Security Basics mailing list archives

Re: Windows Server 2003


From: "Meritt James" <meritt_james () bah com>
Date: Thu, 11 Sep 2003 10:39:19 -0400

Unfortunately, aftther it is removed from the box it is turned on and
connected.  No longer is it 'secure'.  :-(

Those configurations put in place by the manufacturer are often
established for performance (they do want to sell the box, after all),
testing, and are widely known (by the 'baddies).  A traditionally poor
combination for any system.  Recommendation:  Do not use the defaults.

Chris Halverson wrote:

What does everyone think of the hype around Windows Server 2003 being
secure by default?   Has anyone implemented one in your environment?

Chris

---------------------------------------------------------------------------
Captus Networks
Are you prepared for the next Sobig & Blaster?
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans
 - Precisely Define and Implement Network Security
 - Automatically Control P2P, IM and Spam Traffic
FIND OUT NOW -  FREE Vulnerability Assessment Toolkit
http://www.captusnetworks.com/ads/42.htm
----------------------------------------------------------------------------

-- 
James W. Meritt CISSP, CISA
Booz | Allen | Hamilton
phone: (410) 684-6566

---------------------------------------------------------------------------
Captus Networks 
Are you prepared for the next Sobig & Blaster? 
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans 
 - Precisely Define and Implement Network Security 
 - Automatically Control P2P, IM and Spam Traffic 
FIND OUT NOW -  FREE Vulnerability Assessment Toolkit 
http://www.captusnetworks.com/ads/42.htm
----------------------------------------------------------------------------


Current thread: