Server Security Configuration (for Windows systems only)
I,
In principle, disable all unused services, do not install any software irrelevant to the server, and complete all patches.
Modify 3389
HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Control \ Terminal Server \ WDS \ repwd \ TDS \ Tcp, which portnumber does not exist? 0xd3d, which is in hexadecimal format, is 3389. I changed the XXXX value to the default value of RDP (Remote Desktop Protocol), which is used to configure the RDP service created later, to change the created RDP service, go to the next key value:
HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Control \ terminalserver \ winstations here there should be one or more child keys similar to the RDP-TCP (depending on how many RDP services you have built), just change the portnumber.
Modify the storage address of system logs
The default position is
ApplicationProgramDefault location of logs, security logs, system logs, and DNS logs: % SystemRoot % \ system32 \ config. The default file size is KB. The Administrator will change the default file size.
Security log file: % SystemRoot % \ system32 \ config \ secevent. EVT
System log file: % SystemRoot % \ system32 \ config \ sysevent. EVT
Application Log File: % SystemRoot % \ system32 \ config \ appevent. EVT
Default location of Internet Information Service FTP Log: % SystemRoot % \ system32 \ logfiles \ msftpsvc1 \, one log per day by default
Internet Information Service