Received: by 2002:ad5:474a:0:0:0:0:0 with SMTP id i10csp2995509imu; Mon, 19 Nov 2018 09:07:43 -0800 (PST) X-Google-Smtp-Source: AJdET5cPMARIYBkAddUwkI7UefljkTXlRs8Icu1TrIXHtlStoLkXZr9eJ86sVP00oCVpuw+aJIH5 X-Received: by 2002:a17:902:622:: with SMTP id 31-v6mr23325566plg.310.1542647263169; Mon, 19 Nov 2018 09:07:43 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1542647262; cv=none; d=google.com; s=arc-20160816; b=ejz8XFhmvSOe2Xqe39cYUyPJCm/mPdpFel/P+DaF3gToRYCus0WM8rbWxdB3+rWsaa Ensf23CxH2mfokaYUJ2gy1h5PlHfZId9yryoCi7THyrSwqqKXGbdImxK1v+ioEkmMEvj VinbFP+b60TyHm3t5PTriXzFLvxcbRyMAppIAhaB7DvkQc59JryDCEaoJOZoCRHYJMzs 33Dez6EKs8Q6JxAB2SKN/JAx26J5O/jCreW2Y3KO4X7135zaSL1ykxRAqyAfg7TkpV3O wLBM5z84L7Xc+eFP6a0BVxKCVtLoVEYO3KldrvmqxgV/byK8JclMIPvNeHLqlgGUHxCP P5/g== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:content-transfer-encoding:mime-version :user-agent:references:in-reply-to:message-id:date:subject:cc:to :from:dkim-signature; bh=PRYLgbGOqRzm3V9IYv4GEtKlbpR+gnGdMxmi8CrxDHk=; b=aVru3xUACsn3/Jz1bIwBokVF3uVNp7O/kahoMmsa+y7xOFQ7T+LYo0sOevOA9Uc990 16AaF5NrQw68Pr058K/MwR8AlkGJMWy3ljCkLgfoTl3dECurNVRwJ6S8GBCcZGWgp0F7 L2QDgCzO/kVBcENKXb8yP3vznVMBJQXRAwSf127lW7tvMw8nDep7xO/s8bdzAbSmKfW/ 49s64ZmKDq9HJW2/hCLvLLRuQbHeNdqUgP1ZkXgju8zE5Wcy545BZiUb3L6Q9wEvE9iG n6iXyvRLG2CV07Frkux95CclBi5JvTfDoagYpAcyGYKYBQUfh7XaIXUhY7tO98Xm0P4r Q04A== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=DS+vXlJd; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id e6si32444931pgd.428.2018.11.19.09.07.26; Mon, 19 Nov 2018 09:07:42 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=DS+vXlJd; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S2406584AbeKTD2w (ORCPT + 99 others); Mon, 19 Nov 2018 22:28:52 -0500 Received: from mail.kernel.org ([198.145.29.99]:43346 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S2405880AbeKTD2w (ORCPT ); Mon, 19 Nov 2018 22:28:52 -0500 Received: from localhost (5356596B.cm-6-7b.dynamic.ziggo.nl [83.86.89.107]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id 07D9B2146D; Mon, 19 Nov 2018 17:04:33 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1542647074; bh=WGomX2UA6nf5WkPZF4QKCYtj27vGu+G0Y0nMg32S9do=; h=From:To:Cc:Subject:Date:In-Reply-To:References:From; b=DS+vXlJd69ehyA0DHPGdXhzKqg7DGm8Fjpmy+DexV3ayjIx6mnQxtOuIg4hXHb86O +dG4hjsB/P6q1jJiNtmfMfCq3bWLDK4bI7tjn2soQKRcQS4U0odcDYK7+ERws/IiFO RhCtGyTkjqbMjQ5voz+R/qRS9lllxuC/8FHC8wJE= From: Greg Kroah-Hartman To: linux-kernel@vger.kernel.org Cc: Greg Kroah-Hartman , stable@vger.kernel.org, Steve French , Ronnie Sahlberg Subject: [PATCH 3.18 41/90] smb3: on kerberos mount if server doesnt specify auth type use krb5 Date: Mon, 19 Nov 2018 17:29:23 +0100 Message-Id: <20181119162627.376688952@linuxfoundation.org> X-Mailer: git-send-email 2.19.1 In-Reply-To: <20181119162620.585061184@linuxfoundation.org> References: <20181119162620.585061184@linuxfoundation.org> User-Agent: quilt/0.65 X-stable: review MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org 3.18-stable review patch. If anyone has any objections, please let me know. ------------------ From: Steve French commit 926674de6705f0f1dbf29a62fd758d0977f535d6 upstream. Some servers (e.g. Azure) do not include a spnego blob in the SMB3 negotiate protocol response, so on kerberos mounts ("sec=krb5") we can fail, as we expected the server to list its supported auth types (OIDs in the spnego blob in the negprot response). Change this so that on krb5 mounts we default to trying krb5 if the server doesn't list its supported protocol mechanisms. Signed-off-by: Steve French Reviewed-by: Ronnie Sahlberg CC: Stable Signed-off-by: Greg Kroah-Hartman --- fs/cifs/cifs_spnego.c | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) --- a/fs/cifs/cifs_spnego.c +++ b/fs/cifs/cifs_spnego.c @@ -147,8 +147,10 @@ cifs_get_spnego_key(struct cifs_ses *ses sprintf(dp, ";sec=krb5"); else if (server->sec_mskerberos) sprintf(dp, ";sec=mskrb5"); - else - goto out; + else { + cifs_dbg(VFS, "unknown or missing server auth type, use krb5\n"); + sprintf(dp, ";sec=krb5"); + } dp = description + strlen(description); sprintf(dp, ";uid=0x%x",