Tous nos rayons

Déjà client ? Identifiez-vous

Mot de passe oublié ?

Nouveau client ?

CRÉER VOTRE COMPTE
Securing Windows NT/2000 Servers for the Internet
Ajouter à une liste

Librairie Eyrolles - Paris 5e
Indisponible

Securing Windows NT/2000 Servers for the Internet

Securing Windows NT/2000 Servers for the Internet

A Checklist for System Administrators

Stefan Norberg

199 pages, parution le 15/12/1999

Résumé

In recent years, Windows NT and Windows 2000 systems have emerged as viable platforms for Internet servers. More and more organizations are now entrusting the full spectrum of business activities--including e-commerce--to Windows.

Unfortunately, the typical Windows NT/2000 installation makes a Windows server an easy target for attacks, and configuring Windows for secure Internet use is a complex task. Securing Windows NT/2000 Servers for the Internet suggests a two-part strategy to accomplish the task:

  • "Hardening" any Windows server that could potentially be exposed to attacks from the Internet, so the exposed system (known as a "bastion host") is as secure as it can be.
  • Providing extra security protection for exposed systems by installing an additional network (known as a "perimeter network") that separates the Internet from an organization's internal networks.

Securing Windows NT/2000 Servers for the Internet is a concise guide that pares down installation and configuration instructions into a series of checklists aimed at Windows administrators. Topics include:

  • Introduction--Windows NT/2000 security threats, architecture of the Windows NT/2000 operating system and typical perimeter networks.
  • How to build a Windows NT bastion host.
  • Configuring Windows and network services, encrypting the password database, editing the registry, setting system policy characteristics, performing TCP/IP configuration, configuring administrative tools, and setting necessary permissions.
  • Differences between Windows NT and Windows 2000 security including IPSec (IP Security Protocol) configuration.
  • Secure remote administration--SSH, OpenSSH, TCP Wrappers, the Virtual Network Console, and the new Windows 2000 Terminal Services.
  • Windows NT/2000 backup, recovery, auditing, and monitoring--event logs, the audit policy, time synchronization with NTP (Network Time Protocol), remote logging, integrity checking, and intrusion detection.

Administrators who carefully follow the detailed instructions provided in this book will dramatically increase the security of their Windows NT/2000 Internet servers.

Contents

Preface

1. Windows NT/2000 Security
     Internet Threats
     Building a Secure Site on the Internet
     The Windows NT/2000 Architectures
     Windows NT/2000 in the Perimeter Network
     Cryptography Basics

2. Building a Windows NT Bastion Host
     Installation
     Using the Security Configuration Editor
     Basic Configuration
     Advanced Configuration
     Setting System Policies
     TCP/IP Configuration
     Configuring Administrative Tools and Utilities
     Setting Permissions

3. Building a Windows 2000 Bastion Host
     Differences Between the Systems
     IPSec in Windows 2000

4. Setting Up Secure Remote Administration
     Symantec pcAnywhere
     Windows 2000 Terminal Services
     Open Source (SSH, Cygwin, TCP Wrappers, and VNC)

5. Backing Up and Restoring Your Bastion Host
     Defining Your Backup Policy
     Backup Methods
     Types of Backups
     Backup Software

6. Auditing and Monitoring Your Perimeter Network
     System Auditing in Windows
     Time Synchronization Using NTP
     Remote Logging and Log Management
     Integrity Checking
     Network-Based Intrusion Detection Systems

7. Maintaining Your Perimeter Network
     Setting Up Policies and Procedures
     Performing Third-Party Audits
     Staying Informed

A. Well-Known Ports Used by Windows NT/2000

B. Security-Related Knowledge Base Articles

C. Build Instructions for OpenSSH on Cygwin

Index

L'auteur - Stefan Norberg

Stefan Norberg is an independent network security consultant based in Stockholm, Sweden. Before becoming an independent contractor, he worked for Hewlett-Packard Consulting, where he built everything from large firewalls to highly available Unix clusters. During the last couple of years, he has spent most of his time designing and implementing Internet firewalls using building blocks like Cisco IOS, HP-UX, Linux, and Windows NT/2000. Every now and then, he enjoys teaching Windows NT/2000 classes. Stefan is an MCSE+Internet and Microsoft Certified Trainer. When he finds spare time, Stefan enjoys spending it with his wife Marianne and daughter Matilda.

Caractéristiques techniques

  PAPIER
Éditeur(s) O'Reilly
Auteur(s) Stefan Norberg
Parution 15/12/1999
Nb. de pages 199
Format 17,8 x 23,2
Couverture Broché
Poids 425g
Intérieur Noir et Blanc
EAN13 9781565927681
ISBN13 978-1-56592-768-1

Avantages Eyrolles.com

Livraison à partir de 0,01 en France métropolitaine
Paiement en ligne SÉCURISÉ
Livraison dans le monde
Retour sous 15 jours
+ d'un million et demi de livres disponibles
satisfait ou remboursé
Satisfait ou remboursé
Paiement sécurisé
modes de paiement
Paiement à l'expédition
partout dans le monde
Livraison partout dans le monde
Service clients sav.client@eyrolles.com
librairie française
Librairie française depuis 1925
Recevez nos newsletters
Vous serez régulièrement informé(e) de toutes nos actualités.
Inscription