SMB1 turned off in latest security update

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • rthonpm
    Field Supervisor

    2,500+ Posts
    • Aug 2007
    • 2849

    #16
    Re: SMB1 turned off in latest security update

    Since we're all going to be dealing with this issue for awhile, here's a list compiled by Microsoft's head of storage of any systems and software that have a documented need for SMB1: https://blogs.technet.microsoft.com/...clearinghouse/

    Comment

    • NeoMatrix
      Senior Tech.

      2,500+ Posts
      • Nov 2010
      • 3513

      #17
      Re: SMB1 turned off in latest security update

      Originally posted by rthonpm
      Since we're all going to be dealing with this issue for awhile, here's a list compiled by Microsoft's head of storage of any systems and software that have a documented need for SMB1: https://blogs.technet.microsoft.com/...clearinghouse/
      Yes the malware/viralware software an associated corrupted hardware will not go away anytime soon. It's a positive to see the mechanical only Techs taking the first initial steps to work with those in I.T. software side of the machine industry.

      Unfortunately it's a necessary marriage of will an ego's, which I'm sure will continue for some time into the future,whether we like it or not...
      Inauguration to the "AI cancel-culture" fraternity 1997...
      •••••• •••[§]• |N | € | o | M | Δ | t | π | ¡ | x | •[§]••• ••••••

      Comment

      • copier tech
        Field Supervisor

        5,000+ Posts
        • Jan 2014
        • 8131

        #18
        Re: SMB1 turned off in latest security update

        It appears Ricoh have recently released various firmware updates for the Metis C2 with the Android panels to support SMB 2/3.

        I only found this out by chance from a "readme" file while researching another issue.



        SMB v2 + V3 Support.pdf
        Let us eat, drink, and be merry, because tomorrow we may die!

        For all your firmware & service manual needs please visit us at:

        www.copierfirmware.co.uk - www.printerfirmware.co.uk

        Comment

        • slimslob
          Retired

          Site Contributor
          25,000+ Posts
          • May 2013
          • 37386

          #19
          Re: SMB1 turned off in latest security update

          Originally posted by copier tech
          It appears Ricoh have recently released various firmware updates for the Metis C2 with the Android panels to support SMB 2/3.

          I only found this out by chance from a "readme" file while researching another issue.



          [ATTACH]37231[/ATTACH]
          Looks like the information text file that is zipped with the firmware.

          Comment

          • PrintWhisperer
            Trusted Tech

            250+ Posts
            • Feb 2018
            • 465

            #20
            Re: SMB1 turned off in latest security update

            FYI regarding Kyocera and SMB. Currently, SMB2 is BROKEN and will fail on most MFP series (3551ci/2552ci) ONLY when using any subfolder in the Address book 'PATH' field.

            This was first seen prior to Wanna Cry in NetApp storage appliances which tended to force SMB2 for share transactions. Windows was at that time largely unaffected.



            Kyocera expanded the SMB support from simple SMB1 ONLY in 3551ci V4 firmware to add 2 SMB2 dialects and 1 SMB3 in v5.

            However, the API which parses the PATH field is broken, and it duplicates the path field (all folders appear twice in the path) when actually forming the IOCTL SMB2 Create File request. The MFP fails with an 1102 error due to PATH NOT FOUND.

            This can only be seen in a Wireshark capture.

            FIXES are:

            1) Scan only to root of SMB2 shares, do not use sub-folders in the Address Book Path only the sharename
            2) Load v4 firmware, which only supports SMB1
            3) Obtain a patch from Kyocera which forces the Scan to folder to use SMB1 when SMB2 fails 3 times (GL, only a few people are even aware this exists)


            The first v6 release was to have fixed this issue, but as of v6.02A the problem is the same as it was in v5 with no change.
            Last edited by PrintWhisperer; 02-07-2018, 11:41 PM. Reason: Complete Dialects list
            "Being ignorant is not so much a shame, as being unwilling to learn" - Benjamin Franklin

            Comment

            Working...