]> git.pld-linux.org Git - packages/MigrationTools.git/blob - MigrationTools-smbkrb5.patch
- parse smbpasswd, properly set other samba fields
[packages/MigrationTools.git] / MigrationTools-smbkrb5.patch
1 diff -ur MigrationTools-47/migrate_common.ph MigrationTools-47-krb5/migrate_common.ph
2 --- MigrationTools-47/migrate_common.ph 2009-06-22 16:16:02.730586333 +0200
3 +++ MigrationTools-47-krb5/migrate_common.ph    2009-06-22 16:15:55.070581897 +0200
4 @@ -120,6 +120,11 @@
5  #      $DEFAULT_REALM = $DEFAULT_MAIL_DOMAIN;
6  #      $DEFAULT_REALM =~ tr/a-z/A-Z/;
7  #}
8 +
9 +# Default SMB SID (must be non-empty string)
10 +#if ($EXTENDED_SCHEMA) {
11 +#      $DEFAULT_SMB_SID = "";
12 +#}
13  
14  if (-x "/usr/sbin/revnetgroup") {
15         $REVNETGROUP = "/usr/sbin/revnetgroup";
16 diff -ur MigrationTools-47/migrate_passwd.pl MigrationTools-47-krb5/migrate_passwd.pl
17 --- MigrationTools-47/migrate_passwd.pl 2009-06-22 16:16:02.850581340 +0200
18 +++ MigrationTools-47-krb5/migrate_passwd.pl    2009-06-22 16:13:13.997264191 +0200
19 @@ -50,6 +52,7 @@
20         exit 1;
21  }
22  
23 +$do_samba = 0;
24  while ($ARGV[0] =~ /^--.*/) {
25         if ($ARGV[0] eq "--minuid") {
26                 $minuid = $ARGV[1];
27 @@ -57,13 +60,22 @@
28         } elsif ($ARGV[0] eq "--maxuid") {
29                 $maxuid = $ARGV[1];
30                 shift ; shift;
31 +       } elsif ($ARGV[0] eq "--samba") {
32 +               $do_samba = 1;
33 +               shift;
34         } else {
35                 shift;
36         }
37  }
38  
39 +if ($do_samba && !defined($DEFAULT_SMB_SID)) {
40 +       print STDERR "You must set \$DEFAULT_SMB_SID in /etc/openldap/migrate_common.ph to migrate smbpasswd\n";
41 +       exit 2;
42 +}
43 +
44  &parse_args();
45  &read_shadow_file();
46 +if ($do_samba) { &read_samba(); }
47  &open_files();
48  
49  while(<INFILE>)
50 @@ -138,7 +150,23 @@
51         print $HANDLE "objectClass: top\n";
52  
53         if ($DEFAULT_REALM) {
54 -               print $HANDLE "objectClass: kerberosSecurityObject\n";
55 +               print $HANDLE "objectClass: krb5Principal\n";
56 +               print $HANDLE "objectClass: krb5KDCEntry\n";
57 +               print $HANDLE "krb5PrincipalName: $user\@$DEFAULT_REALM\n";
58 +               print $HANDLE "krb5KeyVersionNumber: 0\n";
59 +       }
60 +
61 +       if ($DEFAULT_SMB_SID) {
62 +               print $HANDLE "objectClass: sambaSamAccount\n";
63 +               print $HANDLE "displayName: $cn\n";
64 +               print $HANDLE "sambaSID: $DEFAULT_SMB_SID-$uid\n";
65 +               print $HANDLE "sambaPrimaryGroupSID: $DEFAULT_SMB_SID-$gid\n";
66 +               if ($do_samba) {
67 +                       print $HANDLE "sambaLMPassword: ".$sambaUsers{$user}->{"sambaLMPassword"}."\n";
68 +                       print $HANDLE "sambaNTPassword: ".$sambaUsers{$user}->{"sambaNTPassword"}."\n";
69 +                       print $HANDLE "sambaAcctFlags: ".$sambaUsers{$user}->{"sambaAcctFlags"}."\n";
70 +                       print $HANDLE "sambaPwdLastSet: ".$sambaUsers{$user}->{"sambaPwdLastSet"}."\n";
71 +               }
72         }
73  
74         if ($shadowUsers{$user} ne "") {
75 @@ -147,10 +175,6 @@
76                 print $HANDLE "userPassword: {crypt}$pwd\n";
77         }
78  
79 -       if ($DEFAULT_REALM) {
80 -               print $HANDLE "krbName: $user\@$DEFAULT_REALM\n";
81 -       }
82 -
83         if ($shell) {
84                 print $HANDLE "loginShell: $shell\n";
85         }
86 @@ -226,3 +250,16 @@
87         }
88  }
89  
90 +sub read_samba
91 +{
92 +       open(INPUT, "</etc/samba/smbpasswd");
93 +       while (<INPUT>) {
94 +               my ($sambaUser, $id, $lmp, $ntp, $f, $lf, $xxx) = split(':');
95 +               $sambaUsers{$sambaUser}->{"sambaLMPassword"} = $lmp;
96 +               $sambaUsers{$sambaUser}->{"sambaNTPassword"} = $ntp;
97 +               $sambaUsers{$sambaUser}->{"sambaAcctFlags"} = $f;
98 +               $lf =~ s/^LCT-//;
99 +               $sambaUsers{$sambaUser}->{"sambaPwdLastSet"} = hex($lf);
100 +       }
101 +       close(INPUT);
102 +}
This page took 0.104317 seconds and 3 git commands to generate.