IT Security
Hi all, Thanks to all those who answered to my question”FTP sites” Can anyone of you let me know about the available products that we can use for our organisations IT security..Also let me know what products are available to find out vulnerabilities in a network. Appreciate your response. Thanks Tarang
Answer Question
| August 27, 2005 6:03 AM
Access,
Access control,
Application security,
backdoors,
Biometrics,
Browsers,
Certifications,
Compliance,
configuration,
CRM,
Current threats,
Database,
Desktops,
Digital certificates,
Disaster Recovery,
E-business,
Encryption,
Exchange,
filtering,
Firewalls,
Forensics,
Hacking,
human factors,
Identity & Access Management,
Incident response,
Instant Messaging,
Intrusion management,
Management,
Microsoft Office,
Microsoft Windows,
Network security,
Networking,
OS,
patching,
PEN testing,
Platform Security,
Policies,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Servers,
Single sign-on,
Spyware,
SQL Server,
SSL/TLS,
Trojans,
Viruses,
VPN,
vulnerability management,
Web security,
Wireless,
worms
0 pts.
Local Admin & passwords
We have recently switched to allowing only Power User rights on notebook computers. We have a set of notebooks we loan out to employees with desktops when they need to travel. Currently those users will login with an account named loaner and use scripts and webmail to access the network. Discussion has come up recently [...]
Answer Question
| August 19, 2005 3:52 PM
Application security,
Biometrics,
Compliance,
configuration,
CRM,
Database,
Digital certificates,
Disaster Recovery,
Encryption,
Exchange,
Firewalls,
Forensics,
Identity & Access Management,
Incident response,
Instant Messaging,
Intrusion management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Single sign-on,
VPN,
vulnerability management,
Wireless
0 pts.
Need guidiance from pros already into the game
Hi, I am a United Stated Marine stationed overseas since 2003, majoring in Information technology with National University. I am still an idiot in the field and thats why i joined this group. To get a glance of what to ecpect in the future. I am asking for your help in guiding me through whatever [...]
Answer Question
| August 20, 2005 7:49 AM
Application security,
backdoors,
Biometrics,
Business/IT alignment,
Career development,
Certifications,
Compliance,
configuration,
CRM,
Current threats,
Data analysis,
Database,
Development,
Digital certificates,
Disaster Recovery,
E-business,
Encryption,
Exchange,
Firewalls,
Forensics,
Hacking,
Hardware,
human factors,
i2 Technologies,
Identity & Access Management,
Incident response,
Instant Messaging,
Intrusion management,
Manufacturing applications,
Mobile,
Network security,
Networking,
patching,
PEN testing,
Platform Security,
Policies,
Project management,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Single sign-on,
Software,
Spyware,
Tech support,
Training,
Trojans,
Viruses,
VPN,
vulnerability management,
Web services,
Web Services Standards,
Wireless,
worms
0 pts.
OWA using SelfSSL and Certificate Services removal
Hey there… I am curretly running Exchange 2003 on W2k3 member server. I installed Certificate Services and produced my own certificate and all works well with OWA. I recently found out that SelfSSL is available but not quite as robust, which would probably be good. I removed Cert services and was getting ready to install [...]
Answer Question
| August 5, 2005 12:41 PM
Application security,
Certificates,
Compliance,
configuration,
CRM,
Database,
Desktop security,
Disaster Recovery,
Encryption,
Exchange,
Exchange 2003,
Instant Messaging,
Internet Security Systems,
Managed security services,
Outlook,
Outlook Mobile Access,
patching,
PEN testing,
Platform Security,
Policies,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
vulnerability management
0 pts.
Shares Baseline Security Information
Hello, I use the Microsoft Baseline Security Analyser 2.0 to retrive information about shares in some local servers. I can not understand the diference between the information give in the report, about authorizations in the column Share ACL and Directory ACL. If some one can help me, Thank you PPG
Answer Question
| August 5, 2005 6:02 AM
Auditing,
configuration,
patching,
PEN testing,
Platform Security,
Security,
Security management,
Security products,
Vulnerability Assessment & Audit,
vulnerability management
0 pts.
Data vs. perimeter vs. network security
A short time ago, author Wes Noonan wrote some tips for SearchWindowsSecurity.com about <a href=http://searchwindowssecurity.techtarget.com/originalContent/0,289142,sid45_gci1007026,00.html>deperimeterization</a>. He explained how security is always pitted against business needs, and perimeters have become porous because businesses require traffic from SMTP, HTTP or VPNs to pass through the firewall. He then offered techniques for keeping data safe in spite of [...]
