opensuse v42.2
We use Suricata as an intrusion detection/prevention program. A recent rule started firing that the unsafe SMB protocol version 1 (SMBv1) was detected. Interestingly, the message about the rule occurs every 20 minutes.
I did go to the Samba site but could not find the documentation to answer this question, although I am sure it is there somewhere.
Is there a way to set the allowed minimum version of the SMB protocol?
02/18/2017-11:18:37.411223 **] [1:2023997:1] ET INFO Potentially unsafe SMBv1 protocol in use **] [Classification: Not Suspicious Traffic] [Priority: 3] {TCP} 192.168.69.115:44574 -> 192.168.69.245:445