Re: Exchange Banner

From: Michael Ray (miker@cotse.com)
Date: 07/21/02


From: Michael Ray <miker@cotse.com>
To: <pentest.nospam13@web-cities.net>
Date: Sun, 21 Jul 2002 12:19:16 -0500

On Fri, 19 Jul 2002 12:54:36 -0700, you wrote:

>I am trying to locate the info on Modified Exchange Banners... to no avail.
>
>Anyone got any links or ideas? Our client want's to mask it.
>
>Regards,
>Dr B

SMTP:
http://support.microsoft.com/default.aspx?scid=KB;EN-US;Q281224&

POP/IMAP:
http://support.microsoft.com/default.aspx?scid=kb;EN-US;q303513

Also look at the guides compiled by the NSA on securing Exchange 5.5
and 2000 for other things you can do in addition to banner changes.

Exchange 5.5:
http://nsa1.www.conxion.com/emailexec/guides/eec-2.pdf

Exchange 2000:
http://nsa1.www.conxion.com/win2k/guides/w2k-21.pdf

All guides:
http://nsa1.www.conxion.com/index.html

Mike

--
Michael Ray
http://www.cotse.com
http://www.packetderm.com

---------------------------------------------------------------------------- This list is provided by the SecurityFocus Security Intelligence Alert (SIA) Service. For more information on SecurityFocus' SIA service which automatically alerts you to the latest security vulnerabilities please see: https://alerts.securityfocus.com/



Relevant Pages

  • Re: Application-based fingerprinting ?
    ... It currently takes banners from WWW, telnetd, ftp, smtp, snmp ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • RE: Cross Site Scripting Vulnerabilities - XSS
    ... Cross Site Scripting Vulnerabilities - XSS ... >> This list is provided by the SecurityFocus Security Intelligence ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Cross Site Scripting Vulnerabilities - XSS
    ... Cross Site Scripting Vulnerabilities - XSS ... >>> This list is provided by the SecurityFocus Security Intelligence ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: faster scans? (nmap)
    ... one host using nmap for syn scans in burst mode with the ... >>>This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • RE: Using ARP to map a network
    ... On a HUB there would be absolutely no reason to send out ARP replies, ... >> This list is provided by the SecurityFocus Security Intelligence ... For more information on SecurityFocus' SIA service which ... > automatically alerts you to the latest security vulnerabilities please see: ...
    (Pen-Test)