Tighten up password security for 3.2?

Andrew Bartlett abartlet at samba.org
Fri Aug 31 01:45:44 GMT 2007


On Thu, 2007-08-30 at 20:43 -0500, Gerald (Jerry) Carter wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> Andrew,
> 
> > client plaintext auth = no
> > client lanman auth = no
> > lanman auth = no
> > 
> > Any further comments?
> 
> Seems fair to me.

Thanks.

>   The only one I'm at all concerned about is
> break smbclient connecting to Win9x boxes.  But maybe this
> is being paranoid.  I'll willing to take the chance.

It will break them.  We should be prepared with documentation on how to
re-enable this for those situations, and include it in the WHATSNEW.
Any that are members of a domain (unlikely) will be supported by the
pass-though auth. 

Andrew Bartlett

-- 
Andrew Bartlett
http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20070831/8e9b7860/attachment.bin


More information about the samba-technical mailing list