Ok I recreated the user "a" with a non-null pwd and it worked. BUT POST does 
not work in ANY browser! Never authenticates. This is the Ethereal dump:

Ôò¡          ÿÿ     €E E¬D ú  ú   v÷êË [EMAIL PROTECTED] E ì-@ 
€E&À¨À¨“ 
PqÃA…h7õµPÿÿX]  POST / HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, 
application/x-shockwave-flash, application/vnd.ms-excel, 
application/vnd.ms-powerpoint, application/msword, */*
Referer: http://fastream.homeip.net/
Accept-Language: tr,en-us;q=0.5
Content-Type: multipart/form-data; 
boundary=---------------------------7d637af120086
UA-CPU: x86
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 
1.1.4322)
Host: fastream.homeip.net
Connection: Keep-Alive
Cache-Control: no-cache
Cookie: IQDomain="NAME=949BB1BDF325862423C53938CEA5EB6D
Authorization: NTLM TlRMTVNTUAABAAAAB4IIogAAAAAAAAAAAAAAAAAAAAAFASgKAAAADw==
Content-Length: 0

€E EÔL      ØÍ•@ v÷êË E ùÕ6@ €œqÀ¨À¨ P“h7õµqÃDIPÿÿ⁠
HTTP/1.1 401 Authorization Required
WWW-Authenticate: NTLM 
TlRMTVNTUAACAAAADAAMADgAAAAFgoqioCqv9v7MM+EAAAAAAAAAAEQARABEAAAABQEoCgAAAA9MAEEAUABUAE8AUAACAAwATABBAFAAVABPAFAAAQAMAEwAQQBQAFQATwBQAAQADABsAGEAcAB0AG8AcAADAAwAbABhAHAAdABvAHAAAAAAAA==
Content-Length: 629
Content-Type: text/html
Connection: close
Server: Fastream IQ Reverse Proxy

<HTML><HEAD><TITLE>401 Authorization Required</TITLE></HEAD><BODY><FONT 
FACE="Verdana"><H1>Authorization Required</H1><BR>This server could not 
verify that you are authorized to access the document requested. Either you 
supplied the wrong credentials (e.g. bad password), or your browser doesn't 
understand how to supply the credentials required. You may want to contact 
the server administrator here: <A 
HREF="mailto:[EMAIL PROTECTED]">[EMAIL PROTECTED]</A>.<P><BR><HR><I><B>Fastream 
IQ Reverse Proxy</B><BR><A 
HREF="http://www.fastream.com/IQReverseProxy/";>www.fastream.com/IQReverseProxy</A></I><HR></FONT></BODY></HTML>€E
 
EøM 6   6    ØÍ•@ v÷êË E  (Õ7@ € AÀ¨À¨ P“h7ù†qÃDIPÿÿÏ  €E EŠN < 
<    v÷êË [EMAIL PROTECTED] E  (-‘@ €GèÀ¨À¨“ PqÃDIh7ù‡Pü.         €E 
E¸Q Ô 
Ô   v÷êË [EMAIL PROTECTED] E Æ-’@ €DIÀ¨À¨“ PqÃDIh7ù‡Pü.âr  POST / 
HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, 
application/x-shockwave-flash, application/vnd.ms-excel, 
application/vnd.ms-powerpoint, application/msword, */*
Referer: http://fastream.homeip.net/
Accept-Language: tr,en-us;q=0.5
Content-Type: multipart/form-data; 
boundary=---------------------------7d637af120086
UA-CPU: x86
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 
1.1.4322)
Host: fastream.homeip.net
Content-Length: 194
Connection: Keep-Alive
Cache-Control: no-cache
Cookie: IQDomain="NAME=949BB1BDF325862423C53938CEA5EB6D
Authorization: NTLM 
TlRMTVNTUAADAAAAGAAYAJoAAAAYABgAsgAAACYAJgBIAAAAGgAaAG4AAAASABIAiAAAAAAAAADKAAAABYKIogUBKAoAAAAPZgBhAHMAdAByAGUAYQBtAC4AaABvAG0AZQBpAHAALgBuAGUAdABhAGQAbQBpAG4AaQBzAHQAcgBhAHQAbwByAEIATABBAEMASwBIAEEAVwBLAN96CsZ+Wo0dAAAAAAAAAAAAAAAAAAAAAMMFoduSgerudny+MJHuX4KJKkWtO+xVNg==