Answer Question
| May 4, 2005 4:36 PM
Administration,
Application security,
Architecture/Design,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
Desktop vs network-based firewalls,
Digital certificates,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
Host-based IDS/IPS,
human factors,
Identity & Access Management,
IDS vs IPS,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Intrusion management,
Managed security services,
Management,
Network security,
Network-based IDS/IPS,
Networking,
Outsourcing/Managed services,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
provisioning,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Security tokens,
Service and support,
Signature updating/Management,
Single sign-on,
Software vs appliance,
Spyware,
Trojans,
Viruses,
VPN,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless,
worms
0 pts.
Is Windows security an afterthought?
As the editor of SearchWindowsSecurity.com, I often speak with users about their Windows security responsibilities. One senior systems analyst in particular sent me an interesting note recently… To give you some background, he’s in charge of configuring and administering desktop systems (primarily Win2000 and XP)for a large company, and he developed many of the security [...]
Answer Question
| April 21, 2005 3:00 PM
Administration,
Application security,
Architecture/Design,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
Digital certificates,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
human factors,
Identity & Access Management,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Intrusion management,
Managed security services,
Management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Product/Service evaluation,
provisioning,
Remote users,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Security tokens,
Service and support,
Signature updating/Management,
Single sign-on,
Spam,
Spyware,
Trojans,
Viruses,
VPN,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless,
worms
0 pts.
Found Trojan.ByteVerify on my computer
Hi All, Symantec recently discovered Trojan.ByteVerify on my computer. I run system checks weekly and am always cautious about the e-mails I open, the web sites I go to and what I click on, so I was pretty surprised to find I had a Trojan. It was quarantined and removed, but I’m worried about what [...]
Answer Question
| June 24, 2010 10:20 AM
Administration,
Architecture/Design,
backdoors,
Compliance,
configuration,
CRM,
Current threats,
Disaster Recovery,
Documentation,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
human factors,
IDS/IPS management,
Incident response,
Installation,
Intrusion management,
Management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
Risk management,
Security,
Security Program Management,
Service and support,
Signature updating/Management,
Spyware,
Trojans,
Viruses,
VPN,
vulnerability management,
Wireless,
worms
0 pts.
Internet Explorer vs. Firefox
Hello, I’m the Assistant Editor on SearchWindowsSecurity.com. I’m looking to start a discussion about what browser people are using and why. Also, is anyone considering switching from IE to Firefox, or are your plans to stay with IE? Here’s some food for thought… As of Feb. 2005, an estimated 35 million users had switched from [...]
Answer Question
| June 29, 2012 2:14 PM
Addamark,
Administration,
Aladdin Knowledge Systems,
Application security,
AppSec,
Architecture/Design,
ArcSight,
Bindview,
Biometrics,
Caymas,
CipherTrust,
Compliance,
Computer Associates,
configuration,
Courion,
CRM,
Cylant,
Database,
DataCenter,
Desktop management applications,
Desktops,
Digital certificates,
Disaster Recovery,
Documentation,
e-Security,
Emerging technologies,
Encryption,
Enterasys Networks,
Entrust,
Exchange,
Features/Functionality,
GuardedNet,
Hardware,
Host-based IDS/IPS,
IBM/Tivoli,
Identity & Access Management,
IDS vs IPS,
IDS/IPS management,
Imprivata,
Installation,
Instant Messaging,
Intellitactics,
Internet Security Systems,
Intrusion management,
Juniper Networks,
KavaDo,
M-Tech,
Magnifire,
Managed security services,
Management,
Maxware,
Microsoft Windows,
Netegrity,
NetForensics,
NetIQ,
Network Associates,
Network-based IDS/IPS,
NFR Security,
NGS Software,
Novell,
Ounce Labs,
Outsourcing,
Outsourcing/Managed services,
Passlogix,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Product/Service evaluation,
provisioning,
Risk management,
RSA Security,
Sana Security,
Secure Coding,
Security,
Security management,
Security Program Management,
Security tokens,
Servers,
Service and support,
Service contracts,
Service evaluation,
Single sign-on,
Snort/Sourcefire,
SPI Dynamics,
StillSecure,
Tech support,
Teros,
Thor,
Tripwire,
TruSecure,
Vendors,
VeriSign,
VPN,
VSecure,
Vulnerability Assessment & Audit,
vulnerability management,
Watchfire,
Waveset/Sun Micro,
Windows,
Windows XP
0 pts.
Safe user sandbox?
*This question is from a SearchWindowsSecurity.com reader: I’m in a position to redesign our IT systems (network, servers, PCs, software, etc.) this summer, and I am undecided on which path to take. I’d like to disconnect our systems from the Internet so that we don’t have to deal with all of the garbage that comes [...]
