Re: Anonymous LDAP on Windows 2003

From: aaron (aaron_at_fake.net)
Date: 12/22/04


Date: Wed, 22 Dec 2004 08:52:15 -0600

I was in this same situation. I enabled anonymous logon for the domain at
the domain level. Then I granted read access to "anonymous logon"to only
the OU's that I needed. We had to do this because the RADIUS servers are in
a different domain/forest and wouldn't authenticate users.

-- 
aaron
A+,NET+,MCSE 2K/2K3,CNA,CCNA
"Igor" <Igor@discussions.microsoft.com> wrote in message 
news:B109620B-12B1-4DBF-A07C-31EFBDA28DB0@microsoft.com...
>I am in the position that I have to allow anonymous LDAP operations on our
> 2003 domain controllers. I know that this was allowed by default on 
> Windows
> 2000, but has been changed on Windows 2003. I wonder what the consequences
> are regarding security, and is there any other way of restricting 
> anonymous
> access to all objects in AD once it is allowed?
>
> Thanks,
> -- 
> Igor
> 


Relevant Pages

  • Re: Retire or Upgrade and Retire?
    ... I would think this server was a BDC promoted to PDC and then upgraded ... to Windows 2000. ... DC and then raise our domain level to Native Mode 03. ...
    (microsoft.public.windows.server.general)
  • Re: Recovering files
    ... > How to take ownership of a file or folder in Windows XP ... > In XP Home you have to boot in safe mode to see the security tab. ... > | Igor ...
    (microsoft.public.windowsxp.help_and_support)
  • Re: passwords cant be changed
    ... even those who are logged into Windows 2003 with Windows XP can't ... it's just impossible for ordinary users to change them. ... Use the RSOP MMC snapin to see if such a GPO is operating on your domain ... (It will be set at the domain level but will show up in RSOP ...
    (microsoft.public.exchange.admin)
  • Re: Windows XP Welcome Screen and NT Server 4.0 Security
    ... or can I go the Domain Level for User Security ... Windows NT 4.0 Server domain? ... that she can only get the Welcome Screen in Workgroup mode, ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Windows XP Welcome Screen and NT Server 4.0 Security
    ... Windows NT 4.0 Server domain? ... but I want Domain Level User security. ... that she can only get the Welcome Screen in Workgroup mode, ...
    (microsoft.public.windowsxp.security_admin)