Click here to get back home

Server Hardening

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Server Hardening Jody Flett, JMF Computers 07-05-2005
`--> Re: Server Hardening Jody Flett, JMF...07-05-2005
Posted by Jody Flett, JMF Computers on July 5, 2005, 9:34 am
Please log in for more thread options
I am hardening a server which will sit in the DMZ.

The Server is Windows 2003 SP1.

The firewall is enabled with an exception made for the app that is being
hosted.

However I have noticed that even though the firewall is enabled port 135 is
available. If I turn off exceptions I cannot connect to port 135, however if
I turn on exceptions, even if I do not select any exceptions, port 135
becomes available again.

I cannot stop the RPC Service on the server right? So how can i stop port
135 from being made available and only allow the ports I want opened, open?

Thanks

Jody




Posted by Jody Flett, JMF Computers on July 5, 2005, 3:20 pm
Please log in for more thread options
tcp/ip port filtering did the trick...


>I am hardening a server which will sit in the DMZ.
>
> The Server is Windows 2003 SP1.
>
> The firewall is enabled with an exception made for the app that is being
> hosted.
>
> However I have noticed that even though the firewall is enabled port 135
> is available. If I turn off exceptions I cannot connect to port 135,
> however if I turn on exceptions, even if I do not select any exceptions,
> port 135 becomes available again.
>
> I cannot stop the RPC Service on the server right? So how can i stop port
> 135 from being made available and only allow the ports I want opened,
> open?
>
> Thanks
>
> Jody
>




Similar ThreadsPosted
hisecweb.inf hardening June 5, 2005, 8:57 pm
Security Hardening May 16, 2007, 9:00 pm
Lockdown/Hardening Tool March 21, 2006, 3:53 pm
Hardening Windows Registry August 2, 2006, 10:31 pm
Using AD server as a ldap server and 4k bit server certificate key October 13, 2005, 10:28 pm
Windows server 2003 security. How to protect against 100's of invalid logons to the server?? August 12, 2005, 5:29 pm
creat a domain trust between Windows 2000 server, it show error message:"PRC server is unavailable" July 3, 2006, 3:59 pm
SP-1 to a Windows 2003 Server running SQL Server 2000 with out SP- July 5, 2005, 5:20 pm
Re: Subordinate CA server renewal with an online CA root server July 17, 2008, 8:48 am
web server September 11, 2006, 12:52 am

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap