Answer the question
In order to leave comments, you need to log in
Windows Server 2003 R2 security basics
Hello habrausers.
Such a situation - there is a server running Windows Server 2003 R2
Serves the internal network of the enterprise, the enterprise also receives the Internet through it. External clients sometimes connect to it via RDP (the list of clients is limited and constant)
I do not have much experience in administration. Of course, you need to study the documentation, if you work with it seriously enough, it will all be, but, of course, not immediately. (Yes, and most likely I will not administer it, but these are already details)
Request to the collective mind: Please write what basic points to pay attention to at the start in order to understand whether this server is sufficiently protected or not. Well, there, for example, disabled Guest records, complex passwords for users, an IP filter, that's all.
Thanks in advance
Answer the question
In order to leave comments, you need to log in
First, install the Microsoft Baseline Security Analyzer (MBSA) and check for possible vulnerabilities, as well as download the necessary updates and patches.
In addition to anti-virus protection, it would not be superfluous to take into service a set of free utilities from Sysinternals
From this set I recommend checking the server at least once a week using the RootkitRevealer
program
This is a basic set of utilities that is familiar to almost every person who at least means what is the difference between Windows Server 2003 R2 from Windows Server 2008 R2 :)
There is a very good document on this topic on sysadmins.su:
forum.sysadmins.su/index.php?showtopic=16346
1. system and antivirus update, regular.
2. firewall.
3. Installed software - ideally only the role of rdp, vpn, nat.
4. Regular backups.
5. Go through the security setup wizard and open / close the excess after step 4, it will help with step 2.
6. Consider moving to 2008r2.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question