Re: 2000 Server Internet Security

From: Jeff Cochran (jcochran.nospam@naplesgov.com)
Date: 01/28/03


From: jcochran.nospam@naplesgov.com (Jeff Cochran)
Date: Tue, 28 Jan 2003 12:39:43 GMT


On Mon, 27 Jan 2003 13:55:59 -0800, "Danny" <dpoole@froggy.com.au>
wrote:

>How secure is a Win 2k Terminal Server and Domain
>Controller connected to the net via DSL 24/7.

Less secure than if it weren't connected...

>I have all web and ftp services stopped but wonder if i
>should be doing more to ensure security.
>
>A third party proxy/mail server is running also.
>
>Note I will also want 1 user to log into the TS via the
>net in 1 month or so.

Start here:

http://securityadmin.info/

Pay attention to the hardening section.

Jeff



Relevant Pages

  • Re: How to Publishing applications on Terminal Server 2003?
    ... Microsoft MVP - Terminal Server ... >The IIS server is already used for secure OWA. ... >applications through RDP. ... >Patrick Rouse ...
    (microsoft.public.windows.terminal_services)
  • Re: Deploying my App
    ... You can secure the back-end, or just hide anyway for the user to get at it. ... When deploying an app with a Terminal Server, you should always make a copy ... I access the user level security wizard if I split the database, ...
    (microsoft.public.access.formscoding)
  • Re: Saving files back to local computer
    ... SSL is reasonably secure. ... I'm of the opinion that any open ports are ... > unless you map a public IP to each private Terminal Server. ... has an SSL Gateway Built-into their products, ...
    (microsoft.public.windows.terminal_services)
  • Re: Terminal Server through the Internet
    ... In no way is that secure. ... Microsoft MVP - Terminal Server ... We are just deploying a new terminal server in our organisation, ... Most of our users use a Remote Client software to create a VPN tunnel, ...
    (microsoft.public.windows.terminal_services)
  • Re: Publish Terminal Server on Internet
    ... That solution is precisely as secure as your Terminal Server. ... If you have secure passwords and good security and patching practices, then Windows can be made to be very secure. ... This is not a security threat in the normal sense, and will not result in your machine being comprimised, but for a comparatively small ammount of attack resources, a comparatively large amount of server resourses are consumed. ... Change the port number for the RDP listener on your internal TS Server to ...
    (microsoft.public.windows.terminal_services)