Email Alerts
-
Five quick links: Server security and patch management
Staying up to date and managing the latest patches on software is one of the most important things an IT shop can do. Feature
-
Five Quick Links: Windows server hardening
Learn to effectively lock down your systems with these server security resources, including must-have tips and tricks for hardening the Windows OS. Five Quick Links
-
Hacking methodology: Chapter 4 of "Hacking for Dummies"
Find the steps for successful security testing and learn to scan your Windows network for vulnerabilities in this chapter excerpt from "Hacking for Dummies, 3rd Edition." Chapter Download
-
Hackers' guide to Windows file server security
Many network hacks can quickly happen right under your nose. Learn to test your file servers from common attacks by taking on the mindset of a hacker. Step-by-Step Guide
-
Windows virtual machine security spotlight
Maintaining a secure virtual server environment presents a new set of challenges for Windows environments. Understanding the threats ahead of time is the key. IT Spotlight
-
Tests for securing the internal Windows network
While hardening your network against hackers is important, it's also critical to look out for internal threats. Protect your environment from the inside with these security tests. Step-by-Step Guide
-
Web server security practices for Windows environments
Web server security is critical to overall network protection. Learn how to harden a Web server and test the security of your deployment. Step-by-Step Guide
-
Windows Server Security Guide
Take an in-depth look at Windows server security. This guide features information on common network vulnerabilities, server hardening best practices, security improvements with Windows Server 2008 and more. Learning Guide
-
Quest Software Access Manager
Quest Access Manager provides a single console that identifies the files, folders, shares and other entitlements that users and groups can access throughout the enterprise. It is designed to help organizations meet security and compliance requirement... New Product Showcase
-
SysTrack
SysTrack from Lakeside Software Inc. simplifies workstation and server management chores by collecting and calculating statistics on system, application and user activity. New Product Showcase
- See More: Essential Knowledge on Windows Server and Network Security
-
Microsoft patches 23 security vulnerabilities, three critical bulletins
Microsoft addressed 23 vulnerabilities as part of its May Patch Tuesday update, addressing flaws in Windows and Office. News | 08 May 2012
-
Microsoft issues four critical fixes for April Patch Tuesday
April's Patch Tuesday announcement from Microsoft included four critical bulletins addressing flaws in Windows, Windows Server and Internet Explorer. News | 10 Apr 2012
-
Critical RDP patch the focus of Microsoft's Patch Tuesday
Patch Tuesday for March is the lightest for Microsoft this year, but one “critical” patch for Remote Desktop Protocol needs to be applied immediately. News | 13 Mar 2012
-
Microsoft issues 21 fixes in February Patch Tuesday bulletin
Microsoft sent admins a Valentine's bouquet of fixes for 21 vulnerabilities this month, with a focus on Windows Server 2008 R2 and desktop Windows. News | 14 Feb 2012
-
Microsoft delivers seven security fixes for Windows Server, Windows
Microsoft kicks off another year of bug squashing, delivering seven security bulletins to seal holes in Windows Server 2008 R2 and desktop versions of Windows. News | 10 Jan 2012
-
Cluster-based Wizard in Windows Server 8 could ease patch management
Microsoft's upcoming Cluster Aware Update Wizard aims to ease the pain of patch management. But IT shops have questions about how it might fit with their internal patching procedures. News | 07 Oct 2011
-
Microsoft brings endpoint protection to Configuration Manager
With Forefront Endpoint Protection 2010, Microsoft aims to make client security one with systems management, and those running SCCM 2007 should see the biggest lift. News | 08 Nov 2010
-
New identity management software takes the heat off of IT
Self-service functionality with Forefront Identity Manager 2010 could cut down on help desk calls from end-users, helping organizations save money in the process. Article | 11 Mar 2010
-
Microsoft ends mainstream support for SMS 2003
System Management Server 2003, arguably Microsoft's most popular systems management software, is moving toward the end of its support lifecycle. Article | 21 Jan 2010
-
Are security concerns over cloud computing unfounded?
