Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Vista General Discussion > LogonUI / LSA when submiting credentials?

Reply
Thread Tools Display Modes

LogonUI / LSA when submiting credentials?

 
 
igor.jovanovski@gmail.com
Guest
Posts: n/a

 
      12-10-2008
This might seem not very reliable case, but stay with me on this
explanation, it seems that windows has a bug here:

We have a Credential Provider for proprietery logon with Smart Cards.
In the Crededntial Provider I read the accounts from the Smart Card
and submit them in the GetSerialization method packed in
KERB_INTERACTIVE_LOGON. The login works fine. When I write the domain/
computer name of anoter OS installation from the same machine, the
logon still works! I checked the trace up to the moment where the data
are returned back via GetSerializaion method. If I enter I dumy
computer name and try the same again, it will report the error
"unknown user name or bad password..." It seems that it works only if
I enter the computer name of the other OS installation. I discovered
this by mistake because on the same laptop I have vista 32 bit and
then vista 64 bit. On the SmartCard I had and account
"igorvista64\administrator" with password 1234 and managed to login on
the system igorvista32 with the account "igorvista32\administrator"
with the same passowrd 1234. This coincidence led me to the
conclusion. The same goes for the unlock scenario.
Can MS support / insiders elaborate on this?

Thanks,
Igor Jovanovski
 
Reply With Quote
 
 
 
 
DaveMo
Guest
Posts: n/a

 
      12-11-2008
On Dec 10, 10:01*am, igor.jovanov...@gmail.com wrote:
> This might seem not very reliable case, but stay with me on this
> explanation, it seems that windows has a bug here:
>
> We have a Credential Provider for proprietery logon with Smart Cards.
> In the Crededntial Provider I read the accounts from the Smart Card
> and submit them in the GetSerialization method packed in
> KERB_INTERACTIVE_LOGON. The login works fine. When I write the domain/
> computer name of anoter OS installation from the same machine, the
> logon still works! I checked the trace up to the moment where the data
> are returned back via GetSerializaion method. If I enter I dumy
> computer name and try the same again, it will report the error
> "unknown user name or bad password..." It seems that it works only if
> I enter the computer name of the other OS installation. I discovered
> this by mistake because on the same laptop I have vista 32 bit and
> then vista 64 bit. On the SmartCard I had and account
> "igorvista64\administrator" with password 1234 and managed to login on
> the system igorvista32 with the account "igorvista32\administrator"
> with the same passowrd 1234. This coincidence led me to the
> conclusion. The same goes for the unlock scenario.
> Can MS support / insiders elaborate on this?
>
> Thanks,
> Igor Jovanovski


Igor,

There are some odd shortcut cases where the domain parameter might be
ignored during logon. This allows some very old down-level scenarios
to work the way people wanted them to work before there were domains.
Since the account and password are correct the logon is working. It's
not usually a problem and probably shouldn't concern you for what you
are doing.

I could be wrong and there could be some horrible new bug here but I
don't see a cause for concern.

HTH,
Dave
 
Reply With Quote
 
igor.jovanovski@gmail.com
Guest
Posts: n/a

 
      02-02-2009
On Dec 11 2008, 5:55*pm, DaveMo <david.mow...@gmail.com> wrote:
> On Dec 10, 10:01*am,igor.jovanov...@gmail.com wrote:
>
>
>
>
>
> > This might seem not very reliable case, but stay with me on this
> > explanation, it seems that windows has a bug here:

>
> > We have aCredentialProviderfor proprietery logon withSmartCards.
> > In the CrededntialProviderI read the accounts from theSmartCard
> > and submit them in the GetSerialization method packed in
> > KERB_INTERACTIVE_LOGON. The login works fine. When I write the domain/
> > computer name of anoter OS installation from the same machine, the
> > logon still works! I checked the trace up to the moment where the data
> > are returned back via GetSerializaion method. If I enter I dumy
> > computer name and try the same again, it will report the error
> > "unknown user name or bad password..." It seems that it works only if
> > I enter the computer name of the other OS installation. I discovered
> > this by mistake because on the same laptop I have vista 32 bit and
> > then vista 64 bit. On the SmartCard I had and account
> > "igorvista64\administrator" with password 1234 and managed to login on
> > the system igorvista32 with the account "igorvista32\administrator"
> > with the same passowrd 1234. This coincidence led me to the
> > conclusion. The same goes for the unlock scenario.
> > Can MS support / insiders elaborate on this?

>
> > Thanks,
> >IgorJovanovski

>
> Igor,
>
> There are some odd shortcut cases where the domain parameter might be
> ignored during logon. This allows some very old down-level scenarios
> to work the way people wanted them to work before there were domains.
> Since the account and password are correct the logon is working. It's
> not usually a problem and probably shouldn't concern you for what you
> are doing.
>
> I could be wrong and there could be some horrible new bug here but I
> don't see a cause for concern.
>
> HTH,
> Dave- Hide quoted text -
>
> - Show quoted text -



Hi Dave,

Thank you for your feedback.
This issue still makes me think as it appears only when the computer
name is an existing one on the laptop (just another partition)

Igor

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Different user credentials Or Tsemah Windows Vista Networking 1 08-20-2007 09:37 AM
How to run application under different credentials James Windows Vista General Discussion 3 08-15-2007 03:23 AM
I don't have any credentials to enter! Yarrielle Windows Vista Networking 5 04-16-2007 05:10 PM
entering credentials for Run as Brandon Windows Vista General Discussion 1 11-30-2006 07:03 PM
Workgroup credentials Ian M. Walker Windows Vista Networking 4 06-17-2006 01:15 AM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59