # samba 4 oplocks are a mess
167 ^samba4.smb2.oplock.batch9\(.*\)$ # samba 4 oplocks are a mess
168 ^samba4.smb2.oplock.batch9a\(.*\)$ # samba 4 oplocks are a mess
169 ^samba4.smb2.oplock.batch10\(.*\)$ # samba 4 oplocks are a mess
170 ^samba4.smb2.oplock.batch20\(.*\)$ # samba 4 oplocks are a mess
171 ^samba4.smb2.oplock.batch26\(.*\)$
172 ^samba4.smb2.oplock.stream1 # samba 4 oplocks are a mess
173 ^samba4.smb2.oplock.statopen1\(ad_dc_ntvfs\)$ # fails with ACCESS_DENIED on a SYNCHRONIZE_ACCESS open
174 ^samba4.smb2.getinfo.complex # streams on directories does not work
175 ^samba4.smb2.getinfo.qfs_buffercheck # S4 does not do the INFO_LENGTH_MISMATCH/BUFFER_OVERFLOW thingy
176 ^samba4.smb2.getinfo.qfile_buffercheck # S4 does not do the INFO_LENGTH_MISMATCH/BUFFER_OVERFLOW thingy
177 ^samba4.smb2.getinfo.qsec_buffercheck # S4 does not do the BUFFER_TOO_SMALL thingy
178 ^samba4.smb2.sharemode.sharemode-access
179 ^samba4.smb2.sharemode.access-sharemode
180 ^samba4.ntvfs.cifs.krb5.base.createx_access.createx_access\(.*\)$
181 ^samba4.rpc.lsa.forest.trust #Not fully provided by Samba4
182 ^samba4.blackbox.upgradeprovision.alpha13.ldapcmp_sd\(none\) # Due to something rewriting the NT ACL on DNS objects
183 ^samba4.blackbox.upgradeprovision.alpha13.ldapcmp_full_sd\(none\) # Due to something rewriting the NT ACL on DNS objects
184 ^samba4.blackbox.upgradeprovision.release-4-0-0.ldapcmp_sd\(none\) # Due to something rewriting the NT ACL on DNS objects
185 ^samba4.raw.read.readx\(ad_dc_ntvfs\) # fails readx 16bit alignment requirement
186 ^samba3.smb2.create.gentest
187 ^samba3.smb2.create.blob
188 ^samba3.smb2.create.open
189 ^samba3.smb2.notify.rec
190 ^samba3.smb2.durable-open.delete_on_close2
191 ^samba3.smb2.durable-v2-open.app-instance
192 ^samba3.smb2.durable-open.reopen1a-lease\(ad_dc\)$
193 ^samba3.smb2.durable-v2-open.reopen1a-lease\(ad_dc\)$
194 ^samba4.smb2.ioctl.req_resume_key\(ad_dc_ntvfs\) # not supported by s4 ntvfs server
195 ^samba4.smb2.ioctl.req_two_resume_keys\(ad_dc_ntvfs\) # not supported by s4 ntvfs server
196 ^samba4.smb2.ioctl.copy_chunk_\w*\(ad_dc_ntvfs\)        # not supported by s4 ntvfs server
197 ^samba4.smb2.ioctl.copy-chunk streams\(ad_dc_ntvfs\) # not supported by s4 ntvfs server
198 ^samba3.smb2.dir.one
199 ^samba3.smb2.dir.modify
200 ^samba3.smb2.oplock.batch20
201 ^samba3.smb2.oplock.stream1
202 ^samba3.smb2.streams.rename
203 ^samba3.smb2.streams.rename2
204 ^samba3.smb2.streams.attributes
205 ^samba3.smb2.streams streams_xattr.rename\(nt4_dc\)
206 ^samba3.smb2.streams streams_xattr.rename2\(nt4_dc\)
207 ^samba3.smb2.streams streams_xattr.attributes\(nt4_dc\)
208 ^samba3.smb2.getinfo.complex
209 ^samba3.smb2.getinfo.fsinfo # quotas don't work yet
210 ^samba3.smb2.setinfo.setinfo
211 ^samba3.smb2.session.*reauth5 # some special anonymous checks?
