Platform Security Questions


Network Connection Freezes
For some reason, at random, among 20 PCs on my network, in the morning or during the day, the network connection stops responding for both intranet and internet communications. The only solution thus far is to remove the NIC from the Device Manager, reboot the PC, and let Windows XP Pro find the network card [...]

Answer Question   |  September 1, 2010  11:31 AM
3Com, Access, Access control, Active Directory, Application security, Availability, Avaya, backdoors, Bandwidth, Bind, Biometrics, Browsers, Cabling, Cisco, Compliance, configuration, CRM, Current threats, Database, DataCenter, Dell, Desktops, DHCP, Digital certificates, Disaster Recovery, DNS, Encryption, Enterasys, Ethernet, Exchange, FDDI, filtering, Firewalls, Forensics, Foundry, Frame Relay, General Directories, H.323, Hacking, Hardware, Hewlett-Packard, Hubs, human factors, Identity & Access Management, Incident response, Instant Messaging, Interoperability, Intrusion management, IPv4, IPv6, Juniper Networks, LDAP, Lotus Domino, Lucent, Management, Microprocessors, Microsoft Office, Microsoft Windows, MPLS, NetBIOS, Network monitoring, Network protocols, Network security, Networking, Networking services, NFS, NIC, Nortel, Novell IPX/SPX, Novell NDS, OS, Patch management, patching, PEN testing, Performance management, Ping, Platform Security, Policies, Printers, provisioning, Risk management, Routers, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, SIP, Software, Spyware, SQL Server, SSL/TLS, Switches, TCP, Tech support, Trojans, Viruses, VPN, vulnerability management, Web security, WINS, Wireless, worms
asked by:
0 pts.

Passwords
Hi all, What do you recommend for initial password issue, that is, provided a new user with a password for the first time without compromising it. I find the entire help desk giving password initially or sysadmins doing that is not save enough even though the user will be prompted to change it at first [...]

Answer Question   |  November 24, 2007  8:11 AM
Access control, Application security, backdoors, Biometrics, Browsers, Business/IT alignment, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, Exchange security, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

asked by:
0 pts.

Laptop Security…
Hi, I am the head of my department and by the nature of the job I hold some confidential information on my laptop. How do I ensure that 1. Nobody can access any files on my laptop from the LAN or the internet (not even sys admins) 2. If somebody tries to access, can I [...]

Answer Question   |  June 27, 2006  9:31 AM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, DataCenter, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

Local LAN Vulnerabilities and Open Ports NAT
QUESTION: How someone would go about exploiting a vulnerability within a LAN sitting behind a router running NAT/NAPT…where would you start? Hacking the open port? Routing Tables? Accessing remote administration on the modem? (disable NAT)?? bah… MY SYSTEM/SETUP: I have 1 XP SP2 Machine running providing PPTP VPN connections and a Webcam Security System (webcamxp) [...]

Answer Question   |  May 26, 2006  7:43 PM
Access control, Application security, backdoors, Browsers, configuration, Current threats, Database, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Intrusion management, Network security, Networking, patching, PEN testing, Platform Security, Secure Coding, Security, Servers, Spyware, SSL/TLS, Tech support, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

Network Resource Allocation cum Planning cum Technical Problem
This is the real commercial problem face by my company. Well, the reason I ask this problem is I salute and respect all of you as I believe all of you are as good as network solution company out there, or even better!! Lets me rephrase the entire problem again. Company expand so fast that [...]

Answer Question   |  May 22, 2006  10:17 AM
3Com, Access, Access control, Active Directory, Altiris, Application security, Availability, Avaya, backdoors, Bandwidth, Benchmarking, Bind, Biometrics, BMC, Browsers, Budgeting, Business/IT alignment, Cabling, Career development, Cisco, Compliance, Computer Associates, configuration, CRM, Current threats, Database, DataCenter, DB2, Dell, Desktop management applications, Desktops, DHCP, Digital certificates, Disaster Recovery, DNS, E-business, Encryption, Enterasys, Enterprise Desktop, Ethernet, Exchange, Fault isolation, FDDI, filtering, Firewalls, Forensics, Foundry, Frame Relay, General Directories, H.323, Hacking, Hardware, Hewlett-Packard, Hubs, human factors, IBM, IBM/Tivoli, Identity & Access Management, Incident response, Instant Messaging, Intel, Interoperability, InterSystems, Intrusion management, IPv4, IPv6, Juniper Networks, LANDesk, Laws, LDAP, Linux, Lotus Domino, Lucent, Management, Marimba, Microsoft Office, Microsoft Operations Manager, Microsoft Systems Management Server, Microsoft Windows, MPLS, MySQL, NetBIOS, Network applications management, Network management software, Network monitoring, Network protocols, Network security, Network testing, Networking, Networking services, NFS, Nortel, Novell, Novell IPX/SPX, Novell NDS, Online transaction processing, Oracle, OS, Partner facing, Patch management, patching, PEN testing, Performance management, Ping, Platform Security, Policies, Project management, Protocol analysis, provisioning, Regulations, Remote management, Risk management, ROI & cost justification, Routers, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, SIP, Software, Spyware, SQL, SQL Server, SSL/TLS, standards, Storage, Switches, Sybase, Systems management software, TCP, Tech support, Trojans, Unisys, Vector Networks, Vendors, Viruses, VPN, vulnerability management, Web security, WINS, Wireless, worms
asked by:
5 pts.

