Avatar of Pau Lo
Pau Lo
 asked on

file server review scope

I was hoping to scope out some useful tests to include as part of an audit / health check of some traditional file servers, which act as team repositories for shared documents/files, and another acts as a home drive server where each employee has a home drive area locked down just to them. I was thinking of basics such as:

access control lists (ACL) - ensure permissions on directories are appropriately restricted and restrict access based upon need to known principles
teams consuming masses of space (poor internal practices)
documents with no recent last access attribute - compare to data retention requirements etc
non-administrators who have full control over shares/directories (should not be the case)
general OS security (e.g patches, local administrators, backups)
general monitoring (e.g. capacity/free space)

can you think of any more areas that would be of benefit in such a review?
StorageWindows OSWindows Server 2012Windows Server 2008OS Security

Avatar of undefined
Last Comment
Pau Lo

8/22/2022 - Mon
Shaun Vermaak

View this solution by signing up for a free trial.
Members can start a 7-Day free trial and enjoy unlimited access to the platform.
See Pricing Options
Start Free Trial
Ask your own question & get feedback from real experts
Find out why thousands trust the EE community with their toughest problems.
Raja Jegan R

I've seen one of my client using the below tool to audit their File Server..
Try using the trial version to see the key parameters that it is measuring and ensure that you have all those metrics or checklist available in place or not..
If you like the tool, then you can buy it or else just go through their website to see the list of metrics they capture for Cybersecurity..
Pau Lo

I wasn't necessarily talking about auditing in the sense of what has changed to files etc.
Your help has saved me hundreds of hours of internet surfing.