6.1

Table Of Contents
VMware, Inc. 43
Chapter 5 Discovery
Forexample,MYDOMAIN\DOMAINUSER
8ClickOKtoreturntotheSecurityforRootwindow.
9EnsurethatthenewlyaddedusernameishighlightedintheGroupsorusernameslist.
10 ClickAdvanced.TheAdvancedSecuritySettingsforRoot(Rootinsomesystems)windowappears.
11 Selectthenewlycreatedusernamefromthe
listandclickEdit(View/Editinsomesystems).
12 SetApplyontotoThisnamespaceandsubnamespacesfromthedropdownmenu.
13 SelectRemoteEnable fromthePermissionslistandsetittoAllow.
14 ClearallothercheckboxesandclickOK.
15 ContinuetoclickOKuntilallofthedialogboxesareclosedandthenclosetheWindowsManagement
Infrastructure(WMI)window.
16 ClickYesifyouencounterthefollowingmessage:
Saveconsolesettingstowinmgmt?
Setting Execute Permissions for Used Executables
ADM6.0andlaterversionsdiscovermoreinformationthanpreviousversions.Todiscoverthisadditional
information,foreachmanagedserver,oneachofthesefiles(cmd.exe,cscript.exe,
andnetstat.exelocatedin
thesystem32folderwhereWindowsisinstalled),performthefollowingsteps:
1RightclickthefileandclickProperties.ThePropertiesdialogboxappears.
2 SelecttheSecuritytab.
3FromtheGrouporusernameslist,selecttheuserwhowillbeperformingtheDetailDiscovery.
4 SelectRead&Executeand
ReadfromthePermissionsforuserlist,tograntthenecessarypermissions.
5ClickOKtoconfirm.
Telnet
TheTelnetprotocolisoneoftheoldestandmostcommonprotocolsforremoteshellaccess.However,inrecent
yearsitisreplacedinmanycaseswiththeSSHprotocol,whichencryptsitsnetworktrafficandisconsidered
moresecure.Still,somenetworkdevices,suchasnetworkroutersandswitches,support
remoteaccess
throughTelnetexclusively.Additionally,MicrosoftWindowshasabuiltinTelnetserver,anddoesnothavea
similarSSHserver.Therefore,TelnetisusedbyADMforDetailDiscovery,similarlytotheuseofSSH.
Detail Discovery with Telnet
Ingeneral,DetailDiscoverywithTelnetissupportedbyanymachinerunningaTelnetserverthat:
Supportstheterminaltypeknownasdumb.
EitherallowssimplecommandlineauthenticationoracceptsNTLMauthentication.
Telnet Server Deployment Recommendations
ThissectionincludesTelnetrecommendationsfordeployment.
Firewall Settings
TelnetqueriesarenormallyperformedtoTCPport23ofthetargetdevice.Ifthereisafirewallbetweenthe
ADMapplianceandthemonitorednetwork,thisportneedstobeopenforconnectionsinitiatedbytheADM
appliance.Specifically,inWindowsXPPro
SP2,theinternalfirewallmustbeturnedoffforTelnetdiscovery
totakeplace.
N
OTETypetheusernameoftheuserwhowillbeperformingtheDetailDiscovery.