IRM - Security Guidelines
Security Guidelines for NT
- Secure the machine physically
- Disable undesired booting
- Use NTFS and set permissions within the file system (ACL's)
- Setup logon/legal warnings
- Disable default accounts, change default passwords/ids
- Restrict access to anonymous, guest accounts, etc
- Account/Password Settings:
- Suggested 60-90 day password age - if secure passwords are used would relax this
- Suggested password minimum of 7 characters (more is better)
- Suggested uniqueness of 5 times
- Suggested lockout of 5 failed tries
- Suggested reset on count of 30 minutes
- Suggested lockout duration of 30 minutes or admin must unlock
Turn on Auditing and audit the following:
- Logon/Logoff failure/success
- File and Object Access failure
- User Rights failure
- Security Policy changes success/failure
- Security sensitive files (such as logs) success/failure
- Set Administrator accounts so account can be locked out (set one with no access from network)
- Split admin functions to different accounts (have seperate non-admin account for daily use)
- Secure import files by restricting access to them:
- log/audit files
- profiles directory
- system root/repair directory
- boot.ini & ntldr
- network and admin tools (such as ftp, telnet, cmd, NT Resource kit tools, etc)
- Replace the access that everyone group has with authenticated users group
- Turn off/disable services & network protocals not needed
- Disable un-needed shares (including administrative shares)
- Remove network access from the everyone group OWNER: Ray Cornish
Related Links
Acceptable Use of Information Systems at VT
Computing.vt.edu
The one-stop computing resource site for VT
Antivirus.vt.edu
Virus protection software and downloads
Answers.vt.edu
Knowledge base with answers to common computing questions
VA SCAN
Virginias Alliance for Secure Computing site
EDUCAUSE
Computer and network security web site
Virginia Tech Policies/Compliance
Contact Information
Report a Violation
Report all violations to abuse@vt.edu

