[K12OSN] This is nuts! Samba/ldap almost fixed

jamie mcparlandj at newberg.k12.or.us
Wed Apr 14 23:17:01 UTC 2004


Ok.. Well I think I figured out my problem. To recap samba 2.X will auth
against my ldap server no problem. Samba 3 would not unless I reset the
password. 

When I looked closer at the account records I saw something fishy.

 Heres a record before I change the password

dn: uid=lalove06,ou=People,dc=newberg,dc=k12,dc=or,dc=us
lmPassword: B1EBCC9F275C9249AAD3B435B51404EE
ntPassword: 66CB16385594ECEC0C60B4A70570E2CA


Now after I change the password.

dn: uid=lalove06,ou=People,dc=newberg,dc=k12,dc=or,dc=us
ntPassword: B1EBCC9F275C9249AAD3B435B51404EE
lmPassword: 66CB16385594ECEC0C60B4A70570E2CA

See how the nt and lm passwords look the same.. Well they are. Except they
are SWITCHED!

WHAT THE HECK?

So it seems samba 2.x with auth against either record (passwords switched ot
not). Samba 3 will only auth against the one record.

So I guess the problem is solved. Almost... I still would like to know how
this happened. Also my biggest concern it now I have to swap these for 3000
accounts. 

If anyone wants to chime in on that one let me know ;)

Jamie 





More information about the K12OSN mailing list