Chapter 4. SecurityIn This Chapter
|
What's New
Security was a major focus area for Microsoft during the
development of Windows Server 2003. In fact, Microsoft created its
new Trustworthy Computing initiative during the development of
Windows Server 2003 and actually
As a result, Windows Server 2003 is perhaps the most secure out-of-the-box version of Windows to date. However, that does not mean you can simply install Windows Server 2003 and have a completely secure server. Security is always a trade-off between security and functionality, and you need to configure your servers to strike the appropriate balance for your environment. Windows Server 2003 does make it easier to secure your environment with a variety of security-specific tools, data encryption, and so forth.
Another major security problem Microsoft has tried to deal with
over the years is secure code. Viruses, malicious scripts, and
other forms of unsecure code have plagued Microsoft operating
systems for
|
Microsoft's New Security Philosophy
In mid-2002, an unprecedented series of major security flaws
were uncovered in Windows 2000, Internet Explorer 6.0, and IIS 5.0,
which are some of Microsoft's most strategically important
products. The resulting media
Other practices changed, too. For example, Microsoft products
usually go through a beta cycle and then a release candidate (RC)
cycle. During the RC phase, new features aren't supposed to be
added to the product and major changes aren't supposed to be made.
The RC phase is normally designed to catch and fix bugs; any
feature that has
The new security philosophy resulted in several important
changes. For example, IIS has been a major area for security
vulnerabilities, due primarily to the fact that IIS is installed by
default on all Windows 2000 Server computers. Windows Server 2003
A major portion of Microsoft's new security philosophy can be
reflected in the default configurations for its products. In the
past, Microsoft's goal was to provide a default configuration that
This new philosophy puts a lot more of the security
|