The potential risk of moving data to the cloud is a chief concern for organizations, but some say it's simply a knee-jerk reaction to an unfamiliar IT model. News | 26 Oct 2009
- See More: News on Windows Server and Network Security
-
How Windows Server 8 can help with compliance
Microsoft's new server OS brings risk management improvements – but look deeper, and the picture gets a little cloudy. Tip
-
Understanding the Windows Server 8 Cluster Aware Update Wizard
Cluster-Aware Updating won't end Patch Tuesday – but it will make administration of server clusters much easier. Tip
-
Using and managing BYOD in a Windows Server 2008 environment
BYOD is the hot topic in the enterprise, but allowing it brings new types of security considerations on Windows Server 2008 R2. Tip
-
What the demise of Forefront TMG means for Windows Server
Microsoft's highly rated edge-protection product is essentially dead – so where do Windows server security pros go from here? Tip
-
Boosting Windows Server security with Security Compliance Manager
If you’ve never hardened your Windows-based servers, or would like to bring some consistency to your configurations, SCM is certainly worth a look. Tip
-
Windows server patching gaps you can't afford to miss
Even if you think you're up to date on the latest software, you might not be. There are ways to ensure your software has the latest hotfixes. Tip
-
Server security auditing: knowledge vs. performance
Security auditing can cause a real server performance hit, especially using Windows' native feature. Learn here how you can ease the pain. Tip
-
Are you properly protecting your Windows servers against malware?
Malware poses a threat to Windows servers as well as desktops. Here is a guide to help you build a malware protection plan before it's too late. Tip
-
Fighting off Microsoft Hyper-V security hacks
Although hypervisors are built with security in mind, a sloppy Hyper-V host configuration can still open up your servers to a wide range of exploits. Tip
-
What does ASLR really mean for Windows security?
While address space layout randomization may be a mouthful, the added protection could be critical to Windows security. But will ASLR really stop malware in its tracks? Tip
- See More: Tips on Windows Server and Network Security
-
Manage administrator rights in Windows Server 2003
Learn how to prevent users with administrator rights from deleting files in a Windows Server 2003 network. Ask the Expert
-
Can I restore a server without overwriting the OS?
A Windows administrator moving from Windows Server 2003 to Windows Server 2003 R2 wants to perform a restore of a previous server to a new one without overwriting the OS on the new server. Server management expert Laura E. Hunter explains how to tack... Ask the Expert
-
How can I boot to a floppy and receive a command prompt without being directed to the system drive?
Our systems management expert suggests tools and tactics administrators can use to boot into a command prompt without being directed to the system drive. Ask the Expert
-
How FAT and NFTS differ
Learn how FAT and NFTS differ and uncover how these systems could have potential forensic implications on data recovery. Ask the Expert
-
How to run a batch file at system shutdown
Learn two ways admins can run a batch file at system shutdown in this desktop management Ask the Expert Q&A. Ask the Expert
-
Does running forestprep and domain prep twice hurt?
An admin upgrading Active Directory from Windows 2000 to Windows Server 2003 doesn't know if the previous admin has run adprep/forestprep and adprep/domainprep. He wants to know if it's okay to run forestprep and domainprep a second time. Ask the Expert
-
Contacting the domain controller
Windows network security expert explains how to make sure users can contact your domain controller Ask the Expert
-
Unable to view webpage inside LAN
I have a single domain Windows 2000 server and, since changing my Web hosting company and subsequently name servers, I am unable to view my webpage from inside the LAN. The domain and mail domain resolve fine from outside the company LAN. The server ... Ask the Expert
-
How do I free up space on my hard drive?
