ENS for Storage Authentication Failure - CVE-2022-38023
Technical Articles ID:
KB96598
Last Modified: 2023-07-04 08:46:58 Etc/GMT
Last Modified: 2023-07-04 08:46:58 Etc/GMT
Trellix CEO, Bryan Palma, explains the critical need for security that’s always learning.
As per Gartner, "XDR is an emerging technology that can offer improved threat prevention, detection and response."
Trellix announced the establishment of the Trellix Advanced Research Center to advance global threat intelligence.
Trellix Advanced Research Center analyzes threat data on ransomware, nation-states, sectors, vectors, LotL, MITRE ATT&CK techniques, and emails.
ENS for Storage Authentication Failure - CVE-2022-38023
Technical Articles ID:
KB96598
Last Modified: 2023-07-04 08:46:58 Etc/GMT Environment
Endpoint Security Storage Protection (ENSSP) 2.x
Problem
ENS for Storage using Windows NTLM authentication might fail due to enforcement of Net logon RPC sealing via Windows updates. ENS for Storage experiences authentication failures, when using the NetApp OnTap AV Connector. Cause
Owing to security vulnerability CVE-2022-38023, Microsoft updated Windows to use Net Logon RPC sealing. This update sets the enforcement mode for Netlogn RPCSeal, causing clients to experience Windows/NTLM authentication failures. This change inadvertently impacts the ability of ENS for Storage to successfully logon to the OnTap shares and you then see scan failures for these shares. Solution
Upgrade the existing versions of ONTAP releases to allow the continued use of Windows NTLM authentication. For more information, see the NetApp Support Bulletin. NOTE: This website requires a log in. |
|