Windows2003 security settings

xiaoxiao2021-03-06  14

Windows 2003 is increasingly favored by users with its stable performance, but in the face of an endless new virus, you still need to strengthen the security of Windows 2003. 1. User Password Sets the password to set a key to a large extent to avoid password attacks. The password set the character length should be more than 8, preferably the combination of letters, numbers, special characters, such as "PSP53, @ PQ", "Skdfksadf10 @", etc., can effectively prevent violence from cracking. It is best not to make a password with your own birthday, mobile number, phone number, etc. 2. Delete the default share click Start → Run, enter the "gpedit.msc" and enter the back to the train and open the Group Policy Editor. Expand "User Configuration → Windows Settings → Script (Login / Logout)", double-click the login, then add "DELSHARE.BAT" (the parameter does not need to be added), thereby deleting the default sharing of Windows 2003. Next, IPC connection: Open the Registry Editor, select the [HKEY_ local_machine / system / currentControlSet / Control / LSA] branch, find the "RestrictAnonymous" subkey in the right window, change its value to "1" can. 3. The automatic playback of the automatic playback function is not only role in optical drive, but also functions to other drives, which is easy to use hackers to perform a hacker program. Open Group Policy Editor, expand "Computer Configuration → Management Templates → System", find "Turn off Auto Play" option in the right window and double click, select "Enabled" in the open dialog, then "Off Auto Select "all drives" in the drop-down menu after playback, and press "OK" to take effect. 4. Clearing Remote Accessible Registry Path Set the remote accessible registry path to empty, which can effectively prevent hackers from reading system information and other information using the scanner through the remote registry.

Open the Group Policy Editor, select "Computer Configuration → Windows Settings → Security Settings → Security Option", found "Network Access: Remote Access" in the right window, then open as the chart window In, all registry paths and sub-path contents that can be remotely accessed are removed.

转载请注明原文地址:https://www.9cbs.com/read-49354.html

New Post(0)