Displaying 5 results from an estimated 5 matches for "enum4linux".
2024 Jul 04
1
anonymous ldap search, how disable it?
On 4/07/24 17:38, Joachim Lindenberg via samba wrote:
> Afaik or understand, enum4linux uses samba-tool (https://www.kali.org/tools/enum4linux/) and not ldap. Did you try enum4linux on a member (probably after some authentication) or some other non-member linux?
I don't think that is quite the right distinction, because samba-tool
would probably use ldap for this.
Also, I see l...
2024 Jul 04
1
anonymous ldap search, how disable it?
Afaik or understand, enum4linux uses samba-tool (https://www.kali.org/tools/enum4linux/) and not ldap. Did you try enum4linux on a member (probably after some authentication) or some other non-member linux?
Regards,
Joachim
2024 Jul 04
1
anonymous ldap search, how disable it?
...amba wrote:
>> On Wed, 3 Jul 2024 21:52:39 +0500
>> Anton Shevtsov via samba <samba at lists.samba.org> wrote:
>>
>>> Hi,
>>>
>>> I tried ldap anonymous search in samba.
>>>
>>> Downloaded kali linux, run
>>>
>>> enum4linux -a my.dc.domain
>>>
>>> and get all group, users, sids, rids... without any password o_O
>> I do not think you are using ldap there, unless you explicitly set
>> anonymous search in AD, you must supply a valid username & password, or
>> use kerberos.
> set...
2024 Jul 03
2
anonymous ldap search, how disable it?
Hi,
I tried ldap anonymous search in samba.
Downloaded kali linux, run
enum4linux -a my.dc.domain
and get all group, users, sids, rids... without any password o_O
Go to
https://wiki.samba.org/index.php/FAQ#Does_the_Samba_Internal_LDAP_Server_Supports_Anonymous_Searches?
and run
samba-tool forest? directory_service dsheuristics 0000000
set dsheuristics: 0000000
then tin aga...
2024 Jul 03
1
anonymous ldap search, how disable it?
On 03-07-2024 19:36, Rowland Penny via samba wrote:
> On Wed, 3 Jul 2024 21:52:39 +0500
> Anton Shevtsov via samba <samba at lists.samba.org> wrote:
>
>> Hi,
>>
>> I tried ldap anonymous search in samba.
>>
>> Downloaded kali linux, run
>>
>> enum4linux -a my.dc.domain
>>
>> and get all group, users, sids, rids... without any password o_O
> I do not think you are using ldap there, unless you explicitly set
> anonymous search in AD, you must supply a valid username & password, or
> use kerberos.
set dsheuristics: 0000002
T...