0

So I set up a simple network with two computers. Both of them are in the same Workgroup.

  • I Created a LOCAL user 'A' with password 'A' in Computer 1.
  • And then I created an identical named LOCAL user 'A' with identical password 'A' on Computer 2.

What I notice is that when I'm logged in as 'A' in computer 2, I am allowed network access as 'A' in Computer 1. E.g. when browsing 'A' shared folders.

This is ironic as even though they are the identical in name, they are actually two different LOCAL users on two different computers!

This to me can be a security hazard. What if coincidentally a person has the same username and password in computer 2 thus incorrectly given access to Computer 1?

My Question:

  • What is this sharing of username and password called?
  • How do we enable/disable this sharing of identical LOCAL usernames and passwords between two computers?

I've also realized that this works during DCOM calls as well.

Thank you for any answers

Jason Aller
  • 2,360

0 Answers0