RE: Restricting anonymous LDAP enumeration Windows 2000

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Marc Hotescheck (MarcHotescheck_at_discussions.microsoft.com)
Date: 09/10/04


Date: Fri, 10 Sep 2004 08:39:04 -0700

Hello JC,

here are two links on sides, which perhaps answer your questions

http://www.washington.edu/computing/support/windows/UWdomains/w2kservsecchecklist.html

or

http://www.microsoft.com/resources/documentation/WindowsServ/2003/all/deployguide/en-us/Default.asp?url=/resources/documentation/WindowsServ/2003/all/deployguide/en-us/dsscc_aut_xjus.asp

Marc

"JC" wrote:

> Hello,
>
> Is there a way to restrict anonymous LDAP enumerations within a Windows 2000
> mixed mode Active Directory environment? We ran a security scan and this
> topic came up as a security risk so I am trying to restrict anonymous users
> access to LDAP information.
>
> Also, should everyone have read access permissions settings to the default
> domain (mydomain.com) in Active directory Users and computers? I am not
> sure if everyone should have read access. Please advise. Thanks.
>
>
> JC
>
>
>



Relevant Pages

  • Restricting anonymous LDAP enumeration Windows 2000
    ... Is there a way to restrict anonymous LDAP enumerations within a Windows 2000 ... We ran a security scan and this ... topic came up as a security risk so I am trying to restrict anonymous users ... domain in Active directory Users and computers? ...
    (microsoft.public.win2000.active_directory)
  • Restricting anonymous LDAP enumeration Windows 2000
    ... Is there a way to restrict anonymous LDAP enumerations within a Windows 2000 ... We ran a security scan and this ... topic came up as a security risk so I am trying to restrict anonymous users ... domain in Active directory Users and computers? ...
    (microsoft.public.win2000.security)
  • RE: Restricting anonymous LDAP enumeration Windows 2000
    ... > Is there a way to restrict anonymous LDAP enumerations within a Windows 2000 ... > topic came up as a security risk so I am trying to restrict anonymous users ... > domain in Active directory Users and computers? ...
    (microsoft.public.win2000.security)