Setting-Up and Securing a Server

Slides:



Advertisements
Similar presentations
Planning and Administering Windows Server® 2008 Servers
Advertisements

Internet Information Server 6.0. IIS 6.0 Enhancements  Fundamental changes, aimed at: Reliability & Availability Reliability & Availability Performance.
MCSE Guide to Microsoft Exchange Server 2003 Administration Chapter 14 Upgrading to Exchange Server 2003.
Case Studies for Projects. Network Audit A brief description of the systems (via fingerprinting, if black box is used) Network perimeter should be described.
1 Configuring Web services (Week 15, Monday 4/17/2006) © Abdou Illia, Spring 2006.
F HEPNT/HEPIX Sept, 1999 Use of SPQuery and STAT At FNAL.
Implementing Server Security on Windows 2000 and Windows Server 2003 Steve Lamb Technical Security Advisor
Lesson 19: Configuring Windows Firewall
Microsoft Baseline Security Analyzer INLS 187 Security Software Presentation by Hinár György Polczer
Installing and Configuring a Secure Web Server COEN 351 David Papay.
Module 6: Patches and Security Updates 1. Overview Installing Patches and Security Updates Recent patches and security updates for IIS Recent patches.
Windows Anti-virus and Security WNUG Meeting
Network Security. Trust Relationships (Trust Zones) High trust (internal) = f c (once you gain access); g p Low trust ( ) = more controls; fewer privileges.
VMware vCenter Server Module 4.
Avanade: 10 tips for å sikring av dine SQL Server databaser Bernt Lervik Infrastructure Architect Avanade.
2440: 141 Web Site Administration Remote Web Server Access Tools Instructor: Enoch E. Damson.
Module 1: Installing Internet Information Services 5.0.
Hands-On Microsoft Windows Server 2008
Configuring a Web Server. Overview Overview of IIS Preparing for an IIS Installation Installing IIS Configuring a Web Site Administering IIS Troubleshooting.

1 Web Server Administration Chapter 9 Extending the Web Environment.
Module 1: Server Roles and Initial Configuration Tasks
CIS 460 – Network Design Seminar Network Security Scanner Tool GFI LANguard.
Module 14: Configuring Server Security Compliance
The Microsoft Baseline Security Analyzer A practical look….
Eric Holtel.  Introduction  Project Description  Demonstration  Deliverables  Conclusion.
Module 2: Installing and Maintaining ISA Server. Overview Installing ISA Server 2004 Choosing ISA Server Clients Installing and Configuring Firewall Clients.
Module 9: Preparing to Administer a Server. Overview Introduction to Administering a Server Configuring Remote Desktop to Administer a Server Managing.
FrontPage: 2003 Exploiting, Abusing, and Securing the FrontPage Server Extensions on Windows Server 2003 Mark Burnett.
Internet Information Server Name : Yao Gu Date : 10-June-2000 COSC : 573.
Hands-On Microsoft Windows Server Implementing Microsoft Internet Information Services Microsoft Internet Information Services (IIS) –Software included.
Module 6: Designing Security for Network Hosts
Module 14: Securing Windows Server Overview Introduction to Securing Servers Implementing Core Server Security Hardening Servers Microsoft Baseline.
ISA Server 2004 Introduction Владимир Александров MCT, MCSE, MCSD, MCDBA Корус, Управител
Hacking Windows 9X/ME. Hacking framework Initial access physical access brute force trojans Privilege escalation Administrator, root privileges Consolidation.
IS 4506 Establishing Microsoft SMTP Service.  Overview Introduction to Microsoft SMTP Service SMTP Service features SMTP administration interface SMTP.
Vulnerability Scanning Vulnerability scanners are automated tools that scan hosts and networks for known vulnerabilities and weaknesses Credentialed vs.
IIS and.Net security -Vasudha Bhat. What is IIS? Why do we need IIS? Internet Information Services (IIS) is a Web server, its primary job is to accept.
Host Security Overview Onion concept of security Defense in depth How secure do you need to be? You can only reduce risk Tradeoffs - more security means:
Module 7: Implementing Security Using Group Policy.
Creating Custom Reports
Need for Security Control access to servicesControl access to services Ensure confidentialityEnsure confidentiality Guard against attacksGuard against.
Module 10: Windows Firewall and Caching Fundamentals.
WEB SERVER SOFTWARE FEATURE SETS
Security Configuration Wizard James Leinweber Hygiene Lab / UW-MIST.
Implementing Server Security on Windows 2000 and Windows Server 2003 Fabrizio Grossi.
Operating System Hardening. Vulnerabilities Unique vulnerabilities for: – Different operating systems – Different vendors – Client and server systems.
Configuring and Deploying Web Applications Lesson 7.
Integrity Check As You Well Know, It Is A Violation Of Academic Integrity To Fake The Results On Any.
Module 8 Implementing Security Using Group Policy.
Internet Information Server 6.0 & new management features.
Microsoft Virtual Academy Module 12 Managing Services with VMM and App Controller.
IS 4506 Windows NTFS and IIS Security Features.  Overview Windows NTFS Server security Internet Information Server security features Securing communication.
CACI Proprietary Information | Date 1 PD² SR13 Client Upgrade Name: Semarria Rosemond Title: Systems Analyst, Lead Date: December 8, 2011.
COEXISTENCE WITH MICROSOFT EXCHANGE SERVER 5.5 Appendix A.
Lecture 19 Page 1 CS 236 Online 6. Application Software Security Why it’s important: –Security flaws in applications are increasingly the attacker’s entry.
Setting and Upload Products
Module 9: Preparing to Administer a Server
Penetration Test Debrief
Configuring Windows Firewall with Advanced Security
Securing the Network Perimeter with ISA 2004
Configuring and Troubleshooting Routing and Remote Access
Common Security Mistakes
Download dumps - Microsoft Real Exam Questions Dumps4download
When you want to protect what’s important
Module 9: Preparing to Administer a Server
Designing IIS Security (IIS – Internet Information Service)
6. Application Software Security
Using Software Restriction Policies
Implementing Advanced Server and Client Security
Presentation transcript:

Setting-Up and Securing a Server By: Chris Biller

Overview Brief Description Installation Creating New FTP Site Wizard Programs User Account Management

Installation

Installation

Creating New FTP Site

Creating New FTP Site

Wizard

Wizard

Wizard

Wizard

Wizard

Default Accounts

BSA

IIS Lockdown provides templates for the major IIS-dependent Microsoft products. functions by turning off unnecessary features, which reduces the attack surface available to attackers has been integrated to provide in-depth defense or multiple layers of protection against attackers, URLscan, with customized templates for each supported server role Recommended for use prior to a server upgrade Not needed if running IIS 6.0

HFCheck Allows IIS5.0 administrators to ensure that their servers are up to date on all security patches Can run continuously or periodically against remote or local machine When the tool finds a patch that hasn’t been installed it can display, dialogue or write a warning to the event log Validation required

Allowing Anonymous Connections

Allowing Anonymous Connections

New User/Group

Allowing other users to log on

Questions?