Re: Spykids

From: Leythos (void_at_nowhere.lan)
Date: 07/28/05


Date: Thu, 28 Jul 2005 01:35:57 GMT

In article <dc8ti0$nld$2@gallifrey.nk.ca>, doctor@doctor.nl2k.ab.ca
says...
> SPykids is a known defacer of Web Site. How does one prevent them
> from ever having access to Server or even a LAN?
>
> Customer complained:
>
> Spykids should not be able to get into our websites
> regardless of whether they are
> piggy-backing on a member or not. This has happened 2x so far.

You need to learn how they are getting in, what measures you can do to
block it and such.

First, put the web server behind a dedicated firewall, not a NAT box, a
firewall - only allow real HTTP or HTTPS sessions to it.

Require users to have strong passwords, look it up if you don't know
what that means.

Block IP networks that don't need access to your web sites - as an
example I block about 50 subnets in countries outside of our own and it
cuts down on a lot of attempts.

-- 
spam999free@rrohio.com
remove 999 in order to email me


Relevant Pages

  • Re: Spykids
    ... > SPykids is a known defacer of Web Site. ... > from ever having access to Server or even a LAN? ... firewall - only allow real HTTP or HTTPS sessions to it. ...
    (comp.security.unix)
  • Re: Spykids
    ... >> SPykids is a known defacer of Web Site. ... >> from ever having access to Server or even a LAN? ... >example I block about 50 subnets in countries outside of our own and it ...
    (comp.security.misc)
  • Re: Spykids
    ... >> SPykids is a known defacer of Web Site. ... >> from ever having access to Server or even a LAN? ... >example I block about 50 subnets in countries outside of our own and it ...
    (comp.security.unix)
  • Re: Cant see performance report, etc. SBS2003
    ... However, for "OpenSSH Server", you need to ensure it started, or set ... click to check the "Hide All Microsoft Services" ... Make sure no host header is assigned to the Default Web Site. ... Reinstall Monitoring component: ...
    (microsoft.public.windows.server.sbs)
  • Re: IIS (on SBS 2k) default website stopped address already in use
    ... server box properly and configure the following settings on the ISA server. ... Create an anonymous Site and Content rule for Windows Update ... Web site through a server that is running ISA Server ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)