One old, one new (rather long)

Andy Bakun abakun at reac.com
Thu Jul 15 18:42:43 GMT 1999


This looks like something I described back in November when I was working on the
restrict anonymous parameter.  Here's a link to the original message.

http://us1.samba.org/listproc/samba-technical/1856.html

It concerns the domain name being interpreted as the NativeOS and why this is (as
far as I could determine) because of the password lengths used when the password
is empty.

Luke Kenneth Casson Leighton wrote:

> > [1999/07/15 02:38:40, 10] lib/util.c:dump_data(2990)
> >   [000] 00 00 57 48 4E 45 54 00  57 69 6E 64 6F 77 73 20  ..WHNET. Windows
> >   [010] 34 2E 30 00 57 69 6E 64  6F 77 73 20 34 2E 30 00  4.0.Wind ows 4.0.
> > [1999/07/15 02:38:40, 3] smbd/process.c:switch_message(402)
> >   switch message SMBsesssetupX (pid 4104)
> > [1999/07/15 02:38:40, 3] smbd/reply.c:reply_sesssetup_and_X(640)
> >   Domain=[]  NativeOS=[WHNET] NativeLanMan=[Windows 4.0]
> > [1999/07/15 02:38:40, 3] smbd/reply.c:reply_sesssetup_and_X(643)
> >   sesssetupX:name=[]
>
> great, thanks for comparative traces.
>
> *ah*, ok: this is a NULL auth, where the password of NULL is placed in the
> data stream. *dur* :-)



More information about the samba-ntdom mailing list