212 ^samba3.smb2.compound.interim2 # wrong return code (STATUS_CANCELLED)
213 ^samba3.smb2.compound.aio.interim2 # wrong return code (STATUS_CANCELLED)
214 ^samba3.smb2.replay.replay3 # This requires multi-chanel
215 ^samba3.smb2.replay.replay4 # This requires multi-chanel
216 ^samba3.smb2.lock.replay_smb3_specification # This requires multi-chanel or durable handles
217 ^samba3.smb2.lock.*replay_broken_windows # This tests the windows behaviour
218 ^samba3.smb2.lease.statopen3
219 ^samba3.smb2.lease.unlink # we currently do not downgrade RH lease to R after unlink
220 ^samba3.smb2.multichannel
221 ^samba4.smb2.ioctl.compress_notsup.*\(ad_dc_ntvfs\)
222 ^samba3.raw.session.*reauth2 # maybe fix this?
223 ^samba3.rpc.lsa.secrets.seal # This gives NT_STATUS_LOCAL_USER_SESSION_KEY
224 ^samba3.rpc.samr.passwords.badpwdcount.samr.badPwdCount\(nt4_dc\) # We fail this test currently
225 ^samba3.rpc.samr.passwords.lockout.*\(nt4_dc\)$ # We fail this test currently
226 ^samba3.rpc.spoolss.printer.addprinter.driver_info_winreg # knownfail or flapping?
227 ^samba3.rpc.spoolss.printer.addprinterex.driver_info_winreg # knownfail or flapping?
228 ^samba3.rpc.spoolss.printer.*.publish_toggle\(.*\)$ # needs spoolss AD member env
229 ^samba3.rpc.spoolss.printer.*.log_jobinfo\(.*\)$ # not implemented yet
230 ^samba3.rpc.spoolss.printserver.*.addpermachineconnection\(.*\)$ # not implemented yet
231 ^samba3.rpc.spoolss.printserver.*.add_processor\(.*\)$
232 ^samba3.rpc.spoolss.printserver.*.get_core_printer_drivers\(.*\)$
233 ^samba3.rpc.spoolss.printserver.*.get_printer_driver_package_path\(.*\)$
234 ^samba4.rpc.fsrvp       # fsrvp server only provided by smbd
236 # The following tests fail against ad_dc (aka s3fs) currently.
237 # These need to be examined and either fixed or correctly categorised.
238 # but in the interests of ensuring we do not regress, we run the tests
239 # and list the current failures here.
241 ^samba3.rpc.eventlog.eventlog.GetLogIntormation\(ad_dc\)
242 ^samba3.rpc.eventlog.eventlog.FlushEventLog\(ad_dc\)
243 ^samba3.rpc.eventlog.eventlog.ReportEventLog\(ad_dc\)
244 ^samba3.rpc.eventlog.eventlog.ReadEventLog\(ad_dc\)
245 ^samba3.rpc.eventlog.eventlog.GetNumRecords\(ad_dc\)
246 ^samba3.rpc.eventlog.eventlog.OpenEventLog\(ad_dc\)
247 ^samba3.rap.basic.netsessiongetinfo\(ad_dc_smb1\)
248 # not implemented
249 ^samba3.rpc.svcctl.svcctl.ChangeServiceConfigW\(ad_dc\)
250 ^samba3.rpc.svcctl.svcctl.ChangeServiceConfigW\(nt4_dc\)
252 # This makes less sense when not running against an AD DC
254 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -U against ad_member
255 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -G against ad_member
256 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -U check for sane mapping
257 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -G check for sane mapping
258 ^samba.wbinfo_simple.allocate-uid.wbinfo\(ad_dc_ntvfs:local\)
259 ^samba.wbinfo_simple.allocate-gid.wbinfo\(ad_dc_ntvfs:local\)
260 ^samba.wbinfo_simple.allocate-uid.wbinfo\(s4member:local\)
261 ^samba.wbinfo_simple.allocate-gid.wbinfo\(s4member:local\)
262 ^samba.wbinfo_simple.allocate-uid.wbinfo\(ad_dc:local\)
263 ^samba.wbinfo_simple.allocate-gid.wbinfo\(ad_dc:local\)
264 ^samba.wbinfo_simple.allocate-uid.wbinfo\(chgdcpass:local\)
265 ^samba.wbinfo_simple.allocate-gid.wbinfo\(chgdcpass:local\)
266 ^samba.wbinfo_simple.allocate-uid.wbinfo\(rodc:local\)
267 ^samba.wbinfo_simple.allocate-gid.wbinfo\(rodc:local\)
269 # These do not work against winbindd in member mode for unknown reasons
271 ^samba4.winbind.struct.domain_info\(s4member:local\)
272 ^samba4.winbind.struct.getdcname\(s4member:local\)
274 # These fail since ad_dc_ntvfs assigns the local user's uid to SAMBADOMAIN/Administrator
275 # hence we have a duplicate UID in nsswitch.