I am trying to print a multiple image document in Adobe PhotoDeluxe Home Edition but I keep getting an error message saying "Not enough free space on the hard drive which contains your system folder to print the current multiple image document." How ... Ask the Expert
-
Suppressing the patch reboot in WSUS
An admin is having problems with his WSUS patch system. The restart pop-up message in WSUS keeps showing up to users. Even after the admin delayed the message, it still shows up once a day. He wants to know if there's a way to suppress the patch rebo... Ask the Expert
- See More: Expert Advice on Windows Server and Network Security
-
icacls
icacls is a command-line utility that can be used to modify NTFS file system permissions in Windows Server 2003 SP2, Windows Server 2008, Windows Vista and Windows 7. Definition
-
AccessChk
AccessChk is a free Sysinternals command-line utility that shows what access a user or group of users has to a particular service, file, folder or registry key. Definition
-
AccessEnum
AccessEnum is a free Sysinternals tool that offers administrators a view of the full file system and registry security settings to ensure that users have appropriate permissions to access files and directories. Definition
-
DirectAccess
DirectAccess is a feature introduced in Windows Server 2008 R2 and Windows 7 that uses automated IPv6 and IPSec tunnels to allow remote users to access private network resources whenever they are connected to the Internet. Definition
-
Group Policy Object (GPO)
In the Windows 2000 operating system, a Group Policy Object (GPO) is a collection of settings that define what a system will look like and how it will behave for a defined group of users. Definition
-
Dolly (Digital Dolly)
Dolly, also called Digital Dolly, is a program that can quickly clone (copy) drives to drives, drives to files, files to drives, or files to files. Dolly can clone entire disk partitions in block-wise fashion. Dolly can be used to clone the operating... Definition
-
ISAPI (Internet Server Application Program Interface)
ISAPI (Internet Server Application Program Interface) is a set of Windows program calls that let you write a Web server application that will run faster than a common gateway interface (CGI) application. Definition
-
How ethical hacking fits into Windows security tests
IT security consultant Kevin Beaver calls in to discuss why intrusion testing is a critical part of any IT security assessment – particularly for Windows environments. Podcasts
-
Using software restriction policies in Windows
Software restriction policies are basically special group policies designed to keep users from installing unauthorized applications on network machines. In this short screencast, Brien M. Posey demonstrates how to enforce software restriction policie... Video
-
Writing simple scripts and functions in Windows PowerShell
In the last of our four-part series on working with PowerShell, this screencast explains how to write simple commands and utilize functionality with Microsoft's scripting language. Video
-
Why you should plan Windows network security tests
To all you admins who have been bitten by the procrastination bug, this tipcast is for you. Listen to security expert Kevin Beaver's eight main reasons to plan out your security testing far in advance and learn why waiting until the last minute could... Podcast
-
What should I be asking a security vendor?
It's important for your Windows shop to be well-equipped with not only the best security products, but for you to also be ready to ask security vendors the right questions. Check out this podcast featuring SearchWindowsSecurity.com editor Dana Brunda... Podcast
-
Microsoft patches 23 security vulnerabilities, three critical bulletins
Microsoft addressed 23 vulnerabilities as part of its May Patch Tuesday update, addressing flaws in Windows and Office. News
-
icacls
icacls is a command-line utility that can be used to modify NTFS file system permissions in Windows Server 2003 SP2, Windows Server 2008, Windows Vista and Windows 7. Definition
-
AccessChk
AccessChk is a free Sysinternals command-line utility that shows what access a user or group of users has to a particular service, file, folder or registry key. Definition
-
AccessEnum
AccessEnum is a free Sysinternals tool that offers administrators a view of the full file system and registry security settings to ensure that users have appropriate permissions to access files and directories. Definition
-
DirectAccess
DirectAccess is a feature introduced in Windows Server 2008 R2 and Windows 7 that uses automated IPv6 and IPSec tunnels to allow remote users to access private network resources whenever they are connected to the Internet. Definition
-
Microsoft issues four critical fixes for April Patch Tuesday
April's Patch Tuesday announcement from Microsoft included four critical bulletins addressing flaws in Windows, Windows Server and Internet Explorer. News
-
Critical RDP patch the focus of Microsoft's Patch Tuesday
Patch Tuesday for March is the lightest for Microsoft this year, but one “critical” patch for Remote Desktop Protocol needs to be applied immediately. News
-
Microsoft issues 21 fixes in February Patch Tuesday bulletin
Microsoft sent admins a Valentine's bouquet of fixes for 21 vulnerabilities this month, with a focus on Windows Server 2008 R2 and desktop Windows. News
-
Microsoft delivers seven security fixes for Windows Server, Windows
Microsoft kicks off another year of bug squashing, delivering seven security bulletins to seal holes in Windows Server 2008 R2 and desktop versions of Windows. News
-
How Windows Server 8 can help with compliance
Microsoft's new server OS brings risk management improvements – but look deeper, and the picture gets a little cloudy. Tip
- See More: All on Windows Server and Network Security
About Windows Server and Network Security
Security is one of the most important aspects of any Windows server operating system. This Windows server and network security topic page has the resources administrators need to keep their Windows environments safe and secure. With technical advice from Windows security experts, we have all the answers to your Windows server and network security needs. Get the latest server security news, tutorials and FAQs covering all of Microsoft's most recent server operating system releases – including Windows Server 2003, Windows Server 2008 and Windows Server 2008 R2 -- with details on the latest tools and best practices that every administrator should know.
Enterprise Server Strategies for the CIO