19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Safeguard Catalogue - Hardware & Software Remarks<br />

____________________________________________________________________ .........................................<br />

S 4.75 <strong>Protection</strong> of the registry under Windows NT<br />

Initiation responsibility: Head of <strong>IT</strong> Section, <strong>IT</strong> Security Management<br />

Implementation responsibility: Administrators<br />

All important configuration and initialisation information is stored in the<br />

registry of a Windows NT system. <strong>The</strong> registry also manages the SAM<br />

database which contains the user and computer accounts.<br />

<strong>The</strong> registry of a Windows NT system consists of several files which are<br />

located in the directory path %SystemRoot%\SYSTEM32\Config. For this<br />

reason, the rights to access this directory and the files contained therein should<br />

be set as recommended in S 4.53 Restrictive allocation of access rights to files<br />

and directories under Windows NT.<br />

After installation of the operating system, the following security-relevant<br />

components of the registry should additionally be protected through the<br />

explicit entry of access rights with the help of the registry editor (the program<br />

named REGEDT32.EXE in the Windows system directory<br />

%SystemRoot%\SYSTEM32), so that the group "All" only has the access rights<br />

"View value", "List partial keys", "Report" and "Read access" for these<br />

components:<br />

- in the area HKEY_LOCAL_MACHINE:<br />

\Software\Windows3.1MigrationStatus (with all sub-keys)<br />

\Software\Microsoft\RPC (with all sub-keys)<br />

\Software\Microsoft\Windows NT\CurrentVersion<br />

under the key \Software\Microsoft\Windows NT\CurrentVersion\:<br />

+ Profile List<br />

+ AeDebug<br />

+ Compatibility<br />

+ Drivers<br />

+ Embedding<br />

+ Fonts<br />

+ FontSubstitutes<br />

+ GRE_Initialize<br />

+ MCI<br />

+ MCI Extensions<br />

+ Port (with all sub-keys)<br />

+ WOW (with all sub-keys)<br />

- in the area HKEY_CLASSES_ROOT:<br />

\HKEY_CLASSES_ROOT (with all sub-keys)<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!