»
 

Go Back   ResellerRatings Store Ratings > ResellerRatings Forums > Tech Support

Reply
 
LinkBack Thread Tools Display Modes
Old 08-25-2003, 02:51 PM   #1 (permalink)
Registered User
 
Join Date: Aug 2003
Posts: 17
Pritesh is on a distinguished road
I got a security question about IPC$ share

Hi everyone,
As i understand it hackers can use a tool called enum to enumerate shares and other such information through setting up a null session which the tool does automatically for the user.
I have used this tool on myself and my boss, and we were shocked to see it sneak through our firewalls.
We tried this registry edit to turn off the anon logon.

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Contro l\LSA

Value Name RestrictAnonymous

Type REG_DWORD
change value from 0 to 1

But i was still able to enum his machine. Is there a way to stop null sessions to ones machine completely?

Thank you for yer help

Pritesh is offline   Reply With Quote
Old 08-25-2003, 03:05 PM   #2 (permalink)
Registered User
 
SeanC's Avatar
 
Join Date: Oct 2001
Location: Toronto Canada
Posts: 1,437
SeanC is on a distinguished road
If you go to www.grc.com I believe he has a tool that blocks enumeration.

Sean
SeanC is offline   Reply With Quote
Reply




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Most Active Discussions

Recent Discussions

All times are GMT -6. The time now is 05:58 AM.