Book description
"Once again, Roberta Bragg proves why she is a leading authority in the security field! It's clear that Roberta has had a great deal of experience in real-world security design and implementation. I'm grateful that this book provides clarity on what is often a baffling subject!"
James I. Conrad, MCSE 2003, Server+, Certified Ethical
Hacker
James@accusource.net
"Full of relevant and insightful information. Certain to be a staple reference book for anyone dealing with Windows Server 2003 security. Roberta Bragg's Windows Server 2003 Security is a MUST read for anyone administering Windows Server 2003."
Philip Cox, Consultant, SystemExperts Corporation
phil.cox@systemexperts.com
"Few people in the security world understand and appreciate every aspect of network security like Roberta Bragg. She is as formidable a security mind as I have ever met, and this is augmented by her ability to communicate the concepts clearly, concisely, and with a rapier wit. I have enjoyed working with Roberta more than I have on any of the other 20 some odd books to which I have contributed. She is a giant in the field of network security."
Bob Reinsch
bob.reinsch@fosstraining.com
"Windows Server 2003 Security explains why you should do things and then tells you how to do it! It is a comprehensive guide to Windows security that provides the information you need to secure your systems. Read it and apply the information."
Richard Siddaway, MCSE
rsiddaw@hotmail.com
"Ms. Bragg's latest book is both easy to read and technically accurate. It will be a valuable resource for network administrators and anyone else dealing with Windows Server 2003 security."
Michael VonTungeln, MCSE, CTT
mvontung@yahoo.com
"I subscribe to a number of newsletters that Roberta Bragg writes and I have 'always' found her writing to be perfectly focused on issues I 'need' to know in my workplace when dealing with my users. Her concise writing style and simple solutions bring me back to her columns time after time. When I heard she had written a guide on Windows 2003 security, I 'had' to have it.
Following her guidance on deployment, her advice on avoiding common pitfalls, and her easy to follow guidelines on how to lock down my network and user environments (those darned users!) has me (and my clients) much more comfortable with our Win2k3 Server deployments. From AD to GPO's to EFS, this book covers it all."
Robert Laposta, MCP, MCSA, MCSE, Io Network Services, Sierra
Vista
AZrob.laposta@cox.net
"Roberta Bragg has developed a 'must have' manual for administrators who manage Microsoft Windows 2003 servers in their organizations. The best practices for strengthening security controls are well organized with practical examples shared throughout the book. If you work with Windows 2003, you need this great resource."
Harry L. Waldron, CPCU, CCP, AAI, Microsoft MVP - Windows
Security Information Technology Consultant
harrywaldronmvp@yahoo.com
"Roberta Bragg's Windows Server 2003 Security offers more than just lucid coverage of how things work, but also offers sound advice on how to make them work better."
Chris Quirk; MVP Windows shell/user
cquirke@mvps.org
"This book is an invaluable resource for anyone concerned about the security of Windows Server 2003. Despite the amount and complexity of the material presented, Roberta delivers very readable and clear coverage on most of the security-related aspects of Microsoft's flagship operative system. Highly recommended reading!"
Valery Pryamikov, Security MVP, Harper Security Consulting
valery.pryamikov@harper.no
"As long as you have something to do with Windows 2003, I have four words for you: 'Order your copy now.'"
Bernard Cheah, Microsoft IIS MVP, Infra Architect, Intel
Corp.
bernard@mvps.org
If you're a working Windows administrator, security is your #1 challenge. Now there's a single-source reference you can rely on for authoritative, independent help with every Windows Server security feature, tool, and option: Windows Server 2003 Security
Renowned Windows security expert Roberta Bragg has brought together information that was formerly scattered through dozens of books and hundreds of online sources. She goes beyond facts and procedures, sharing powerful insights drawn from decades in IT administration and security. You'll find expert implementation tips and realistic best practices for every Windows environment, from workgroup servers to global domain architectures. Learn how to:
Reflect the core principles of information security throughout your plans and processes
Establish effective authentication and passwords
Restrict access to servers, application software, and data
Make the most of the Encrypting File System (EFS)
Use Active Directory's security features and secure Active Directory itself
Develop, implement, and troubleshoot group policies
Deploy a secure Public Key Infrastructure (PKI)
Secure remote access using VPNs via IPSec, SSL, SMB signing,
LDAP signing, and more
Audit and monitor your systems, detect intrusions, and respond appropriately
Maintain security and protect business continuity on an ongoing basis
"Roberta Bragg has developed a 'must have' manual for administrators who manage Microsoft Windows 2003 servers in their organizations. The best practices for strengthening security controls are well organized, with practical examples shared throughout the book. If you work with Windows 2003, you need this great resource."
Harry L. Waldron
CPCU, CCP, AAI Microsoft MVP—Windows Security Information
Technology Consultant
© Copyright Pearson Education. All rights reserved.
Table of contents
- Copyright
- Praise for Windows Server 2003 Security
- Acknowledgments
- About the Author
- About the Technical Editor
- Preface
- Bibliography
- Security Basics
-
Securing the Server Itself
- Authentication: Proof of Identity
-
Authorization—Limiting System Access and Controlling User Behavior
- Windows Security Architecture and the Authorization Process
- Rights, Privileges, and Permissions
- Using Object Permissions to Control Access
- Rule-Based Versus Role-Based Access Control Systems
- Default Operating System User Roles
- Creating Custom Roles
- Creating Custom Group Roles
- The Access Control Process
- Authorization Using Security Options and Registry Settings
- Computer Roles
- Anonymous Access
- Protect the Account Database with Syskey
- Summary
- Restricting Access to Software; Restricting Software's Access to Resources
- Controlling Access to Data
-
EFS Basics
- What Is the Encrypting File System?
- Implementation Differences Between Windows Versions
- Basic Operations
- Effect of Normal Operations on Encrypted Files
- EFS Architecture
- Avoiding Data Loss—Planning for Recovery
- Special Operations and Issues
- Remote Storage
- Sound Enterprise Strategies
- Tools
- Troubleshooting
- Summary
- Securing Domain Services
- Public Key Infrastructure
- Securing the Virtual Network
- Maintenance and Recovery
-
Monitoring and Audit
-
Auditing
- Establishing a Windows Server 2003 Audit Policy for the Forest
- Auditing the Standalone Windows Server 2003 Computer
- Auditing Server Applications and Services
- Auditing Security Controls: Policy Compliance, Vulnerability Assessment, and Pen Testing
- Auditing Physical Security
- Auditing Policy, Standards, and Procedures
- Reviewing Security Awareness
- Auditing Outsiders: The Impact of Others on Your Organization's Information Security
- Summary
- Monitoring and Assessment
-
Auditing
- Index
Product information
- Title: Windows Server 2003 Security: A Technical Reference
- Author(s):
- Release date: May 2005
- Publisher(s): Addison-Wesley Professional
- ISBN: 9780321305015
You might also like
book
Securing Windows Server 2003
With the success of computer viruses like Slammer, security issues are now a top priority for …
book
MCSE 70-293 Exam Prep: Planning and Maintaining a Microsoft Windows Server 2003 Network Infrastructure, 2/e
The MCSE 70-293 Exam Prep is the most accurate, comprehensive, and up-to-date study guide if you …
book
MCTS Windows Server 2008 Active Directory Services Study Guide (Exam 70-640) (SET)
This certification will enable system administrators and network engineers to master server tasks
book
Windows Server 2008 Active Directory Domain Services
This guide is intended to assist designers in the decision-making process by providing a clear and …