Answer Question
| April 13, 2005 2:15 PM
Application security,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
Development,
Digital certificates,
Disaster Recovery,
Encryption,
Exchange,
Hacking,
human factors,
Identity & Access Management,
Instant Messaging,
Intrusion management,
Management,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Single sign-on,
Spyware,
Trojans,
Vendors,
Viruses,
vulnerability management,
worms
0 pts.
I’ve been hacked — I think….
I’m an IT administrator with a little over 500 end users, running Windows 2000 and XP. One of our users is experiencing a problem with her Internet connection suddenly dropping for no apparent reason. When she restarts her computer, everything works fine for awhile, but then the connection drops again. The funny thing is, she’s [...]
Answer Question
| August 2, 2009 9:52 AM
Administration,
Application security,
Architecture/Design,
Bigfix,
Biometrics,
Cisco,
Citadel,
Compliance,
Computer Associates,
configuration,
Configuresoft,
CRM,
Cylant,
Database,
DataCenter,
Desktop antivirus,
Desktop management applications,
Digital certificates,
Disaster Recovery,
Documentation,
Ecora,
Encryption,
Enterasys Networks,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
GFI,
Hewlett-Packard,
Host-based IDS/IPS,
Identity & Access Management,
IDS vs IPS,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Internet Security Systems,
Intrusion management,
Juniper Networks,
Managed security services,
Management,
Microsoft Windows,
Network Associates,
Network Elements,
Network security,
Network-based IDS/IPS,
NFR Security,
Outsourcing,
Outsourcing/Managed services,
patching,
Patchlink,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Product/Service evaluation,
provisioning,
Redundancy,
Risk management,
Sana Security,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Service and support,
Service contracts,
Service evaluation,
Shavlink Technologies,
Single sign-on,
Snort/Sourcefire,
St. Bernard Software,
StillSecure,
Symantec,
Tripwire,
Vendors,
VPN,
VSecure,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless
0 pts.
How did I get a virus on my computer?
Do you hear that question or something similar too often? We’re taking an informal survery on SearchSecurity.com to find out what the most common security-related user questions are. Results will be compiled into a question and answer tip that you will be able to post or handout to your users. What are the top 5 [...]
Answer Question
| April 15, 2005 6:07 PM
Administration,
Application security,
Architecture/Design,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
DataCenter,
Digital certificates,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
human factors,
Identity & Access Management,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Intrusion management,
Managed security services,
Management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Service and support,
Service contracts,
Service evaluation,
Signature updating/Management,
Single sign-on,
Spyware,
Trojans,
Viruses,
VPN,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless,
worms
0 pts.
trojan horse downloader
hi i have a win NT4.0 sp6 server.its a DNS and web server. from few days the IE was redirecting the sites to some search engines.when i scaned with AVG it detected some trojan horse downloader.i healed the trojan and restarted the DNS.the problem was solved.but after some hours the problem arise again.since then i [...]
Answer Question
| November 2, 2011 3:57 AM
backdoors,
Backup & recovery,
configuration,
Current threats,
DataCenter,
Hacking,
Hardware,
Help Desk,
human factors,
Installing/upgrading operating systems,
Intrusion management,
patching,
PEN testing,
Platform Security,
Security,
Server management,
Servers,
Spyware,
Tech support,
Trojans,
Viruses,
Vulnerability Assessment & Audit,
vulnerability management,
Windows,
Windows on Intel,
Windows Server 2003,
worms
0 pts.
Developing an antivirus (efficient):for Windows:Using VC++-2
I am working on a Project for making an antivirus.I have 2 other project parteners. But we don’t have an guidance on how to develop the antivirus.Plz give me any relevent Information on this subject.(like components of AV,Algorithms(efficient),methods,general dection & removal of virus).(Also tell me )where can i find this information ?
Answer Question
| June 29, 2012 3:49 AM
Application security,
Architecture/Design,
Central Command,
Compliance,
Computer Associates,
configuration,
CRM,
Database,
DataCenter,
Desktop antivirus,
Development,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
F-Secure,
Features/Functionality,
Fortinet,
Help Desk,
Information risk management,
Instant Messaging,
Intrusion management,
Lifecycle development,
Microsoft Windows,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Redundancy,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Service and support,
Signature updating/Management,
Software Quality Assurance,
Storage,
Tech support,
Third-party services,
Trend Micro,
Vendor support,
Vendors,
VPN,
Vulnerability Assessment & Audit,
vulnerability management
0 pts.
MS Office Outlook 2003 Address book
I use MS office outlook 2003 but this is not adding the e-mail addresses to the address book/contacts automatically when I reply to someone. This feature is available in Outlook express but I didn’t find this feature in MSOO 2003. Is there any simple way I can add e-mail ids to contacts /address book without [...]
