[Dshield] Port 135

Mark Challender MarkC at mtbaker.wednet.edu
Fri Oct 25 21:31:50 GMT 2002


The "access files from home" also referred to "mapping shares over the
Internet."
 
How is he doing this and -- more importantly -- WHY is he doing this with
all the security problems inherent in allowing access like that?
 

Mark Challender 
Network Administrator 

========================= 
I think I'm being normal. 
========================= 

-----Original Message-----
From: Russell Washington [mailto:russ.washington at vaultsentry.com]
Sent: Friday, October 25, 2002 1:19 PM
To: 'list at dshield.org'
Subject: RE: [Dshield] Port 135


MSN Messenger is not involved with file sharing i.e., the referred to
"access their files from home."  He's talking about NBT shares.

-----Original Message-----
From: Roger [mailto:RShady at stny.rr.com] 
Sent: Friday, October 25, 2002 11:58 AM
To: list at dshield.org
Subject: Re: [Dshield] Port 135


Let's clarify something.  There is Windows Messenger that the admin uses to
broadcast messages using his intranet.  You'll
see it in Windows 2000/XP by opening the Microsoft Management Console and
clicking on Services.  I believe what  the students are using is MSN
Messenger.

Jan Johansson wrote:


On Wed, Oct 16, 2002 at 10:17:05AM -0700, John Hardin wrote:

  

If they're accessing this through your firewall, your firewall is

misconfigured. I think that could be an effective argument against

liability.

    



What firewall? And where should I point it with 10 000 students.

Protect the Internet from me or me from the Internet. It is as

much harm on either side anyway which makes it useless.



  

135:139 SHOULD NOT be permitted in from or out to the Internet.

    



How should my students then be able to access their files from

home? Mapping shares over the Internet works and is easy to

use for the computer illiterate.



The problem lies in the messenger service. It should validate

messages using crypto and whatever means the administrator has

decided. (This may be possible but I 'Don't do Windows').



Instead of talking law call your Micrsoft support line and ask

for a better Messenger service.





_______________________________________________

Dshield mailing list

Dshield at dshield.org <mailto:Dshield at dshield.org> 

To change your subscription options (or unsubscribe), see:
http://www.dshield.org/mailman/listinfo/list
<http://www.dshield.org/mailman/listinfo/list> 



  

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.dshield.org/pipermail/list/attachments/20021025/f42e4956/attachment.htm


More information about the list mailing list