[PATCH] AuthRewrite, including NTLMv2

Andrew Bartlett abartlet at pcug.org.au
Sun Jul 8 15:04:53 GMT 2001


Andrew Bartlett wrote:
> 
> Attached is the latest in the Authentication Rewrite series, this one
> following the document I posted to samba-technial on the subject a
> little while back.
 
> This code attempts to keep existing behavior as much as possible, and is
> tested for user and share level security for smbclient logins.

This patch is now also tested for server level security.

> Once I get this mess dealt with I will study the interaction between
> this code and the password changing code, and I would like to deal with
> this in a similar way, giving the same abstract interface.  In
> particular I would like the ability to forward password changes to
> another server where appropriate.

I'm also looking at the prospect of handing all domain authentication
via winbind - which would allow us to caching of the connection and the
like.
 
> I also intend to do some things to clean up, and in particular I need to
> add support for a pamh to be kept across calls using the server_info
> struct.
> 
> This code also breaks things:  In particular it breaks winbind, which I
> will fix before a final commit.

While I haven't tested it yet (this is another iterim installment) this
version should not break winbind.

The patch itself is at samba-patches, but it isn't responding at the
moment, so I don't have the URL...

Andrew Bartlett

-- 
Andrew Bartlett
abartlet at pcug.org.au
abartlet at samba.org




More information about the samba-technical mailing list