Answer Question
| February 18, 2005 5:32 AM
Compliance,
configuration,
CRM,
DataCenter,
DataManagement,
Desktop management applications,
Desktops,
DHCP,
Disaster Recovery,
DNS,
E-business,
E-mail applications,
Exchange,
Help Desk,
HP OpenMail,
IMAP4,
Intel,
Intrusion management,
IT architecture,
LANDesk,
Managed security services,
Microsoft Windows,
Netscape Mail,
Networking,
Networking Products,
Networking services,
Operating system platforms,
Outlook,
Outlook Mobile Access,
patching,
PEN testing,
Platform Security,
Policies,
POP3,
Risk management,
Security,
Security management,
Security products,
Security Program Management,
Sendmail,
SMTP,
System utilities,
Systems management software,
Tech support,
Third-party services,
Vendor support,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless
10 pts.
MS Exchange Mail Queues Constantly being Filled
I have an MS Exchange 2000 Server that was being used as a mail relay. This was stopped and the mail filtered from the spam. The problem is that the mail queues keep getting filled up. I have even disconneted the server and emptied the queues but they still just fill up again. I have [...]
Answer Question
| February 4, 2005 1:32 PM
Biometrics,
configuration,
Digital certificates,
Identity & Access Management,
Networking,
patching,
PEN testing,
Platform Security,
provisioning,
Security tokens,
Single sign-on,
Tech support,
vulnerability management
0 pts.
Access to security log in Windows 2000
In my company we want to give full access to the security log of Windows 2000 only to the security manager, but we want to give only read access to the support people, Is there how to do it ?
Answer Question
| January 12, 2005 3:29 PM
Biometrics,
Compliance,
configuration,
CRM,
DataCenter,
Digital certificates,
Disaster Recovery,
Identity & Access Management,
Managed security services,
patching,
PEN testing,
Platform Security,
Policies,
provisioning,
Risk management,
Security,
Security management,
Security Program Management,
Security tokens,
Single sign-on,
Tech support,
vulnerability management
0 pts.
DOS attack, DNS question
My question has two parts, first: today at the place where i work we lost the internet, and after checking the firewall (sonicwall, this is a non profit organization so they cant afford the best stuff) i discovered it was more than likely a DOS attack. nobody could access the internet, and i could not [...]
Answer Question
| January 13, 2005 6:07 PM
Compliance,
configuration,
CRM,
Disaster Recovery,
Firewalls,
Forensics,
Incident response,
Information risk management,
Intrusion management,
IT architecture,
Managed security services,
Network security,
Networking,
patching,
PEN testing,
Platform Security,
Policies,
Product/service procurement,
Risk management,
Security,
Security management,
Security products,
Security Program Management,
Tech support,
VPN,
vulnerability management,
Wireless
0 pts.
Event viewer err Msg.
Good day, 1.In our organisation, we are using windows2000 smallbusiness server with EXCHANGE , ISA server and DNS configured. but all the client pc’s are given static ip address instead of dynamic ip. will this create any problem ? daily i’m receiving many application error logs.particularly 2 type of source error is repeating continuosly. (a).MICROSOFT [...]
Answer Question
| November 23, 2004 2:38 AM
802.11 networking equipment,
Active Directory,
Administration,
Auditing,
Biometrics,
configuration,
DataCenter,
Digital certificates,
DNS,
Exchange 2000,
Exchange 2003,
Exchange 5.5,
Exchange Server ActiveSync,
Firewalls,
Forensics,
Help Desk,
Identity & Access Management,
Incident response,
Installation,
Intrusion management,
Maintenance,
Management,
Microsoft Windows,
Monitoring,
Network security,
Outlook,
patching,
PEN testing,
Platform Security,
provisioning,
Security,
Security tokens,
Server management,
Servers,
Service and support,
Services,
Single sign-on,
System monitoring,
Tech support,
Third-party services,
VPN,
vulnerability management,
Windows 2000 Server,
Windows Server 2003,
WINS,
Wireless
0 pts.
What’s your experience with Microsoft tech support?
I’m doing some research on the effectiveness of Microsoft’s technical support, possibly for an article on SearchWindowsSecurity.com. Our site readers continually need help troubleshooting Windows security dilemmas. Some seem to find what they need on Microsoft’s Web pages, and others don’t get enough technical detail (i.e. steps for fixing a specific problem). Do you have [...]
Answer Question
| November 3, 2004 3:10 PM
configuration,
Desktop security,
patching,
PEN testing,
Platform Security,
Security,
vulnerability management,
Windows,
Windows 2000 desktop,
Windows 2000 Server,
Windows 95/98,
Windows client administration and maintenance,
Windows Server 2003,
Windows tools/WSRM,
Windows XP
0 pts.