波音游戏-波音娱乐城赌球打不开

IV. Hardening steps to secure Remote Desktop access. (Basic Security Recommendations)

by JUCC ISTF

/* The following article is extracted from the "Information Security Newsletter" published by the JUCC IS Task Force. */

The following security recommendations or guidelines help secure your server:

1. Rename the Administrator Account - Renaming the Administrator Account will help to prevent a brute force attack on the Administrator account. Most brute force attacks will use the account name "Administrator". This is the default name and this account is not subject to account lockout. This configuration change is done by editing the Local Security Policy.

2. Change the default RDP port - For the attack surface exposure of the common RDP port (TCP 3389), the RDP session can be configured to use a different port. The modification must be applied to both the terminal server itself and all of the TS clients. Modification of registry will be required to change the default of the terminal server, and modification of the Client Connection Manager will be required to alter the port for client side. Please refer to http://support.microsoft.com/kb/187623 for details of configuration.
 

3. Use the highest level of encryption- Use the High encryption option which encrypts the data transmission in both directions by using a 128-bit key. Use this level when the Terminal Server runs in an environment that contains 128-bit clients. RDP traffic is encrypted using 128-bit encryption when connecting to Windows Server 2003 from a Windows XP client computer. By default, both the Web-based and the standalone remote desktop client send the encrypted RDP traffic over TCP port 3389.

4. Set Group Policy settings for the remote desktops -By making end users members of the Remote Desktop Users group you grant these users the necessary privileges for connecting to Terminal Server.

The Remote Desktop Users group allows the same access as the Users group with the additional ability to connect remotely. By using this group, you save administrative resources by not having to set up these rights for each user individually. By default, the permissions for a Terminal Server environment are set to provide maximum security while allowing users to run applications. Users can save files within their profile directory, but cannot delete, or modify certain files.

5. Restrict users to specific programs - Software restriction policies provide administrators with a policy-driven mechanism to identify software programs running on computers in a domain and to control the ability of those programs to execute. You can use policies to block malicious scripts, to lock down a computer, or to prevent unwanted applications from running.

 

[Previous article][Next article]

 

中国百家乐官网软件| 大佬百家乐官网现金网| 君豪棋牌怎么样| 百家乐庄闲的比例| 赌博百家乐官网的玩法技巧和规则| 百家乐分析软件下| 包赢百家乐官网的玩法技巧和规则 | 778棋牌游戏| 威尼斯人娱乐棋牌| 乐天堂百家乐娱乐网| 赌博百家乐趋势把握| 至尊百家乐facebook| 百家乐官网奥| 在线百家乐官网平台| 澳门百家乐官网破解方法| 百家乐官网太阳城开户| 百家乐官网体育nba| 金道百家乐游戏| 太阳城百家乐群| 真人百家乐好不好玩| 新澳博百家乐的玩法技巧和规则| 赌场百家乐怎么破解| 威尼斯人娱乐网上百家乐| 百家乐专用桌子| 大发888体育| 白山在线棋牌游戏| 瑞博国际| 易盈娱乐| 皇冠博彩| 百家乐官网在发牌技巧| 百家乐官网高返水| 百家乐官网下注法| 百家乐官网棋牌游戏开发| 真人百家乐官网的玩法技巧和规则| 678百家乐官网博彩赌场娱乐网规则| 百家乐金币游戏| 海王星百家乐技巧| 大发888游戏平台hplsj| 天将娱乐城开户| 百家乐官网真钱在线| 悦榕庄百家乐官网的玩法技巧和规则|