Protocols for Dummies

Similar documents
LucidNAS Quick Start Guide

Integrating LANGuardian with Active Directory

How to Join QNAP NAS to Microsoft Active Directory (AD)

How to setup FTP and Secure FTP for XD Series

How to Setup Scan to SMB to a Microsoft Vista Workstation Using a bizhub C451/ C550

Configuring Windows Server Clusters

Scan to SMB(PC) Set up Guide

TELNET CLIENT 5.11 SSH SUPPORT

Setting Up Scan to SMB on TaskALFA series MFP s.

safend a w a v e s y s t e m s c o m p a n y

Device Log Export ENGLISH

Contents. Before You Install Server Installation Configuring Print Audit Secure... 10

Upgrading User-ID. Tech Note PAN-OS , Palo Alto Networks, Inc.

Parallels Plesk Panel

Getting Started Guide

Using Microsoft Windows Authentication for Microsoft SQL Server Connections in Data Archive

OPC UA vs OPC Classic

Chapter 3 Authenticating Users

Basic Exchange Setup Guide

Microsoft SMB Running Over RDMA in Windows Server 8

Hyper-V Replica Broker Configuration Lab By Yung Chou, Microsoft Platform Evangelist,

Guideline for setting up a functional VPN

Microsoft Networks. SMB File Sharing Protocol Extensions. Document Version 3.4

Managing Software and Configurations

Using Logon Agent for Transparent User Identification

Directory and File Transfer Services. Chapter 7

Default configuration for the Workstation service and the Server service

Basic Exchange Setup Guide

NETASQ SSO Agent Installation and deployment

XIA Configuration Server

File Management Utility User Guide

Use Shrew Soft VPN Client to connect with IPSec VPN Server on RV130 and RV130W

CYAN SECURE WEB HOWTO. NTLM Authentication

Architecture and Data Flow Overview. BlackBerry Enterprise Service Version: Quick Reference

How To Use Gfi Mailarchiver On A Pc Or Macbook With Gfi From A Windows 7.5 (Windows 7) On A Microsoft Mail Server On A Gfi Server On An Ipod Or Gfi.Org (

User s Manual. Copyright 2010 Vantec Thermal Technologies. All Rights Reserved.

System Administration and Log Management

Discovering passwords in the memory

Packet Capture. Document Scope. SonicOS Enhanced Packet Capture

Management, Logging and Troubleshooting

TIBCO Spotfire Platform IT Brief

Antivirus Solution Guide for Clustered Data ONTAP 8.2.1: McAfee

HP A-IMC Firewall Manager

Installation Troubleshooting Guide

FileCruiser Backup & Restoring Guide

Prestige 2002 Series. VoIP Analog Telephone Adaptor. Quick Start Guide

How to Logon with Domain Credentials to a Server in a Workgroup

HP LeftHand SAN Solutions

Napster and Gnutella: a Comparison of two Popular Peer-to-Peer Protocols. Anthony J. Howe Supervisor: Dr. Mantis Cheng University of Victoria

SMC7004ABR Barricade Broadband Router Installation Instructions

Instructions for Adding a MacOS 10.4.x Server to ASURITE for File Sharing. Installation Section

ecopy ShareScan v4.3 Pre-Installation Checklist

Flash Storage: Trust, But Verify

Direct Storage Access Using NetApp SnapDrive. Installation & Administration Guide

1 Outlook 2010 (Windows OS) and MAPI Configuration

XStream Remote Control: Configuring DCOM Connectivity

The Win32 Network Management APIs

Installation and Setup: Setup Wizard Account Information

WebSpy Vantage Ultimate 2.2 Web Module Administrators Guide

ShadowControl ShadowStream

IMF Tune Quarantine & Reporting Running SQL behind a Firewall. WinDeveloper Software Ltd.

Improved document archiving speeds; data enters the FileNexus System at a faster rate! See benchmark test spreadsheet.

Configuring Switch Ports and VLAN Interfaces for the Cisco ASA 5505 Adaptive Security Appliance

Upgrade Guide BES12. Version 12.1

Other documents in this series are available at: servernotes.wazmac.com

Step-by-Step Secure Wireless for Home / Small Office and Small Organizations

Legal Notes. Regarding Trademarks KYOCERA MITA Corporation

DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

Active Directory Integration

Authenticating a Lucent Portmaster 3 with Microsoft IAS and Active Directory

Quick Scan Features Setup Guide. Scan to Setup. See also: System Administration Guide: Contains details about setup.

