CVE-2022-38023 s3:winbindd: also allow per domain "winbind sealed pipes:DOMAIN" and...
authorStefan Metzmacher <metze@samba.org>
Wed, 30 Nov 2022 13:59:36 +0000 (14:59 +0100)
committerStefan Metzmacher <metze@samba.org>
Tue, 13 Dec 2022 20:37:58 +0000 (21:37 +0100)
commitf1cb8950583c12eaa5cbe907d0b16923f7187541
treef5f3c06cbaabb56713a95e732fc8608b6ff9c934
parent4dc0b8d0a89b0aea865f8508ca3f0d68f50c6f12
CVE-2022-38023 s3:winbindd: also allow per domain "winbind sealed pipes:DOMAIN" and "require strong key:DOMAIN"

This avoids advising insecure defaults for the global options.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15240

Signed-off-by: Stefan Metzmacher <metze@samba.org>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Ralph Boehme <slow@samba.org>
(cherry picked from commit d60828f6391307a59abaa02b72b6a8acf66b2fef)
source3/winbindd/winbindd_cm.c