Security Basics mailing list archives

RE: Anti-Virus on web facing servers??


From: "Rocky Heckman" <rocky.he () g-wizinnovations com>
Date: Tue, 13 Jul 2004 09:04:02 +1000

As a side note, you might want to get SQL off those front-line servers. If
someone compromises the web server, you don't want them to have instant
access to the SQL server as well. By moving it off the facing servers,
you've at least not handed SQL server to them on a platter. 

RH


-----Original Message-----
From: Augustine David [mailto:augustine.david () gmail com] 
Sent: Saturday, 10 July 2004 6:10 AM
To: Security Basics
Subject: Re: Anti-Virus on web facing servers??

I manage a network of 100+ Win servers, all servers have AV running. I
see this as a standard part of my configuriation. Not an option.

On Fri, 9 Jul 2004 09:32:50 -0500, Dan Tesch <dan.tesch () comcast net> wrote:
Hello, I just started with a company that has three
web facing W2K servers running IIS & SQL.

My question; they are patched and behind a firewall
but have no Anti-Virus running - can I get some feedback
on whether these boxes should be running AV??

They are on a network at a COLO just by themselves
ie: no desktops but get FTP uploads regularly for
content.

Thanks


---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
any course! All of our class sizes are guaranteed to be 10 students or
less
to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field
pen testing experience in our state of the art hacking lab. Master the
skills
of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html

----------------------------------------------------------------------------



---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the
skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------




---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: