I definatly understand what your saying and the person who did this(the three people) have left the company already. However, I have hit my server with many nessus scans inside the firewall and outside the firewall and still havn't been able to get a valid list of users.

Does anyone here have a program I can run so I can prove to management that this "close off the ports project" needs to be given higher priority than it has been. I think right now it is a internal office politics issue on why the project is going as slow as it is.