Fwd: [PATCH 1/7] cifs: Bypass windows extended security for ntlmv2 negotiate

Jeremy Allison jra at samba.org
Thu Aug 21 21:41:21 MDT 2014


On Wed, Aug 20, 2014 at 11:51:02PM -0500, Steve French wrote:
> This is an unusual sounding issue.  Any comments on this from the auth experts?
> 
> Seems better to investigate this more if we end up enforcing a "must
> be within 5 minutes" threshold instead of this patch.  Have we done a
> dochelp on this before?

No we have not. I'd feel happier if you could
add some test code to smbtorture that showed
NTLM authentication succeeding with correct time,
and it failing with a large time drift, that
passes against a Windows server.

Jeremy.


More information about the samba-technical mailing list