Vulnerability assestment for windows servers - Restrict access to the database to allowed IPs only


hi everyone...

need here, title above recommendation nameless audit firm..

the description of issues here ;-

 a database server listening on remote port. remote host running mssql, a database server microsoft. possible extract version number of remote installation server pre-login response.

we running on windows server 2003 sp2, have mssql running on machine.. 

therefor,  i'm thinking set ipsec filter list.. gonna effect all other's application inside server.. so maybe there other way it.. maybe in database self...  so take while me solve recommendation. here can give me tips solve this.

hi,

you can setup ipsec policy block/allow mssql port, should not affect other ports, ip address. please refer following articles:

how block specific network protocols , ports using ipsec
http://support.microsoft.com/kb/813878

ipseccmd
http://technet.microsoft.com/en-us/library/bb490922.aspx

thanks.


this posting provided "as is" no warranties, , confers no rights.


Windows Server  >  Security



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client