svn commit: samba r17612 - in branches/SAMBA_3_0/source: include libsmb

Andrew Bartlett abartlet at samba.org
Sat Aug 19 21:49:25 GMT 2006


On Sat, 2006-08-19 at 20:42 +0000, jra at samba.org wrote:
> Author: jra
> Date: 2006-08-19 20:42:04 +0000 (Sat, 19 Aug 2006)
> New Revision: 17612
> 
> WebSVN: http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=rev&root=samba&rev=17612
> 
> Log:
> Modify NTLMSSP session code so that it doesn't store
> a copy of the plaintext password, only the NT and LM
> hashes (all it needs). 

We never need the LM hash.  Indeed, we could perfectly safely modify the
NTLMSSP code to never send the LM response.

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.                  http://redhat.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20060820/ba9f5460/attachment.bin


More information about the samba-technical mailing list