Blame SOURCES/0011-library-add-lookup_domain_sid.patch

2e5ed6
From 3fa854b1439c039a2250cb24efadae6a66b0e9da Mon Sep 17 00:00:00 2001
2e5ed6
From: Sumit Bose <sbose@redhat.com>
2e5ed6
Date: Tue, 30 Jan 2018 14:40:46 +0100
2e5ed6
Subject: [PATCH 11/23] library: add lookup_domain_sid()
2e5ed6
2e5ed6
Read the domain SID from the default naming context AD object and store
2e5ed6
it in adcli_conn.
2e5ed6
2e5ed6
https://bugs.freedesktop.org/show_bug.cgi?id=100118
2e5ed6
2e5ed6
Reviewed-by: Jakub Hrozek <jhrozek@redhat.com>
2e5ed6
---
2e5ed6
 library/adconn.c | 28 ++++++++++++++++++++++++++++
2e5ed6
 1 file changed, 28 insertions(+)
2e5ed6
2e5ed6
diff --git a/library/adconn.c b/library/adconn.c
2e5ed6
index 67bdfd9..6b84b88 100644
2e5ed6
--- a/library/adconn.c
2e5ed6
+++ b/library/adconn.c
2e5ed6
@@ -72,6 +72,7 @@ struct _adcli_conn_ctx {
2e5ed6
 	char *domain_controller;
2e5ed6
 	char *canonical_host;
2e5ed6
 	char *domain_short;
2e5ed6
+	char *domain_sid;
2e5ed6
 	adcli_disco *domain_disco;
2e5ed6
 	char *default_naming_context;
2e5ed6
 	char *configuration_naming_context;
2e5ed6
@@ -1068,6 +1069,32 @@ lookup_short_name (adcli_conn *conn)
2e5ed6
 	}
2e5ed6
 }
2e5ed6
 
2e5ed6
+static void
2e5ed6
+lookup_domain_sid (adcli_conn *conn)
2e5ed6
+{
2e5ed6
+	char *attrs[] = { "objectSid", NULL, };
2e5ed6
+	LDAPMessage *results;
2e5ed6
+	int ret;
2e5ed6
+
2e5ed6
+	free (conn->domain_sid);
2e5ed6
+	conn->domain_sid = NULL;
2e5ed6
+
2e5ed6
+	ret = ldap_search_ext_s (conn->ldap, conn->default_naming_context, LDAP_SCOPE_BASE,
2e5ed6
+	                         NULL, attrs, 0, NULL, NULL, NULL, -1, &results);
2e5ed6
+	if (ret == LDAP_SUCCESS) {
2e5ed6
+		conn->domain_sid = _adcli_ldap_parse_sid (conn->ldap, results, "objectSid");
2e5ed6
+		ldap_msgfree (results);
2e5ed6
+
2e5ed6
+		if (conn->domain_sid)
2e5ed6
+			_adcli_info ("Looked up domain SID: %s", conn->domain_sid);
2e5ed6
+		else
2e5ed6
+			_adcli_err ("No domain SID found");
2e5ed6
+	} else {
2e5ed6
+		_adcli_ldap_handle_failure (conn->ldap, ADCLI_ERR_DIRECTORY,
2e5ed6
+		                            "Couldn't lookup domain SID");
2e5ed6
+	}
2e5ed6
+}
2e5ed6
+
2e5ed6
 static void
2e5ed6
 conn_clear_state (adcli_conn *conn)
2e5ed6
 {
2e5ed6
@@ -1148,6 +1175,7 @@ adcli_conn_connect (adcli_conn *conn)
2e5ed6
 		return res;
2e5ed6
 
2e5ed6
 	lookup_short_name (conn);
2e5ed6
+	lookup_domain_sid (conn);
2e5ed6
 	return ADCLI_SUCCESS;
2e5ed6
 }
2e5ed6
 
2e5ed6
-- 
2e5ed6
2.14.4
2e5ed6