RE: Hardening TCP/IP Stack; conflicting sources

From: Willis Johnson (willisj_at_microsoft.com)
Date: 03/22/04

  • Next message: Jean-Baptiste Marchand: "Re: Hardening TCP/IP Stack; conflicting sources"
    Date: Mon, 22 Mar 2004 10:37:18 -0800
    To: <captmeoff@yahoo.com>, <focus-ms@securityfocus.com>
    
    

    Hello.
    Thanks very much for bringing this to my attention! We're currently
    reviewing our online security guidance, working hard to correct such
    contradictions.

    This prescriptive guidance for hardening TCP/IP was reviewed last month
    and is considered authoritative:

    http://www.microsoft.com/technet/security/guidance/secmod150.mspx

    You may also find helpful prescriptive security guidance here:
    http://www.microsoft.com/security/guidance/topics/default.mspx

    Willis Johnson
    Microsoft

    -----Original Message-----
    From: captmeoff@yahoo.com [mailto:captmeoff@yahoo.com]
    Sent: Saturday, March 20, 2004 1:24 PM
    To: focus-ms@securityfocus.com
    Subject: Hardening TCP/IP Stack; conflicting sources

    Which path is correct for Windows 2000 Server? I've

    seen both.

    HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NoNameReleaseOnD
    emand

    -or-

    HKLM\SYSTEM\CurrentControlSet\Services\NetBT\Parameters\NoNameReleaseOnD
    emand

    as well as this one:

    HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableFragmentCh
    ecking

    - or -

    HKLM\SYSTEM\CurrentControlSet\Services\IPFilterDriver\Parameters\EnableF
    ragmentChecking

    ------------------------------------------------------------------------

    ---
    Free 30-day trial: firewall with virus/spam protection, URL filtering,
    VPN, 
    wireless security
    Protect your network against hackers, viruses, spam and other risks with
    Astaro Security Linux, the comprehensive security solution that combines
    six 
    applications in one software solution for ease of use and lower total
    cost 
    of ownership. 
    Download your free trial at 
    http://www.securityfocus.com/sponsor/Astaro_focus-ms_040301
    ------------------------------------------------------------------------
    ---
    ---------------------------------------------------------------------------
    Free 30-day trial: firewall with virus/spam protection, URL filtering, VPN, 
    wireless security
    Protect your network against hackers, viruses, spam and other risks with 
    Astaro Security Linux, the comprehensive security solution that combines six 
    applications in one software solution for ease of use and lower total cost 
    of ownership. 
    Download your free trial at 
    http://www.securityfocus.com/sponsor/Astaro_focus-ms_040301
    ---------------------------------------------------------------------------
    

  • Next message: Jean-Baptiste Marchand: "Re: Hardening TCP/IP Stack; conflicting sources"

    Relevant Pages

    • Re: blocking p2p traffic
      ... Network Security Specialist ... firewall with virus/spam protection, ... the comprehensive security solution that combines six ...
      (Focus-IDS)
    • RE: A new technique to disguise a target URL in spam
      ... I have seen the same technique used in other emails, ... firewall with virus/spam protection, URL filtering, VPN, ... Security Linux, the comprehensive security solution that combines six ...
      (Incidents)
    • RE: help with exchange
      ... Subject: help with exchange ... firewall with virus/spam protection, URL filtering, VPN, ... Security Linux, the comprehensive security solution that combines six ...
      (Security-Basics)
    • Re: help with exchange
      ... You can download an evaluation copy to see if its any use. ... Security Linux, the comprehensive security solution that combines six ... firewall with virus/spam protection, URL filtering, VPN, ...
      (Security-Basics)
    • RE: process tracking
      ... Snare to generate syslog messages to feed into KIWI Syslog and set up ... firewall with virus/spam protection, URL filtering, VPN, ... Astaro Security Linux, the comprehensive security solution that combines six ...
      (Focus-Microsoft)