Incident response Questions


Data center incident or disaster?
I am trying to develop the process which my company will follow in the event of a data center disaster. Part of that process is to question whether or not a major incident has the characteristics of a true disaster and if a disaster should be declared (which would obviously kick off or recovery proceeses). [...]

Answer Question   |  April 8, 2010  8:12 PM
DataCenter, Disaster Recovery, Incident response
asked by:
25 pts.

Configure User Profile after server formatting
Hi, I have 90 machine in company Last Two Incidence Server has to be formated after that install ad ,dns and all But after that every user profile has to reconfigure bze of shareing and network problem any type of solution to after the formating server no need to reconfigure the user profile Thanks

Answer Question   |  December 3, 2008  9:05 AM
Disaster Recovery, Incident response, Server installation, User profiles, Windows Server 2003
asked by:
185 pts.

Data transfer from Lotus Notes to CA Unicenter Service Desk r11.2
Hi all, I worK on CA Unicenter Service Desk r11.2, my current assignment is to import ticket data from Lotus Notes to CA Unicenter Service Desk r11.2. Can any one guide me how to do it?

Answer Question   |  December 4, 2008  4:50 AM
CA Unicenter Service Desk, Help Desk, Incident management, Incident response, Lotus Notes, Lotus Notes import/export, Service Desk
asked by:
35 pts.

Tier of Support matrix
Can someone offer a tier of support reference – what goes into a Tier of Support Martix/Plan?

Answer Question   |  September 3, 2010  4:57 PM
Incident response, Support plan, Support services, Tier of Support
asked by:
5 pts.

Unknown Threats
Apart from honeypots, what are the different methods to find unknown threats which are prevalent? and how to find methods to mitigate them. PS: all the vulnerabilities are known to all the n/w administrators and then can take measures to mitigate attacks but this doesnt happen..Hackers are at least 10 steps ahead..So how to find [...]

Answer Question   |  November 2, 2011  2:24 PM
Application security, backdoors, configuration, Current threats, Database, Encryption, Exchange, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Intrusion management, Network security, Networking, patching, PEN testing, Platform Security, Secure Coding, Security, Software, Spyware, Tech support, Trojans, Viruses, VPN, vulnerability management, Wireless, worms
asked by:
0 pts.

Paranoid about protecting my MAC address–Please read my story
What is the easiest way to protect your MAC address against spoofing? In 2004 I was the victim of a hacker that somehow spoofed my Cable Modem Mac address and used it to cover his identity while serving copyright material thru the internet. I was unsuspecting until my ISP one day suspended my service. I [...]

Answer Question   |  May 25, 2008  2:28 PM
Access control, backdoors, Browsers, configuration, Current threats, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Intrusion management, Network security, patching, PEN testing, Platform Security, Servers, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

windows password question
I recently purchased a computer from a “going out of business” sale for my fathers business and when I try to logon to Windows I get the logon screen with domain. I have a valid username and password but obviously i am not connected to a domain. I need to bypass this if possible. The [...]

Answer Question   |  September 21, 2010  12:09 AM
Biometrics, Digital certificates, Firewalls, Forensics, Identity & Access Management, Incident response, Interoperability, Intrusion management, Network security, provisioning, Security, Security tokens, Single sign-on, Software, Tech support, VPN, Wireless
asked by:
0 pts.

Server 2003 network – 2 NICS
I have a server 2003 with 2 nics internal 192.168.10.1 255.255.255.0 no gateway 192.168.10.5 DNS external 10.1.10.5 255.255.255.0 10.1.10.1 gateway 68.87.76.178 dns Internal nic handles the DHCP 192.168.10.150-190 it has the scope options with the gateway 10.1.10.1 that is the comcast modem. and the DNS of 192.168.10.5 The internal network works. WS’s can access the [...]

Answer Question   |  February 4, 2009  8:32 PM
Cabling, DHCP, DNS, Firewalls, Hubs, Incident response, Network protocols, Networking, NIC, Routers, Switches, VPN, Windows Server 2003
asked by:
0 pts.

Selecting an area within security to start
Hi, I’m studying for an MSc in Information Security from Royal Holloway University of London, I have a B.Engg. degree in computers and a PG Diploma in Networking and Communication as well as the CCSA and CCNA. I’m also studying for the CISSP. Now, with all these qualifications, could you please tell me which would [...]

