RE: Access Based Directory Enumeration
- From: Manny Borges <MannyBorges@xxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Fri, 17 Jun 2005 08:12:06 -0700
Great question!
>From what your tests have shown (in my opinion)this is a totally useless
tool. Who is logging into a 2003 console? Admins.
Who do we really want to filter...ummm, users?
I mean I can see the value of filtering the views to files so that potato
head admins and password resetters can't mess with things, but thats a minor
need.
"MF" wrote:
> Hi all,
>
>
>
> MS has published a long awaited tool for win03 server sp1 - access based
> directory enumeration.
>
>
>
> The white paper goes 'ABE filters shared folders visible to a user based on
> that individual user's access rights, preventing the display of folders or
> other shared resources that the user does not have rights to access.' As I
> understand it, the shared folders should not be visible to users if they
> have not the proper rights.
>
>
>
> I have installed the tool and it does filter folders if a user has no right
> to access. But it does not filter shares! This is disappointing, because
> filtering shares would be much more useful. Is this by design?
>
>
>
> Thank you,
>
> Martin
>
>
>
.
- References:
- Access Based Directory Enumeration
- From: MF
- Access Based Directory Enumeration
- Prev by Date: RE: Server 2k starts beeping then hangs up...
- Next by Date: Re: NT backup and logging out
- Previous by thread: Access Based Directory Enumeration
- Next by thread: Re: Very slow startup proccess after installing W2003 SP1 on DC's
- Index(es):
Relevant Pages
|