inheriting a network

From: jfuller (jfuller_at_replyinthe.group.com)
Date: 07/17/03


Date: Thu, 17 Jul 2003 14:52:41 -0700


Are you familiar with AD and W2k? Or just starting out?
Do you know LAN/WAN?

When I took over at a company a couple of years ago they
had a backup system they used daily to back up 1 of 3
servers, a Virus scanner that was 2yrs out of date, the
NT servers had never had updates or SPs installed on
them, and most passwords were blank. That list went on
and on.
What I am saying is make sure to cover the basics first.
If there is no backup system GET ONE! Make sure that
you have a good virus scanner on the server ASAP then
worry about the VS on the workstations. Get rid of back
doors and weaknesses intentionally left by
predecessors. And install updates, SP, and security
fixes the day they are released.

I would start by running the Microsoft Baseline Security
Analyzer on all servers and workstations in the network
to document the basic security and software issues you
might be facing. I would also suggest auditing the user
accts in the AD and disabling all of the accts that are
not legitimate (look for back doors left by the prior
admins.) Look for accounts that are able to log on the
servers for remote admin using TS.
I would also be checking the Firewalls for either
overlooked or intentional vulnerabilities.
Than use a mapping program such as LAN MapShot Automatic
Diagramming Software From Fluke to map and inventory the
entire system quickly. (14 day free trial on their site)
I would also reference these articals:
The Basics of Security (Microsoft technet)
Best Practices for Enterprise Security (Microsoft Technet)

>-----Original Message-----
>I'm about to inherit a network where the company
administering it was asked
>to leave; no network documentation, no knowledge
transfer, nothing left
>behind. Can you give me or direct me to a "best
practices" checklist of
>things to do/check in inheriting the network? I've got
some ideas, but I
>wanted to tap the knowledge of an "expert". :^) It's
aW2k SBS environment, <
>than 100 users.
>
>Appreciate it.
>
>-HAWK
>
>
>.
>



Relevant Pages

  • IT Security Administrator in Bend, OR
    ... workstations as well as physical security for I/T systems. ... manages network security software and hardware. ... Extensive experience with Windows 2000/2003 servers and Exchange ... Two years experience configuring, installing and implementing VMWare ...
    (comp.arch)
  • Re: How to access I/O port directly in VC6.0?
    ... As soon as you have standalone machines, ... Their "security" as far as servers was a joke; ... discovered the internal wireless network was completely unencrypted. ...
    (microsoft.public.vc.mfc)
  • Re: Pen testing Fiber Channel
    ... If direct access to the network is available, ... Subject: Re: Pen testing Fiber Channel ... > server to another on a different higher security network. ... SAN servers are usually on isolated ...
    (Pen-Test)
  • RE: [fw-wiz] Security Audit and Priorities
    ... Learn your network. ... - Linux Security Cookbook ... Building Secure Servers with Linux ... It's one thing to be a firewall admin and write ...
    (Firewall-Wizards)
  • Re: Cisco VPN AIM: is really needed for me?
    ... IOS 12.4ADV SECURITY ... public /29 range for my servers ... I would like to establish the tunnel from the site A (using network link ...
    (comp.dcom.sys.cisco)