[PATCH] selftest: Add sanity-check RODC can't use cache to reveal secrets

Garming Sam garming at catalyst.net.nz
Thu Oct 12 20:50:51 UTC 2017


Reviewed-by: Garming Sam <garming at catalyst.net.nz>

Any chance of another reviewer?


Cheers,

Garming

On 02/10/17 15:22, Tim Beale via samba-technical wrote:
> Hi,
>
> Attached is a follow-up patch for bug #12977. It adds a test that checks
> RODCs can't exploit the cache on the Samba server to leak secrets.
>
> We unintentionally fixed this security hole in 4.7. The new test checks
> we don't unintentionally reopen the hole again in the future.
>
> Cheers,
> Tim




More information about the samba-technical mailing list