Home > Midmarket CIO Tips > Data centers and infrastructure for the midmarket > Locking down services on XP client workstations
CIO Midmarket Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

DATA CENTERS AND INFRASTRUCTURE FOR THE MIDMARKET

Locking down services on XP client workstations


Jonathan Hassell
09.20.2005
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


This tip originally appeared on SearchWindowsSecurity.com, a sister site of SearchSMB.com.


One of the easiest ways for crackers to exploit holes in your system is through open services. And lately, viruses have been masquerading as services listed in the Task Manager, making them harder to detect, clean and prevent. When you audit and close unused services, in addition to security benefits, you receive performance enhancement because stagnant programs aren't taking up available resources. Besides, a full security audit of your service can reveal some interesting details about your machine.

Windows XP comes with only two services that require open access to an external interface for normal operation: Terminal Services, or Remote Desktop Connection, and the Remote Access Service for answering dial-in calls.

Follow these instructions to manage services on your computer:

The following services ship with Windows XP. The list is not complete, but it includes the recommended state that each service shown should be in on your computer, assuming normal office functions are performed on the machine. On this list you'll see the name of the service, followed by a short description and my recommendation regarding the st


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Data centers and infrastructure for the midmarket
What do you know about data center outsourcing?
Pricing out Windows Server 2008 for virtualization cost efficiency
Data center strategy starts with the business
Desktop and application virtualization: Lessons learned
FAQ: What is unified communications, and why would I want it?
Virtualization technology creates hosts of problems for midmarket IT shops
Virtual servers key to consolidated data center
Fixed-mobile convergence saves firms costly mobile phone charges
Virtualization the center of county's 'disaster avoidance' plan
Five tips that could change your data center

Operating systems for the midmarket
From software prices to EHR security: The latest advice for CIOs
Pricing out Windows Server 2008 for virtualization cost efficiency
Midmarket data center management guides: Tips and best practices
How and why XP users should consider a Vista or Windows 7 migration
2008 top 10 technology articles: Social media, Vista, IT salaries
Top five technology trends -- and why you should give thanks
IBM, friends push 'Microsoft-free' world
Windows Vista: Just skip the thing?
IBM makes U-turn, joins OpenOffice
Linux desktop: Simpler, more secure than Windows

Information security management for the midmarket
Using key risk indicators to sell your information security program
IT security spending a bright spot in '09, with more growth predicted
Gartner: Vetting security of third-party partners in five steps
Locking down security in the move to electronic medical records
Security and risk management in the midmarket
Identity and access management planning guide for the midmarket
Information systems management for the midmarket
CIOs share advice on doing more with less
Get smart about patching security vulnerabilities
A CIO's advice for implementing single sign-on solutions

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


ate of the service.

As you can see from the list, you don't need very much to keep your Windows XP installation functioning, at least in a nondomain environment. Most of the enabled services just pose an unfavorable security risk compared to the reward, bring little or no benefit, consume resources and can be safely turned off.

While disabling unnecessary services is an excellent and fundamental step to hardening Windows, there are some other necessary items to accomplish to further secure the services that remain and any services that you may add in the future.

Peruse the following list of best practices and consider implementing them.


About the author: Jonathan Hassell is author of Hardening Windows (Apress LP), and is a SearchWindowsSecurity.com site expert. Hassell is a systems administrator and IT consultant residing in Raleigh, N.C., who has extensive experience in networking technologies and Internet connectivity. He runs his own Web-hosting business, Enable Hosting. His previous book RADIUS (O'Reilly & Associates), is a guide to the RADIUS authentication protocol and offers suggestions for implementing RADIUS and overall network security. Ask Hassell a hardening Windows question today.


Rate this Tip
To rate tips, you must be a member of SearchCIO-Midmarket.com.
Register now to start rating these tips. Log in if you are already a member.




DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Mid-market CIO Business Solutions on Data Integrity, Unified Communications, and Virtualization
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2007 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts