Wednesday, June 24, 2009

Null Session Registry Settings

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa


This change in secregvl.inf under:



MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymousSAM,4,%RestrictAnonymousSAM%,0


Or if you pushing group policy:

Network access: Do not allow anonymous enumeration of SAM accounts and shares

Set it to disable for a value of 1 to get the retina scan high off you machine.

No comments:

Post a Comment