RE: [fw-wiz] what is the current state of Active Directory mixed-mode?

From: Steve Evans (sevans@foundation.sdsu.edu)
Date: 10/28/02


From: "Steve Evans" <sevans@foundation.sdsu.edu>
To: "David Lang" <david.lang@digitalinsight.com>, <firewall-wizards@honor.icsalabs.com>
Date: Mon Oct 28 20:43:02 2002

You have always been able to switch from mixed to native. The only requirment is to no longer have any NT4 BDC's.

-----Original Message-----
From: David Lang [mailto:david.lang@digitalinsight.com]
Sent: Mon 10/28/2002 2:54 PM
To: firewall-wizards@honor.icsalabs.com
Cc:
Subject: [fw-wiz] what is the current state of Active Directory mixed-mode?
the last time I looked at Win2K Active Directory word was that when run in
mixed mode it exposed lots of sensitive stuff via LDAP and that it took a
reinstall on the server to switch from mixed mode to native mode.

is this still the case? if so can someone please point me at some links
that show why mixed mode is a security nightmare? (even though the install
on w2k tells you it isn't secure I am in the position of having to proove
it as well, sigh...)

I've spent the last couple hours going through google searches and have
found some hints that it may now be possible to switch from mixed mode to
native mode, but nothing definante yet, and while I've found lots of stuff
talking about the programming interface to access Active Directory via
LDAP in mixed mode I haven't been able to find a single security paper on
it, just lots of examples of how people are useing it :-(

David Lang
_______________________________________________
firewall-wizards mailing list
firewall-wizards@honor.icsalabs.com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Breakpoints firing inside mscorwks.dll
    ... >> After reading your post I started playing with that switch. ... Finally I switch to managed and the breakpoints ... Mixed mode makes things a little better. ... One thing I can do for you is to crash dump VS or the entire OS and ...
    (microsoft.public.vc.debugger)
  • Re: Cant connect to mssql
    ... switch to Mixed mode. ... More details on that on my website under the ... screencasts sections ...
    (microsoft.public.sqlserver.connect)
  • Re: upgrade NT4 domain- PDC/BDC process
    ... domain is if it is in mixed mode. ... OK and does not need to be changed, make the switch. ... > PDC and BDC and several Win2000 member servers. ...
    (microsoft.public.win2000.setup_upgrade)
  • Switch to native mode blocked
    ... I have a single E2K server organization that started with an Exchange 5.5 ... organization but I'm hesitant to do that for fear the mixed mode from E2K ... will haunt me when I want native mode in E2K3. ... Any thoughts on how to get to native mode now before the switch or will it ...
    (microsoft.public.exchange2000.general)
  • [fw-wiz] what is the current state of Active Directory mixed-mode?
    ... reinstall on the server to switch from mixed mode to native mode. ... talking about the programming interface to access Active Directory via ... LDAP in mixed mode I haven't been able to find a single security paper on ...
    (Firewall-Wizards)