=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= SEARCHWIN2000.COM | Security Administration Tip December 23, 2003
Essential tools and advice for the security-focused administrator. More tips: http://searchwin2000.techtarget.com/tips/?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= FROM OUR SPONSOR: - Bogged Down By Year-End Projects? http://searchWin2000.com/r/0,,22894,00.htm?track=NL-122&ecora - Free White Paper: Has your Exchange server ever failed? http://searchWin2000.com/r/0,,22870,00.htm?track=NL-122&neverfail =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= IN THIS ISSUE | Table of Contents 1. SECURITY TIPS - Dealing with active scripting in IE (and elsewhere) - Use those Windows security templates - Securing the IIS metabase - Ask Roberta Bragg: How does decryption work? 2. WHAT'S NEW! - Featured Topic: Top 10 Ask the Experts' questions - Article: Microsoft needs to sell what it created in '03 - Opinion: The Seabiscuit of enterprise software - Tip Contest: The clock is ticking! Submit your tip today! ____________________________________________________________________ *********************SPONSORED BY: Ecora*************************** Working on DR documentation, IT audits, or migration? Ecora Enterprise Auditor generates detailed configuration reports and tracks changes to AD, Windows, Exchange, Citrix, SQL, IIS, Linux, and more. With hundreds of "out-of-the-box" reports. Make your life easier! No agents to install on your servers. Download and try a fully functional evaluation today: http://searchWin2000.com/r/0,,22894,00.htm?track=NL-122&ecora ____________________________________________________________________ DEALING WITH ACTIVE SCRIPTING IN IE (AND ELSEWHERE) | Tom Lancaster Recently third-party security mailing lists have been abuzz with stories and notifications about a complex IE vulnerability that a Chinese researcher discovered and exposed during the last week of November. The reports are potentially grave: the vulnerability could allow remote compromise of affected systems by victims simply viewing a Web page. >> CLICK for the full tip: http://searchwin2000.techtarget.com/tip/0,289483,sid1_gci942285,00.html?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= USE THOSE WINDOWS SECURITY TEMPLATES | Tom Lancaster Early adopters of Windows Server 2003 will find significantly more possible settings in the security templates, thanks in large part to the 220+ new security-related objects that Windows Server 2003 can recognize and manage in this context. Here's the scoop on the most common question about security templates. >> CLICK for the full tip: http://searchwin2000.techtarget.com/tip/1,289483,sid1_gci903870,00.html?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= SECURING THE IIS METABASE | Mike Chapple Microsoft Internet Information Server (IIS) uses a centralized repository known as the metabase to store configuration information for the Web server. In earlier versions of IIS, the metabase was stored as a single binary file readable only by specialized applications. IIS 6.0 introduces an easily readable XML version of the metabase. With this increased transparency, it's even more important that you configure metabase security options properly to ensure the confidentiality, integrity and availability of your IIS servers. >> CLICK for the full tip: http://searchwin2000.techtarget.com/tip/1,289483,sid1_gci935976,00.html?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= HOW DOES DECRYPTION WORK? | Ask Roberta Bragg Dear Roberta, I know how encryption works, but I'm not sure how decryption works. Could you explain the difference? >> CLICK to read Roberta Bragg's expert response: http://searchwin2000.techtarget.com/ateQuestionNResponse/0,289625,sid1_cid563971_tax285120,00.html?track=NL-122 Want more tips like this one? Then sign up to receive SearchWin2000.com's "Tips from our Experts" biweekly newsletter. Just one click will automatically activate your free subscription: http://searchWin2000.techtarget.com/OptIn/1,290894,sid1,00.html?track=NL-122&&&&cid=457574&em=&tid=3107&FE=1 __________________________________________________________________ ******************SPONSORED BY: Neverfail for Exchange********* Has your business suffered a loss of communications at critical moments because your Exchange server was down? Neverfail for Exchange is a software solution that ensures true, easy to use application availability in a trouble-free installation. Download this free white paper to learn how Neverfail can help your business save IT dollars and resources. Click here: http://searchWin2000.com/r/0,,22870,00.htm?track=NL-122&neverfail __________________________________________________________________ WHAT'S NEW! =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= TOP 10 ASK THE EXPERTS' QUESTIONS | Featured Topic Frustrated with Windows and its multitude of quirks? We hear you! This week we've collected your Top 10 favorites (based on clicks) from our Ask the Experts section. Maybe you'll find a tip to help make your holidays more merry! http://searchwin2000.techtarget.com/featuredTopic/0,290042,sid1_gci942031,00.html?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= MICROSOFT NEEDS TO SELL WHAT IT CREATED IN '03 | Article This was a blockbuster year for Microsoft in that it shipped more major software releases than in any year in its history. In 2004, the software giant will have an entirely different set of challenges. It will be pressed to convince customers that they need to upgrade, or even to stick with Microsoft software in the first place. http://searchwin2000.techtarget.com/originalContent/0,289142,sid1_gci942160,00.html?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= THE SEABISCUIT OF ENTERPRISE SOFTWARE | Opinion At the ripe old age of four, Windows 2000 Server has hit middle age. With a hot rookie nipping at its tail (Windows Server 2003), the thoroughbred server operating system's days on the track are numbered. http://searchwin2000.techtarget.com/columnItem/0,294698,sid1_gci942140,00.html?track=NL-122 =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-= THE CLOCK IS TICKING! SUBMIT YOUR TIP TODAY! | Tip Contest If you want a shot at this month's awesome prize, an iRiver SlimX iMP-350 CD/MP3 player, you better get cracking! You have less than two weeks left to submit your Windows-related tip for a chance to win. Check out the prize and submit your tip today! >> CLICK here to submit and read more about this month's prize: http://searchwin2000.techtarget.com/tips/0,289484,sid1_tax5e1,00.html?track=NL-122 _________________________________________________________________ ********************* SEARCHWIN2000 CONTACTS ********************** TIP MAILBOX, (mailto:[EMAIL PROTECTED]) >> Send feedback on tips and ideas for new tip content. ____________________________________________________________________ MARILYN COHODAS, Senior Site Editor (mailto:[EMAIL PROTECTED]) >> Send me your original articles and best practices. ____________________________________________________________________ CHRISTINE POLEWARCZYK, Site Editor (mailto:mailto:[EMAIL PROTECTED]) >> Send me your bloopers and Featured Topic ideas. ____________________________________________________________________ VANDANA SHARMA, Assistant Editor (mailto:[EMAIL PROTECTED]) >> Send me your tips and true IT bloopers. ____________________________________________________________________ KEVIN NOLAN (mailto:[EMAIL PROTECTED]) >> Sponsor this or any other TechTarget newsletter. ____________________________________________________________________ ::::::::::::::::::::: ABOUT THIS NEWSLETTER :::::::::::::::::::::: This newsletter is published by TechTarget, the most targeted IT media. http://www.techtarget.com?track=NL-122 Copyright 2003 TechTarget. All rights reserved. ____________________________________________________________________ To unsubscribe from "Windows Security Administration Tips" reply to this e-mail with REMOVE in the Subject line. Please note, unsubscribe requests may take up to 24 hours to process; you may receive additional mailings during that time. A confirmation e-mail will be sent when your request has been successfully processed.
