[PATCH]: wbc: expand wbcAuthUserParams to pass alternate domain\user

Volker Lendecke Volker.Lendecke at SerNet.DE
Tue May 19 07:48:57 GMT 2009


On Tue, May 19, 2009 at 09:44:33AM +0200, Stefan (metze) Metzmacher wrote:
> > We need to expand the wbcAuthUserEx() interface somehow to allow passing
> > an alternate DOMAIN\user combination to our auth daemon.  This is
> > necessary when the auth daemon is checking an NTLMv2 hash, which was
> > built using the on-the-wire DOMAIN\user combination, but smbd has mapped
> > the domain to the server's local sam name (via make_user_info_map()) or
> > smbd has mapped the user (via the "username map" parameter).
> 
> Does the auth daemon really needs both names?
> Maybe we can change the auth_wbc module to only pass the names needed
> for NTLMv2 in the account_name and domain_name fields of struct
> wbcAuthUserParms.

That would be a lot better, sure :-)

Volker
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba-technical/attachments/20090519/d6e17816/attachment.bin


More information about the samba-technical mailing list