19.04.2013 Views

2KKUU7ita

2KKUU7ita

2KKUU7ita

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Figure 11-2:<br />

Gathering<br />

detailed<br />

vulnerabilities<br />

of<br />

a Windows<br />

2000<br />

Server with<br />

LanGuard.<br />

Figure 11-3:<br />

Using Nmap<br />

to determine<br />

the<br />

Windows<br />

version.<br />

Chapter 11: Windows<br />

Countermeasures against system scanning<br />

You can prevent an external attacker or malicious internal user from gathering<br />

certain information about your Windows systems by implementing the<br />

proper security settings on your network and on the Windows hosts. You<br />

have the following options:<br />

✓ Use a network firewall or web application firewall (WAF).<br />

✓ Use the Windows Firewall or other personal firewall software on each<br />

system. You want to block the Windows networking ports for RPC (port<br />

135) and NetBIOS (ports 137–139 and 445).<br />

✓ Disable unnecessary services so that they don’t appear when a connection<br />

is made.<br />

205

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!