This chapter helps you strengthen your out-of-the-box security with Windows NT systems. Although it doesn’t contain everything you could possibly consider, it does serve as a great way to get started. Performing the recommended actions presented here will definitely leave you with a much safer NT system. This checklist was compiled by Rob Davis with the help and advice of several other people, as well as information found on Microsoft’s Web site.
Chapter Contents
- INTRODUCTION
- PHYSICAL SECURITY CONSIDERATIONS
- Use Locks and Other Forms of Protection
- Make Backups
- Contain Networks
- Restrict the Boot Process
- HARDENING YOUR NT OPERATING SYSTEM
- Install Latest Service Packs and Hot-Fixes
- Protect Files and Directories
- Limit Access to Services and NetBIOS from the Internet
- Reconsider Using Alerter and Messenger Services
- Unbind Unnecessary Services
- Obscure the Administrative Accounts
- Display Legal Notices at Logon
- Disable the Guest Account
- Secure Your Screensavers
- Allow Only Logged-On Users to Shut Down the Computer
- Hide the Name of the Last User
- Restrict Anonymous Network Access to the Registry
- Restrict Anonymous Lookup
- Enforce Strong User Passwords
- Disable Lanmanager Password Hash Support
- Erase the System Page File During a Clean System Shutdown
- Protect the Registry
- Secure the Event Logs
- Control Print Driver Installation
- Limit the Schedule Service (AT Command)
- Remove Default Administrator Shares
- Secure Resource-Sharing
- Lock NT with System Keys
- Enable General Auditing
- Enable System Auditing
- Audit Base Objects
- Audit Privileges
- Disable Caching Logon Credentials
- Secure the Backup Copy of SAM
- Audit Password Registry Keys
- QUICK CHECKLIST
Pages:
1,
2,
3 |
go to page 1  |
|