Answer Question   |  June 25, 2008  4:06 PM
Access control, Application security, Biometrics, Browsers, Career development, CCNA, CCSA, Certifications, CISSP, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, Firewalls, Forensics, Hacking, Identity & Access Management, Incident response, Intrusion management, MCSE, Network security, Networking, patching, PEN testing, Platform Security, Policies, Risk management, Secure Coding, Security, Security Program Management, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

Intrussion detection
Does any one know of any goof Intrussion detection system boxes which are not crazy expensive and support up to 1GB lines.

Answer Question   |  February 4, 2009  12:10 PM
Cabling, Firewalls, Forensics, Hubs, Incident response, Intrusion management, Network monitoring, Routers, Security, Switches, VPN, Wireless
asked by:
0 pts.

ISP blocks VPN connection
My ISP blocks any attempt to establish a VPN connection and I was wondering if there is a workaround for this or if there are alternatives? I am using Windows XP. Any suggestion would be greatly appreciated.

Answer Question   |  December 13, 2007  3:25 AM
Firewalls, Forensics, Incident response, Intrusion management, Network security, VPN, Wireless
asked by:
0 pts.

asked by:
0 pts.

Network enumeration
Hi, Can any body tell me how to enumerate the installed software on the machines with in the network.

Answer Question   |  April 18, 2007  6:48 AM
Firewalls, Forensics, Incident response, Intrusion management, Network security, VPN, Wireless
asked by:
0 pts.

Cisco ASA DMZ configuration…
I am in the process of setting up a DMZ in order to host a Web Server and an Exchange Server. I have been doing a great deal of research and have a few questions. This is my setup: Internet====>ASA====>Inside Network (Cisco Switches) I want to use an additional switch and attach it to the [...]

Answer Question   |  April 3, 2008  12:56 PM
Cisco, DMZ, Firewalls, Forensics, Incident response, Intrusion management, Network security, Networking, VPN, Wireless
asked by:
0 pts.

Safe@office, Securemote issues
Hello everyone - I’m hoping somebody out there can point me in the right direction. We just replaced our aging Checkpoint firewall with Safe@office 500 (waiting for the powerpack right now though). We use Securemote to vpn in and although that works just fine after recreating the site, we’ve had an odd side effect. Anybody [...]

Answer Question   |  January 3, 2011  6:57 PM
Firewalls, Forensics, Incident response, Intrusion management, Network security, VPN, Wireless
asked by:
0 pts.

ping: sento: No Route to Host
I have a unix server on an internal network, behind a ComCast SMC8013WG Cable Modem / Router. All of my PC’s and MAC’s on my internal network can see the sever and access it. They can all see and access the internet as well. All except for my Unix Server. I need to get remote [...]

Answer Question   |  September 13, 2010  2:39 PM
DataCenter, Firewalls, Forensics, Incident response, Intrusion management, Network security, Patch management, VPN, Web services, Wireless
asked by:
0 pts.

asked by:
0 pts.

Access to internal Email from internet…….
Hi, I have an Exchange server behind the Isa Server and my users want to see their emails from home!!! I don’t have public Dns server but we have A record and Mx record with valid IP in our ISP,now I want to forward my users Emails to their yahoo or msn Emails!!!but I could’t [...]

Answer Question   |  October 18, 2007  6:32 AM
Exchange, Firewalls, Forensics, Incident response, Intrusion management, Network security, VPN, Wireless
asked by:
265 pts.

Limiting access to VPN users
Hi, I am using VPN concentrator 3500. Please let me know how to limit access to certain users that have a VPN account on the VPN Concentrator on certain server when they VPN in. Looking forward to hearing from you, With thanks and regards, Helal

Answer Question   |  April 27, 2012  3:07 PM
Access control, Browsers, filtering, Firewalls, Forensics, Incident response, Intrusion management, Network security, Networking, Servers, SSL/TLS, VPN, Web security, Wireless
asked by:
0 pts.

Controlling VPN access
Here’s my scenario. I fall under guidelines of HIPPA. I have mobile users using laptops and tablets loaded with Cisco VPN CLient connecting to my Cisco 2811 ISR which functions as my router/firewall/VPN. I am using Micorosoft AD in my domain. To authenticate users to the domain. Is there an easy way to assure that [...]

Answer Question   |  February 6, 2007  7:41 AM
Access, Cisco, Desktops, Firewalls, Forensics, Incident response, Intrusion management, Management, Microsoft Windows, Network security, OS, Security, Servers, SQL Server, VPN, Wireless
asked by:
75 pts.