Re: Windows 2003 Server - MS Rulez?

From: Steve (securityfocus_at_delahunty.com)
Date: 05/23/03

  • Next message: Kurt Seifried: "Re: Windows 2003 Server - MS Rulez?"
    To: "Kelly Fuller" <kelly@ccgsecurity.com>, "Street" <streetseeker@mail.ru>, <focus-ms@securityfocus.com>
    Date: Fri, 23 May 2003 17:07:57 -0400
    
    

    I also liked the feature that Windows Server 2003 does not run unnessary
    services. I found the launch event to be very educational and the security
    issues to be well addressed.

    STEVE

    ----- Original Message -----
    From: "Kelly Fuller" <kelly@ccgsecurity.com>
    To: "Street" <streetseeker@mail.ru>; <focus-ms@securityfocus.com>
    Sent: Friday, May 23, 2003 4:02 PM
    Subject: RE: Windows 2003 Server - MS Rulez?

    The hash (most commonly MD5 or SHA) is known as a one-way algorithm and
    is very difficult to reverse. I would think this method is rather secure
    in that respect.

    Kelly B. Fuller
    Network Security Engineer
    Continental Consulting Group

    -----Original Message-----
    From: Street [mailto:streetseeker@mail.ru]
    Sent: Friday, May 23, 2003 6:02 PM
    To: focus-ms@securityfocus.com
    Subject: Windows 2003 Server - MS Rulez?

    Hello list. Today I have attended to official presentation of Microsoft
    Windows 2003 Server. And the representatives of Microsoft gave to my
    organisation an evaluation version of 2003 Server. That thing looks very
    secure, i.e. known methods of attack did not gave a damn thing. Also I
    learned an interesting feature - prohibition of launch of any program is
    not made by its exe name - it makes a hash from the body of program and
    politics are applied using this hash. I wonder whether this method is
    secure and if there are any ways to defeat it.

    Any thoughts? Thank you in advance.

    -- 
    Best regards,
     Street                          mailto:streetseeker@mail.ru
    ------------------------------------------------------------------------
    -----
    *** Wireless LAN Policies for Security & Management - NEW White Paper
    *** Just like wired networks, wireless LANs require network security
    policies that are enforced to protect WLANs from known vulnerabilities
    and threats.
    Learn to design, implement and enforce WLAN security policies to
    lockdown enterprise WLANs.
    To get your FREE white paper visit us at:
    http://www.securityfocus.com/AirDefense-focus-ms
    ------------------------------------------------------------------------
    ------
    ----------------------------------------------------------------------------
    -
    *** Wireless LAN Policies for Security & Management - NEW White Paper ***
    Just like wired networks, wireless LANs require network security policies
    that are enforced to protect WLANs from known vulnerabilities and threats.
    Learn to design, implement and enforce WLAN security policies to lockdown
    enterprise WLANs.
    To get your FREE white paper visit us at:
    http://www.securityfocus.com/AirDefense-focus-ms
    ----------------------------------------------------------------------------
    --
    -----------------------------------------------------------------------------
    *** Wireless LAN Policies for Security & Management - NEW White Paper ***
    Just like wired networks, wireless LANs require network security policies
    that are enforced to protect WLANs from known vulnerabilities and threats. 
    Learn to design, implement and enforce WLAN security policies to lockdown enterprise WLANs.
    To get your FREE white paper visit us at: 
    http://www.securityfocus.com/AirDefense-focus-ms
    ------------------------------------------------------------------------------
    

  • Next message: Kurt Seifried: "Re: Windows 2003 Server - MS Rulez?"

    Relevant Pages

    • Re: Scans from proxyprotector.com
      ... If he is supposedly a security professional, ... wireless LANs require network security policies ... > that are enforced to protect WLANs from known vulnerabilities and threats. ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Incidents)
    • Almost hacked, Need assistance please
      ... I'm new to servers and to Server 2003 so I'm going slowly and trying to learn. ... Last night I was logged in as Admin to continue working and learning. ... This morning I went thru my security logs and found the failed security ... lockouts and lockout thresholds and reviewed security policies but here are ...
      (microsoft.public.windows.server.security)
    • New Article - Security Tools: From Mermaids to Suckling Pigs
      ... wireless LANs require network security policies ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Pen-Test)
    • Article Announcement: "Relax, It Was a Honeypot"
      ... wireless LANs require network security policies ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Focus-Microsoft)
    • Re: Network interruption whenever GPO updates (event log SciCli Event ID 1704)
      ... security settings are applied every 16 hours. ... Is the server on the same subnet as the DC or on a different one? ... I've been searching thru MS KB and see that GPO and security policies ...
      (microsoft.public.windows.server.general)