s3-winbindd: Require SMB signing by default to disrupt MITM attacks with our DC

Enterprise / Samba - Andrew Bartlett [samba.org] - 27 September 2014 23:25 UTC

This makes it much harder to impersonate the DC, but allows this to be turned off or returned to IF_REQUIRED with a simple change to the 'client signing' smb.conf parameter.

Andrew Bartlett

a59b00d s3-winbindd: Require SMB signing by default to disrupt MITM attacks with our DC
source3/winbindd/winbindd_cm.c | 34 +++++++++++++++++++++++++++++++++-
1 file changed, 33 insertions(+), 1 deletion(-)

Upstream: gitweb.samba.org


  • Share