ToolsLocate local security settings. Local Policy. User Rights Assignment1. From the network access to the computer inside the general default has 5 users, in addition to admin outside we delete 4, of course, we have to build a own ID2. Forced shutdown from remote system, Admin account also deleted, no one left3. Deny access to this computer from the network remove ID4. Access this computer from the network, admin can also delete if you do not use si
Windows 2003 Server Security Settings
First, close unwanted ports
I'm more careful, I turn off the port first. It only opened 3389, 21, 80, 1433, some people have been saying what the default of 3389 unsafe, I do not deny, but the use of the way can only one of the poor lift blasting, you have changed the password set to 66, I guess he will break for several years, haha! Method: Local Connection--attribut
In addition to patches provided by security vendors, website server security is more important to set some common security problems that can withstand attacks by some cainiao tools.
Basic Security Settings
1. Adjust the testing environment (set resolution, IP address, and so on for server settings. Before accessing
11. Microsoft SQL server network settingsOverview of Network ServicesSQL Server application interfaceNetwork Connection LibraryNetwork components and SQL server performanceNetwork MonitoringSummaryAfter you install Microsoft SQL Server, you must set its network settings. Up
Take Serv-u ftp Server 6.1.0.5 final [Latest Version] as an example. We recommend that you use the Chinese version s.jb51.net (to undertake Server security settings)
Install the original version to D: \ Serv-U_3434999fdaf [complex and rule-free directory names can effectively prevent hacker guesses]
Then exit Serv-U and install the Chinese package.
Run the SERV-
1, Security settings recommendations
(1) Check whether the SP2 patch has been installed! Change to daily 3:00 Automatic Update patching!
(2) When the firewall and port restrictions function settings, please be careful to avoid the loss of remote administrative rights!
------Right-click > properties in the Network Neighborhood advanced, open Win2003 Firewall feature, set to allow only 20,21,25,80,110,1433,3
WindowsServer2003 + IIS6.0 + ASP Server security Settings--component security Settings Chapter A, uninstall the Wscript.Shell and Shell.Application components, save the following code as one. BAT file Execution (minutes 2000 and 2003 systems) Windows2000.bat
Copy Code code as follows:
Regsvr32/u C:/winnt/system32/wshom.ocx
Del C:/winnt/system32/
software, very convenient, if you can use http://www.jb51.net/softs/8860.html).
5, the installation of commonly used software
For example: Anti-Virus software McAfee, decompression software winrar and so on, after installation with Ghost again back up the system.
More utility software on the server can be downloaded to the s.jb51.net.
Second, the System permissions settings
1.
Copy Code code as follows:
@ECHO off
Title C disk Permission batch processing-2010.7.1
Echo-----------------------------
Echo Cloud Community Server C disk permission settings
Echo http://www.jb51.net
Echo-----------------------------
: Menu
Echo.
echo [1] Removes everyone's permission from the C disk
echo [2] removes access rights for all users in C disk
echo [3] Add IIS_WPG access rights
directly. , you can also use "127.0.0.1" or "localhost".
If you have more than one instance, you need to precede it with an instance name, such as 127.0.0.1\newsqlserver.
On-machine logon, authentication can be used with Windows authentication and SQL Server authentication.
Remote connection Settings
We can not modify the database every time Remote Desktop to the s
Are you unable to access more exciting websites because of the limitations of the network segment? Are you unable to log on to the QQ server because of port restrictions? At this point, if a person with you said "to use proxy server", you are confused what is the proxy server? In fact, the proxy server is not as myster
Server security Settings
1, the system disk and site placement disk must be set to NTFS format, easy to set permissions.
2, the system disk and site placement disk in addition to administrators and system user rights are removed.
3, enable Windows with a firewall, only to retain useful ports, such as remote and Web, FTP (3389, 80, 21), and so on, there are mail ser
We often need to set up some Web services, FTP services, and so on when we use the IIS (Internet information server,internet Information Server) that comes with Windows Server, but after a while, Web sites, FTP sites, virtual directories are more, and their configuration becomes increasingly complex. Can IIS revert to its previous state? The answer is yes.
Back
Now buy a friend of the server will find that a little new point of the hard drive has not supported the WIN2003 system, mainly to drive people do not give you, coupled with Microsoft's 2003 security also does not provide support, it will be difficult to have patches. Recommended that you use the 2008 R2 system, for the 32G/64G server, running 2003 really very wasteful.
The following cloud Habitat Communit
Web site program is placed. Where wwwroot as long as the right to save D disk, and blog.postcha.com This directory, we need to add two additional permissions, namely IUSR and Iis_iusrs.
Wwwroot Permissions:
Site Directory Permissions:
The general website has uploads the file, the picture function, but the user uploads the file is not credible. So also to the upload directory for separate settings. The upload directory also needs to add "modi
number of bytes sent by the server since this startup from the server since server start
%serverfilesup-displays the No. The number of files that the server has received since the uploaded to the since server start started this time
%serverfilesdown-displays the No. The num
You can also run the input gpedit.msc into the computer configuration →windows settings → security settings → local Policy
Security Policy Automatic Update command: Gpupdate/force (Apply Group Policy automatically does not need to be restarted)
Start Menu-> Administration Tools-> Local Security Policy
A, local policy--> audit policy
Audit policy Change failed successfully
Audit logon event failed succe
removing the script execution permissions for the directory. Configuration method: First in the Web directory of IIS, open the Permissions tab, read and list directory permissions only to IIS users, and then go to the directory where the uploaded files are saved and stored in the database, add write permissions to the IIS users, and finally the "Properties"-"Execute Permissions" option for the two directories to change "pure script" to "none" Can. See figure below
-->
-->
Take the Aliyun server as an example
One, mounted hard disk
1, disk partition
Fdisk-l #查看设备, you can generally see the device named/dev/xvdb
Fdisk/dev/xvdb #对磁盘进行分区
Enter N #创建新分区
Enter P #创建主分区
Enter 1 #创建第一个主分区
Enter the W #保存并执行以上命令 to create the partition
After the above command has been completed, use Fdisk-l to see a similar
/DEV/XVDB1 of the partition
Indicates that the partition was successful.
2. Disk format
MKFS.EXT4/DEV/XVDB1 #
WindowsServer2003 + IIS6.0 + ASP Server security Settings--component security Settings Chapter A, uninstall the Wscript.Shell and Shell.Application components, save the following code as one. BAT file Execution (minutes 2000 and 2003 systems) Windows2000.bat
Copy Code code as follows:
Regsvr32/u C:/winnt/system32/wshom.ocx
Del C:/winnt/system32/
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.