AFP Server Share Enumeration (guest)

This script is Copyright (C) 2010-2011 Tenable Network Security, Inc.

Synopsis :

The "guest" user can access some network shares.

Description :

The remote AFP server allows guest users to connect to several

Make sure this is in line with your organization's security policy.

Solution :

If you do not want the 'guest' user to be able to access any share on
the remote system :

- On Mac OS X client, edit System Preferences -> Accounts
-> Guest and uncheck the option 'Allow guests to connect
to shared folders'.

- On Mac OS X server, edit the AFP service and disable
option 'Allow guests to connect'.

Risk factor :


Family: Misc.

Nessus Plugin ID: 45380 (afp_list_guest_shares.nasl)

Bugtraq ID:


Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now