Best Practices

• Use a layered approach to security, with more than one mechanism in place to deter attackers.

• After validating in a prototype environment, use the latest patches and updates on SharePoint servers to further protect the server against attack.

• Use the Microsoft Baseline Security Analyzer (MBSA) tool to verify the security of SharePoint servers.

• Use Secure Sockets Layer (SSL) certificates on any SharePoint traffic that traverses a public network such as the Internet.

• Use an internal Public Key Infrastructure (PKI) deployment with Active Directory Certificate Services to generate SSL certificates for SharePoint if third-party certificates are not being used.

• Physically secure SharePoint servers behind locked doors and ...

Get Microsoft SharePoint 2010 Unleashed now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.