.


:




:

































 

 

 

 





, - ( ip-), ( ip- ) (. 8.1) [2]. , ip- .

. . 8.2 :

ü Windows, ;

ü "" ( , ..);

ü web- IIS, ;

ü MS SQL Server;

ü .

. 8.1.

. 8.2.

Microsoft . , , . ( . 8.2 , ).

, . : "You do not have sufficient permissions to perform this command. Make sure that you are running as the local administrator or have opened the command prompt using the 'Run as administrator' option".

, . . 8.3 "" (Severe risk) [2].

. 8.3.

 

, : , Windows .. , Microsoft :

Security updates - , , ;

Update rollups - , . ();

Service packs - , , . Service pack, , , Service pack, .

(. 8.4) Result details . , , .

, , . . , . , . Windows , , - .

. baseline security analyzer . , .

(. 8.5). , , . . 8.6 ( result details) . , 3 , [2].

 

. 8.4. ( )

. 8.5. ,

, . mbsacli.exe , Baseline security analyzer, , "C:\Program Files\Microsoft Baseline Security Analyzer 2". , , "/?".

 

. 8.6.

. , - . : mbsacli > mylog.txt. , . , /nd ( " ") /n Updates ( " ").

/xmlout (.. , , ), , xml. :

mbsacli /xmlout > c:\myxmlog.xml

[2]

, , . . Windows.

. . Windows Vista , . 8.7. (. 8.8).

, . , " ", . , . . , "" , , " " " ".

, ( lusrmgr.msc).

. 8.7.

. 8.8.

1. -> . cmd Enter. ip- . ipconfig. ip- , .

2. Microsoft Baseline security analyzer. Scan a computer. IP- , . Check for s e curity updates ( ) . Start Scan.

3. Microsoft Baseline security analyzer.

4. doc ( ). ; ; ( , . 8.9):

Administrative Vulnerabilities    
Additional System Information   Auditing    
Services

 

 
Shares

 

Windows version

This check was skipped because the computer is not joined to a domain.

 

Some potentially unnecessary services are installed.

 

 
6 share(s) are present on your computer.

 

 

Computer is running Microsoft Windows XP

 

Internet Information Services (IIS) Scan Results    
SQL Server Scan Results
SQL Server/MSDE Status

 

 

 

SQL Server and/or MSDE is not installed on this computer.

 

 

 

Administrative Vulnerabilities    
Security assessment ( ) Strong Security The selected checks were passed.

 

: .

  1. , .
  2. : , - - .
  3. . .
  4. .
  5. bsa , .

1. ?

2. ?

3. ?

4. ?

5. Microsoft Baseline Security Analyzer?

6. ?

7. Microsoft Baseline Security Analyzer , , ?

8. ?


II.

: .

: Windows, 10-Strike LanState Pro, Internet.

: 1) .. Microsoft. 3. . . - URL: http://www.intuit.ru/department/itmngt/riskanms/3/5.html ( : );

: 1) .. . .: , 2008. 208 .; 2) . . 3- . . .. : -, 2007. 3) .. . - . .: . , 2007. 300 .

Lifecycle Security ( " "), Axent, Symantec [1].

Lifecycle Security - . , , . , Lifecycle Security " ", , (, -). , , .

Lifecycle Security 7 , (. 7.1).

. 7.1. LifeCycle Security

: Assess risk ; design security roadmap - ; select & implement solutions ; conduct training ; monitor security , implement incident responses & recovery .

. . 7.2 [1].

. 7.2.

. . () , (, ISO/IEC 17799).

- , , .. , .

" " , . (. - firewall), , . - , ..

"" . - (VLAN) , IPSec .. , , , , ( ). , (VPN) "" . , , , " " , . " ", , .

. , , . . , - , ( , ), , . .

, - , web-, . SQL- - , , SQL, . . , , .

. , .

, , . . , , . (), , . - . - , . 10-Strike LanState Pro. 10-Strike LANState - Microsoft Windows. WINDOWS NT / 2000 / XP / Server 2003 / Vista / 7.

: , , (/ ), (/), , .. :

  • IP - ;
  • MAC - ( );
  • ;
  • , ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • ;
  • SNMP-.

:

  • , , , , , ;
  • SNMP-;
  • " ";
  • (/ );
  • ;
  • (ICMP TCP);
  • ;
  • ;
  • ;
  • , ( );
  • , , SMS E-MAIL, ;
  • ;
  • IP- ( );
  • ;
  • HTML- ( ).
  • HTML- ( DNS , IP MAC-);
  • , , / ;
  • .

- . , . LanState Pro (. 7.3).

. 7.3.

7.3 , Clerk1, Clerk2 Clerk3. Clerk3 . : (Main server) (SQL server). IP-, Boss . () Cisco. IP- . , . . 7.4 , . . 7.4., , , - Xerox Phaser 3100 MFP.

. . IP- .

. 7.4.

 

1 10-Strike LanState Pro .

2 , ( ) .

3 , .

4 .

5 ;

6 ?

7 ;

8 ;

9 .

10 , , , , , .

11 doc, 1 8. , , , ..

1) Lifecycle Security?

2) ?

3) ?

4) ?

5) ?

6) ?

7) ?

8)

9) ?

 





:


: 2016-09-03; !; : 732 |


:

:

.
==> ...

1427 - | 1398 -


© 2015-2024 lektsii.org - -

: 0.056 .