Scanning for Secure Configuration


In addition to scanning for missing security updates, MBSA scans for system configurations that are not secure. For a detailed list of what is checked by this scan, see the MBSA documentation at: http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/tools/tools/mbsawp.asp

The secure configuration scan can be done in the following phases

  • Perform the scan.

  • Analyze the scan.

  • Correct any issues that you find.

These phases are described below.

Performing the Scan

Run MBSA and deselect Check for security updates when performing the scan.

Analyzing the Scan

The resulting report will appear similar to the patch scan you performed earlier. The only difference is the link How to correct this will be available when issues are found. When you click the link, a page will appear with the details of the issue found, the solution to the issue, and instructions to correct the issue.

Compare the issue details against your security policy and follow the instructions if the issue is not addressed by your policy.

Correcting Issues Found

Choose the link How to correct this . In the resulting page, the solution and instructions explain the steps that you need to take to correct the issue.




Improving Web Application Security. Threats and Countermeasures
Improving Web Application Security: Threats and Countermeasures
ISBN: 0735618429
EAN: 2147483647
Year: 2003
Pages: 613

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net