Re: Veritas Backup Exec opens networks for NetBIOS based attacks?

From: John Singler (singler@MAIL.VET.UPENN.EDU)
Date: 09/11/02


Date:         Wed, 11 Sep 2002 08:34:24 -0400
From: John Singler <singler@MAIL.VET.UPENN.EDU>
To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM

At 07:26 AM 9/11/2002, Andy David wrote:
---<snip>---
>After a quick search of the Veritas knowledgebase the
>following articles were found:
>
>http://seer.support.veritas.com/docs/239059.htm
>http://seer.support.veritas.com/docs/239391.htm
>
>These articles reveal that in order for Backup Exec versions 8.5 and 8.6
>to remotely backup Active Directory or Exchange 2000 databases that the
>RestrictAnonymous setting MUST be set to 0.

---/snip>---

Actually, this only affects AD AND Exchange...AD without Exchange can be
securely backed up with RA=2.