Configuring WMI Performance Monitors

Configuration Information

TECHNICAL NOTE TNOI27

Step-by-Step Setup Guide Wireless File Transmitter FTP Mode

qliqdirect Active Directory Guide

HP IMC Firewall Manager

Dynamic DNS How-To Guide

Preparing for GO!Enterprise MDM On-Demand Service

Samba 4 AD + Fileserver

WS_FTP Server. User s Guide. Software Version 3.1. Ipswitch, Inc.

Network Load Balancing

Moving the TRITON Reporting Databases

Reference and Troubleshooting: FTP, IIS, and Firewall Information

How to integrate RSA ACE Server SecurID Authentication with Juniper Networks Secure Access SSL VPN (SA) with Single Node or Cluster (A/A or A/P)

Contents Notice to Users

Wharf T&T Cloud Backup Service User & Installation Guide

Configuring Global Protect SSL VPN with a user-defined port

HP Device Manager 4.7

EINTE LAB EXERCISES LAB EXERCISE #5 - SIP PROTOCOL

Websense Web Security Gateway: What to do when a Web site does not load as expected

Connection Broker Managing User Connections to Workstations, Blades, VDI, and More. Quick Start with Microsoft Hyper-V

Configuring SSL VPN on the Cisco ISA500 Security Appliance

Administration guide. Océ LF Systems. Connectivity information for Scan-to-File

Prestige 2302R Series

13.1 Backup virtual machines running on VMware ESXi / ESX Server

How-to: Single Sign-On

Microsoft IAS Configuration for RADIUS Authorization

F-SECURE MESSAGING SECURITY GATEWAY

Good Morning Wireless! SSID: MSFTOPEN No Username or Password Required

Transcription:

Protocols for Dummies Part 1: SMB Family March 20, 2014 Peter Murray Senior Product Specialist

Housekeeping Items Ask Questions Ask questions throughout the presentation by typing them into the chat area of your WebEx console We will address as many questions at the end as possible Recording & Slides Everyone who registers for the webinar trainings will receive: Link to WebEx recording Link to PDF copy of the slides 2

Announcements Webinar Schedule April 24 v3.6 Product Release Learn all the latest and greatest product feature in the newest product release! May 15 Flash Testing How to best validate Flash storage performance including de-dup and compressions June 19 Workload Modeling Review of workloads including VDI July 17 How to Win the Storage Bake- Off Stories from the trenches Aug 21 Storage Protocols for Dummies Part 2 We have lots of information to cover 3

Speaker Peter Murray Senior Product Specialist Peter Murray is an expert with more than 25 years of experience in storage and network testing. Prior to joining Load DynamiX in 2009, Peter worked with leading vendors including F5 Networks and Spirent Communications, and was extensively involved with the architecture and design of networked testing products and customer engagements. 4

CIFS/SMB: Windows XP Windows Server 2003/2008 R1

TCP Connect Enter Server IP address TCP Destination Port 445

Negotiate Use LM 0.12 Dialect Remaining are historical Unicode Strings = True

Session Setup Domain Name: WORKGROUP for server login Full domain name for domain-based login Some vendors require Machine Name Authentication required May use one username and password for all users Domain-based login to be addressed in a future Webinar Use Virtual Circuit 1

Tree Connect Format is \\<server>\share Windows ignores all characters between \\ and \ except some clustered implementations

Directory Creation: Create or Open File Used for creating, opening or deleting a directory Path is directory name Literal is used here Create Disposition: Typically use Open if Exists, Create otherwise (See next slide) Create Options: Flag as Directory=True creates or opens the directory Hint Delete-On-Close deletes the directory when closed

Disposition: How to Create/Open Directory or File Open if Exists, Create otherwise If it s there, use it. If not, create it Supercede if exists, Create otherwise If it s there, erase the content and start over. If new, create it Open if exists, fail otherwise use when you expect a file or directory to be present. Otherwise, fail the open Fail if exists, Create otherwise fail the open if the file already exists, create otherwise Overwrite if exists, Fail otherwise If it s there, write over existing content. If not, fail the Open Overwrite if exists, create otherwise If there, write over existing content. If not, create it

File Creation: Create or Open File Used for creating, opening or deleting a file Path is file name User parameter reference shown here Create Options: None usually required Hint Delete-On-Close deletes a file when closed Create Disposition: Typically use Open if Exists, Create otherwise.

