Re: Security Hardening



"S. Pidgorny <MVP>" <slavickp@xxxxxxxxx> wrote in
news:OzwKoyRnHHA.1216@xxxxxxxxxxxxxxxxxxxx:

I don't know. I haven't tried hiding resources for reasons I have
outlined in other posts. Clients find the DC using DNS and not browse
list (a NetBIOS legacy) so probably therewill be no impact. However I
don't know what exactly net config server does - I live the
experimenting to you.

--
Svyatoslav Pidgorny, MS MVP - Security, MCSE
-= F1 is the key =-

* http://sl.mvps.org * http://msmvps.com/blogs/sp *

"DD" <DD@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:2177A11F-A291-4CAF-A954-7A4625312CC8@xxxxxxxxxxxxxxxx

We want to hide the DC as well. What is the impact if i run the net
config server /hidden:yes|no





If you manage to hide something successfully from the "bad guys", it will
be hidden from your legitimate users, as well. If your legitimate users
can find something, so can others. If you or your users need access, you
won't be able to keep others from finding it in the same way. Remember
that until they authenticate to a resource your users are also strangers.

You need to make things secure in a different way than simply making them
harder to find.
.



Relevant Pages