On 9/19/2013 9:33 AM, Brandon Allbery wrote:
On Thu, Sep 19, 2013 at 9:28 AM, Andrew Hume <[email protected] <mailto:[email protected]>> wrote:it may well be. but how would that manifest? does AD somehow know what machines are inbound? The obvious one to me is that a Windows FTP client may recognize a Windows FTP server from an FTP protocol level response and send extra authentication information (probably based on AD credentials). FTP clients may or may not show the actual FTP-level protocol exchanges.
Aye. +1. I suspect if you were to look at things with a network sniffer (though I wouldn't necessarily recommend it), you would see MS ftpd is Kerberized and is doing extra authorization for that location. When the client isn't also Kerberized, that fails. Though, this is mostly just reasonable conjecture on my part.
_______________________________________________ Tech mailing list [email protected] https://lists.lopsa.org/cgi-bin/mailman/listinfo/tech This list provided by the League of Professional System Administrators http://lopsa.org/