Design NEW network cum NEW IT infrastructure-2
Company expand so fast that the IT infrastructure is not fast enough to cater high volume of traffic; the initial design is not scalable. The number of new branch offices setup caused the company pay a high price in the leased line communication. Salesman and management staffs dial into company networks via 56K modem to [...]

Answer Question   |  May 17, 2006  8:21 AM
3Com, Access control, Application security, Availability, Avaya, backdoors, Bandwidth, Benchmarking, Biometrics, Browsers, Budgeting, Business/IT alignment, Cabling, Cisco, Compliance, configuration, CRM, Current threats, Database, Dell, DHCP, Digital certificates, Disaster Recovery, DNS, Encryption, Enterasys, Exchange, Fault isolation, filtering, Firewalls, Forensics, Foundry, Hacking, Hardware, Hewlett-Packard, Hubs, human factors, Identity & Access Management, Incident response, Instant Messaging, Interoperability, Intrusion management, Juniper Networks, Lucent, Network applications management, Network management software, Network monitoring, Network security, Network testing, Networking, Networking services, Nortel, patching, PEN testing, Performance management, Ping, Platform Security, Policies, Protocol analysis, provisioning, Remote management, Risk management, Routers, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Software, Spyware, SSL/TLS, Switches, TCP, Tech support, Trojans, Vendors, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
5 pts.

Design NEW network cum NEW IT infrastructure
Company expand so fast that the IT infrastructure is not fast enough to cater high volume of traffic; the initial design is not scalable. The number of new branch offices setup caused the company pay a high price in the leased line communication. Salesman and management staffs dial into company networks via 56K modem to [...]

Answer Question   |  May 17, 2006  7:54 AM
Access control, Application security, Availability, backdoors, Bandwidth, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, Networking, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
5 pts.

Group policy change – cannot get back into Group policy MMC
Recently implemented change to group policy recommended by software vendor by the below instructions: 1. Click Start, point to Programs, point to Administrative Tools, and then click Domain Controller Security Policy. 2. Click Security Settings. 3. Click Local Policies, and then click User Rights Assignment. 4. In the right pane, double-click Impersonate a client after [...]

Answer Question   |  May 8, 2006  8:17 AM
Application security, Biometrics, configuration, Database, DataCenter, Desktops, Digital certificates, Encryption, Exchange, Identity & Access Management, Instant Messaging, Management, Microsoft Windows, OS, Patch management, patching, PEN testing, Platform Security, provisioning, Secure Coding, Security, Security tokens, Servers, Single sign-on, Software, SQL Server, Tech support, vulnerability management
asked by:
0 pts.

route mail with fax service in sbs 2003
i have a sbs 2003 on my network and i configure him to get all the fax of my company, the only problem is that when i configure him to route all the incoming fax to some mail it does not seem to work, i check the event log and i get error 32083 and [...]

Answer Question   |  April 27, 2006  3:30 PM
Access, Access control, AIM, Application security, Availability, backdoors, Backup & recovery, Bandwidth, Biometrics, Brightmail, Browsers, Budgeting, Business/IT alignment, Career development, CipherTrust, ClearSwift, CLP, Compliance, configuration, CRM, Current threats, Data analysis, Database, DataCenter, Desktops, Digital certificates, Disaster Recovery, Encryption, Ethernet, Exchange, Exchange security, FDDI, filtering, Firewalls, Forensics, Frame Relay, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Laws, Management, McAfee, MessageLabs, Microsoft Office, Microsoft Windows, Network protocols, Network security, Networking, OS, Outsourcing, Patch management, patching, PEN testing, Performance management, Ping, Platform Security, Policies, Postini, Project management, provisioning, Regulations, Risk management, Rockliffe, ROI & cost justification, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spam, SpamAssassin, Spyware, SQL Server, SSL/TLS, standards, Storage, Symantec, TrendMicro, Trojans, Vendors, Viruses, VPN, vulnerability management, Web development, Web security, Web services, Web Services Standards, Wireless, worms
asked by:
5 pts.

