DFS Inventory

Automated DFS inventory enables comprehensive recording and documentation of distributed file systems within a network.

Permissions

  • Domain user
    • Member of local administrators on namespace servers
    • Member of local administrators who provide resources for the DFS system on servers
    • NetBIOS spelling
    • UPN spelling

Requirements

  • Inventory via script is possible
  • Transparent firewall configuration
  • Run PowerShell
  • UAC must be configured accordingly
  • Only Windows DFS servers can be inventoried. For example, if a NAS provides resources, it is not possible to inventory the SMB share permissions.

Supported systems

Logs used

Protokoll

Port

NetBIOS Name Service, NetBIOS Datagram Service

137, 138

UDP

NetBIOS Session Service, Microsoft-DS Active Directory, Windows Shares (CIFS)

139, 445

TCP

Dynamic High Range Port

1024 - 65535

TCP/UDP

LDAP - Lightweight Directory Access Protocol

389

TCP/UDP