|
|
 |
 |
 |
 |
register |
bbs |
search |
rss |
faq |
about
|
 |
 |
meet up |
add to del.icio.us |
digg it
|
 |
 |
| Network (in)Security Interesting hacks and cracks. Info on firewalls, TCP/IP, encryption, networks, and security. The ins and outs of the phone system, caller services, how things work, what's illegal and what's not, cellular phones, beepers, telephony legislation, the PUC, ISDN, taps, who's listening, and switches. Talking about phones, hacking systems, technical advice, and such is completely LEGAL in the United States -- it's covered by the First Amendment. What's illegal is conspiracy to commit a crime. So if you say something like "Meet me at 2am so we can crack a can" or "I changed my cell phone's number myself" you are criminally liable. Stating "You can crack a can by doing thus-and-so" or "If you wanted to change a cell phone's number, you could do it like so" is perfectly OK. Posting passwords, calling card numbers, or credit card numbers is forbidden on this network. Posting such info will get you booted off the net. |
 |
# 1

2007-06-24, 08:58
|
|
|
Server security
I finally got my webserver up and running but I need some advice on securing it properly.
It's running XP Pro with all the most recent updates and the newest version of IIS. I currently only have the basic crappy XP firewall on there - I guess it be a smart move to get something more advanced right? Which firewall?
It's behind a router but since it also acts as an internal fileserver, I have file sharing turned on. Is there anything I should modify to make this more secure? Or is it ok?
On the router, I've forwarded the remote desktop port and port 80. It isn't in a DMZ.
I have two virtual directories set up on IIS - the cgi-bin and the main website folder. FTP is turned off as I don't need it.
Thanks in advance.
|
# 2

2007-06-24, 09:08
|
|
|
Re: Server security
Well first step would be to disable the windows DCOM service, just do it they will find more exploits there it's a sitting duck. Then disable any unnecessary windows services and install some thing like zone alarm pro or AVG internet security suit (cracked of cause) and allow the web server access to the internet and set up rules so that it all works etc. Up to date windows boxes are fairly secure as it is so your pritty safe. Now heres the final step are you ready for it....
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
Now reformat your windows box and install linux the end.
|
# 3

2007-06-25, 18:11
|
|
|
Re: Server security
Quote:
Originally Posted by sirholkms
Well first step would be to disable the windows DCOM service, just do it they will find more exploits there it's a sitting duck. Then disable any unnecessary windows services and install some thing like zone alarm pro or AVG internet security suit (cracked of cause) and allow the web server access to the internet and set up rules so that it all works etc. Up to date windows boxes are fairly secure as it is so your pritty safe. Now heres the final step are you ready for it....
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
........................
Now reformat your windows box and install linux the end.
|
Could you please, please, learn basic spelling.
And fuck you, Linux isn't always better than Windows, buttface.
|
# 4

2007-06-25, 18:39
|
|
|
Re: Server security
Quote:
Could you please, please, learn basic spelling.
And fuck you, Linux isn't always better than Windows, buttface.
|
Thank you rubberducky.
sirholkms - Linux is not ALWAYS the best. I use NTFS USB HDs with the server as I need to carry lots of data around for use with Windows machines. Linux doesn't like USB NTFS drives.
I don't want the good ol' Linux vs Windows debate here - just advice on how to secure my IIS box.
|
# 5

2007-06-27, 19:32
|
|
|
Re: Server security
Sorry, I don't normally bump my own threads...but has anyone got any more advice?
|
# 6

2007-06-29, 03:47
|
|
Regular
|
|
Chicago
|
|
Re: Server security
i not being smart ass or anything
http://www.google.com/search?hl=en&c...ce&btnG=Search

|
# 7

2007-06-29, 06:25
|
|
|
Re: Server security
This may sound really stupid but I haven't actually tried Google yet; do I feel dumb.
Thanks. (and no I'm not being sarcastic...heh)
|
# 8

2007-06-29, 07:09
|
|
|
Re: Server security
You also might try a basic vulnerability scan with a program like nessus to see how secure your machine is.
|
# 9

2007-06-29, 12:02
|
|
|
Re: Server security
Quote:
|
You also might try a basic vulnerability scan with a program like nessus to see how secure your machine is.
|
Thanks, that looks like a very handy tool.
|
# 10

2007-06-29, 14:08
|
|
Regular
|
|
Australia
|
|
Re: Server security
Quote:
Originally Posted by MunkeyQ
Linux doesn't like USB NTFS drives.
|
Sure they do.
|
| Thread Tools |
 Show Printable Version
 Email this Page
|
| Display Modes |
Linear Mode
 Switch to Hybrid Mode
 Switch to Threaded Mode
|
Posting Rules
|
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
HTML code is Off
|
|
|
|
 |
 |
To the best of our knowledge, the text on this page may be freely reproduced and distributed.

totse.com certificate signatures
|
 |
 |
About | Community | Bad Ideas | Drugs | Ego | Erotica | Fringe | Society | Technology
|
 |
 |
 |
 |
|
|