Topic in microsoft.public.windowsxp.security_admin WMI settings for remote access on XP From: Jerry Bryant [MS] - view profile Date: Fri, Jan 25 2002 4:09 pm 1. the user needs to either be an admin on the XP machine or have remote enabled privilege set on the XP machine 2. Win2k needs the SP because XP requires at least Packetlevel authentication and the SP fixes a bug in Win2k to correctly allow Packetlevel connections 3. if the XP machine is in a workgroup, you won't be able to remote in anyways as all incoming connections to the XP machine will be reduced to the guest account (this is by-design of the OS), if in a domain, it should work given the previous 2 statements are fulfilled. How to enable remote privileges on the XP machine: 1. Right Click "My Computer", choose "Manage" 2. Open "Services And Applications", right click over "WMI Control" and choose "properties" 3. Click on the "Security" Tab, highlight the namespace you want to give security to (most likely root\cimv2) and click the Security button 4. add the user, and check "Remote Enable" also check out this: http://support.microsoft.com/kb/q282949/ if you are using XP home in Step #3 behavior cannot be changed. If you are using XP Pro in a workgroup you can change the behavior via the local group policy: Computer\Windows Settings\Security Settings\Local Polices\Security Options: Network Access: Sharing and security model for local accounts: In unjoined WinXP Pro the ForceGuest behavior is on by default. This will cause all inbound connections to be anonymous (null) connections. Try disabling the ForceGuest behavior by setting the HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\ForceGuest value to 0 and reboot. The "firewall" option on the LAN connection must be disabled. Regards Microsoft MVP in Visual C++ http://blog.joycode.com/jiangsheng