Don't expose passwords, even to the administrator.
authorAndrew Bartlett <abartlet@samba.org>
Mon, 8 Sep 2008 01:09:02 +0000 (11:09 +1000)
committerAndrew Bartlett <abartlet@samba.org>
Mon, 8 Sep 2008 01:09:02 +0000 (11:09 +1000)
commitfa3f3bab33001770a9d7e33875bf212636f6c128
tree8a2168040eb0233fd2c89d55c77f73b4d29577a7
parentd87b655e20b7c38756774cec2e5898af38c46786
Don't expose passwords, even to the administrator.

This ensures they don't leak over LDAP, but does not prevent access,
as ldbsearch locally still bypasses these controls.

Andrew Bartlett
source/dsdb/samdb/ldb_modules/kludge_acl.c