Re: Hello Everyobody

From: Gregory W Zill (gregory_at_r3g.net)
Date: 09/10/04


Date: Thu, 09 Sep 2004 21:36:50 -0500

Just my brief $.02:
* set up dmz or service network on separate subnet from internal LAN
* acquire border appliance/firewall to support the three networks
    1) external - the public internet address(es)
    2) service - a second private network for web/sql
    3) internal - what you already have, your LAN
* secure *and* harden win2k host
* secure apache
* allow minimal ports from external to service net, *not* SQL
* allow windowsupdate out from service net

Jerry McBride wrote:
> Phani Kumar wrote:
>
>
>>Hi All,
>>
>>I am Phani Kumar, Working as Systems Administrator in Globarena Web
>>Technologies Pvt Ltd, India. I just joined this group and feeling very
>>excited about the same.
>>
>>I think all of you guys would be cooperative whenever i am stuck up
>>with something related to security.
>>
>>We are planning to host one of our websites in house itself. An MS SQL
>>Server and Apache would be sitting in it and would of course be Windows
>>2000 Server.
>>
>>We are planning to install Zone Alarm Pro version for the security
>>reasons. We have 128Kbps MLLN for the connectivity. I would like to
>>get some suggestions regarding this hosting on the aspect of security.
>>Thanks in advance...
>>
>>Regards...
>>
>>Phani Kumar
>
>
> Are you the person that got my brothers job when it was "out-sourced"
> recently?
>
> Are you the guy now asking for help in figuring out HOW TO DO HIS job?
>
> You got some REAL BRASS....
>
> Why don't you do what my brother did and read the books, go to college and
> pay your own way, instead of try to get someone else to do your work...
>
> It's bad enough that we are loosing some/most of our top paying jobs to
> india, it's an INSULT when you come here and ask help to figure out YOUR
> NEW PROBLEMS....
>
>

-- 
"Never have so many understood so little about so much."
                              -- James Burke


Relevant Pages

  • [NT] Vulnerability in Microsoft Data Access Components Allows Code Execution (MS07-009)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... this vulnerability by preventing Active Scripting and ActiveX controls ... mode sets the security level for the Internet zone to High. ...
    (Securiteam)
  • Testimony of Jeff Schmidt, CEO, Authis
    ... Examining the Security Implications of Proposed Online Gambling Regulation ... recognized expert on issues related to online identification and authentication, ... authentication, and age verification. ... individual using The Internet. ...
    (rec.gambling.poker)
  • << SBS news of the week 12/6/2004>>
    ... Simply connecting to the Internet — and doing ... You would NEVER set up a server with file and printing sharing ports ... McAfee says 'Skulls' mobile security threat still low ... ISPs raise the stakes on DDoS attacks ...
    (microsoft.public.backoffice.smallbiz2000)
  • << SBS news of the week 12/6/2004>>
    ... Simply connecting to the Internet — and doing ... You would NEVER set up a server with file and printing sharing ports ... McAfee says 'Skulls' mobile security threat still low ... ISPs raise the stakes on DDoS attacks ...
    (microsoft.public.windows.server.sbs)
  • Hackers Shift to Financial Gain
    ... Internet criminals not content to just wreak havoc online ... The prime objective for hackers and online thieves has shifted from ... largely hitting major corporate networks to gaining control of home ... Symantec this week released its Internet Security Threat Report. ...
    (comp.dcom.telecom)