Testing patch to enable AES in Samba3 Kerberos

Jeremy Allison jra at samba.org
Wed Jul 15 17:58:29 MDT 2009

On Thu, Jul 16, 2009 at 08:38:10AM +1000, Andrew Bartlett wrote:
> I've been testing interop with Samba3 and AD using AES, as part of some
> interop work I was doing with Samba4's Kerberos code.  I attach a patch
> (not to be applied) to help demonstrate the problem.
> In short, Samba3 must not blindly remove the fixed list of enc types
> without performing extensive interop to ensure it works against all
> servers.

So currently this code is preventing S3 client code
from using AES, correct ? It's pretty old code, so
we can probably work on updating it to be W2K8

Just want to clarify the problem.


More information about the samba-technical mailing list