[cifs-protocol] RE: Meaning of ACB_PWNOTREQ / UF_PASSWD_NOTREQD

2008-09-05 Thread Bill Wesse
Good morning Andrew. Thanks for your question. I have created the below case for you on this matter; one of my colleagues or I will take ownership of this and contact you shortly. SRX080905600018 [MS-ADTS] 2.2.15 ADS_UF_PASSWD_NOTREQD semantics Regards, Bill Wesse MCSE / Escalation Engineer,

[cifs-protocol] Status: raw NTLMSSP tokens in GSS-API/SPNEGO (SRX080803600053)

2008-09-05 Thread Bill Wesse
Good morning Adam. Documentation development advises me they are waiting for feedback from the Security team on Windows Behaviors with regards to NTLM and SPNEGO blobs. Thanks for your patience. Regards, Bill Wesse MCSE / Escalation Engineer, US-CSS DSC PROTOCOL TEAM 8055 Microsoft Way

RE: [cifs-protocol] Session keys are not always 16 bytes long

2008-09-05 Thread Hongwei Sun
Metze/Andrew, The subkey in the EncAPRepPart of the AP-REP should be used as the session key when the mutual authentication is enabled(as described in RFC 4121). When DES and RC4 are used in Kerberos, the implementation is based on RFC1964 (instead of RFC4121). According to RFC1964, you

Re: [cifs-protocol] Session keys are not always 16 bytes long

2008-09-05 Thread Stefan (metze) Metzmacher
Hongwei Sun schrieb: Metze/Andrew, The subkey in the EncAPRepPart of the AP-REP should be used as the session key when the mutual authentication is enabled(as described in RFC 4121). When DES and RC4 are used in Kerberos, the implementation is based on RFC1964 (instead of RFC4121).

Re: [cifs-protocol] Session keys are not always 16 bytes long

2008-09-05 Thread Stefan (metze) Metzmacher
Andrew Bartlett schrieb: On Fri, 2008-09-05 at 22:25 +0200, Stefan (metze) Metzmacher wrote: Hongwei Sun schrieb: Metze/Andrew, The subkey in the EncAPRepPart of the AP-REP should be used as the session key when the mutual authentication is enabled(as described in RFC 4121).When DES