In the wake of several high-profile malware events, it comes almost as no surprise that SMB1 is not enabled by default. The security vulnerabilities, in addition to the serious performance problems with the now-ancient file transfer protocol, are enough to push this over the edge. Undoubtedly, some enterprises will be running ancient file services (filer appliances that were never updated, old OS installs that can't be upgraded, and so on--the skeletons in the enterprise closet so to speak). And for those, enable away I suppose. Or maybe join the 2000s finally and leave them off.
For those who are not convinced, from Microsoft's own Ned Pyle, who owned SMB for some time as a PM:
When using SMB1, you lose key protections offered by later SMB protocol versions, such as:
- Pre-authentication integrity (SMB 3.1.1+ https://blogs.msdn.microsoft.com/openspecification...