s3-winbind Don't send the LM password to the server, ever
authorAndrew Bartlett <abartlet@samba.org>
Fri, 10 Dec 2010 01:10:07 +0000 (12:10 +1100)
committerAndrew Bartlett <abartlet@samba.org>
Fri, 10 Dec 2010 05:08:31 +0000 (16:08 +1100)
commit5cfe949108f253a8e20c835cb53fe6f5eae7fbb5
tree0b25600ee3c2f017adc56afccb6cc3bc95d025d9
parentf13404e27b00f826a11684e69cff82ae0023fc91
s3-winbind Don't send the LM password to the server, ever

This is for the case where we have the plaintext password locally, and
can construct the challenge-response values here.

We should never ever use the LM password in domain authentication.
The last domain controller to only have LM passwords stored was NT
3.5.

Andrew Bartlett
source3/winbindd/winbindd_pam.c