diff options
author | Namjae Jeon <linkinjeon@kernel.org> | 2022-10-28 18:01:38 +0300 |
---|---|---|
committer | Steve French <stfrench@microsoft.com> | 2022-12-11 17:33:31 +0300 |
commit | 37ba7b005a7a4454046bd8659c7a9c5330552396 (patch) | |
tree | 6e8b61635f600462b366cb69690060f797811609 /fs/ksmbd/ksmbd_netlink.h | |
parent | 76dcd734eca23168cb008912c0f69ff408905235 (diff) | |
download | linux-37ba7b005a7a4454046bd8659c7a9c5330552396.tar.xz |
ksmbd: set SMB2_SESSION_FLAG_ENCRYPT_DATA when enforcing data encryption for this share
Currently, SMB2_SESSION_FLAG_ENCRYPT_DATA is always set session setup
response. Since this forces data encryption from the client, there is a
problem that data is always encrypted regardless of the use of the cifs
seal mount option. SMB2_SESSION_FLAG_ENCRYPT_DATA should be set according
to KSMBD_GLOBAL_FLAG_SMB2_ENCRYPTION flags, and in case of
KSMBD_GLOBAL_FLAG_SMB2_ENCRYPTION_OFF, encryption mode is turned off for
all connections.
Signed-off-by: Namjae Jeon <linkinjeon@kernel.org>
Signed-off-by: Steve French <stfrench@microsoft.com>
Diffstat (limited to 'fs/ksmbd/ksmbd_netlink.h')
-rw-r--r-- | fs/ksmbd/ksmbd_netlink.h | 1 |
1 files changed, 1 insertions, 0 deletions
diff --git a/fs/ksmbd/ksmbd_netlink.h b/fs/ksmbd/ksmbd_netlink.h index ff07c67f4565..b6bd8311e6b4 100644 --- a/fs/ksmbd/ksmbd_netlink.h +++ b/fs/ksmbd/ksmbd_netlink.h @@ -74,6 +74,7 @@ struct ksmbd_heartbeat { #define KSMBD_GLOBAL_FLAG_SMB2_LEASES BIT(0) #define KSMBD_GLOBAL_FLAG_SMB2_ENCRYPTION BIT(1) #define KSMBD_GLOBAL_FLAG_SMB3_MULTICHANNEL BIT(2) +#define KSMBD_GLOBAL_FLAG_SMB2_ENCRYPTION_OFF BIT(3) /* * IPC request for ksmbd server startup |