Defending SMB Clients from Interception Attacks

Published Jun 29 2020 10:07 AM 2,804 Views
Microsoft

Heya folks, Ned here again. I recently wrote a guest post on the IT Ops Talk blog about increasing security on your SMB clients. It's about defending against interception attacks (previously called "man-in-the-middle" attacks) and includes specific recommendations, steps, and best practices. 

 

How to Defend Users from Interception Attacks via SMB Client Defense

 

You should check it out. 

 

- Ned Pyle

2 Comments
%3CLINGO-SUB%20id%3D%22lingo-sub-1562781%22%20slang%3D%22en-US%22%3ERe%3A%20Defending%20SMB%20Clients%20from%20Interception%20Attacks%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1562781%22%20slang%3D%22en-US%22%3E%3CP%3EHello%20Ned%2C%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EThanks%20for%20your%20work%20on%20helping%20people%20securing%20SMB%20shares.%20It's%20a%20crypto%20hell%20out%20there...%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EJust%20so%20know%2C%20when%20using%20Best%20Practives%20Analyzer%20within%20Server%20Manager%20on%20Windows%20Server%202019%2C%20you%20get%20a%20warning%20if%20you%20disabled%20SMB%20v1.0%20(%22The%20SMB%201.0%20file%20sharing%20protocol%20should%20be%20enabled%22).%20Could%20you%20get%20in%20touch%20with%20the%20corresponding%20team%20so%20they%20can%20update%20this%20item%20%3F%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3ERegards%2C%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1565586%22%20slang%3D%22en-US%22%3ERe%3A%20Defending%20SMB%20Clients%20from%20Interception%20Attacks%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1565586%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F431722%22%20target%3D%22_blank%22%3E%40Alban1999%3C%2FA%3E%26nbsp%3BThank%20you!%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EYes%2C%20we%20have%20fixed%20that%20issue%20in%20the%20next%20version%20of%20Windows%20Server%20and%20have%20a%20backport%20bug%20to%20fix%20WS2019%20and%20perhaps%20WS2016.%26nbsp%3B%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-SUB%20id%3D%22lingo-sub-1496515%22%20slang%3D%22en-US%22%3EDefending%20SMB%20Clients%20from%20Interception%20Attacks%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1496515%22%20slang%3D%22en-US%22%3E%3CP%3EHeya%20folks%2C%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3CA%20href%3D%22https%3A%2F%2Ftwitter.com%2Fnerdpyle%22%20target%3D%22_self%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3ENed%3C%2FA%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3Ehere%20again.%20I%20recently%20wrote%20a%20guest%20post%20on%20the%20IT%20Ops%20Talk%20blog%20about%20increasing%20security%20on%20your%20SMB%20clients.%20It's%20about%20defending%20against%20interception%20attacks%20(previously%20called%20%22man-in-the-middle%22%20attacks)%20and%20includes%20specific%20recommendations%2C%20steps%2C%20and%20best%20practices.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%20class%3D%22lia-indent-padding-left-30px%22%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fitops-talk-blog%2Fhow-to-defend-users-from-interception-attacks-via-smb-client%2Fba-p%2F1494995%22%20target%3D%22_self%22%3EHow%20to%20Defend%20Users%20from%20Interception%20Attacks%20via%20SMB%20Client%20Defense%3C%2FA%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EYou%20should%20check%20it%20out.%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E-%20Ned%20Pyle%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-1496515%22%20slang%3D%22en-US%22%3E%3CP%3EDefending%20SMB%20clients%20from%20interception%20attacks.%26nbsp%3B%3C%2FP%3E%3C%2FLINGO-TEASER%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1496515%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3ESMB%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Version history
Last update:
‎Nov 12 2020 05:14 PM
Updated by:
www.000webhost.com