A
A
Andrey Privalov2012-05-22 20:11:59
Microsoft
Andrey Privalov, 2012-05-22 20:11:59

Windows Server 2003 R2 security basics

Hello habrausers.
Such a situation - there is a server running Windows Server 2003 R2
Serves the internal network of the enterprise, the enterprise also receives the Internet through it. External clients sometimes connect to it via RDP (the list of clients is limited and constant)

I do not have much experience in administration. Of course, you need to study the documentation, if you work with it seriously enough, it will all be, but, of course, not immediately. (Yes, and most likely I will not administer it, but these are already details)

Request to the collective mind: Please write what basic points to pay attention to at the start in order to understand whether this server is sufficiently protected or not. Well, there, for example, disabled Guest records, complex passwords for users, an IP filter, that's all.

Thanks in advance

Answer the question

In order to leave comments, you need to log in

4 answer(s)
D
Damirson, 2012-05-22
@Damirson

First, install the Microsoft Baseline Security Analyzer (MBSA) and check for possible vulnerabilities, as well as download the necessary updates and patches.
In addition to anti-virus protection, it would not be superfluous to take into service a set of free utilities from Sysinternals
From this set I recommend checking the server at least once a week using the RootkitRevealer
program This is a basic set of utilities that is familiar to almost every person who at least means what is the difference between Windows Server 2003 R2 from Windows Server 2008 R2 :)

R
rinx, 2012-05-22
@rinx

There is a very good document on this topic on sysadmins.su:
forum.sysadmins.su/index.php?showtopic=16346

N
Nikolai Turnaviotov, 2012-05-22
@foxmuldercp

1. system and antivirus update, regular.
2. firewall.
3. Installed software - ideally only the role of rdp, vpn, nat.
4. Regular backups.
5. Go through the security setup wizard and open / close the excess after step 4, it will help with step 2.
6. Consider moving to 2008r2.

A
Andrey Privalov, 2012-05-23
@negasus

Many thanks to all, I will look into it.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question