€E ER ø   ø    v÷êË [EMAIL PROTECTED] E  ê-“@ €G$À¨À¨“ 
qÃGçh7ù‡Pü."A  -----------------------------7d637af120086
Content-Disposition: form-data; name="upfile"; filename=""
Content-Type: application/octet-stream


-----------------------------7d637af120086--
€E E7R 6   6    ØÍ•@ v÷êË E  (Õ8@ € @À¨À¨ P“h7ù‡qÃH©PûŸÏ  €E 
ES <   <    v÷êË [EMAIL PROTECTED] E  (-”@ €GåÀ¨À¨“ PqÃH©h7ù‡Pü.?    
    €E 
E?S 6   6    ØÍ•@ v÷êË E  (Õ9@ € ?À¨À¨ P“h7ù‡qÃHªPûŸÎ  €E EžT > 
 >    v÷êË [EMAIL PROTECTED] E  0-•@ €GÜÀ¨À¨– PùøŸª    pÿÿ^?  
 > ´€E EÒT > 
 >    ØÍ•@ v÷êË E  0Õ:@ € 6À¨À¨ P–ȹ¼EùøŸ«pÿÿÙ.  ´€E EqU < 
<    v÷êË [EMAIL PROTECTED] E  (-—@ €GâÀ¨À¨– PùøŸ«È¹¼FPÿÿó        €E 
EaV Ô 
Ô   v÷êË [EMAIL PROTECTED] E Æ-˜@ €DCÀ¨À¨– PùøŸ«È¹¼FPÿÿ×Å  POST / 
HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, 
application/x-shockwave-flash, application/vnd.ms-excel, 
application/vnd.ms-powerpoint, application/msword, */*
Referer: http://fastream.homeip.net/
Accept-Language: tr,en-us;q=0.5
Content-Type: multipart/form-data; 
boundary=---------------------------7d637af120086
UA-CPU: x86
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 
1.1.4322)
Host: fastream.homeip.net
Content-Length: 194
Connection: Keep-Alive
Cache-Control: no-cache
Cookie: IQDomain="NAME=949BB1BDF325862423C53938CEA5EB6D
Authorization: NTLM 
TlRMTVNTUAADAAAAGAAYAJoAAAAYABgAsgAAACYAJgBIAAAAGgAaAG4AAAASABIAiAAAAAAAAADKAAAABYKIogUBKAoAAAAPZgBhAHMAdAByAGUAYQBtAC4AaABvAG0AZQBpAHAALgBuAGUAdABhAGQAbQBpAG4AaQBzAHQAcgBhAHQAbwByAEIATABBAEMASwBIAEEAVwBLAN96CsZ+Wo0dAAAAAAAAAAAAAAAAAAAAAMMFoduSgerudny+MJHuX4KJKkWtO+xVNg==

€E Eé O  O   ØÍ•@ v÷êË E AÕ?@ € À¨À¨ P–ȹ¼Fùø£IPüa^ 
HTTP/1.1 401 Authorization Required
WWW-Authenticate: NTLM
Content-Length: 629
Content-Type: text/html
Connection: close
Server: Fastream IQ Reverse Proxy

<HTML><HEAD><TITLE>401 Authorization Required</TITLE></HEAD><BODY><FONT 
FACE="Verdana"><H1>Authorization Required</H1><BR>This server could not 
verify that you are authorized to access the document requested. Either you 
supplied the wrong credentials (e.g. bad password), or your browser doesn't 
understand how to supply the credentials required. You may want to contact 
the server administrator here: <A 
HREF="mailto:[EMAIL PROTECTED]">[EMAIL PROTECTED]</A>.<P><BR><HR><I><B>Fastream 
IQ Reverse Proxy</B><BR><A 
HREF="http://www.fastream.com/IQReverseProxy/";>www.fastream.com/IQReverseProxy</A></I><HR></FONT></BODY></HTML>€E
 
