CVE-2022-38023 s3:rpc_server/netlogon: implement "server schannel require seal[:COMPU...
authorSamuel Cabrero <scabrero@suse.de>
Wed, 4 Jan 2023 16:50:04 +0000 (17:50 +0100)
committerAndreas Schneider <asn@samba.org>
Thu, 19 Jan 2023 11:47:20 +0000 (12:47 +0100)
commit80ee053d9fc2f405953d94546701c5d9fae1bebb
tree113b814bb27cb2a878049a94558536e053e06aab
parentd320a690b1c2685e778c8f2dd1ed41126eb157de
CVE-2022-38023 s3:rpc_server/netlogon: implement "server schannel require seal[:COMPUTERACCOUNT]"

By default we'll now require schannel connections with
privacy/sealing/encryption.

But we allow exceptions for specific computer/trust accounts.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15240

Signed-off-by: Samuel Cabrero <scabrero@suse.de>
selftest/target/Samba3.pm
source3/rpc_server/netlogon/srv_netlog_nt.c