Bug 2190415
| Summary: | Rebase Samba to the latest 4.18.x release | ||
|---|---|---|---|
| Product: | Red Hat Enterprise Linux 9 | Reporter: | Andreas Schneider <asn> |
| Component: | samba | Assignee: | Pavel Filipensky <pfilipen> |
| Status: | CLOSED ERRATA | QA Contact: | Denis Karpelevich <dkarpele> |
| Severity: | unspecified | Docs Contact: | Marc Muehlfeld <mmuehlfe> |
| Priority: | unspecified | ||
| Version: | 9.3 | CC: | aboscatt, asn, dhodovsk, dkarpele, pfilipen |
| Target Milestone: | rc | Keywords: | Rebase, Triaged |
| Target Release: | --- | Flags: | pm-rhel:
mirror+
|
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | samba-4.18.6-100.el9 | Doc Type: | Enhancement |
| Doc Text: |
.`samba` rebased to version 4.18.6
The `samba` packages have been upgraded to upstream version 4.18.6, which provides bug fixes and enhancements over the previous version. The most notable changes:
* Security improvements in previous releases impacted the performance of the Server Message Block (SMB) server for high metadata workloads. This update improves the performance in this scenario.
* The new `wbinfo --change-secret-at=<domain_controller>` command enforces the change of the trust account password on the specified domain controller.
* By default, Samba stores access control lists (ACLs) in the `security.NTACL` extended attribute of files. You can now customize the attribute name with the `acl_xattr:<security_acl_name>` setting in the `/etc/samba/smb.conf` file. Note that a custom extended attribute name is not a protected location as `security.NTACL`. Consequently, users with local access to the server can be able to modify the custom attribute's content and compromise the ACL.
Note that the server message block version 1 (SMB1) protocol has been deprecated since Samba 4.11 and will be removed in a future release.
Back up the database files before starting Samba. When the `smbd`, `nmbd`, or `winbind` services start, Samba automatically updates its `tdb` database files. Red Hat does not support downgrading `tdb` database files.
After updating Samba, use the `testparm` utility to verify the `/etc/samba/smb.conf` file.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2023-11-07 08:55:23 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2190418, 2190420, 2190424, 2190426 | ||
| Bug Blocks: | |||
|
Description
Andreas Schneider
2023-04-28 11:17:09 UTC
Hi Marc, the release note looks good. Just 'the' is misspelled in "This update improves he performance in this scenario." It can be use by 8.9. Pavel Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory (Moderate: samba security, bug fix, and enhancement update), and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHSA-2023:6667 |