.
1. ?
2. ?
3. ?
4. .NET ? ?
5. ? .
6. Internet ?
: . 5. 1
:
: , , .
:
IBM PC/AT.
Windows 2000/2003/XP.
Windows XP Professional . Windows XP Professional , , .
. , . Windows XP Professional . .., .
Windows 2000 Kerberos v 5, NTLM. Windows XP Professional, , .
Windows XP Professional (Activ Directory), , , . . , . :
- ;
- ;
- .
. (access control, ACL) NTFS , . , , , .
. , .
|
|
MMC (Computer Management) . , , , , . , .
. Windows XP Professional (Administrator). , (Domain Administrator).
(Power Users) , . .
(Users) . . , , .
(Guests) Guests . , , . .
(ACL) / .
Windows XP Professional , . Windows XP Professional , .
. , . , . , , , .., Active Directory.
.
. EFS (Encrypting File System) .
.
Windows XP Professional , . , , . , .
Windows XP Professional , . .
|
|
. Windows XP . , . , . , Guest, .
. , . .
, , , .
force network logons using local accounts to authenticate Guest Guest . , , , Security Properties Shared Documents Properties.
. , , Windows XP Professional . , . .
, (Local Security Policy).
. , .
, , , . EFS . , .
. , - , . , . .
EFS. EFS CriptoAPI. ( ) : . EFS , .
EFS DESX 3DES. RSA Base RSA Enhanced EFS .
|
|
, . .
EFS NTFS. (EFS) NTFS. EFS - NTFS. , . : , . Windows XP (Offline Files and Folders).
, , , . EFS NTFS. EFS Windows XP Professional ,
EFS. EFS , , , . EFS , , . . , , ACL
, . , , . , EFS .
EFS NTFS, ("") . EFS , - . , , ( , ).
EFS Windows - . - .
EFS. EFS. , . EFS , / . EFS , , .
EFS , , EFS .
EFS EFS. (Public Key Infrastructure, PKI), , . EFS . EFS, .
|
|
. NTFS ( ). "", , . EFS :
, ;
, ;
( );
.
. Windows XP , . Windows 2000 - .
, , . , . - .
. . , (My Computer) (Tools) (Folder Options), (Offline Files) (Encrypt Offline Files To Secure Data) (. 1).
. 1. .
EFS Web-. , Web- Web Distributed Authoring and Versioning ( Web), WebDAV. Web- , Microsoft .
Web- , . Web- HTTP. EFS, Windows 2000 Windows, EFS Kerberos.
EFS Web- - , . , EFS , . , , , , .
Web- EFS . , Web- EFS. Web- - , , , .
EFS , , Web-.
EFS Web- . EFS.
- , (certification authority, CA), , . Windows XP Professional , .
. Windows XP Professional (Personal) . , . .
|
|
Documents and Settings\<_ >\ApplicationData\Microsoft\SystemCertificates\My\Certificates . . ( ) "" .
. (cryptographic service provider, CSP) - Base CSP, Enhanced CSP, %SystemRoot%\Documents and Settings\<_ >\Application Data\Microsoft\Crypto\RSA. RSA .
, RSA - (user's master key). 64 . 3DES, . .
Triple DES , . RSA .
/ Windows 2000 . Microsoft Active Directory. IPSec LZTP/IPSec VPN Windows XP Routing Remote Access .
. - , .
/ Windows XP Professional . Windows.NET Server CA . .
. , Active Directory.
. , .
Windows XP : , (keyring).
. , . ( , .)
.509 My Store. Remember my password ( ), .
Windows XP (, Kerberos, NTLM, SSL). , .
. Stored User Names and Passwords ( ). (Local Security Settings). , .
Remember my password , . , *.domain.com. , .
, . , . , , .
, , . , . .
Windows XP Professional , Windows XP Home Edition Windows XP Professional * (. 2).
. 2. .
(keyring) . User Accounts .
. . , .
, , . (*).
. . , . , . . .
, API API Platform Software Development Kit (SDK).
Windows XP Professional , . , , . Windows XP Professional, , .
