SI
SI
discoversearch

We've detected that you're using an ad content blocking browser plug-in or feature. Ads provide a critical source of revenue to the continued operation of Silicon Investor.  We ask that you disable ad blocking while on Silicon Investor in the best interests of our community.  If you are not using an ad blocker but are still receiving this message, make sure your browser's tracking protection is set to the 'standard' level.
Pastimes : Computer Learning

 Public ReplyPrvt ReplyMark as Last ReadFilePrevious 10Next 10PreviousNext  
To: thecow who started this subject11/21/2002 1:04:05 AM
From: mr.mark  Read Replies (1) of 110652
 
excellent advice regarding win2000 default admin acct from Frank on the grc.com security discussions site....

"One best practice is to rename the admin. account to something not obviously an administrator, with a strong password, and use that as your real admin. account. Don't surf with it if possible. Then create an account called Administrator and limit its privileges to very little. That way someone coming in looking for your admin. account has some extra barriers in the way."

and more, this from Paul S. Nofs....

"A strong password for administrator accout is best. SYSKEY will create a 128 byle random password on floppy. Let them find this administrator account, and let them waste their time on that brick wall of a password.

If you follow the guidlines from this site,

trustedsystems.com

you will be in very good shape. In theory you would not need a firewall or antivirus because malware wouldn't have permission install or operate under a limited liability user account. Even a password would be option if no one else could log on locally.

And only use that account for administration, never for email, browsing, or running anything but certified and triusted administrative tools.

The reason why Linux/Unix is so secure is that only a fool logs on with root access unless they are doing chores. Logging on with administrative rights is roughly the same as logging on as root.

So create strong administrator passwords and create a limited "liability" user account. If you were careful and thorough, you should be able to go anywhere and click anything."
Report TOU ViolationShare This Post
 Public ReplyPrvt ReplyMark as Last ReadFilePrevious 10Next 10PreviousNext