Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Focus on Microsoft
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: DSQuery on active directory Jan 28 2005 04:42AM
Bruce K. Marshall (bkmlstsgohere comcast net)

First, you could change the permissions on the AD objects to remove read
access for those attributes from groups whom you don't wish to have access.
Second you could edit the schema so newly created objects disallow read
access for those attributes from groups whom you don't wish to have access....

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus