DFS: mounts with multiuser and cruid options do not use the correct user creds when traversing namespace
Issue
- A user can not access a SMB share under a DFS namespace.
- The user's access is limited by the access rights of a different user whose credential cache was used to mount the DFS namespace.
- This behavior is limiting access to shares, but can also grant additional access to shares when mounting with
sec=ntlmssp
Environment
- Red Hat Enterprise Linux 7
- Red Hat Enterprise Linux 8 beta
- Kerberos or NTLM based security flavors
- DFS share mounted with SMB or SMB2
mount.cifs
mount options includemultiuser
andcruid
.
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.