s3-winbindd: set the can_do_validation6 also for trusted domain
authorMatthieu Patou <mat@matws.net>
Fri, 10 Feb 2012 19:45:21 +0000 (11:45 -0800)
committerKarolin Seeger <kseeger@samba.org>
Tue, 28 Feb 2012 19:51:17 +0000 (20:51 +0100)
commit6c1501a8efd49efb7b9f5c75963c2f1124e7e258
tree930f2bc4994636714454d88977f189f8f9eb8438
parent12b60f9688cb64fbfce729b3555ab75a71fbb949
s3-winbindd: set the can_do_validation6 also for trusted domain

The flag can_do_validation6 was only set for the domain to which
winbindd is the member. Setting this flag in other domains (trusted
domain) if it's active directory domain is a good idea as it allow to do
level 6 validation also when winbindd is querying them directly.
(cherry picked from commit 05036fab0a9847219c73c0abd931a39fba0bccfd)

Address bug #8599 (WINBINDD_PAM_AUTH_CRAP returns invalid user session key).
(cherry picked from commit 01747a5554839f21992b8845328c4b08c3dd8ff8)
source3/winbindd/winbindd_cm.c