Bug#921374: libfreerdp2-2: Fails to connect Windows 7 x64 using NLA

2019-12-18 Thread Mike Gabriel

Control: close -1

On Mon, 4 Feb 2019 21:11:01 -0600 Omer Oz  wrote:
> Hi,
>
> Yes, this is the case indeed. Moreover, installing KB4487345 on the 
remote

> host
> solved the issue. Thank you for your time and prompt help (especially for
> something not really an issue caused by freerdp!)
>
> Best,
> Omer

Closing this issue as it related to incomplete Windows Update situation 
on the test machine.


Mike



Bug#921374: libfreerdp2-2: Fails to connect Windows 7 x64 using NLA

2019-02-04 Thread Omer Oz
Hi,

Yes, this is the case indeed. Moreover, installing KB4487345 on the remote
host
solved the issue. Thank you for your time and prompt help (especially for
something not really an issue caused by freerdp!)

Best,
Omer


Bug#921374: libfreerdp2-2: Fails to connect Windows 7 x64 using NLA

2019-02-04 Thread Bernhard Miklautz
Hi,

On Mon, Feb 04, 2019 at 11:29:00AM -0600, Omer Ozarslan wrote:
> Package: libfreerdp2-2
> Version: 2.0.0~git20190204.1.2693389a+dfsg1-1
> Severity: important
> Tags: upstream

> RDP connection to Windows 7 x64 failed. I ran command "WLOG_LEVEL=DEBUG
> remmina", which resulted the error message pointing to freerdp core:
> 
> [11:21:19:450] [21683:21688] [ERROR][com.freerdp.core] - 
> freerdp_set_last_error
> ERRCONNECT_PASSWORD_CERTAINLY_EXPIRED [0x0002000F]
do you have installed KB4480970 on the windows machine and the user you
are using is in the "Administrators" group? 

Best regards,
Bernhard



Bug#921374: libfreerdp2-2: Fails to connect Windows 7 x64 using NLA

2019-02-04 Thread Omer Ozarslan
Package: libfreerdp2-2
Version: 2.0.0~git20190204.1.2693389a+dfsg1-1
Severity: important
Tags: upstream

Dear Maintainer,

RDP connection to Windows 7 x64 failed. I ran command "WLOG_LEVEL=DEBUG
remmina", which resulted the error message pointing to freerdp core:



$ WLOG_LEVEL=DEBUG remmina
StatusNotifier/Appindicator support: not supported by desktop. libappindicator
will try to fallback to GtkStatusIcon/xembed
Running under Gnome Shell version 3.30.1

(org.remmina.Remmina:21683): Gtk-WARNING **: 11:21:15.170:
gtk_menu_attach_to_widget(): menu already attached to GtkMenuItem
[11:21:16:912] [21683:21688] [DEBUG][com.freerdp.channels.cliprdr.client] -
VirtualChannelEntryEx
[11:21:16:912] [21683:21688] [INFO][com.freerdp.client.common.cmdline] -
loading channelEx cliprdr
[11:21:16:912] [21683:21688] [DEBUG][com.freerdp.channels.drdynvc.client] -
VirtualChannelEntryEx
[11:21:16:912] [21683:21688] [INFO][com.freerdp.client.common.cmdline] -
loading channelEx drdynvc
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Enabling security
layer negotiation: TRUE
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Enabling
restricted admin mode: FALSE
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Enabling RDP
security: TRUE
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Enabling TLS
security: TRUE
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Enabling NLA
security: TRUE
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Enabling NLA
extended security: FALSE
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - state:
NEGO_STATE_NLA
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core.nego] - Attempting NLA
security
[11:21:16:917] [21683:21688] [DEBUG][com.freerdp.core] - connecting to peer
[[CROPPED-IP]]
[11:21:16:933] [21683:21688] [DEBUG][com.freerdp.core.nego] -
RequestedProtocols: 3
[11:21:16:949] [21683:21688] [DEBUG][com.freerdp.core.nego] - RDP_NEG_RSP
[11:21:16:949] [21683:21688] [DEBUG][com.freerdp.core.nego] -
selected_protocol: 2
[11:21:16:949] [21683:21688] [DEBUG][com.freerdp.core.nego] - state:
NEGO_STATE_FINAL
[11:21:16:949] [21683:21688] [DEBUG][com.freerdp.core.nego] - Negotiated NLA
security
[11:21:16:949] [21683:21688] [DEBUG][com.freerdp.core.nego] -
nego_security_connect with PROTOCOL_HYBRID
[11:21:16:980] [21683:21688] [DEBUG][com.winpr.utils] - Could not open SAM
file!
[11:21:19:420] [21683:21688] [DEBUG][com.winpr.sspi] - InitSecurityInterfaceExA
[11:21:19:420] [21683:21688] [DEBUG][com.freerdp.core.nla] - nla_client_init
396 : packageName=Negotiate ; cbMaxToken=12256
[11:21:19:420] [21683:21688] [DEBUG][com.freerdp.core.nla] - Sending
Authentication Token
[11:21:19:435] [21683:21688] [DEBUG][com.freerdp.core.nla] - CredSSP protocol
support 6, peer supports 5
[11:21:19:435] [21683:21688] [DEBUG][com.freerdp.core.nla] - Sending
Authentication Token
[11:21:19:450] [21683:21688] [ERROR][com.freerdp.core] - freerdp_set_last_error
ERRCONNECT_PASSWORD_CERTAINLY_EXPIRED [0x0002000F]
[11:21:19:450] [21683:21688] [ERROR][com.freerdp.core.transport] - BIO_read
returned an error: error:14094438:SSL routines:ssl3_read_bytes:tlsv1 alert
internal error
[11:21:19:450] [21683:21688] [DEBUG][com.freerdp.core.transport] -
transport_check_fds: transport_read_pdu() - -1
[11:21:19:450] [21683:21688] [DEBUG][com.freerdp.core.rdp] -
transport_check_fds() - -1
libfreerdp returned code is 0002000F



There is a closed bug on upstream which may be related with this issue:
https://github.com/FreeRDP/FreeRDP/issues/4502#issuecomment-460318093



-- System Information:
Debian Release: buster/sid
  APT prefers testing
  APT policy: (500, 'testing'), (100, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 4.19.0-1-amd64 (SMP w/8 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), 
LANGUAGE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages libfreerdp2-2 depends on:
ii  libavcodec58 7:4.1-1
ii  libavutil56  7:4.1-1
ii  libc62.28-5
ii  libgsm1  1.0.18-1
ii  libjpeg62-turbo  1:1.5.2-2+b1
ii  libssl1.11.1.1a-1
ii  libswresample3   7:4.1-1
ii  libwinpr2-2  2.0.0~git20181120.1.e21b72c95+dfsg1-1
ii  libx11-6 2:1.6.7-1
ii  libxkbfile1  1:1.0.9-2

libfreerdp2-2 recommends no packages.

Versions of packages libfreerdp2-2 suggests:
pn  freerdp2-x11  

-- no debconf information