Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Pen-Test
[Top] [All Lists]

Re: pwdump 2 & 3

Subject: Re: pwdump 2 & 3
Date: Thu, 16 Dec 2004 18:22:02 -0500
On Thu, 16 Dec 2004 10:39:17 +0100, miguel.dilaj@pharma.novartis.com
<miguel.dilaj@pharma.novartis.com> wrote:

Take into account that the caching can be (and should be? ;-) disabled
with the following registry key:
HKLM\SOFTWARE\MICROSOFT\WINDOWS
NT\CURRENTVERSION\WINLOGON\CACHEDLOGONSCOUNT (change it to 1 to disable
the caching)

Also, FYI, you can set this domain-wide in group policy if you have
Active Directory.  Under Computer Configuration, Windows Settings,
Local Policies, Security Options.  "Interactive logon: Number of
previous logons to cache (in case domain controller is not available)"

Keep in mind if you disable this completely on laptops, users won't be
able to log into their domain account when disconnected from the
network.  You could maintain local user accounts for field use, but
that would create a support nightmare.  Depends on your environment,
your policies, and the level of risk.

-Chris

<Prev in Thread] Current Thread [Next in Thread>