better-than-nothing security practices™ for securing windows xp professional

71
copyright notice accesses since January 4, 2007 Better-than-Nothing Security Practices™ for Securing Windows XP Professional v 1.1.1 Hal Berghel Jacob Uecker  This w eb pa ge is a checklist for sec uring a Windows XP Profe ssional workstation. The best way t o implement security for such a workstation is through a domain controller using Active Directory and Group Policy. Given that an administrator for such a domain is unavailable there must be a way to impl ement some form of se curity, even if it's not the best method olog y. W e have tried to provide such an implementation, in the form of a checklist. Keep in mind that these steps are only recommendations to help harden a system; they are not concrete. We have tried to make this from the standpoint of a secure environment. With this in mind, you might find that our ideas don't match your environment. If you decide that such a setting is too strict, you can relax it a bit, but be aware of the possible attack vectors (which is  just as im porta nt). Many of these settings were meant for the default install of Windows XP Professional. If you have Service Pack 1 or 2 installed as well, some of the configuration changes will have been changed for you and they have been noted in red italics. However, all configurations should be checked on the box to make sure nothing has changed. We take no responsibility whatsoever for the implications that these settings will have on your computer. It is always important to try these changes on a test machine before changing your infrastructure. We have tried to provide the consequences of each setting, but there is no doubt many more exist. If you have any suggestions or comments please let us kno w . The checklist steps are followed by a detailed description of why the steps are necessary. Copyright © 2003 by Hal Berghel and Jac ob Uecker. All R ights Reserved.   Note: These i nstruc tions assume that Windows Start menu is set to Classic View . The necessar y steps will be dif ferent i f y our Start menu is not set to Classic View . T o change this, simply right-click on the Start button and select properties. Click on the "Start Menu" (top) radio button.  1. Account Policies Disable Guest Account 1. Bet ter-t han -Noth in g Securit y Practices™ for Securing W indows XP Pro... h ttp: // www.bergh el.net /b t nsp/X P/in dex.php 1 of 71 10/25/2011 11:01 AM

Upload: anon362966144

Post on 04-Apr-2018

218 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 1/71

Page 2: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 2/71

Page 3: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 3/71

Page 4: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 4/71

Page 5: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 5/71

Page 6: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 6/71

Page 7: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 7/71

Page 8: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 8/71

Page 9: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 9/71

Page 10: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 10/71

Page 11: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 11/71

Page 12: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 12/71

Page 13: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 13/71

Page 14: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 14/71

Page 15: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 15/71

Page 16: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 16/71

Page 17: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 17/71

Page 18: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 18/71

Page 19: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 19/71

Page 20: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 20/71

Page 21: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 21/71

Page 22: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 22/71

Page 23: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 23/71

Page 24: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 24/71

Page 25: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 25/71

Page 26: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 26/71

Page 27: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 27/71

Page 28: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 28/71

Page 29: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 29/71

Page 30: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 30/71

Page 31: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 31/71

Page 32: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 32/71

Page 33: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 33/71

Page 34: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 34/71

Page 35: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 35/71

Page 36: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 36/71

Page 37: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 37/71

Page 38: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 38/71

Page 39: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 39/71

Page 40: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 40/71

Page 41: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 41/71

Page 42: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 42/71

Page 43: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 43/71

Page 44: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 44/71

Page 45: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 45/71

Page 46: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 46/71

Page 47: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 47/71

Page 48: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 48/71

Page 49: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 49/71

Page 50: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 50/71

Page 51: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 51/71

Page 52: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 52/71

Page 53: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 53/71

Page 54: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 54/71

Page 55: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 55/71

Page 56: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 56/71

Page 57: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 57/71

Page 58: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 58/71

Page 59: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 59/71

Page 60: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 60/71

Page 61: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 61/71

Page 62: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 62/71

Page 63: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 63/71

Page 64: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 64/71

Page 65: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 65/71

Page 66: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 66/71

Page 67: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 67/71

Page 68: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 68/71

Page 69: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 69/71

Page 70: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 70/71

Page 71: Better-than-Nothing Security Practices™ for Securing Windows XP Professional

7/30/2019 Better-than-Nothing Security Practices™ for Securing Windows XP Professional

http://slidepdf.com/reader/full/better-than-nothing-security-practices-for-securing-windows-xp-professional 71/71