Encrypted Passwords & Restricting Logon Attempts

Jim Morris Jim at Morris-World.com
Sun Dec 1 05:12:01 GMT 2002


On Saturday, November 30, 2002, at 08:14  PM, Andrew Bartlett wrote:

> Really quick, and really ugly hack is to make Samba call the pam
> function with some invalid password after failing the encrypted 
> password
> check...  Just watch that some parts of Samba may cause the password
> check to fail, even when the right password is entered (it will try
> again with the other password (NT or LM) in this case).

Hmmm.  This sounds like it could very well work, and may only require a 
few lines of code to implement.  Then Samba would increment the failed 
logon counter via pam_tally...

I'll do a little hacking here in the next day or two, and let you know 
how it works when I test it....

Thanks for the tip!
  --
Jim Morris (Jim at Morris-World.com)




More information about the samba-technical mailing list