RE: Home Security.

From: Fallon, Benjamin (bfallon@Businessedge.com)
Date: 05/03/02


From: "Fallon, Benjamin" <bfallon@Businessedge.com>
To: 'Radoslav Dejanovic' <radoslav.dejanovic@zagreb.hr>, "Pearson, Andrew" <Andrew_Pearson@adc.com>, "'SECURITY-BASICS@securityfocus.com'" <SECURITY-BASICS@securityfocus.com>
Date: Fri, 3 May 2002 13:25:54 -0400 


>3) I've got Win 2000 Server as my
> server machine, but I can't seem to Install any Anti-Viral software or
> Firewall software... Is this just my machine, or is it a problem with
> Win 2000?

>3a)? ;-)
>You have to install it as administrator, 2000 and XP do accept antiviral
>software.

2000 and XP do accept antivirus software. However, you must have a version
that is compatible with the OS's. Just because it works on the
workstations, does not necessarily mean it will be a ble to be installed on
the servers. NetShield 4.5 is the latest version for 2k servers from
McAffee and runs fine. But yes, installing any product on 2K or XP should
be installed by "an" administrative account as to be sure that the account
has all of the proper security access. (File System, registry keys, etc.)

Ben

-----Original Message-----
From: Radoslav Dejanovic [mailto:radoslav.dejanovic@zagreb.hr]
Sent: Thursday, May 02, 2002 3:25 AM
To: Pearson, Andrew; 'SECURITY-BASICS@securityfocus.com'
Subject: Re: Home Security.

On Tuesday 30 April 2002 17:08, Pearson, Andrew wrote:
> 1) What is the best operating system / firewall software combination to
> use on the firewall machine? (I think i'd prefer to use a MS product
> though)

Please, don't! :-)
No, really - it is much better to get some old hardware and put Linux or
BSD on it - you'll get cheaper solution that can be made more secure for
less money. ;-)

>3) Obviously, my
> firewall machine will have to act as a router, so what is the best
> software to use to achieve this?

If you use Linux you'll get everything for free, including quite good
router, firewall, NAT, MTA - included in any distribution you choose.

>3) I've got Win 2000 Server as my
> server machine, but I can't seem to Install any Anti-Viral software or
> Firewall software... Is this just my machine, or is it a problem with
> Win 2000?

3a)? ;-)
You have to install it as administrator, 2000 and XP do accept antiviral
software.

> 5) Lastly, what would I need (besides telnet) to use to access my Linux
> box from the server securely? (If the server is an MS-OS) would Exceed
> do it?
Use SSH and not telnet if you want to access anything securely. Exceed has
connectivity security pack that enables you to use SSH tunelling for your
sessions, but AFAIK it won't work if you turn on XDMCP broadcast - you have
to manually set up X sessions instead of using XDMCP. You can as well use
third party SSH solutions with Exceed.

-- 
Radoslav Dejanovic
Senior Associate to Mayor's Office
City of Zagreb, Croatia



Relevant Pages

  • Re: Feedback solicited - best way to harden a mail/web server?
    ... Was the system protected by a properly configured firewall? ... it's not a bad "starting point" and it can generate an IPtables rule ... > nor is there a web or ftp server; aside from that I haven't tried to secure ... Before I'll install some nifty application ...
    (comp.os.linux.security)
  • Re: need help re. office network install
    ... > and their network is a mess, the result of years of neglect. ... they have a gateway server w/ no special ... > firewall rules on it, they have a large DMZ that serves no purpose ... install anymore software on the firewall machine than is absolutely ...
    (comp.os.linux.networking)
  • Re: Rogue PHP file
    ... Chances are there is a phishing site on the server. ... Calling support on Monday morning is a free call and they have forensic investigation tools to let you know what is on that box. ... If someone has rights to install stuff on a system from inside the lan no amount of a firewall will help unless you have rules monitoring what's going on. ...
    (microsoft.public.windows.server.sbs)
  • Re: WSUS 2.0
    ... I'm a WSUS lover, but I confess that for two client PCs, I'd probably use Automatic Updates set to auto-install. ... The problem I believe is that I can't access the SBS Premium firewall because RRAS has ipnat.sys running and is blocking access to the firewall. ... The server is running great and RWW is working fine. ... My question is can I install WSUS 3.1 without reinstalling WSUS 2.0??? ...
    (microsoft.public.windows.server.sbs)
  • Re: Trend SMB 3.0 Issues
    ... >> or it's name (specified during install). ... If I go directly to the site via IE (Server ... >> sounds like XP firewall. ... Look for blocked packets on the ports trend ...
    (microsoft.public.windows.server.sbs)