request to remove security=share

Christopher R. Hertel crh at ubiqx.mn.org
Wed Mar 15 01:07:39 GMT 2006


Steven French wrote:
> 
> 
> 
>>The problem is the username arguments in the hash calculation
> 
> Wish we could just treat this as we do the null user name.

Okay... thinking this over I see the problem now.  If the client is using
NTLMv2 authentication and the server is requiring share-mode auth then,
as Andrew pointed out, there's no username (or worse, an incorrect username)
available for the client when the client creates the response to the
challenge.

I think the issue is more difficult if Kerberos auth is being used.

Interesting...

Chris -)-----

-- 
"Implementing CIFS - the Common Internet FileSystem" ISBN: 013047116X
Samba Team -- http://www.samba.org/     -)-----   Christopher R. Hertel
jCIFS Team -- http://jcifs.samba.org/   -)-----   ubiqx development, uninq.
ubiqx Team -- http://www.ubiqx.org/     -)-----   crh at ubiqx.mn.org
OnLineBook -- http://ubiqx.org/cifs/    -)-----   crh at ubiqx.org


More information about the samba-technical mailing list