Re: Binding Windows Services to Specific Addresses Only



On Sun, May 04, 2008 at 01:13:17AM +0200, Christian Koerner wrote:
When it comes to Windows hardening and in specific restricting
Windows' services, the only suggestions that I've found so far are:
*) disable unnecessary services
*) restrict network access through packet filtering

What else can be done and isn't it possible to bind Windows' services
to a specific address/interface, e.g. LAN.

AFAIK, there is no general mechanism to bind services to specific
interfaces or addresses - I know the Services API doesn't have any
such thing. Instead, the application itself must choose to provide a
mechanism for this (which is normally exposed in a GUI or registry entry).

Most don't.

Steve

--
Stephen J Friedl | Security Consultant | UNIX Wizard | +1 714 544-6561
www.unixwiz.net | Tustin, Calif. USA | Microsoft MVP | steve@xxxxxxxxxxx



Relevant Pages

  • Re: Coyote Linux - bi-directional firewall?
    ... >> do with windows versus linux. ... the windows world have ever had with packet filtering. ... > however this resource should be defined) for output ...
    (comp.os.linux.security)
  • Using IPSec as a Packet Filter Firewall
    ... Using IPSec as a Packet Filter Firewall ... Windows 2000 as a packet filtering firewall. ... etc. that cover IPSec packet filtering on Windows 2000 in detail? ...
    (Focus-Microsoft)
  • Packet Filtering Info.
    ... I have no idea where to ask this question, I have to create a "windows ... service" application for "packet filtering" using .NET. ... so I am posting it here. ... Please Advice, ...
    (microsoft.public.dotnet.framework.aspnet)
  • Re: DDK programming!
    ... We now need to find a windows equivalent of this program? ... Port it yourself :-) probably nobody ever did this before you. ... > familiar with packet filtering and AES security engine. ...
    (microsoft.public.development.device.drivers)