Eight Tips to Secure Windows 2000 Security

  

Windows 2000 system users are particularly numerous, leading to the top of the attacked system, but this is not to say that Windows 2000 security is not good at all, as long as reasonable configuration and management is very safe. I am not using Windows 2000 for a short time. I have gradually found a little way to maintain its security. Here are some personal opinions and shortcomings. Please correct me.

Safe installation to minimize worries

The security of Windows 2000 system should be accumulated from the installation, but this is often overlooked. The following points should be noted when installing Windows 2000:

1. Do not choose to install from the network

Although Microsoft supports online installation, it is absolutely not safe. Do not connect to the network until the system is fully installed, especially the Internet! Don't even connect all the hardware to install. Because Windows 2000 is installed, after entering the password of the user administrator account "Administrator", the system will create a shared account of "$ADMIN", but it does not protect it with the password just entered. This situation will continue until The computer starts up again. In the meantime, anyone can enter the system through "$ADMIN"; at the same time, after the installation is completed, various services will run automatically at the same time, and the server is full of loopholes, which is very easy to invade from the outside.

2, choose NTFS format to partition

It is best to have all partitions in NTFS format, because NTFS format partitions are more secure in terms of security. Even if other partitions use other formats (such as FAT32), at least the partition where the system is located should be in NTFS format.

In addition, the application should not be placed in the same partition as the system, so that the attacker can exploit the vulnerability of the application (such as Microsoft's IIS vulnerability, we will not know it), causing system file leakage, even Let the intruder gain administrator privileges remotely.

3, system version selection

We generally like to use the Chinese interface software, but for Microsoft things, due to geographical location and market factors, are first in English, and then There are versions in other languages ​​of the country. That is to say, the kernel language of the Windows system is English, so that its kernel version should be much less than the vulnerability in its compiled version. In fact, the Windows 2000 Chinese input method loopholes are soaring that everyone is obvious to all.

The above mentioned security installation can only reduce the worries of the future. Don't think that you can do it once and for all. There is still a lot of work waiting for you to do it. Please continue to look down:

Copyright © Windows knowledge All Rights Reserved