Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Security Basics
RE: SIM questions. Aug 20 2008 05:45AM
Andy Cuff (Talisker) (SecurityLists securitywizardry com) (1 replies)
Height of paranoia Aug 27 2008 03:55PM
WALI (hkhasgiwale gmail com) (7 replies)
It's a given that all workstations have XP firewall enabled, an enterprise
grade antivirus and Windows defender installed. I am the security guy.

The need is that there are a couple top management executives that have
highly confidential data/emails residing on their desktops, and quite a few
times, the information seems to have leaked out.

Discounting the 'word of mouth' of their secretaries or the end recipients
of that information, I want to take as many precautions from the IT security
perspective as possible and even bring our domain admins and helpdesk
personnel into the realm of doubt.

We have a Windows 20003/exchange 2003 environment of about a 2000 users.
Here's what I have thought:

1. If I detach these executive PCs from the domain. Mails will stop landing
in MS Outlook. Is there a way around? Also DNS security doesn't register any
PC unless it's joined to a domain. I thought of this to make it out of
bounds by system/domain admins. I have a feeling that their port 3389 gets
accessed when they aren't around.

2. Alternatively, create a private vlan on the core switch and make these
PCs as it's members. Put an ACL and deny everything except ports required to
authenticate to AD and exchange and few other web applications. Monitor port
memberships regularly.

3. How to secure their emails from exchange admins (it's the height, I
know).

Pls advise!!

[ reply ]
Re: Height of paranoia Aug 28 2008 10:00PM
Chad Perrin (perrin apotheon com)
Re: Height of paranoia Aug 28 2008 02:06PM
pinowudi (pinowudi gmail com)
Re: Height of paranoia Aug 28 2008 12:33PM
David J. Bianco (david vorant com)
RE: Height of paranoia Aug 28 2008 12:07PM
Rivest, Philippe (PRivest transforce ca) (1 replies)
Securing the internet connections Sep 19 2008 01:57PM
WALI (hkhasgiwale gmail com) (5 replies)
Re: Securing the internet connections Sep 22 2008 07:24PM
Martin Spinassi (martins listz gmail com)
Re: Securing the internet connections Sep 21 2008 06:40PM
Colin Grady (colin grady gmail com)
Re: Securing the internet connections Sep 20 2008 05:37PM
Matt - MRS Security (matt mrssecurity com)
Re: Securing the internet connections Sep 19 2008 08:25PM
Gleb Paharenko (gpaharenko gmail com) (1 replies)
Re: Securing the internet connections Sep 21 2008 06:42PM
WALI (hkhasgiwale gmail com)
Re: Securing the internet connections Sep 19 2008 06:04PM
ॐ aditya mukadam ॐ (aditya mukadam gmail com)
Re: Height of paranoia Aug 28 2008 08:48AM
Adam Pal (pal_adam gmx net) (1 replies)
RE: Height of paranoia Aug 28 2008 09:22PM
Scott Race (scott jda-networks com)
RE: Height of paranoia Aug 28 2008 03:14AM
Murda Mcloud (murdamcloud bigpond com)
Re: Height of paranoia Aug 28 2008 01:09AM
Adriel Desautels (adriel netragard com)







 

Privacy Statement
Copyright 2008, SecurityFocus