Application security Questions


VPn solution required for remote IP telephony
We would like to have remote ip telephony connectivity for our office so that it will be helpful for our remote users and our Royal customers to have ip soft phone which will be connected to our network through VPN tunnel to our IP PABX and dial out locally. We are having ADSL modem connectivity [...]

Answer Question   |  November 27, 2005  11:40 AM
Application security, Availability, Cabling, Database, Encryption, Exchange, Firewalls, Forensics, Hardware, Hubs, Incident response, Instant Messaging, Intrusion management, Network security, Networking, Nortel, Routers, Secure Coding, Security, Switches, VoIP, VPN, Wireless
asked by:
0 pts.

Group Policy Management
Has anyone looked into Group Policy Management products (outisde of the functionality provided by Microsoft’s Active Directory)? I’m trying to choose a product, and wanted to compare based on what current users thought (rather than what the sales departments tell me). The products I’ve been able to identify so far are FullArmor’s GPAnywhere and Intellipolicy [...]

Answer Question   |  November 22, 2005  2:54 PM
Application security, Compliance, configuration, CRM, Database, Disaster Recovery, Encryption, Exchange, Firewalls, Forensics, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, Risk management, Secure Coding, Security, Security Program Management, VPN, vulnerability management, Wireless
asked by:
0 pts.

asked by:
0 pts.

asked by:
0 pts.

asked by:
0 pts.

Company policies on protecting personal data
I’d like to know what policies other companies have in place to protect personal data of employees, customers, etc.(data such as Social Security numbers, credit card numbers and the like) For example, is encryption required for transfer outside the company? How about inside the company? It is required in transmission? Is it required in storage? [...]

Answer Question   |  November 7, 2005  11:04 PM
Application security, Biometrics, Compliance, CRM, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, Identity & Access Management, Instant Messaging, Laws, Policies, provisioning, Regulations, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Single sign-on, standards
asked by:
0 pts.

regarding vpn
hi , i have to do project in vpn using l2tp.i have to test it between two linux machines. can anyone give me the steps to do that ? It will very useful for me if u give the websites regarding to that. thanks in advance. with regards, Nirmala.

Answer Question   |  November 7, 2005  10:08 PM
Access control, Application security, Biometrics, Browsers, Database, Digital certificates, Encryption, Exchange, filtering, Firewalls, Forensics, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Microprocessors, Network security, provisioning, Secure Coding, Security, Security tokens, Servers, Single sign-on, SSL/TLS, VoIP, VPN, Web security, Wireless
asked by:
0 pts.

Copying Windows RAS Properties to Different Users
I have a user who uses a dial-up connection to perform her daily duties. She is getting ready to go on maternity leave and their is someone who will be filling her position temporarily. The new user needs to be able to use the same dial-up or RAS properties as the full-time employee. The dial-up [...]

Answer Question   |  November 5, 2005  11:23 AM
Application security, Database, DataCenter, Desktops, Encryption, Exchange, Instant Messaging, Management, Microsoft Windows, OS, Secure Coding, Security, Servers, SQL Server, Tech support
asked by:
0 pts.

User circumventing security
We have a rogue user who knows more than she should. She can grant herself and other users the authority to access files that are supposed to be secured. Does anyone know of how we can monitor her activity or go back and review what she has done or anything that we can do. We [...]

Answer Question   |  April 16, 2010  8:04 AM
Application security, Database, Encryption, Exchange, Instant Messaging, Secure Coding, Security
asked by:
0 pts.

E-mail filtering service thinks zip file is infected with W32/Bagle virus
One of our employees is having difficulty receiving e-mails from a vendor. The vendor is zipping up two text files and e-mailing the zip file to us. The Zip file is identified as a virus by our on-line e-mail filtering service and the e-mail is deleted before it hits our mail server. If the vendor [...]

Answer Question   |  November 3, 2005  12:22 PM
Application security, backdoors, Current threats, Database, Encryption, Exchange, Hacking, human factors, Instant Messaging, Secure Coding, Security, Spyware, Trojans, Viruses, worms
asked by:
5 pts.

