The MS-NRPC document does not specify the linkage to the backing store
for any of it's operations. 

For example, the NetServerAuthenticate3 query talks only about client
computer accounts, but in 2.2.1.3.12 NETLOGON_SECURE_CHANNEL_TYPE,
interdomain trust accounts are described.

It makes sense that these both refer to computer and domain trust
accounts found under cn=users, but this is not specified, nor are the
attributes used specified.

Similarly, the NetrSetPassword2 call sets a trust account password, but
the operation of this call - what LDAP/DRS visible attribute it changes
- are not specified.

Please start with these, but to also note that, the 3.5.4.5.2
NetrDatabaseSync{,2} calls need the same level of specification.

These are just examples - like in my request regarding LSA, can you
please clarify for the whole document which protocol buffers line up
with which objects and attributes in the underlying database. 

Thanks,

Andrew Bartlett
-- 
Andrew Bartlett
http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
cifs-protocol mailing list
[email protected]
https://lists.samba.org/mailman/listinfo/cifs-protocol

Reply via email to