Re: [Full-disclosure] Re: It's not that simple...

From: Micheal Espinola Jr (michealespinola_at_gmail.com)
Date: 08/17/05

  • Next message: Jason Coombs: "Re: [Full-disclosure] Re: It's not that simple..."
    Date: Wed, 17 Aug 2005 17:54:50 -0400
    To: full-disclosure@lists.grok.org.uk
    
    

    Surely. Disabling Null Sessions is recommended security practice. I
    have been doing it for at least 10 years now.

    I think I first wrote about it in "The Hardening of Windows NT", which
    IIRC, was in 1995.

    On 8/17/05, Kurt Seifried <listuser@seifried.org> wrote:
    > Actually it really is that simple. Disabling Null sessions is entirely
    > possible, quite easy, and doesn't break a lot (at least in my previous
    > testing years ago it didn't break anything noticeable).

    [snip]

    > -Kurt Seifried
    > http://seifried.org/freescan2/
    > https://lists.seifried.org/mailman/listinfo/security

    -- 
    ME2  <http://www.santeriasys.net/>
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/
    

  • Next message: Jason Coombs: "Re: [Full-disclosure] Re: It's not that simple..."

    Relevant Pages

    • Re: eventid 1164
      ... Before i disabled the Information Store scan the number of sessions had ... disabling the scan) and it remained at the same number all day and its ... I have bit the bullet and given Sophos a call..... ... Sessions and Sophos/Pure Message. ...
      (microsoft.public.exchange.admin)
    • Re: Linux and Windows - Do I need more than Samba ?
      ... you can use nautilus (gnome) ... Nautilus is *NOT* your friend. ... background all the time in most Gnome based X sessions, ... Disabling it means ...
      (comp.protocols.smb)
    • Re: [Full-disclosure] Re: Its not that simple...
      ... Jason Coombs: ... Disabling Null sessions is ... useful details have been eliminated and vendors fear to give away too ...
      (Full-Disclosure)
    • Re: Problem with sessions
      ... > I'm finishing up a site I built. ... It uses sessions for a simple login ... Try disabling this value: ...
      (alt.php)