s3-winbindd: set the can_do_validation6 also for trusted domain
authorMatthieu Patou <mat@matws.net>
Fri, 10 Feb 2012 19:45:21 +0000 (11:45 -0800)
committerKarolin Seeger <kseeger@samba.org>
Tue, 28 Feb 2012 19:49:42 +0000 (20:49 +0100)
commit01747a5554839f21992b8845328c4b08c3dd8ff8
tree6017aea1fdeead9ea6c3218a8a026660468997c0
parenta0d51949abde68134eb35150d797387a1fb57ab7
s3-winbindd: set the can_do_validation6 also for trusted domain

The flag can_do_validation6 was only set for the domain to which
winbindd is the member. Setting this flag in other domains (trusted
domain) if it's active directory domain is a good idea as it allow to do
level 6 validation also when winbindd is querying them directly.
(cherry picked from commit 05036fab0a9847219c73c0abd931a39fba0bccfd)

Address bug #8599 (WINBINDD_PAM_AUTH_CRAP returns invalid user session key).
source3/winbindd/winbindd_cm.c