[PROPOSAL] Remove password level (or all plaintext passwords?) for 4.1

Andrew Bartlett abartlet at samba.org
Mon May 27 06:49:26 MDT 2013


On Mon, 2013-05-27 at 08:42 -0400, yaberger at ca.ibm.com wrote:
> Hi Andrew, 
> 
> Our current password level is the default (0) 
> /usr/local/samba/sbin/smbd -V 
> Version 3.6.5 
> /usr/local/samba/bin/testparm -vs 2>&1 |grep "password level" 
>         password level = 0 
> So my understanding is that your patch could only attempt the password
> received and if it fails, try it with the password in lowercase. 

Correct.  And we could keep that if needed. 

> If you need me to test your patch, it would be possible but I would
> need to know against which version/branch. 
> As I've showed earlier, we are currently using Samba 3.6.5. 
> I know this version is working well for us but don't know yet for
> 3.6.15, 4.0.6 or the git branch master, v4-0-test and v3-6-test. 
> I would first need to make one of these works without your patch, then
> with your patch, then request the system owners to test each of their
> platform against this test Samba server. 
> 
> We already know that we need to update our Samba 3.6.5 before April 8,
> 2014 and our current plan is to pick the latest 3.6 release available
> at that time. 
> The next update (after April 2014) may be to move to 4.x. 

Are you in a position to add a test server, that you could connect
clients to?  As we plan to keep plaintext password support, it would
help us maintain it with you, because we could test fixes and ensure
things don't break your network. 

I was proposing to change master, perhaps for 4.1 or perhaps to give
notice in 4.1 for a change later (I'm not on a warpath here, just trying
to keep an eye on code that may no longer have users). 

Thanks,

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org




More information about the samba-technical mailing list