Friday, August 09, 2002


Zorak Update


11:46 PM 8/8/2002


Patch OS, SQL Server


Via pcAnywhere:

Connect to 64...130


Open TCP/IP Ports




1. Start > Run... > secpol.msc [Run]

2. Select: Security Settings > IP Security Policies on Local Machine
> Secure TCP Server

3. R-click: Un-assign

4. Minimize

Note: could I do this by just opening port 443?




Check Configuration Against MS List


1. Run MS Baseline Security Analyzer

2. Scan a Computer : Start Scan

Scan Time: ~5 min




The latest service pack for this product is not installed. 

MS02-029 Unchecked Buffer in Remote Access Service Phonebook Could Lead to Code Execution (Q318138)
MS01-022 WebDAV Service Provider Can Allow Scripts to Levy Requests as User
MS02-027 Unchecked Buffer in Gopher Protocol Handler Can Run Code of Attacker's Choice (Q323889)

Run Windows Update


1. http://v4.windowsupdate.microsoft.com/en/default.asp

2. Install SP3 Exclusively - removed other two fixes.


SP3 Install


1. Archive Files

2. Restart

3. Restart OK


Repeat Check Configuration Against MS List


X - Can't run MS Baseline Security Analyzer - Not Responding.

Restart.

After second restart, can't run it again. Can't run MSIE.


Could it be the second NIC again? I can't open Network Ctrl Panel. But
the device mgr says that the Intel 82559 #2 is disabled. All ports still
open.


Test services


port scan - show host responses

ping ip

ping www.cadent.com

http://cadent.com/

email Send & receive - generate new email from external account.


Results


pcAnywhere - flashing cursor on console

port scan - sees ports (all ports are open!)

ping ip - ok

ping www.cadent.com

http://cadent.com/

email Send & receive - generate new email from external account. -
pcAnywhere crashed and won't reconnect. Mail goes in and out

No comments: