Passwords
Passwords are a thorny issue with Samba. So much so, in fact, that they are almost always the first major problem that users encounter when they install Samba, and generate by far the most questions sent to Samba support groups. In previous chapters, we’ve gotten around the need for passwords by placing the guest
ok option in each of our configuration files, which allows connections without authenticating passwords. However, at this point, we need to delve deeper into Samba to discover what is happening on the network.
Passwords sent from individual clients can be either encrypted or non-encrypted. Encrypted passwords are, of course, more secure. A non-encrypted password can be easily read with a packet sniffing program, such as the modified tcpdump program for Samba that we used in Chapter 3. Whether passwords are encrypted depends on the operating system that the client is using to connect to the Samba server. Table 6.5 lists which Windows operating systems encrypt their passwords before sending them to the primary domain controller for authentication. If your client is not Windows, check the system documentation to see if SMB passwords are encrypted.
Table 6-5. Windows Operating Systems with Encrypted Passwords
|
Operating System |
Encrypted or Non-encrypted |
|---|---|
|
Windows 95 |
Non-encrypted |
|
Windows 95 with SMB Update |
Encrypted |
|
Windows 98 |
Encrypted |
|
Windows NT 3.x |
Non-encrypted |
|
Windows NT 4.0 before SP 3 |
Non-encrypted |
|
Windows NT 4.0 after SP 3 |
Encrypted |
There are ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access