Was just thinking about a component to computer security I never see mentioned in here... login. Figured I'd see who else took this measure. I keep mine non-local on a floppy disk personally.
No, I don't. Anyway, I found this.. -hxxp://www.irongeek.com/i.php?page=security/cracking-windows-vista-xp-2000-nt-passwords-via-sam-and-syskey-with-cain-ophcrack-saminside-bkhive-etc-
^ Yep. That's a perfect example of why it's useful to not store your syskey locally (put it on a floppy). From what I understand the title of my thread is misleading, and you all actually do have a syskey stored whether you know it or not. The only difference is you're able to password protect it, and store if non-locally if you know how, to prevent such a scenario. Unless I'm mistaken... not to mention I believe that potential vulnerability associated with syskey was patched way back in like 1492. And also a GP tweak "do not allow anonymous enumeration of sam accounts and shares" = enabled comes to mind...