Windows Server® 2012 Unleashed
by Rand Morimoto, Michael Noel, Guy Yardeni, Omar Droubi, Andrew Abbate, Chris Amaris
Best Practices
The following are best practices from this chapter:
• To secure a networking environment, deploy some or many of the transit-level security technologies available.
• Because even the most secure infrastructures are subject to vulnerabilities, it is recommended to deploy multiple layers of security on critical network data.
• It is highly recommended to avoid installing the AD RMS database locally on the RMS server. Instead, use a remote full SQL Server instance.
• Take extra care to secure the Active Directory Certificate Services root CA server because a security breach of this server would compromise the entire CA chain.
• Store a standalone root CA server in a physically locked location and shut it down when not in use. This ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access