, , Microsoft Windows 2000 Terminal Services. " 1* +L . , , , - , . Windows , , , .
, , , , 2 . 128 . , , - , ! "" (hibernation mode) , .
Windows XP Home Edition Windows XP Professional . Windows XP Professional .
Windows XP Professional , Window XP Home Edition. . .
- Internet Connection Firewall. Internet Connection Firewall Windows XP Professional - , DSL.
ICF. ICF Windows XP Professional - . , : , . .
Windows XP Professional , , ICF . , . , ICF , .
. , , ICF ICS. ICF , .
ICF . ICF Network Address Translation (NAT) . NAT, . , , .
ICF Windows XP Professional , . : .
ICF Windows XP Professional , . ICF , .
, . Windows XP , , . : (low), (medium) (high).
:
;
;
.
, . , "", , .
, , Microsoft Authenticode . , .
-, "". , , -, ILOVEYOU.VBS, .
, .
. Active Directory. . Windows XP Windows 2000. Windows 2000- , Windows XP .
Group Policy Microsoft Management Console (MMC) , , . : unrestricted ("") disallowed (""). unrestricted, , . . , . - ( disallowed), , .
IP- - , , . , :
;
, ;
( ) ;
( ).
, , .
IPSec. IP , IP- , , , . , . - . . , .
Internet Engineering Task Force (IETF) IPSec - , , . IPSec Windows 2000 Windows XP Professional. , - . TCP/IP . Windows 2000 Windows XP Professional , .
IP- , , . IPSec Windows XP Professional Windows 2000 , , IPSec, .
. IPSec . .
.
- , - , , .
IPSec . Windows 2000 Windows XP Professional.
IPSec . IPSec , . , , ( ) ( ). , . . .
( ) IP- . , Windows XP Professional , IPSec, . , Windows 2000-, , .
- - , , . , , .
- :
;
, , , , ;
, .
PIN
- PIN- (Personal Identification Number - ), . -, . - PIN-.
PIN- . ( , , ) . , , . , PIN- , . - - PIN-, . - .
-. Windows 2000 - -, PC/SC (Personal Computer/Smart Card), PC/SC Workgroup, Plug and Play. PC/SC 1.0 Windows - ISO 7816-1, 7816-2 7816-3.
- , RS-232, PS/2, PCMCIA USB. - RS-232 , PS/2 . $/2- , .
- Windows PnP-. Windows Hardware wizard.
Windows 2000 Server Windows XP Professional - - Windows. , Windows. Microsoft -, Windows.
-. - , . Windows 2000 Server Windows XP Professional , Kerberos v5. - Kerberos v5 .509 v3, Windows 2000 Server.
-, , . -. , .
- . , . , Netexe Runas.exe, . Windows XP Professional -.
Windows 2000 Windows XP Professional , Kerberos - ( -).
Kerberos v5 (, , ) . Kerberos v5 .
Kerberos , , . . , , . Kerberos v5 .
Kerberos v5 () . .
Kerberos, Active Directory.
- (, ), , . KDC . , (ticket-granting ticket), (Local Security Authority, LSA) . , , . - "" , ("") .
Kerberos. Kerberos Active Directory.
Kerberos v5 Windows 2000 Server Windows XP Professional , , , Windows 2000 Windows XP Professional. , NTLM.
. , Windows. Microsoft Windows XP , , , Windows, ( Windows ), , . , , , , .
. 3. .
Microsoft Windows XP , : . Windows XP, , :
■ ;
■ ;
■ , ;
■ , ;
■ ;
■ .
, (Limited User), , . , .
Windows , Windows : ► ► . (. 5-2)- . .
, Windows.
?
Windows : ► ► . . , .
, .
. .
. ( ), , . , , , , .
. , .
. . , Windows XP . (. 5-3)
. 4.
(, ), .
. .
. .
.
1. .
2. .
3. .
4. .
5. .
6. .
7. .
.
1. ?
2. ?
3. ?
4. .NET ? ?
5. ? .
6. Internet ?
.
1. WINDOWS 2000 Server. / . . .. .. . .: -, 2002.