From: Stefan Metzmacher Date: Wed, 16 Jul 2008 09:30:47 +0000 (+0200) Subject: become_dc: we need to replicate using krb5 auth to work against w2k X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=ce12a9105113ad7cff96b7d553a8d69901c56de7;p=thirdparty%2Fsamba.git become_dc: we need to replicate using krb5 auth to work against w2k With NTLMSSP we just get strange responses with a random object count and a NULL object list. On the domain partition where we try to replicate the password fields. metze --- diff --git a/source/libnet/libnet_become_dc.c b/source/libnet/libnet_become_dc.c index d3eeebe2147..dea85263893 100644 --- a/source/libnet/libnet_become_dc.c +++ b/source/libnet/libnet_become_dc.c @@ -1517,10 +1517,10 @@ static void becomeDC_drsuapi_connect_send(struct libnet_BecomeDC_state *s, if (!drsuapi->binding) { if (lp_parm_bool(s->libnet->lp_ctx, NULL, "become_dc", "print", false)) { - binding_str = talloc_asprintf(s, "ncacn_ip_tcp:%s[print,seal]", s->source_dsa.dns_name); + binding_str = talloc_asprintf(s, "ncacn_ip_tcp:%s[krb5,print,seal]", s->source_dsa.dns_name); if (composite_nomem(binding_str, c)) return; } else { - binding_str = talloc_asprintf(s, "ncacn_ip_tcp:%s[seal]", s->source_dsa.dns_name); + binding_str = talloc_asprintf(s, "ncacn_ip_tcp:%s[krb5,seal]", s->source_dsa.dns_name); if (composite_nomem(binding_str, c)) return; } c->status = dcerpc_parse_binding(s, binding_str, &drsuapi->binding);