Re: 2 redundant 2000 servers

From: Panda (brisk)
Date: 10/08/03


Date: Tue, 7 Oct 2003 19:48:02 -0400

Number of ways.

Start with IPSec. Block EVERYTHING with IPSec.

Then open ports that are needed for your services.
Like port 80/443. If you have some tcp/ip protocol/app
that is used between the two servers, secure it with IPSec.

http://www.microsoft.com/windows2000/techinfo/planning/security/ipsecsteps.asp
http://msdn.microsoft.com/library/en-us/dnnetsec/html/SecNetHT18.asp
http://msdn.microsoft.com/library/en-us/dnnetsec/html/HTUseIPSec.asp
http://support.microsoft.com/?kbid=313190
http://support.microsoft.com/default.aspx?scid=313195
http://support.microsoft.com/default.aspx?scid=252735

Enable firewall on both servers. Run security templates from
Windows 2000 Security guide:
http://www.microsoft.com/technet/security/prodtech/windows/secwin2k/default.asp

"Taishi" <taishi_bak@hotmail.com> wrote in message
news:ehW194RjDHA.4048@tk2msftngp13.phx.gbl...
> Open for suggestions.
>
> I have a e-commerce project in my Netw and Telocom Security class. My
> company has two 2000 servers. My Professor suggested that I add some type
> of security between my 2 redundant 2000 servers. Any suggestions will be
> greatly appreciated.
>
> Any ideas?
>
> Warm Regards,
> T
>
>



Relevant Pages

  • Re: 2 redundant 2000 servers
    ... Block EVERYTHING with IPSec. ... Then open ports that are needed for your services. ... Enable firewall on both servers. ... Windows 2000 Security guide: ...
    (microsoft.public.security)
  • Re: 2 redundant 2000 servers
    ... Block EVERYTHING with IPSec. ... Then open ports that are needed for your services. ... Enable firewall on both servers. ... Windows 2000 Security guide: ...
    (microsoft.public.windows.server.security)
  • [NEWS] Cisco IPSec IKE Multiple DoS Vulnerabilities
    ... Get your security news from a reliable source. ... IP Security, or IPSec, is a set of protocols standardized by the IETF to ... Multiple Cisco products contain vulnerabilities in the processing of IPSec ... an IPSec connection between them for the purposes of connecting two remote ...
    (Securiteam)
  • Re: Isolate systems
    ... You also may want to download the " Securing Windows 2000 Server Security ... to use ipsec "filtering" policies to secure domain controllers and other ... >> filtering policy on your computers which is a policy that uses rules with ...
    (microsoft.public.win2000.security)
  • Re: FreeBSD NAT-T patch integration
    ... As Bjoern said in another mail, we're talking about security. ... Yes, I'm doing most of IPSec / NAT-T stuff at work, but it is mainly ... committing things to security tools without very careful audit. ...
    (freebsd-net)

Loading