Windows 2000 server with a lot of security characteristics and options, for those who configure them acceptable, then the windows 2000 server are going to be a pretty secure running system. Initial, we really should be Windows 2000 server installed on the server should really be positioned in the isolation room monitors, and monitor far more than fifteen days to maintain the digital camera records. In addition, the chassis, keyboard, pc desk drawer to be locked in to the room to guarantee that other people can't even use the laptop or computer, keys will need to be placed in one more secure place. Guest accounts might be stopped, the administrator utilized to develop two accounts,
Microsoft Office 2007 Pro cl��gen, the system administrator account was renamed, set the display saver password, ensure security, win2000 may also be utilized to configure the safety policy configuration device, flip off unnecessary services and near unnecessary port, prohibit the establishment of air connections plus the most recent Microsoft patches installed along with other measures to enhance the Windows 2000 Server protection. To attack Windows 2000 program, you very first have to know your account quantity and password, so protection program security in Windows 2000 to safeguard the safety of their account and password is the important, but often the password may be cracked by brute force along with other approaches, so the Windows 2000 protection account is quite necessary.Right here are various ways to efficiently safeguard the Windows 2000 system account protection:Approach 1: Prohibition of enumeration accountthe default installation of Windows 2000 enables any consumer to Air people obtain a listing of all program and shared accounts, which was initially for the comfort of LAN people to share resources and files, but any remote user can get the identical way the checklist of accounts, use illegal implies to crack the account password, on our pc assault, it have to prohibit this sort of acts by the subsequent strategies.one, by modifying the registry to disable null user connection, the actions are as follows:Click the Click Okay to open the Registry Editor; in the Registry Editor, drill to the [HKEY_LOCAL_MACHINES System CurentControlSet manage Lsa];will RestrictAnonymous the value to 1,
Office 2007, so that consumers can disable air connection Figure 1.
2, modify the neighborhood security policy,
Microsoft Office 2007, the steps are as follows:into Windows 2000's
select the Choose
(one) All of the accounts, group information and facts, the shared directory, a record of network transmission, etc., around the server for this setup is very dangerous.(2)(3) does not enable enumeration of SAM accounts and shares We choseAt this position, we enumerate the person accounts on the prohibition of the operation.Approach Two: Administrator account renamedunauthorized users can't come across the record of customers,
Microsoft Office Ultimate 2007 Product Key, our system will be secure? not. Knowledgeable users know, Windows 2000 System Administrator account cannot be disabled, can not set protection policy, to ensure that unauthorized consumers can attempt over and more than again the password for that account until the break, so we can in the renamed the Administrator account in to avoid this. Distinct actions are as follows:to the system, Pick
best not to make use of the Admin, Root with the course identify, if transformed did not mean to alter. It disguised as normal customers, including change: Guestlll,
Microsoft Office 2010 Standard Key, other people can not envision how this account could be the super person. After which develop a separate To ensure that unauthorized people Mangliaobantian could possibly not occur, or maybe nothing whatsoever arrived in also, but we follow the clues left behind.Method 3: Disable the login display displays the final logged-on consumer nameunauthorized users may also login locally or Terminal Service interface that the person title, and then guess the password.so to prohibit exhibit the login consumer title. Actions are as follows:choose
the correct aspect of the window, double-click the Fig.
can also be accomplished by modifying the registry, locate the registry HKEY_LOCAL_MACHINE SOFTTWARE Microsoft WindowsNT CurrentVesion Winlogn subparagraph Don't Show Final Consumer Identify string, change its information to one.Method four: Disable Visitor accountGuest account is often a very harmful vulnerability, for the reason that unauthorized end users can make use of the account login to your machine. The steps to disable the account as follows:select Right-click on the proper listing of the tick objects demonstrated in Figure eight, so that Visitor account can't log on to your system.
If you also should give shared printing companies, you need to assigned
always check the local consumers and groups, delete unused accounts to unauthorized users and hackers don't leave an opportunity, soon after extra than stage, our program ought to be somewhat safe a good deal.