E& 6   6    ØÍ•@ v÷êË E  (Õ@@ € 8À¨À¨ P–ȹ¿_ùø£IPüaÙ  €E Eó < 
<    v÷êË [EMAIL PROTECTED] E  (-š@ €GßÀ¨À¨– Pùø£Iȹ¿_PüæT        €E 
E < 
<    v÷êË [EMAIL PROTECTED] E  (-›@ €GŞÀ¨À¨– Pùø£Jȹ¿`PüæS        €E 
E5 6 
6    ØÍ•@ v÷êË E  (ÕA@ € 7À¨À¨ P–ȹ¿`ùø£JPüaØ  ‚E E .   .    
^ÿú v÷êË F   ÕF  œìÀ¨ïÿÿú”   úïÿÿú‡E Ed
 <   <    ^   ¿[Aw E  #  À¨à  dî›          @ t¸ÂÏ.jZUl‰E E©/ 
.   .    ^ÿú v÷êË F   ÕG  œëÀ¨ïÿÿú”   úïÿÿúŠE E¥ >   >    v÷êË 
[EMAIL PROTECTED] E  0-œ@ €GÕÀ¨À¨— Ph¸€    pÿÿ×[  ´ŠE Eü >   > 
ØÍ•@ v÷êË E  0ÕH@ € (À¨À¨ P—ä<h¸pÿÿ‚K  ´ŠE E¥ <   < 
v÷êË [EMAIL PROTECTED] E  (-ž@ €GÛÀ¨À¨— Ph¸ä<Pÿÿ¯        ŠE Eƒ 
ú  ú 
v÷êË [EMAIL PROTECTED] E ì-Ÿ@ €EÀ¨À¨— Ph¸ä<PÿÿÇ4  POST / HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, 
application/x-shockwave-flash, application/vnd.ms-excel, 
application/vnd.ms-powerpoint, application/msword, */*
Referer: http://fastream.homeip.net/
Accept-Language: tr,en-us;q=0.5
Content-Type: multipart/form-data; 
boundary=---------------------------7d637af120086
UA-CPU: x86
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 
1.1.4322)
Host: fastream.homeip.net
Cookie: IQDomain="NAME=949BB1BDF325862423C53938CEA5EB6D
Connection: Keep-Alive
Cache-Control: no-cache
Authorization: NTLM TlRMTVNTUAABAAAAB4IIogAAAAAAAAAAAAAAAAAAAAAFASgKAAAADw==
Content-Length: 0

ŠE E2L      ØÍ•@ v÷êË E ùÕI@ €œ^À¨À¨ P—ä<h»EPı;å7 
HTTP/1.1 401 Authorization Required
WWW-Authenticate: NTLM 
TlRMTVNTUAACAAAADAAMADgAAAAFgoqin8sAeAp+szUAAAAAAAAAAEQARABEAAAABQEoCgAAAA9MAEEAUABUAE8AUAACAAwATABBAFAAVABPAFAAAQAMAEwAQQBQAFQATwBQAAQADABsAGEAcAB0AG8AcAADAAwAbABhAHAAdABvAHAAAAAAAA==
Content-Length: 629
Content-Type: text/html
Connection: close
Server: Fastream IQ Reverse Proxy

<HTML><HEAD><TITLE>401 Authorization Required</TITLE></HEAD><BODY><FONT 
FACE="Verdana"><H1>Authorization Required</H1><BR>This server could not 
verify that you are authorized to access the document requested. Either you 
supplied the wrong credentials (e.g. bad password), or your browser doesn't 
understand how to supply the credentials required. You may want to contact 
the server administrator here: <A 
HREF="mailto:[EMAIL PROTECTED]">[EMAIL PROTECTED]</A>.<P><BR><HR><I><B>Fastream 
IQ Reverse Proxy</B><BR><A 
HREF="http://www.fastream.com/IQReverseProxy/";>www.fastream.com/IQReverseProxy</A></I><HR></FONT></BODY></HTML>ŠE
 
