|
From: Robert Raver <rraver@ipconsole.com>
Date: Tue Dec 02 2003 - 14:28:05 CST
Hey,
I am doing a report on vulnerability scans and what should be included in
This section lists the Unix system security criteria:
1. /etc/passwd not world-writable
2. No unnecessary services running
3. FTP directory not writable by user anonymous
4. NFS not configured to be world-writable
5. Passwords not crackable by dictionary attack
6. .
7. .
1.1.1 Windows System Security Criteria
This section lists the Windows system security criteria:
1. guest account disabled
2. No unnecessary services running
3. System patched with most recent applicable hot fixes
4. Passwords not crackable by dictionary attack
I have also included a port/services scan using nessus and the SANS Top 20
Thanks,
Robert Raver
_______________________________________________
This archive was generated by hypermail 2.1.8 : Tue Dec 02 2003 - 16:01:00 CST |
Custom Search
|