[Samba] 3.0.2a: SID, User Enumeration

fire-eyes sgtphou at fire-eyes.dynup.net
Sun Mar 7 15:51:57 GMT 2004


I'm runninng samba 3.0.2a on a few machines, ADS security mode, domain 
member roles. I throw nessus at it, and it can fetch the SID and then 
list all of the users on the system.

I view this as a security problem, is there a way to prevent this?


More information about the samba mailing list