[Samba] Low performance when using "server signing" = "mandatory"

Georg Weickelt georg.weickelt at ibedelmann.de
Tue Oct 17 07:25:31 UTC 2023


Hi,

loot at https://www.samba.org/samba/security/CVE-2016-2114.html

Georg

Am 17.10.2023 um 08:55 schrieb Adam Błaszczykowski via samba:
> Hi,
> If I update the Samba server version to the latest one, set the "server
> signing = default" parameter and the "server role = standalone" parameter,
> will my server be vulnerable to CVE-2016-2114?
>
> Thank you.
>
> pon., 16 paź 2023 o 16:50 Rowland Penny via samba <samba at lists.samba.org>
> napisał(a):
>
>> On Mon, 16 Oct 2023 15:13:49 +0200
>> Adam Błaszczykowski via samba <samba at lists.samba.org> wrote:
>>
>>> Hello,
>>> I'm experiencing very slow read/write performance, about 20 MB/s, on
>>> Samba share when I configure the "server signing" option as
>>> "mandatory". Once I set "server signing" to "default", the read/write
>>> performance returns to average speed about 800 MB/s.
>>> I am using Samba 4.9.4 on server with Intel Xeon CPU E5-2690 0 @
>>> 2.90GHz (32 threads) and 10 Gbit ethernet controller.
>>> I need to set "mandatory" value for security reasons, but the
>>> performance is unacceptable. How to solve this problem ?
>> Hmm, you need to set a parameter for security reasons, but you are quite
>> prepared to continue using a 5 year old, EOL version of Samba, a
>> version that quite likely contains numerous CVE's that have been
>> fixed in later versions ????
>>
>> What OS is this on ?
>>
>> Rowland
>>
>> --
>> To unsubscribe from this list go to the following URL and read the
>> instructions:  https://lists.samba.org/mailman/options/samba
>>



More information about the samba mailing list