summaryrefslogtreecommitdiffstats
path: root/ipapython/py_default_encoding/setup.py
diff options
context:
space:
mode:
authorAlexander Bokovoy <abokovoy@redhat.com>2015-05-08 12:09:13 +0000
committerTomas Babej <tbabej@redhat.com>2015-05-25 16:36:43 +0200
commit5fd8e53f66bcc96afbcf08686c345e6f2b7ee775 (patch)
treeac58e9095cec63f1614ff8f8045cf2c47a31031e /ipapython/py_default_encoding/setup.py
parentfde21adcbd62b9a300740d9ba237ca9e89a905e4 (diff)
downloadfreeipa-5fd8e53f66bcc96afbcf08686c345e6f2b7ee775.tar.gz
freeipa-5fd8e53f66bcc96afbcf08686c345e6f2b7ee775.tar.xz
freeipa-5fd8e53f66bcc96afbcf08686c345e6f2b7ee775.zip
ipaserver/dcerpc: Ensure LSA pipe has session key before using it
With Samba 4.2 there is a bug that prevents Samba to consider Kerberos credentials used by IPA httpd process when talking to smbd. As result, LSA RPC connection is seen as anonymous by Samba client code and we cannot derive session key to use for encrypting trust secrets before transmitting them. Additionally, rewrite of the SMB protocol support in Samba caused previously working logic of choosing DCE RPC binding string to fail. We need to try a different set of priorities until they fail or succeed. Requires Samba fixes from https://bugzilla.redhat.com/show_bug.cgi?id=1219832 Fixes https://bugzilla.redhat.com/show_bug.cgi?id=1219834 Reviewed-By: Tomas Babej <tbabej@redhat.com>
Diffstat (limited to 'ipapython/py_default_encoding/setup.py')
0 files changed, 0 insertions, 0 deletions