[Samba] How does SMB 3.0 encryption work?

mathias dufresne infractory at gmail.com
Fri Aug 18 12:57:51 UTC 2017


Hi,

This question is interesting and laeds me to another one:
As KDC send a ticket to the client when trying to authenticate (something
which should decrypted using user's password), is it possible to brute
force this initial ticket locally?

Mathias

2017-08-15 3:29 GMT+02:00 Andrew Bartlett via samba <samba at lists.samba.org>:

> On Mon, 2017-08-14 at 20:26 -0400, Daniel Benoy via samba wrote:
> > It does, thanks.
> >
> > So if the password is known, or the KDC compromised, then in
> > principle
> > MITM becomes possible?
>
> Yes.
>
> Andrew Bartlett
> --
> Andrew Bartlett
> https://samba.org/~abartlet/
> Authentication Developer, Samba Team         https://samba.org
> Samba Development and Support, Catalyst IT
> https://catalyst.net.nz/services/samba
>
>
>
>
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
>


More information about the samba mailing list