Server Administration
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Codewalkers ForumsOther TechnologiesServer Administration

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Codewalkers Forums Sponsor:
You eat, breathe and sleep innovation. Build your mobile intelligence with BlackBerry® experts this July. Register Today!
  #1  
Old January 22nd, 2004, 11:40 AM
Anonymous Anonymous is offline
Registered User
Codewalkers God 35th Plane (22000 - 22499 posts)
 
Join Date: Apr 2007
Posts: 22,309 Anonymous User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 24
Securing a Win box

I'm being forced to promote a development server to an test+evaluation server, which means moving it out of an isolated LAN onto the internet.

Running Win2K server, PHP 4.3X and MSSQL now, and I need to look into firewalls and anti-virus. Unfortunately, contract and purchasing requirements won't let me tie into the Norton licence that already exists, so I'm going solo.

1- As I understand it, NAV and McAfee just don't sell single server, no client licenses. Is this universal? I can't get any details from F-Prot or Sophos or the like for a single license for a server.

2- Need a few recommended firewall programs to look into. There's already a physical firewall, some debate as to whether the box will be behind it or not.

3- Don't tell me to go Linux, my LAMP boxes are already giving me dirty looks on this one ;). The customer says MS, I buy MS.

Reply With Quote
  #2  
Old January 22nd, 2004, 09:33 PM
nawlej nawlej is offline
Contributing User
Codewalkers Regular (2000 - 2499 posts)
 
Join Date: Apr 2007
Location: Dallas, Tx. USA
Posts: 2,008 nawlej User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 11 h 7 m 51 sec
Reputation Power: 4
RE: Securing a Win box

Well, no doubt about it, that server needs to be isolated from the lan, but should be behind the outer bastion of a firewall, at least, in the DMZ somewhere.....push that issue. As far as firewall software, I have had great luck with black ice, and also Checkpoint.

Reply With Quote
  #3  
Old January 25th, 2004, 11:09 AM
nawlej nawlej is offline
Contributing User
Codewalkers Regular (2000 - 2499 posts)
 
Join Date: Apr 2007
Location: Dallas, Tx. USA
Posts: 2,008 nawlej User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 11 h 7 m 51 sec
Reputation Power: 4
RE: Securing a Win box

if you want a hardware router that will do packet filtering for not a lot of money, find an old PC, and look into using the Linux Router Project. It will run off of a single floppy disk as its OS.

Reply With Quote
  #4  
Old January 25th, 2004, 09:28 PM
Blindeddie Blindeddie is offline
Codewalkers Regular (2000 - 2499 posts)
 
Join Date: Apr 2007
Location: NJ - USA
Posts: 2,152 Blindeddie User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 4
RE: Securing a Win box

Ok, if the LAN guy is worth his weight in salt, he should know that the server can be set up behind the firewall and access granted to specific ports 80,443 etc. No cost involved!!! (I know, I have done it...) as far as antivirus goes, look into Trend Micro, (www.trend.com) they have some server anti-virus suites that are excellent (I know, I use them...) You need to explain to the client that security is of the utmost importance and lowballing when it comes to security will only result in disaster....just my two cents!!

Reply With Quote
  #5  
Old January 25th, 2004, 10:54 PM
nawlej nawlej is offline
Contributing User
Codewalkers Regular (2000 - 2499 posts)
 
Join Date: Apr 2007
Location: Dallas, Tx. USA
Posts: 2,008 nawlej User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 11 h 7 m 51 sec
Reputation Power: 4
RE: Securing a Win box

I agree blindeddie, but there are still some LAN guys out there who will fight it tooth and nail. They just dont like putting anything behind the firewall on the trusted network, even if it is given limited permissions.

Reply With Quote
  #6  
Old February 1st, 2004, 03:30 PM
bearqst bearqst is offline
Codewalkers Newbie (0 - 499 posts)
 
Join Date: Apr 2007
Location: Alaska
Posts: 153 bearqst User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 20 m 47 sec
Reputation Power: 2
RE: Securing a Win box

Ask if you can add a port to the firewall. Not sure what your dealing with, but with cisco FW for instance, you could add another card (low cost) and isolate it from any other sub-net and have you own sub-net to host the new web box.

Reply With Quote
Reply

Viewing: Codewalkers ForumsOther TechnologiesServer Administration > Securing a Win box


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 3 hosted by Hostway