E.M 6   6    ØÍ•@ v÷êË E  (ÕJ@ € .À¨À¨ P—ä?íh»EPı;«=  ŠE EON < 
<    v÷êË [EMAIL PROTECTED] E  (-¡@ €GØÀ¨À¨— Ph»Eä?îPü.¬J        ŠE 
E˜P ° 
°   v÷êË [EMAIL PROTECTED] E ¢-¢@ €D]À¨À¨— Ph»Eä?îPü.ì¦  POST / 
HTTP/1.1
Accept: image/gif, image/x-xbitmap, image/jpeg, image/pjpeg, 
application/x-shockwave-flash, application/vnd.ms-excel, 
application/vnd.ms-powerpoint, application/msword, */*
Referer: http://fastream.homeip.net/
Accept-Language: tr,en-us;q=0.5
Content-Type: multipart/form-data; 
boundary=---------------------------7d637af120086
UA-CPU: x86
Accept-Encoding: gzip, deflate
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; .NET CLR 
1.1.4322)
Host: fastream.homeip.net
Cookie: IQDomain="NAME=949BB1BDF325862423C53938CEA5EB6D
Connection: Keep-Alive
Cache-Control: no-cache
Authorization: NTLM 
TlRMTVNTUAADAAAAGAAYAIAAAAAYABgAmAAAAAwADABIAAAAGgAaAFQAAAASABIAbgAAAAAAAACwAAAABYKIogUBKAoAAAAPbABhAHAAdABvAHAAYQBkAG0AaQBuAGkAcwB0AHIAYQB0AG8AcgBCAEwAQQBDAEsASABBAFcASwDfkLizRDmqUgAAAAAAAAAAAAAAAAAAAADDlsa6UMs01Ep9zIP4BKpkzVT2V7CiC4A=
Content-Length: 194

ŠE E^Q ø   ø    v÷êË [EMAIL PROTECTED] E  ê-£@ €GÀ¨À¨— 
h¾¿ä?îPü.¾  -----------------------------7d637af120086
Content-Disposition: form-data; name="upfile"; filename=""
Content-Type: application/octet-stream


-----------------------------7d637af120086--
ŠE E|Q 6   6    ØÍ•@ v÷êË E  (ÕK@ € -À¨À¨ P—ä?îh¿Pÿÿ¤=  ŠE 
EÃQ <   <    v÷êË [EMAIL PROTECTED] E  (-¤@ €GÕÀ¨À¨— Ph¿ä?îPü.¨
        ŠE EæQ 6   6    ØÍ•@ v÷êË E  (ÕL@ € ,À¨À¨ P—ä?îh¿‚Pÿÿ¤<

----- Original Message ----- 
From: "Stadin, Benjamin" <[EMAIL PROTECTED]>
To: <twsocket@elists.org>
Sent: Thursday, September 14, 2006 3:05 PM
Subject: Re: [twsocket] Fw: Urgent (Another simple NTLM question)


:I said that several times. You must at least have "admin helper" (I don't
: remember what specific privileges are needed) rights to query the user db,
: also if you want to auth in a domain your app must run as domain user with
: sufficent rights. This is also the case with MS user management utility 
for
: NT domain users (at least NT4 I worked with years ago).
:
: I think that empty passwords are not allowed, so your user a would never 
be
: allowed to log in. At least at home I can't use empty pw's with my xp
: machines in the net. Test with network SMB login.
:
: You can change the auto-login and trusted URIs in FF at about:config. I
: asked you to do so, because I think it's possible that IE sends it's 
domain
: name in the NTLM challenge for auto-login reasons. NTLM single sign on is
: used by IE by default, in FF you must enable it. So maybe the server uses 
a
: wrong domain with FF and it just works with IE because it sends the 
domain.
: The domain isn't actually needed, because the server has to decide which
: domain to use, but there may be something fishy at this point at the 
server
: side right now (ie when FF sends an empty domain when not doing auto-login
: the server may try to auth this domain, instead it should overwrite it 
with
: it's own default domain - maybe).
:
:
:
: SZ wrote:
:
: Latest report: when I used the Administrator account of Windows, it 
worked!
::) So I am beginning to think this is a problem with security policies of
: some Windows.
:
: Regards,
:
: SZ
: -- 
: To unsubscribe or change your settings for TWSocket mailing list
: please goto http://www.elists.org/mailman/listinfo/twsocket
: Visit our website at http://www.overbyte.be 

-- 
To unsubscribe or change your settings for TWSocket mailing list
please goto http://www.elists.org/mailman/listinfo/twsocket
Visit our website at http://www.overbyte.be

Reply via email to