ALL >> Business >> View Article
Considering Cost When Designing Security
What are possible solutions to this problem?
Change Group Policy to allow LM, replace MCSE Certification with Windows XP, or add the Active Direc-tory Client and configure Windows 98 to use NTLM.
What is the most cost-effective answer to this problem?
Reconfigure the Windows Server 2003 domain controllers to allow the use of LM.
Why is this the most cost-effective solution?
It takes only a simple change to Group Policy. Another option would be to install the Active Directory client and configure workstations, but that would cost money in the form of adminis-trator time. A third option would be to replace all the workstations, but this would also be costly.
What should you do to solve the problem and improve the security process?
Explain your answer.
Upgrade Windows 98 computers to Windows XP Professional. Although adding the Active Direc-tory client to Windows 98 and configuring it to use NTLM will provide a secure authentication interface between the Windows 98 computers and the Windows Server 2003 domain, it pro?vides no additional security ...
... benefits for the desktop computers or the overall domain. Upgrad-ing to MCSE Exams enables the use of Group Policy and file access security.
1. Design an account policy for the research domain. Include settings for both the password and account lockout policy.
Answers may vary. The following table describes the configuration of the password and account lockout policies recommended for this research domain. Additional effort should be made to increase security with a written policy, some items of which cannot be implemented with tech-nical controls, but must be enforced via other means. Training will help. In addition, each employee with access to the resources in the research domain should be fully aware of the policy and be convinced of the necessity of its implementation.
Requiring a minimum of 15 characters eliminates the use of password-cracking tools, which can crack only the LM hash and then use it to deduce the NTLM hash. While Kerberos will be the default authentication protocol in this domain, there are instances when NTLM can be used. In addition, unless all systems are properly config?ured, the LM hash is created, used (in addition to the NTLM hash) in responding to an NTLM challenge, and stored in the Active Directory database.
This setting requires at least the minimum of complexity requirements.
This setting should not be changed from the default, as to do so would weaken security.
Administrative reset should be required to unlock locked-out accounts. This will prevent the success of an auto?mated attack that returns to locked-out accounts after waiting for accounts to be unlocked.
Because a locked-out account must be reset by an administrator, a large number of free Cisco question papers incorrect logon attempts can be allowed.
Add Comment
Business Articles
1. Top Bearing Company Delivering Reliable Performance For Trucks And Industrial ApplicationsAuthor: Bee Overseas
2. Choosing The Right Garden Fencing And Driveway Gates For Your Uk Home
Author: Vikram Kumar
3. The Castle Has No Walls: Why Enterprise Security Must Move Beyond The Perimeter
Author: Robert
4. How Koel Colours Is Shaping The Future Of Cosmetic Pigments In 2026
Author: koel
5. Loyalty Platform Guide: Features, Top Providers & How To Choose The Right One
Author: Ravi Kuamr
6. Vashikaran Astrologer In India | Ram Ratan Shastri Ji
Author: Ram Ratan Shastri Ji.
7. Kitchen Cabinets Marble – A Perfect Blend Of Style And Functionality
Author: mike
8. Why Pharma Brands Need Effective Visual Merchandising In Retail Pharmacies | Brandola
Author: Brandola
9. The Automation Standard: Achieving Zero Tolerance With An Automatic Fly Ash Brick Making Machine
Author: Karmyog India
10. Italian Marble Table – A Symbol Of Luxury And Timeless Elegance
Author: mike
11. The Real Impact Of Back Pain Therapy In Worcestershire
Author: Energize Therapy
12. The Benefits That A Digital Business Card Promises
Author: Angus Carruthers
13. What Factors Contribute Towards The Success Of A Virtual Receptionist?
Author: Eliza Garran
14. Lucintel Forecasts The Global Gate Driver Ic Market To Reach $2,905 Million By 2035
Author: Lucintel LLC
15. Lucintel Forecasts The Global Exosome Research Market To Reach $1,125 Million By 2035
Author: Lucintel LLC






