Comment 30 for bug 2027716

Revision history for this message
Douglas Bagnall (douglasbagnall) wrote :

This is not related to https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-37966 (RC4 in Kerberos) which was addressed in Samba 4.17 (See https://www.samba.org/samba/history/samba-4.17.0.html).

This is a previously unannounced change in the netlogon RPC protocol, and a sudden change in Windows client behaviour.

The only relationship to the Kerberos issue is it was released at the same time.

If you want to know the details you could do worse than following this thread https://lists.samba.org/archive/cifs-protocol/2023-July/004004.html or just read the proposed updates to the protocol document
https://winprotocoldoc.blob.core.windows.net/productionwindowsarchives/MS-NRPC/%5bMS-NRPC%5d-20230718-diff.pdf.