Bug 12521 - Samba should use the RPC port range of Windows 2008 and newer
Summary: Samba should use the RPC port range of Windows 2008 and newer
Status: RESOLVED WONTFIX
Alias: None
Product: Samba 4.1 and newer
Classification: Unclassified
Component: DCE-RPCs and pipes (show other bugs)
Version: 4.4.4
Hardware: All All
: P5 normal (vote)
Target Milestone: ---
Assignee: Andreas Schneider
QA Contact: Samba QA Contact
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2017-01-16 11:53 UTC by Andreas Schneider
Modified: 2017-06-07 14:21 UTC (History)
4 users (show)

See Also:


Attachments
patchset for 4.6 (14.68 KB, patch)
2017-01-30 11:48 UTC, Andreas Schneider
metze: review+
asn: review? (slow)
Details
WHATSNEW update (1.19 KB, patch)
2017-01-30 11:49 UTC, Andreas Schneider
metze: review-
Details
WHATSNEW update v2 (1.96 KB, text/plain)
2017-02-02 13:50 UTC, Andreas Schneider
metze: review-
Details
WHATSNEW for 4.6 (2.07 KB, patch)
2017-02-15 10:19 UTC, Andreas Schneider
asn: review? (metze)
Details

Note You need to log in before you can comment on or make changes to this bug.
Description Andreas Schneider 2017-01-16 11:53:28 UTC
Samba should use the RPC port range of Windows 2008 and newer. Those are the ports defined my Microsoft and normally opened in internal firewalls.

See details here:
https://support.microsoft.com/en-us/kb/179442

Patch will follow to use the default range for Win2008 and make it configureable.
Comment 1 Andreas Schneider 2017-01-30 11:48:41 UTC
Created attachment 12864 [details]
patchset for 4.6
Comment 2 Andreas Schneider 2017-01-30 11:49:09 UTC
Created attachment 12865 [details]
WHATSNEW update
Comment 3 Stefan Metzmacher 2017-01-31 09:05:44 UTC
Comment on attachment 12865 [details]
WHATSNEW update

I think this should be added to the "new options for controlling TCP ports used for RPC services" section (while making it explicit that one option only applies
to the ad-dc and the other to all roles).

It should also be added to the smb.conf changes section.
Comment 4 Andreas Schneider 2017-02-02 13:50:30 UTC
Created attachment 12900 [details]
WHATSNEW update v2
Comment 5 Stefan Metzmacher 2017-02-02 14:02:15 UTC
Comment on attachment 12900 [details]
WHATSNEW update v2

I think should add a note that one option only applies to the ad dc
and the other one to all server roles.
Comment 6 Andreas Schneider 2017-02-15 10:19:38 UTC
Created attachment 12934 [details]
WHATSNEW for 4.6
Comment 7 Andreas Schneider 2017-06-07 13:42:21 UTC
I thought this made it to Samba 4.6, but the WHATSNEW.txt entry didn't get the required review ...
Comment 8 Andreas Schneider 2017-06-07 14:21:45 UTC
Too late for Samba 4.6 :(