277 ^samba3.local.nss.reentrant enumeration crosschecks\(ad_dc_ntvfs:local\)
278 ^samba3.local.nss.reentrant enumeration\(ad_dc_ntvfs:local\)
279 ^samba3.local.nss.enumeration\(ad_dc_ntvfs:local\)
280 ^samba3.local.nss.reentrant enumeration crosschecks\(ad_dc:local\)
281 ^samba3.local.nss.reentrant enumeration\(ad_dc:local\)
282 ^samba3.local.nss.enumeration\(ad_dc:local\)
284 # These do not work against winbindd in member mode for unknown reasons
286 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -U against ad_member\(ad_member:local\)
287 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -U check for sane mapping\(ad_member:local\)
288 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -G against ad_member\(ad_member:local\)
289 ^samba.blackbox.wbinfo\(ad_member:local\).wbinfo -G check for sane mapping\(ad_member:local\)
290 ^samba4.winbind.struct.getdcname\(ad_member:local\)
291 ^samba4.winbind.struct.lookup_name_sid\(ad_member:local\)
292 ^samba4.winbind.struct.getdcname\(nt4_member:local\) # Works in other modes, just not against the classic/NT4 DC
294 # Differences in our KDC compared to windows
296 ^samba4.krb5.kdc .*.as-req-pac-request # We should reply to a request for a PAC over UDP with KRB5KRB_ERR_RESPONSE_TOO_BIG unconditionally
298 # This will fail against the classic DC, because it requires kerberos
300 ^samba4.winbind.pac.*\(nt4_member:local\) # No KDC on a classic DC
302 # This fails because our python bindings create python Lists, not a type
303 # we can watch for set methods on.
305 ^samba.tests.dcerpc.integer.samba.tests.dcerpc.integer.IntegerTests.test_.*_into_uint8_list
307 # Samba sort takes a primative approach to unicode sort. These tests
308 # match Windows 2012R2 behaviour.
310 ^samba4.ldap.sort.python.+UnicodeSortTests
312 ## We assert all "ldap server require strong auth" combinations
314 ^samba4.ldb.simple.ldap with SIMPLE-BIND.*ad_dc_ntvfs # ldap server require strong auth = allow_sasl_over_tls
315 ^samba4.ldb.simple.ldap with SIMPLE-BIND.*fl2003dc    # ldap server require strong auth = yes
316 ^samba4.ldb.simple.ldaps with SASL-BIND.*fl2003dc     # ldap server require strong auth = yes
317 # These are supposed to fail as we want to verify the "tls verify peer"
318 # restrictions. Note that fl2008r2dc uses a self-signed certificate
319 # with does not have a crl file.
