[PATCH]: wbc: expand wbcAuthUserParams to pass alternate domain\user

Stefan (metze) Metzmacher metze at samba.org
Tue May 19 07:44:33 GMT 2009


Hi Steven,

> We need to expand the wbcAuthUserEx() interface somehow to allow passing
> an alternate DOMAIN\user combination to our auth daemon.  This is
> necessary when the auth daemon is checking an NTLMv2 hash, which was
> built using the on-the-wire DOMAIN\user combination, but smbd has mapped
> the domain to the server's local sam name (via make_user_info_map()) or
> smbd has mapped the user (via the "username map" parameter).

Does the auth daemon really needs both names?
Maybe we can change the auth_wbc module to only pass the names needed
for NTLMv2 in the account_name and domain_name fields of struct
wbcAuthUserParms.

metze

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 252 bytes
Desc: OpenPGP digital signature
Url : http://lists.samba.org/archive/samba-technical/attachments/20090519/7ae8a7a3/signature.bin


More information about the samba-technical mailing list