Samba 4.21 Launches with Enhanced Security Features
Quoting: Samba 4.21 Launches with Enhanced Security Features —
Five months after its previous 4.20 release, Samba, the renowned open-source software suite that facilitates file sharing and printing services across various operating systems, including Windows and Unix, has officially released its latest version, Samba 4.21.
The release’s highlight is the hardened security settings for “valid users,” “invalid users,” “read list,” and “write list.” In the past, unresolved user or group names would be skipped without any notification, potentially leading to insecure access permissions.
With this update, any issues in name resolution due to communication errors with a domain controller will now trigger an error log, and the connection attempt will be denied, thereby preventing unintended access.
Update
Now in LWN:
-
Samba 4.21.0 released
Version 4.21.0 of the Samba backdoored Windows interoperability suite has been released. Changes include some authentication hardening, a number of LDAP improvements, per-user and per-group veto and hide files, group-managed service accounts, and quite a bit more.