321 ^samba4.ldb.simple.ldaps.*SERVER_NAME.*tlsverifypeer=ca_and_name_if_available\(
322 ^samba4.ldb.simple.ldaps.*SERVER_NAME.*tlsverifypeer=ca_and_name\(
323 ^samba4.ldb.simple.ldaps.*SERVER_NAME.*tlsverifypeer=as_strict_as_possible\(
324 ^samba4.ldb.simple.ldaps.*SERVER_IP.*tlsverifypeer=ca_and_name\(
325 ^samba4.ldb.simple.ldaps.*SERVER_IP.*tlsverifypeer=as_strict_as_possible\(
326 ^samba4.ldb.simple.ldaps.*SERVER.REALM.*tlsverifypeer=as_strict_as_possible.*fl2008r2dc
328 # we don't allow auth_level_connect anymore...
330 ^samba3.blackbox.rpcclient.*ncacn_np.*with.*connect.*rpcclient # we don't allow auth_level_connect anymore
331 ^samba.tests.dns.__main__.TestComplexQueries.test_cname_two_chain_not_matching_qtype
332 # ad_dc requires signing
334 ^samba4.smb.signing.*disabled.*signing=off.*\(ad_dc\)
335 # fl2000dc doesn't support AES
336 ^samba4.krb5.kdc.*as-req-aes.*fl2000dc
337 # nt4_member and ad_member don't support ntlmv1 (not even over SMB1)
338 ^samba3.blackbox.smbclient_auth.plain.*option=clientntlmv2auth=no.member.creds.*as.user.*_member
339 ^samba3.blackbox.smbclient_auth.plain.*option=clientntlmv2auth=no.*mNT1.member.creds.*as.user.*_member
340 #nt-vfs server blocks read with execute access
341 ^samba4.smb2.read.access
342 #ntvfs server blocks copychunk with execute access on read handle
343 ^samba4.smb2.ioctl.copy_chunk_bad_access
344 ^samba4.drs.getnc_exop.python.*getnc_exop.DrsReplicaPrefixMapTestCase.test_regular_prefix_map_ex_attid.*
345 # We don't support NDR64 yet, so we generate the wrong FAULT code
346 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_no_auth_presentation_ctx_invalid4
347 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_spnego_change_auth_type2
348 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_spnego_change_transfer
349 # Association groups not implemented yet in s3 server implementation
350 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_assoc_group_fail1\(ad_member\)
351 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_assoc_group_fail2\(ad_member\)
352 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_assoc_group_fail3\(ad_member\)
353 ^samba.tests.dcerpc.raw_protocol.*.TestDCERPC_BIND.test_assoc_group_diff1\(ad_member\)
354 ^samba4.rpc.echo.*on.*with.object.echo.doublepointer.*nt4_dc
355 ^samba4.rpc.echo.*on.*with.object.echo.surrounding.*nt4_dc
356 ^samba4.rpc.echo.*on.*with.object.echo.enum.*nt4_dc
357 ^samba4.rpc.echo.*on.*with.object.echo.testcall.*nt4_dc
358 ^samba4.rpc.echo.*on.*with.object.echo.testcall2.*nt4_dc
359 ^samba4.rpc.echo.*on.*ncacn_ip_tcp.*with.object.*nt4_dc
360 ^samba.tests.dcerpc.dnsserver.samba.tests.dcerpc.dnsserver.DnsserverTests.test_add_duplicate_different_type.*
361 ^samba.tests.dcerpc.dnsserver.samba.tests.dcerpc.dnsserver.DnsserverTests.test_rank_none.*
362 ^samba.tests.dcerpc.dnsserver.samba.tests.dcerpc.dnsserver.DnsserverTests.test_security_descriptor.*
363 ^samba.tests.dcerpc.dnsserver.python3.samba.tests.dcerpc.dnsserver.DnsserverTests.test_add_duplicate_different_type.*
