?
Solved

NTFS Permissions

Posted on 2004-10-14
6
Medium Priority
?
347 Views
Last Modified: 2013-12-04
Hi

After hearing teh danger of teh admin shares on windows XP and 2000 prof i chnaged my local drives NTFS permmisons from teh defualt to

Admininstrtors (full acsess)
System (full acsess)
authenticated users (readand exccute)

NB i disabled teh guest account too !!

And allows these to filter through to the child ( sub folders) on my machine

My system runs ok so first off are these the safest permmisons to use ?????

Then I went into "Local Security Policy" and imported the "setup security.inf" policy is this the best one again ?????

Thanks
SILKI
0
Comment
Question by:silki
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
6 Comments
 
LVL 6

Expert Comment

by:nihlcat
ID: 12309948
Those permissions seem safe.  You might also want to consider renaming your Administrator account, as it is always a target for intruders.
0
 

Author Comment

by:silki
ID: 12317597
Hi,

Thanks for teh feedback so my "Local Security Policy" bein set (imported) back to "setup security.inf" policy is  just like reseting back to default ie teh safest ???

authenticated users have actually got modify perrmisons as im ruuing IIS so i need Inest user to have these permmions but a person woudl need to have an accoutn in hack one of my accounst to get in as authenticated users ???

So you say rename administrators to somehting else ?? woudlnt they need a password though to do any damage ?!?!?

THANKS
SILKI
0
 
LVL 6

Expert Comment

by:nihlcat
ID: 12317646
Of course they would need the password, but they (the bad people) already know the username.  The account 'administrator' is known to all.  Our company's security baseline requires it to be renamed.
0
Put Machine Learning to Work--Protect Your Clients

Machine learning means Smarter Cybersecurity™ Solutions.
As technology continues to advance, managing and analyzing massive data sets just can’t be accomplished by humans alone. It requires huge amounts of memory and storage, as well as high-speed processing of the cloud.

 

Author Comment

by:silki
ID: 12337035
Thanks nihlcat,

Can you just confirm thsi part for me ...

"so my "Local Security Policy" bein set (imported) back to "setup security.inf" policy is just like reseting back to default" ??? Secure ???
0
 
LVL 6

Accepted Solution

by:
nihlcat earned 500 total points
ID: 12337818
Sorry I totally misread part of your question.  Yes that's the default (setup security.inf).  But no, not very secure at all.  Policies become incrementally more secure.  You may wish to try hisecdc.inf, but it really depends on your network.  You need to be sure to not make it too restrictive.  I think pre-production testing is probably best.

 
More information on predefined security policies:

http://www.microsoft.com/windows2000/en/advanced/help/default.asp?url=/windows2000/en/advanced/help/sag_SCEdefaultpols.htm
0
 

Author Comment

by:silki
ID: 12345611
Thanks ....
0

Featured Post

Get real performance insights from real users

Key features:
- Total Pages Views and Load times
- Top Pages Viewed and Load Times
- Real Time Site Page Build Performance
- Users’ Browser and Platform Performance
- Geographic User Breakdown
- And more

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Many people tend to confuse the function of a virus with the one of adware, this misunderstanding of the basic of what each software is and how it operates causes users and organizations to take the wrong security measures that would protect them ag…
Article by: btan
The intent is not to repeat what many has know about Ransomware but more to join its dots of what is it, who are the victims, why it exists, when and how we respond on infection. Lastly, sum up in a glance to share such information with more to help…
In this video, Percona Solution Engineer Rick Golba discuss how (and why) you implement high availability in a database environment. To discuss how Percona Consulting can help with your design and architecture needs for your database and infrastr…
In this video, Percona Solutions Engineer Barrett Chambers discusses some of the basic syntax differences between MySQL and MongoDB. To learn more check out our webinar on MongoDB administration for MySQL DBA: https://www.percona.com/resources/we…
Suggested Courses
Course of the Month13 days, 16 hours left to enroll

801 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question