[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [patch] miscellaneous mechglue stuff
On Mon, 1 May 2006 13:28:46 +1000
Luke Howard <lukeh@PADL.COM> wrote:
> >I don't know. But bare in mind that Andrew is thinking the MD5 checksum
> >issue is specific to a limitation in Samba 3's smbclient. If that's true,
> >then the problem would be limited to SMB servers using stock Heimdal
> >gss_accept_sec_context which is to say it's not terribly important
> >right now.
>
> I think it's OK to assume the client requested mutual, because SAMBA
> and Windows send an AP-REP for CIFS authentication.
Oh, I know for a fact that Windows clients can require mutual for CIFS
auth. But we don't know if Windows clients send an MD5 checksum in the
Authenticator.
Mike