364 ^samba.tests.dcerpc.dnsserver.python3.samba.tests.dcerpc.dnsserver.DnsserverTests.test_rank_none.*
365 ^samba.tests.dcerpc.dnsserver.python3.samba.tests.dcerpc.dnsserver.DnsserverTests.test_security_descriptor.*
366 ^samba.tests.dcerpc.dnsserver.python2.samba.tests.dcerpc.dnsserver.DnsserverTests.test_add_duplicate_different_type.*
367 ^samba.tests.dcerpc.dnsserver.python2.samba.tests.dcerpc.dnsserver.DnsserverTests.test_rank_none.*
368 ^samba.tests.dcerpc.dnsserver.python2.samba.tests.dcerpc.dnsserver.DnsserverTests.test_security_descriptor.*
369 ^samba4.blackbox.dbcheck-links.release-4-5-0-pre1.dbcheck_dangling_multi_valued_clean
370 ^samba4.blackbox.dbcheck-links.release-4-5-0-pre1.dangling_multi_valued_check_missing
372 # rap password tests don't function in the ad_dc_ntvfs environment
374 ^samba.tests.auth_log_pass_change.samba.tests.auth_log_pass_change.AuthLogPassChangeTests.test_rap_change_password\(ad_dc_ntvfs\)
375 # We currently don't send referrals for LDAP modify of non-replicated attrs
376 ^samba4.ldap.rodc.python\(rodc\).__main__.RodcTests.test_modify_nonreplicated.*
377 ^samba4.ldap.rodc_rwdc.python.*.__main__.RodcRwdcTests.test_change_password_reveal_on_demand_kerberos
378 # NETLOGON is disabled in any non-DC environments
379 ^samba.tests.netlogonsvc.python\(ad_member\)
380 ^samba.tests.netlogonsvc.python\(simpleserver\)
381 ^samba.tests.netlogonsvc.python\(fileserver\)
382 # NTLM authentication is (intentionally) disabled in ktest
383 ^samba.tests.ntlmdisabled.python\(ktest\).ntlmdisabled.NtlmDisabledTests.test_ntlm_connection\(ktest\)
384 ^samba.tests.ntlmdisabled.python\(ad_dc_no_ntlm\).ntlmdisabled.NtlmDisabledTests.test_samr_change_password\(ad_dc_no_ntlm\)
385 ^samba.tests.ntlmdisabled.python\(ktest\).python3.ntlmdisabled.NtlmDisabledTests.test_ntlm_connection\(ktest\)
386 ^samba.tests.ntlmdisabled.python\(ad_dc_no_ntlm\).python3.ntlmdisabled.NtlmDisabledTests.test_samr_change_password\(ad_dc_no_ntlm\)
387 ^samba.tests.ntlmdisabled.python\(ktest\).python2.ntlmdisabled.NtlmDisabledTests.test_ntlm_connection\(ktest\)
388 ^samba.tests.ntlmdisabled.python\(ad_dc_no_ntlm\).python2.ntlmdisabled.NtlmDisabledTests.test_samr_change_password\(ad_dc_no_ntlm\)
389 # Disabling NTLM means you can't use samr to change the password
390 ^samba.tests.ntlmdisabled.python\(ktest\).ntlmdisabled.NtlmDisabledTests.test_samr_change_password\(ktest\)
391 ^samba.tests.ntlmdisabled.python\(ad_dc_no_ntlm\).ntlmdisabled.NtlmDisabledTests.test_ntlm_connection\(ad_dc_no_ntlm\)
392 ^samba.tests.ntlmdisabled.python\(ktest\).python3.ntlmdisabled.NtlmDisabledTests.test_samr_change_password\(ktest\)
393 ^samba.tests.ntlmdisabled.python\(ktest\).python2.ntlmdisabled.NtlmDisabledTests.test_samr_change_password\(ktest\)
394 ^samba.tests.ntlmdisabled.python\(ad_dc_no_ntlm\).python3.ntlmdisabled.NtlmDisabledTests.test_ntlm_connection\(ad_dc_no_ntlm\)
395 ^samba.tests.ntlmdisabled.python\(ad_dc_no_ntlm\).python2.ntlmdisabled.NtlmDisabledTests.test_ntlm_connection\(ad_dc_no_ntlm\)