10.07.2015 Views

OW5000 System Security Guidelines - NEC Corporation of America

OW5000 System Security Guidelines - NEC Corporation of America

OW5000 System Security Guidelines - NEC Corporation of America

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

2-6 Securing the NetworkSQL may dynamically select are open in the fire wall. Ensure SQL ServerExpress Edition listens for an incoming client connection.NOTEUNIVERGE clients, UA5200 and EOSN, log events to the OAI Logging server (i.e.the UCE server). If the the client machine operation is very slow, it may be becausethe client is unable to connect to the Logging server. Two options for fixing this are(1) configure the client to connect to the UCE server's FQDN instead <strong>of</strong> thehostname; or (2) allow the client to connect to TCP port 445 on the UCE server.Please make sure that configurable ports, such as the Access Server Listen Port, isalso added properly.NOTEWindows ServicesIsolation <strong>of</strong> ServicesTo enforce security, the following is recommended:• Do not set <strong>OW5000</strong> Server as a Domain Controller or GlobalAdministrator.• Do not install Micros<strong>of</strong>t SQL Server on a Domain Controller.• Disable all unnecessary Windows Services on the <strong>OW5000</strong> server.• Do not enable the following Windows Services on the <strong>OW5000</strong> server:—WINS—DHCP—FTP—SMTPThe <strong>OW5000</strong> installation will fail when installed on a Domain Controller.IMPORTANTUCE Application Platform (UNIVERGE <strong>OW5000</strong>) <strong>System</strong> <strong>Security</strong> <strong>Guidelines</strong> - Revision 7

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!