Bug 2874 - Password change -- Wbinfo and Winbind allow BOTH OLD & NEW passwords to work..

Andrew Bartlett abartlet at samba.org
Mon Oct 3 21:30:42 GMT 2005


On Mon, 2005-10-03 at 13:11 -0700, Jeremy Allison wrote:
> On Mon, Oct 03, 2005 at 04:00:17PM -0400, Brian Moran wrote:
> > One of our employees is seeing that BOTH old and new passwords work just
> > after he's changed his password on the domain...
> > 
> >  
> > Looks like this is the same as 2874. What additional information is
> > required to verify and squash this one?
> 
> Debug level 10 log from winbindd. I wonder if it's authenticating
> against a pdc and bdc which haven't replicated yet, or it's password
> history....

That will be the bit to test, I'll see if I can add it to my
RPC-SAMLOGON test.

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Samba Developer, SuSE Labs, Novell Inc.        http://suse.de
Authentication Developer, Samba Team           http://samba.org
Student Network Administrator, Hawker College  http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20051004/6a3af947/attachment.bin


More information about the samba-technical mailing list