[Samba] Owncloud authentication error after upgrade

Rowland penny rpenny at samba.org
Wed Apr 13 20:33:51 UTC 2016


On 13/04/16 21:15, mj wrote:
>
>
> On 04/13/2016 10:06 PM, Stefan Kania wrote:
>> client ldap sasl wrapping = plain
>> because we saw this thought this will help, but didn't. Has anyone a
>> solution?
> Try:
> ldap server require strong auth = no
>

Can I suggest you do this only in the short term, I would also suggest 
you read the latest release notes:

https://www.samba.org/samba/history/samba-4.4.2.html

Paying special attention to this part:

CVE-2016-2112:
...........
.........
The LDAP server doesn't have an option to enforce strong authentication
yet. The security patches will introduce a new option called
"ldap server require strong auth", possible values are "no",
"allow_sasl_over_tls" and "yes".

As the default behavior was as "no" before, you may
have to explicitly change this option until all clients have
been adjusted to handle LDAP_STRONG_AUTH_REQUIRED errors.
Windows clients and Samba member servers already use
integrity protection.

Rowland




More information about the samba mailing list