File Write Automatic Offset True enables long file writes Note: Bytes per Block must be less than 65535 Avoids splitting a request in two due to SMB padding Bytes Total defines total write E.g. Block size 65500 and Bytes Total 655,000 results in 10 Read requests on the wire Block Sequence writes blocks forward, backwards or randomly within Total Bytes

Remaining Commands File/share/session handle configuration is occasionally required for File Close, Tree Disconnect or Session Logoff Only needed if multiple files, shares, or sessions commands opened in one Scenario

SMB2: Windows 7 Windows Server 2008 R2

TCP Connect Enter Server IP address TCP Destination Port 445

Negotiate Dialects: SMB2.002: SMB2 SMB 2.1: SMB2.1 SMB 2.24 Beta SMB3 SMB 3.0: RTM SMB3 Capabilities: All are optional Used with SMB 2.1 and SMB3 SMB 2.0 capabilities: Distributed File System

Session Setup Domain Name: WORKGROUP for server login Full domain name for domain-based login Some vendors require Machine Name Authentication required May use one username and password for all users Domain-based login to be addressed in a future Webinar

Session Setup: NTLM Flags Windows 7 settings Hex: E2088217 Copy NTLM Flags value from PCAP (either hex as shown above or decimal) and paste directly in dropdown pane at top of NTLM Flags rather than setting flags individually

Tree Connect Format is \\<server>\share Windows ignores all characters between \\ and \ except some clustered implementations

Directory Creation: Create File Used for creating, opening or deleting a directory Path is directory name Literal is used here Create Disposition: Typically use Open if Exists, Create otherwise Create Options: Flag as Directory=True creates or opens the directory Hint Delete-On-Close deletes the directory when closed

File Creation: Create File Used for creating, opening or deleting a file Path is file name User parameter reference shown here Create Disposition: Typically use Open if Exists, Create otherwise Create Options: None usually required Hint Delete-On-Close deletes a file when closed

File Write Automatic Offset True enables long file writes Note: Bytes per Block must be less than 65535 Avoids splitting a request in two due to SMB padding Bytes Total defines total write E.g. Block size 65500 and Bytes Total 655,000 results in 10 Read requests on the wire Block Sequence writes blocks forward, backwards or randomly within Total Bytes

Remaining Commands File/share/session handle configuration is occasionally required for File Close, Tree Disconnect or Session Logoff Only needed if multiple files, shares, or sessions commands opened in one Scenario

SMB2.1/SMB3 Hybrid: Windows 8, 8.1 Windows Server 2012

TCP Connect Enter Server IP address TCP Destination Port 445

Negotiate Required dialects: SMB2.002: SMB2 SMB 2.1: SMB2.1 SMB 3.0: RTM SMB3 Capabilities: All are optional Used with SMB 2.1 and SMB3 SMB 2.1 capabilities: Distributed File System Leasing Large MTU (Multi-Credit) SMB 3.0 capabilities: Persistent Handles Directory Leasing Encryption

Session Setup Domain Name: WORKGROUP for server login Full domain name for domain-based login Some vendors require Machine Name Authentication required May use one username and password for all users Domain-based login to be addressed in a future Webinar

Session Setup: NTLM Flags Windows 8 settings Hex: E2088297 Copy NTLM Flags value from PCAP (either hex as shown above or decimal) and paste directly in dropdown pane at top of NTLM Flags PCAP rather than setting flags individually

Tree Connect Format is \\<server>\share Windows ignores all characters between \\ and \ except some clustered implementations

Validate Negotiate Verifies that a client has connected to a real SMB3 server Helps prevent Man in the Middle attacks Revalidates the Capabilities first specified in Negotiate

Query Network Interface Determines if multiple interfaces are available on server If present, may be one or more: Ethernet interfaces 10G Ethernet iwarp (RDMA) interfaces Infiniband RDMA interfaces Other interfaces may be shared iwarp and Infiniband interfaces enable highspeed large data transfers

Remaining Commands Share/session handle configuration is occasionally required for Tree Disconnect or Session Logoff Only needed if multiple files, shares, or sessions commands opened in one Scenario Advanced copy using SMB3 will be a topic in a future Webinar

More to Come Future Protocol for Dummies webinars will address: NFSv3, NFSv4 and NFSv4.1 Fibrechannel iscsi Many advanced topics: Writing / Reading with complex content types Working with metadata Compound vs. Async command config and processing And more! Please stay tuned 35

Thank you! (408) 477-8910 info@loaddynamix.com