Looking for application vulnerability scanner
My group is considering implementing an application vulnerability scanner to look for security holes in our Web sites. Can you recommend some products? Thanks

Answer Question   |  November 13, 2009  2:59 PM
Application security, Automated, configuration, Database, Development, Encryption, Exchange, Instant Messaging, patching, PEN testing, Platform Security, Secure Coding, Software testing, Software testing tools, vulnerability management, Web
asked by:
0 pts.

asked by:
0 pts.

SuSE Enterprise 8.2 YOU (YaST Online Update) error/issue
I’m a linux newbie (despite having been involved in IT for a dozen years or so – no holy warriors please), and have encountered a perplexing issue when attempting to run YOU on a freshly installed dual boot WinXP/SuSE 8.2 Pro installation. I posed this question at a different forum (non-Tech Target) without reply: <quote> [...]

Answer Question   |  April 3, 2006  12:39 PM
Career development, configuration, Enterprise Desktop, Linux, Networking, patching, PEN testing, Platform Security, Storage, Training, vulnerability management
asked by:
0 pts.

Server allows unauthorised access
I am trying to sort out a network using Windows Server 2003 and Windows XP Pro The domain has been set up on the server, and it is possible to log in. But mostly the users don?t log into the domain. They log into the local machine, with usernames which are NOT known on the [...]

Answer Question   |  April 5, 2006  7:51 AM
configuration, Desktops, Firewalls, Forensics, Incident response, Intrusion management, Management, Microsoft Windows, Network management software, Network security, Networking, OS, patching, PEN testing, Platform Security, Security, Servers, SQL Server, VPN, vulnerability management, Wireless
asked by:
0 pts.

Explanation & remedy for Web-based Attack
Fully Patched fresh Windows 2003 with PLESK 7.5.6 Compromised again in 30 minutes after a CLEAN rebuild here is How attack occurs ========================== first we observe service.dll Nadeware.msi in system32 folder and a clone of srv-u FTP had run. then we observe an account named help added to administrators group ! we also found C:Program [...]

Answer Question   |  March 16, 2006  12:28 PM
Access control, Application security, backdoors, Browsers, configuration, Current threats, Database, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Secure Coding, Security, Servers, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

Information security questions
Hi everyone, I am new to this field as a 2nd career, previously was in mfg. engineering for alot of years. Need some help with the following questions for a class I am taking. Need to get feedback with professionals in the field to determine what issues they think are important for information security. ?What [...]

Answer Question   |  March 4, 2006  1:04 AM
Compliance, configuration, CRM, Disaster Recovery, patching, PEN testing, Platform Security, Policies, Risk management, Security, Security Program Management, vulnerability management
asked by:
0 pts.

User Auditing/Journaling
I’m new to security on the AS/400 (730). We need to have a record of what program a user calls through our ERP system or what objects are changed and who changed them. I’ve read some on journaling but not sure if that will work for what we need. Suggestions? Thanks Mark

Answer Question   |  November 30, 2009  9:39 AM
Application development, Application security, AS/400, AS/400 careers, Backup & recovery, Biometrics, CLP, Compliance, configuration, CRM, Database, DataCenter, DB2 Universal Database, Digital certificates, Disaster Recovery, Email, Encryption, Exchange, IBM Marketing Sound Off, Identity & Access Management, Instant Messaging, patching, PC/Windows Connectivity, PEN testing, Platform Security, Policies, Printing, provisioning, Risk management, RPG, RPGLE, Secure Coding, Security, Security Program Management, Security tokens, Single sign-on, vulnerability management, Web development
asked by:
0 pts.

asked by:
0 pts.

Fixing violation errors found with CHKOBJITG
I have just begun running the command to check object itegrity on my system. I have encountered 2 basic errors – BADSIG & ALTERED. Can you please explain how I now correct these errors? The objects are basic IBM supplied code (i.e. ADDTCPLNK in QTCP library). I have no idea how these objects were compromised, [...]

Answer Question   |  February 15, 2006  7:19 AM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
asked by:
0 pts.

asked by:
0 pts.