What server hardening are you doing these days?

From: Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP] (sbradcpa_at_pacbell.net)
Date: 11/09/05

  • Next message: Depp, Dennis M.: "RE: What server hardening are you doing these days?"
    Date: Wed, 09 Nov 2005 13:23:16 -0800
    To: focus-ms@securityfocus.com
    
    

    Steve Riley's WebLog : When security breaks things:
    http://blogs.technet.com/steriley/archive/2005/11/08/414002.aspx

    Are folks doing additional hardening to their servers these days and if
    so, what guidance are you using?

    Interesting blog post about the impact of such hardening and not
    supported ACL adjusting.

    -- 
    Letting your vendors set your risk analysis these days?  
    http://www.threatcode.com
    ---------------------------------------------------------------------------
    ---------------------------------------------------------------------------
    

  • Next message: Depp, Dennis M.: "RE: What server hardening are you doing these days?"

    Relevant Pages

    • RE: Blessed Windows Security Templates
      ... I am in a situation where the client has multiple standalone servers that ... I downloaded the secruity templates from MS ... I have a special request from a client. ... tool and have some level of hardening. ...
      (Focus-Microsoft)
    • Re: Internal Servers (noob post)
      ... Server hardening is important whether the perimeter is secured or not ... chewy center of the network at which point the servers would become ... need to invest heavily or put resources into hardening internal servers. ... servers would you always try to penetrate the firewall or find some ...
      (Pen-Test)
    • Re: Is our security team right
      ... That probably makes the most sense and follows guidance in the Windows 2003 ... Server Security Guide. ... The original servers were not built with any hardening ...
      (microsoft.public.win2000.security)
    • RE: Server hardening
      ... Go through the templates used for DMZ and high security servers. ... Subject: Server hardening ... Learn all of the latest penetration testing techniques in InfoSec Institute's Ethical Hacking class. ... Totally hands-on course with evening Capture The Flag exercises, Certified Ethical Hacker and Certified Penetration Tester exams, taught by an expert with years of real pen testing experience. ...
      (Security-Basics)
    • Re: Is our security team right
      ... Only then are we going to be allowed to install our ... does not then roll back hardening step and identify why it has broken ... as keeping the old servers online until the new servers are validated as ... unavoidable pain. ...
      (microsoft.public.win2000.security)