123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> Business >> View Article

Guidelines For Designing Incremental Security Templates

Profile Picture
By Author: Mike Jones
Total Articles: 256
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

Designing incremental security templates for server roles consists of determining where security settings A plus benefits in the template need to be changed from those set in the baseline template. In general, this is not an onerous task because few settings need to be changed. However, security for server roles generally involves much more than modi fications made to the security templates. Settings specific to the role usually must be made to server applications running on the server. Application specific settings are not part of the security templates. Follow these guidelines when designing incremental security templates:
General guidelines:
Rename the Guest and Administrator accounts and their descriptions. Do not give them the same name for every server. By varying the name in this way, an attacker who discovers the name will not have the names for all servers.
Disable the Guest account, and disable the Administrators account if it will not be used.
Configure recommended services in the templates even if you configure them on the servers before templates ...
... are applied. Configuring them in the tem?plates ensures they are not disabled on the local server. Configuring them in the templates makes the Administrators group the only group that can change the startup mode of the service.
File server guidelines:
Set the DPS service to Automatic only if you are using file servers to provide 220-701 test cost services.
Set the File Replication Service (NTFRS) to Automatic only if you are using file servers to provide this service.
Print server guidelines:
Set the Print Spooler service to Automatic.
Infrastructure server guidelines:
Set the DHCP Server service to Automatic if DHCP servers are used on the network.
Set the WINS service to Automatic if WINS servers are used on the network.Set the DNS service to Automatic if DNS is used on the network.
IIS server guidelines:
Grant the user right "Deny access to this computer from the network" to the ANONYMOUS LOGON, Built-in Administrator, Support_388945aO, Guest, and all non-operating system service accounts.
The baseline policy included the Guests group in the user right "Deny access to this computer from the network". However, IIS uses the ISUR_servername account as a member of the Guests group for anonymous access by Internet users.

Set the HTTP SSL service (HTTPFilter) start up mode to Automatic.Set the World Wide Web Publishing service to Automatic.
Do not enable (or install) other Web server services unless required by the Web server and approved by Free MCSE PDF questions management. Recommendations about when to use which components are available online as well as in the "Microsoft Win?dows Server 2000 Security Guide".

Total Views: 360Word Count: 417See All articles From Author

Add Comment

Business Articles

1. Most Expensive Places To Live In Dubai 2025: Top 14 Luxury Areas
Author: luxury Spaces

2. Lucintel Forecasts The Phototherapy Lamp Market In Germany To Reach $1 Billion By 2031
Author: Lucintel LLC

3. Lucintel Forecasts The Percussion Instrument Market In United States To Reach $2 Billion By 2031
Author: Lucintel LLC

4. Lucintel Forecasts The Percussion Instrument Market In Japan To Reach $2 Billion By 2031
Author: Lucintel LLC

5. Gojek Clone App Script – A Complete Guide For Startups & Enterprises
Author: Swiza Joy

6. Lucintel Forecasts The Percussion Instrument Market In Germany To Reach $2 Billion By 2031
Author: Lucintel LLC

7. Web Design In The Age Of Ai: Opportunities And Challenges For Digital Marketers
Author: Vikram kumar

8. Lucintel Forecasts The Lung Cancer Surgery Market In United States To Reach $6 Billion By 2031
Author: Lucintel LLC

9. Salary Loans For Salaried Employees
Author: salarytopup

10. How Performance Testing Services Boost Software Quality
Author: Arnav Goyal

11. Byst: The Power Of Strong Business Mentors For Entrepreneurial Growth
Author: Byst Youth

12. How Iso 27001 Auditor Training Prepares Individuals For Internal Audits
Author: Jane

13. How To Sell My House Fast In Kentucky: A Homeowner's Guide?
Author: Adams Kirsten

14. Attractions And Living: Homes For Sale In Lexington, Ky
Author: Adams Kirsten

15. Trusted Old Coin Buyer: How To Sell Your Old Coins Safely In India
Author: surbhi

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: