Link to home
Start Free TrialLog in
Avatar of Pau Lo
Pau Lo

asked on

alternative to MBSA for share and directory permissions.

now MBSA has been retired one of its really useful functions, I found, was to produce a useful table of share and directory permissions. It gave share, directory, share ACL and directory ACL in a well formatted table for further investigation to ensure permissions were relevant. Although it still works (if you can find the download) on  older OS I am trying to find replacement tools or scripts to achieve the same. Does anyone know of any free tools and/or scripts that can recreate the same data that the MBSA shares check used to perform, which can either be run remotely or run locally on the sever being reviewed (preferably remotely like MBSA could). if the results could go to CSV that would be ideal for further data analysis on the configurations.
ASKER CERTIFIED SOLUTION
Avatar of McKnife
McKnife
Flag of Germany image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Hi,

As McKnife says, although MS retired MBSA they no longer update the update files for patching, but all the other things it does (checks) won't be affected at all, ever.


Mike
Avatar of Pau Lo
Pau Lo

ASKER

That's good to know, best keep a copy of the install files for the software safe then if there is still some shelf life left in it for the non patch related tests! Shame nobody carried it on or came up with an alternative (unless there is one that I haven't heard of?). I know of Nessus etc but wasn't sure if MS retired MBSA in place of a new replacement tool, or just gave up on it in general!
I think the onus of producing catalogue files became too much. The alternative for updates, at least in their eyes, is PowerShell.
Avatar of Pau Lo

ASKER

Would you recommend any other tools to look for the more administrative/configuration based flaws or is MBSA still the main tool in that regard. Get-hotfix is useful for a manual review of patches. Was get-hotfix what you eluded to re patch reports.
You would need to specify in detail, one by one, what these tools should be able to do for you.