Shares enumerated through a null session

Gerald Carter gcarter at valinux.com
Sun Jul 1 23:32:59 GMT 2001


On Sun, 1 Jul 2001, Matthias Schuendehuette wrote:

> Hello everybody,
>
> last week I tried to avoid a (medium severity) security complaint I got
> from the ISS scanner of our security departement: "Shares enumerated
> through a Null Session". I'm running Samba 2.0.9 on FreeBSD 4.3-STABLE.
> It acts as a printserver with one filesystem share for the appropriate
> printer drivers.
...
>
> I can't access any share, be printer or filesystem, without beeing known
> to the system but this dammed 'net view' works nonethless :-(

'restrict anonymous = yes' (but beware of the consequences) :-)







cheers, jery
 ---------------------------------------------------------------------
 http://www.valinux.com/     VA Linux Systems      gcarter at valinux.com
 http://www.samba.org/          SAMBA Team             jerry at samba.org
 http://www.plainjoe.org/                           jerry at plainjoe.org
 --"I never saved anything for the swim back." Ethan Hawk in Gattaca--





More information about the samba-technical mailing list