Solved

Domain user logs in with blank password

Posted on 2015-01-29
2
94 Views
Last Modified: 2015-06-24
I am trying to figure out what is going on. There is a domain user 'mgruser' in Active Directory. All the computers that are joined to the domain here at our store, get the ctrl-alt-del screen and login as username 'STVINCENTDEPAUL\mgr' and then no password in the password box. Then enter. They are able to log into the domain just fine.

I guess I'm wondering how this is done? Would this be done by a policy on these computers or is this a group policy? When I go to the 'profile' tab of the 'mgruser' in AD, there is a login script called 'SBS_LOGIN_SCRIPT.bat'. But for the life of me, I cannot locate this .bat file anywhere. I checked in the usual directory where login scripts are stored and found this hidden directory but there is not .bat file inside of it. C:\Windows\SYSVOL\domain\DO_NOT_REMOVE_NtFrs_PreInstall_Directory

I'm not sure where the 'SBS_LOGON_SCRIPT.bat' is located? These login credential of 'Mgr' and no password are used for all our POS workstations/registers.  

Thank you in advance!
0
Comment
Question by:Natalie Gossens
2 Comments
 
LVL 76

Accepted Solution

by:
arnold earned 500 total points
Comment Utility
\\domainname\netlogon is where the AD user login scripts are kept
sysvol is where the GPO's and their scripts are stored.

A login script is not what allows the user to login, it is run after a successful login.

Likely you have a GPO that altered the settings on systems to allow logins without a password.
Alternatively, the systems might be configured with auto-login option i.e. the username/password is stored in the registry HKLM\software\microsoft\windows NT\winlogon
0
 
LVL 10

Expert Comment

by:Maclean
Comment Utility
This is very bad practice, and highly insecure which is probably very obvious. But you can set the password policy on group policy editor. There are various articles online giving guidance on how to configure PW policy such as the below random example which I googled.

http://www.grouppolicy.biz/2011/08/tutorial-how-to-setup-default-and-fine-grain-password-policy/

I would highly recommend avoiding blank PW logons, as any security auditors will have a field day if the company gets audited by investors eager to keep their business secured, but in the end its a business decision, so have a look at the url, and I hope it helps.
0

Featured Post

Free Gift Card with Acronis Backup Purchase!

Backup any data in any location: local and remote systems, physical and virtual servers, private and public clouds, Macs and PCs, tablets and mobile devices, & more! For limited time only, buy any Acronis backup products and get a FREE Amazon/Best Buy gift card worth up to $200!

Join & Write a Comment

Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
This paper addresses the security of Sennheiser DECT Contact Center and Office (CC&O) headsets. It describes the DECT security chain comprised of “Pairing”, “Per Call Authentication” and “Encryption”, which are all part of the standard DECT protocol.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now