svn commit: samba r21991 - in branches/SAMBA_3_0/source: include lib libsmb smbd

Andrew Bartlett abartlet at samba.org
Fri Mar 30 10:33:20 GMT 2007


On Fri, 2007-03-30 at 12:26 +0200, Stefan (metze) Metzmacher wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> Stefan (metze) Metzmacher schrieb:
> > So I think it would be much better to use the vuid as enc-ctx,
> > but check for each call to a specific tid that the call was encrypted
> > or not. And maybe also allow plain requests with the vuid, or force the
> > client to create a new vuid for plain traffic.
> 
> and for replies without vuid (oplock breaks) we should use the same
> context as used by smb signing (first session setup wins).

I think just pick any valid context.

> does smb signing still work when the first vuid is closed?

The key is persistent.

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.                  http://redhat.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20070330/e7a8ea14/attachment.bin


More information about the samba-technical mailing list