From: Andreas Schneider Date: Wed, 31 Jul 2019 13:40:12 +0000 (+0200) Subject: s4:rpc_server: Use generate_secret_buffer() to create a session key X-Git-Tag: tdb-1.4.2~158 X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=4b2480518bd3887be3a6cfb713523ac084e09fd5;p=thirdparty%2Fsamba.git s4:rpc_server: Use generate_secret_buffer() to create a session key Signed-off-by: Andreas Schneider Reviewed-by: Andrew Bartlett --- diff --git a/source4/rpc_server/samr/samr_password.c b/source4/rpc_server/samr/samr_password.c index b04e37f06f3..6bf907181c8 100644 --- a/source4/rpc_server/samr/samr_password.c +++ b/source4/rpc_server/samr/samr_password.c @@ -733,9 +733,10 @@ NTSTATUS samr_set_password_buffers(struct dcesrv_call_state *dce_call, nt_errstr(nt_status))); /* - * Windows just uses a random key + * Windows just uses a random key. We need to use a CSPRNG + * which reseeds for generating session keys. */ - generate_random_buffer(random_session_key, + generate_secret_buffer(random_session_key, sizeof(random_session_key)); session_key = data_blob_const(random_session_key, sizeof(random_session_key));