Basline Security and Itil
Basline Security and Itil
Reviewer
Authoriser
Effective Date:
Review Date:
MAINTAINED AN INVENTORY
RECORD FOR EACH SERVER THAT
CLEARLY DOCUMENTS ITS
BASELINE CONFIGURATION AND
RECORD EACH CHANGE TO THE
SERVER.
THOROUGHLY TEST AND VALIDATE
EVERY PROPOSED CHANGE TO
SERVER HARDWARE OR SOFTWARE
BEFORE MAKING THE CHANGE IN
ORGANIZATION SECURITY THE PRODUCTION ENVIRONMENT.
DISABLE AUTOMATIC
ADMINISTRATIVE LOGON TO THE
RECOVERY CONSOLE
CONFIGURE REGISTRY
PERMISSION. PROTECT THE
REGISTRY FROM ANONYMOUS
ACCESS. DISALLOW REGISTRY
ACCESS IF NOT REQUIRED.
REGISTRY SECURITY
CONFIGURATION SET MAXCACHED SOCKETS
(REG_DWORD) TO 0
SET SMBDEVICEENABLED
(REG_DWORD) TO 0
DELETE ALL VALUE DATA INSIDE
THE NULLSESSIONPIPES KEY.
DELETE ALL VALUE DATA INSIDE
THE NULLSESSIONSHARES KEY.