Re: Comparing Windows Bastions to Linux Bastions

From: Chris Travers (chris@travelamericas.com)
Date: 02/26/03

  • Next message: Bram Van Dam: "RE: e-mail policies"
    Date: Tue, 25 Feb 2003 15:59:06 -0800
    From: Chris Travers <chris@travelamericas.com>
    To: "BYRD,GREGORY (HP-Boise,ex1)" <gregory.byrd@hp.com>
    
    

    Hi Gregory;

    The O'Reilly book "Building Internet Firewalls" has a good section on
    Windows and *nix bastions.

    My own perspective is that Windows hosts tend to be more complicated
    from a security perspective because of hidden dependencies, etc (for
    example does your web app require COM+? How do you know?), and the
    secure administrative interfaces tend to be more complex as well. This
    is a problem for Windows. Also, remember that most Windows Updates
    require a reboot, while most updates on *nix systems require that a
    specific service is restarted.

    However, a large percentage of security incidents are preventable by
    good administration practices. So, the admin is more important than the
    platform.

    Just my 2 cents worth.

    Best Wishes,
    Chris Travers

    BYRD,GREGORY (HP-Boise,ex1) wrote:

    >Everyone,
    >
    >I'm looking for information comparing Windows Bastions to Linux Bastions
    >(positives and negatives). I've looked through the list archive, as well as
    >plundered through Google (web and groups), but nothing worthwhile.
    >Hopefully someone on this list knows or has a document that can help.
    >
    >Thanks in advance,
    >Greg
    >
    >
    >
    >
    >
    >
    >
    >



    Relevant Pages

    • Re: Comparing Windows Bastions to Linux Bastions
      ... You can strip down your linux system so far as you wan't (and the time ... Windows is far more complex, ... >I'm looking for information comparing Windows Bastions to Linux Bastions ...
      (Security-Basics)
    • Re: SP/3 Cleanup
      ... Delete the hidden folder of files that would be restored by an uninstall: ... 'Remove' for Service Pack 2 in Add/Remove Programs, ... this - it will be used in future by Windows File Protection - but on an NTFS ... Also you can delete other Windows Updates Files to gain space. ...
      (microsoft.public.windowsupdate)
    • RE: 2 Client PCs cannot connect to Network Drives
      ... I also saw that Windows Updates would not work. ... would report that they could no longer connect to network drives. ... Temporary workaround to get client working: ...
      (microsoft.public.windows.server.sbs)
    • Re: SP/3 Cleanup
      ... MS MVP-IE, Mail, Security, Windows Desktop Experience - since 2002 ... Delete the hidden folder of files that would be restored by an uninstall: ... Also you can delete other Windows Updates Files to gain space. ... are also in Add/Remove Programs. ...
      (microsoft.public.windowsupdate)
    • Re: WHAT A WASTE OF MONEY
      ... "Shenan Stanley" wrote: ... WINDOWS IS NOTHING BUT JUNK, I HAD 9 UDATES AUG 15, EVERYONE FAILED ... You are *not* the only one having trouble with Windows Updates. ...
      (microsoft.public.windowsupdate)