Petri IT Knowledgebase Forums
 

Petri.co.il forums Home Forums Start Page Forums Frequently Asked Questions FAQ Member List Members List
Go Back   Petri IT Knowledgebase Forums > Server Operating Systems > Windows Server 2000 / 2003
Petri.co.il is happy to award auglan the title of Most Valuable Member !!!
Register Calendar Calendar Search Petri IT Knowledgebase Forums Search Todays Posts Today's Posts Mark Forums Read

Notices

Windows NT Offline Password Editor - NT Domain Controllers

Windows NT Offline Password Editor - NT Domain Controllers

this thread has 1 replies and has been viewed 4227 times

Closed Thread
 
Thread Tools Search this Thread Display Modes
  #1  
Old 14th November 2004, 15:24
paulroper paulroper is offline
Casual
Casual
 
 Join Date: Nov 2004
  6 month star 12 month star
 Posts: 2
 Reputation: paulroper is on a distinguished road (10)
Default Windows NT Offline Password Editor - NT Domain Controllers

Hi there,

I am studying for a computer audit exam and would really appreciate some guidance on using Petter Nordahl-Hagen's Windows NT/2000 password editor on NT Domain Controllers.

I have read the instructions and these suggest that the password for the local administrator account can be changed on NT workstations, NT Member Servers and NT Domain Controllers.

However, this only changes the machine (local) administrator account, not the domain administrator account.

Does NT prohibit the use of local accounts on domain controllers? I do not have access to a NT network to test this control.

If not, could a hacker logon to a domain controller as the local administrator, run pwdump and attack the extracted hashes?

If so, can hackers follow the instrcutions from MSCE World's article "Forgot the Administrator's Password? - Reset Domain Admin Password in Windows 2000 AD" to reset the domain administrator password for an NT Domain.


Thanks in advance
  #2  
Old 14th November 2004, 15:44
paulroper paulroper is offline
Casual
Casual
 
 Join Date: Nov 2004
  6 month star 12 month star
 Posts: 2
 Reputation: paulroper is on a distinguished road (10)
Default RE: Windows NT Offline Password Editor - NT Domain Controllers

Sorry, forgot to ask this next question -

Is the SAM on a NT domain controller made up of two parts? i.e. local account database and domain account database

If someone could direct me to a paper explaing how the SAM on a domain controller is made up I would be very grateful.

I assume a hash value of the domain administrator password is stored in the SAM on the domain controllers. Why is it not possible for Windows NT/2000 Offline Password Editor to edit the password for the domain administrator account instead of the machine administrator account? I am sure there is a very good reason, but I lack the knowledge and experience to figure this out. If anyone does not the answer please let us know (in simplistic terms if possible!!!!)

Thanks again!
Closed Thread


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Migrate the NT4 Domain Controller to Windows 2003. salara Active Directory 7 1st October 2007 16:51
Error while adding Windows XP Pro to domain Pjotr Active Directory 7 19th August 2007 08:21
Windows 2000/XP Clients Still Logging On to Netbios Domain After Upgrade enkei Active Directory 3 31st December 2005 00:45
Changing a domain password withour being on domain iaef Windows 2000 Pro, XP Pro 3 16th February 2005 22:45
Windows2003.User group: domain computers, domain controllers azmantek Active Directory 1 22nd July 2004 18:41


All times are GMT +3. The time now is 19:52.

Steel Blue 3.5.4 vBulletin Style ©2006 vBEnhanced
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
 

Valid XHTML 1.0!   Valid CSS!

Copyright 2005 Daniel Petri