Bug 15060 - hosts allow only applies to some 'stream' sockets
Summary: hosts allow only applies to some 'stream' sockets
Status: NEW
Alias: None
Product: Samba 4.1 and newer
Classification: Unclassified
Component: AD: LDB/DSDB/SAMDB (show other bugs)
Version: 4.16.1
Hardware: All All
: P5 normal (vote)
Target Milestone: ---
Assignee: Samba QA Contact
QA Contact: Samba QA Contact
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2022-05-04 23:11 UTC by Andrew Bartlett
Modified: 2022-05-04 23:11 UTC (History)
1 user (show)

See Also:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Andrew Bartlett 2022-05-04 23:11:13 UTC
It was noted in bug 15058 that "hosts allow" does not apply to UDP dns traffic.  Indeed, the parameter only appears to apply to 'stream' sockets in 'samba' (the AD DC) and SMB/SMB2 sockets in 'smbd'.  (plus spoolss per-share checks).

We should either apply this universally or document the limitations.