Help : Win95 securuty hole (one more)

Rob Naccarato rob.naccarato at sheridanc.on.ca
Fri Feb 27 13:54:22 GMT 1998


> Rob Naccarato <rob.naccarato at sheridanc.on.ca> wrote :
> 
> > Actually, can't it be done via the policies?  In poledit.exe, I think
> > the entry is in Computer->Network->Logon (or something like that).
> > In there is a selection for "Require validation by NT server before
> > access to Win95".
>  
> yep that's what i have done. 
> But here the problem is that authentication prevents you to run
> applications without some server told that you have the right, but so
> genious Microsoft programmers have decided to permit to run a task manager
> even if you have not logged on and that task manager permits to run any
> application that is installed locally. For example explorer that give you
> e session on the machine.
> Very clever, no?
> 

Well, you could delete the taskman.exe file from the local hard drive.
That's what we did here.


-- 

Rob Naccarato           "I know I'm a lot of feathers,
Sys Admin               but not much chicken."
Sheridan College                         -KM
Oakville, Ont. Canada




More information about the samba mailing list