Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Focus on Microsoft
Windows 2000 Server hardening Oct 09 2003 11:14PM
Scott (scott cleven-mulcahy com)
These are settings I typically use. They cover TCP and NBT DOS protection.

HKLM\System\CurrentControlSet\Services\AFD\Parameters\DynamicBacklogGrow
thDe
lta Dword:A

HKLM\System\CurrentControlSet\Services\AFD\Parameters\EnableDynamicBackl
og
Dword:1

HKLM\System\CurrentControlSet\Services\AFD\Parameters\MaximumDynamicBack
log
Dword:4E20

HKLM\System\CurrentControlSet\Services\AFD\Parameters\MinimumDynamicBack
log
Dword:14

HKLM\SYSTEM\CurrentControlSet\Services\DnsCache\Parameters\QueryIPMatchi
ng
Dword:1

HKLM\SYSTEM\CurrentControlSet\Services\MrxSmb\Parameter\RefuseReset Dword:1

HKLM\SYSTEM\CurrentControlSet\Services\Netbt\Parameters\NoNameReleaseOnD
eman
d Dword:1

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ArpAlwaysSourceR
oute
Dword:0

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\DisableIPSourceR
outi
ng Dword:2

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableAddrMaskRe
ply
Dword:0

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableBCastArpRe
ply
Dword:0

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\EnableICMPRedire
ct
Dword:0

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\KeepAliveTime Dword:
493E0

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\MaxUserPort
Dword:FFFE

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\SynAttackProtect

Dword:2

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxConnectRes
pons
eRetransmissions Dword:2

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxConnectRet
rans
missions Dword:2

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxDataRetran
smis
sions Dword:3

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxHalfOpenRe
trie
d Dword:190

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TcpMaxHalfOpen
Dword:1F4

HKLM\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\TCPMaxPortsExhau
sted
Dword:5

------------------------------------------------------------------------
---
Visual & Easy-to-use are not words that you think of when talking about
network analyzers. Need to share problem information with colleagues that
do not read packets?

Download ClearSight Networks Analyzer and see a new network analysis tool
that makes the complex - easy
http://www.securityfocus.com/sponsor/ClearSightNetworks_focus-ms_031006
------------------------------------------------------------------------
---

[ reply ]







 

Privacy Statement
Copyright 2008, SecurityFocus