Seeking SAP SEM configuration help
Recently, Manish, a SearchSAP.com user, sent in the following question on SAP SEM. <p> “Apart from standard SAP help, does anyone know of a SEM-BCS step-wise configuration guide? <p> Is there anything I can order online? I want to start on SEM-BCS as soon as possible.” <p> Do you have experience in this area? Do [...]

Answer Question   |  November 2, 2005  4:40 PM
Access control, Application security, backdoors, Basis, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Development, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, SAP, SAP careers, Secure Coding, Security, Security Program Management, Security tokens, SEM, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Upgrades / implementations, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
115 pts.

Penetration Testing.
Hi!! Good Morning. I have a simple question for you today. I intend to have a penetration testing done for all of my 3 sites – My US Office, My India Office & My US Datacenter. Can you suggest any trustworthy site which can offer me a free reliable scan? Also, I would like to [...]

Answer Question   |  October 23, 2008  1:32 AM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Systems management software, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

Recommendations on protecting a Microsoft 2003 server with Lotus Domino 6.5
I need advice on where I can find information on how to secure a Domino web server on the internet. We are running on a Windows 2003 server. Is there a checklist or script I can work through to lock down my Domino configurations? Is there some way to know what I can uninstall or [...]

Answer Question   |  October 31, 2005  10:45 PM
Application security, Compliance, CRM, Database, Desktops, Disaster Recovery, Encryption, Exchange, Firewalls, Forensics, Incident response, Instant Messaging, Intrusion management, Lotus Domino, Management, Microsoft Windows, Network security, OS, Policies, Risk management, Secure Coding, Security, Security Program Management, Servers, SQL Server, VPN, Wireless
asked by:
0 pts.

asked by:
0 pts.

SOS: Configuring Microsoft IIS6 to receive emails addressed to postmaster@69.59.X.X and / or abuse@69.59.X.X
Hi !! Heres the scenario: I have a webserver which is running windows 2003, IIS 6 & SMTP service. It has a public IP address assigned to it – 69.59.X.X I have a .net application which generates email and sends out the same using the my SMTP server on IP address 69.59.X.X During the pre-release [...]

Answer Question   |  October 22, 2005  6:07 AM
Application security, Database, DataCenter, Encryption, Exchange, Instant Messaging, Secure Coding
asked by:
0 pts.

asked by:
0 pts.

user password auditing
We have recently purchased LC5 to perform password audits to discover weak passwords. The documentation indicates to use PWDUMP3 to extract password hashes from the Active Directory. I have looked everywhere and cannot find a legitimate site to download this tool nor can I find documentation. Has anyone ever used this tool that can shed [...]

Answer Question   |  October 19, 2005  7:35 AM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

E-mail hacking
How can I hack my own e-mail address? Is there software available for this (commercial or freeware)?

Answer Question   |  December 5, 2010  3:49 PM
Application security, Database, Encryption, Exchange, Instant Messaging, Secure Coding
asked by:
0 pts.

HTTP File upload/post Blocking
In this ever expanding world of network security I am seeking a software or appliance to block HTTP file uploads or post. The problem in a nutshell is I cannot block all of the HTML based Email providers. I also cannot block all of the web sites that support HTTP file posting. I am seeking [...]

Answer Question   |  October 17, 2005  10:34 AM
Access control, Application security, backdoors, Browsers, Current threats, Database, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Intrusion management, Network protocols, Network security, Networking, Secure Coding, Security, Servers, Spyware, SSL/TLS, TCP, Trojans, Viruses, VPN, Web security, Wireless, worms
asked by:
0 pts.

Windows 2000 Active Directory customizer
I am working on a Windows 2000 Active Directory and am trying to achieve the following: 1. Users are not allowed to logon to more than 1 PC 2. The PCs must autoshutdown after some idle time, even during logoff 3. Keep track of each user’s login duration 4. All logon accounts should be disabled [...]

Answer Question   |  October 10, 2005  8:34 AM
Active Directory, Application security, Compliance, CRM, Database, Desktop management applications, Development, DHCP, Disaster Recovery, DNS, Encryption, Exchange, Firewalls, Forensics, Incident response, Instant Messaging, Intrusion management, Microsoft Windows, Network applications management, Network management software, Network monitoring, Network security, Networking, Networking services, Novell NDS, Policies, Risk management, Secure Coding, Security Program Management, VPN, Wireless
asked by:
0 pts.