Buy Used
Used - Good See details
$19.79 & eligible for FREE Super Saver Shipping on orders over $25. Details

or
Sign in to turn on 1-Click ordering.
 
   
Sell Back Your Copy
For a $2.06 Gift Card
Trade in
Have one to sell? Sell yours here
Microsoft® Windows® Security Resource Kit, Second Edition
 
 
Tell the Publisher!
I'd like to read this book on Kindle

Don't have a Kindle? Get your Kindle here, or download a FREE Kindle Reading App.

Microsoft® Windows® Security Resource Kit, Second Edition [Paperback]

Ben Smith (Author), Brian Komar (Author), The Microsoft Security Team (Author)
4.0 out of 5 stars  See all reviews (5 customer reviews)


Available from these sellers.


Textbook Student FREE Two-Day Shipping for Students. Learn more


Book Description

0735621748 978-0735621749 April 27, 2005 2nd

Now fully updated and revised, this official Microsoft RESOURCE KIT delivers the in-depth information and tools you need to help protect your Windows-based clients, servers, networks, and Internet services. Security experts Ben Smith and Brian Komar, working in conjunction with the Microsoft Security Team, explain how core Windows security internals work and how to assess security threats and vulnerabilities, configure security features, monitor and respond to security events, and effectively apply security technologies and best practices. You’ll find new information on Microsoft Windows Server™ 2003 Service Pack 1, Windows XP Service Pack 2, and Microsoft Office 2003 Editions. And you’ll get essential tools, scripts, templates, and other key resources on the CD.

Get in-depth guidance on how to:

  • Build security considerations into the design of Active Directory® objects, domains, and forests; manage user accounts and passwords; apply Group Policy
  • NEW—Utilize the Security Configuration Wizard and Windows Update Services
  • Configure TCP/IP and the Windows Firewall, and address the unique security risks of mobile computing and wireless networking
  • Define security settings for domain controllers, IIS 5.0 and 6.0, Windows Terminal Services, and DNS, DHCP, WINS, RAS, and certificate servers
  • NEW—Design an 802.1x authentication infrastructure
  • NEW—Implement the security advances in Microsoft Office 2003 Editions, IIS 6.0, and the latest service packs
  • Perform security assessments and respond to security incidents
  • Manage security and privacy settings for Microsoft Office and Internet Explorer

CD features:

  • 20+ tools and scripts, including:
  • Placeholder script
  • Xcacls.vbs—to script file and folder permissions
  • EventcombMT.exe—to collect and search event logs from multiple computers through a GUI
  • Microsoft Encyclopedia of Networking, Second Edition, eBook
  • Microsoft Encyclopedia of Security eBook
  • Bonus content from additional Microsoft Press® security books
  • eBook of the complete RESOURCE KIT

A Note Regarding the CD or DVD

The print version of this book ships with a CD or DVD. For those customers purchasing one of the digital formats in which this book is available, we are pleased to offer the CD/DVD content as a free download via O'Reilly Media's Digital Distribution services. To download this content, please visit O'Reilly's web site, search for the title of this book to find its catalog page, and click on the link below the cover image (Examples, Companion Content, or Practice Files). Note that while we provide as much of the media content as we are able via free download, we are sometimes limited by licensing restrictions. Please direct any questions or concerns to booktech@oreilly.com.



Product Details

  • Paperback: 752 pages
  • Publisher: Microsoft Press; 2nd edition (April 27, 2005)
  • Language: English
  • ISBN-10: 0735621748
  • ISBN-13: 978-0735621749
  • Product Dimensions: 9 x 7.5 x 1.9 inches
  • Shipping Weight: 3.2 pounds
  • Average Customer Review: 4.0 out of 5 stars  See all reviews (5 customer reviews)
  • Amazon Best Sellers Rank: #807,681 in Books (See Top 100 in Books)

More About the Authors

Discover books, learn about writers, read author blogs, and more.

 

Customer Reviews

5 Reviews
5 star:
 (3)
4 star:
 (1)
3 star:    (0)
2 star:    (0)
1 star:
 (1)
 
 
 
 
 
Average Customer Review
4.0 out of 5 stars (5 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

20 of 21 people found the following review helpful:
5.0 out of 5 stars Terrific update to excellent security guide!, July 15, 2005
By 
Steven L. Umbach (Bartlett, Il United States) - See all my reviews
(REAL NAME)   
This review is from: Microsoft® Windows® Security Resource Kit, Second Edition (Paperback)
I have previously done a review of the First Edition of the Microsoft Windows Security Resource Kit which I was very impressed with. All what I said for that book still applies. The first book applied to Windows 2000 and XP Pro. Since then there has been a major upgrade for XP in SP2 and the introduction of Windows 2003 which the Second Edition covers. As with the first book this edition is great for anyone that wants to learn how to secure their Windows 2000/2003/XP Pro operating systems/networks and is geared mostly to administrator types though anyone with such interest including power users will find it extremely helpful.

In just under 700 pages no book can be all inclusive about Windows security. The Windows Security Resource Kit goes into detail on many commonly implemented topics like password/account policy and on others it shows you the basics of what is possible and then refers you to online documantation/white papers if you are interested in a full implementaion which keeps the book affordable, readable, and under 10,000 pages. For example there is a full chapter 25 with detailed instruction on how to implement 802.1X security for wired and wireless networks. For Software Restriction Policies there are three pages but that is enough to make a user aware of what SRP is, how it can help you prevent users from installing and running unathorized applications, and the basics of how to implement it. As a MCSE in Windows 2003:Security and a common newsgroup participant I am often amazed at the number of admnistrators that are not aware of many the security features of Windows 2000/2003/XP Pro such as SRP or in particular ipsec. They would benefit tremendously from this book.

The two chapters on privacy were dropped and more room is devoted to W2003/XP Pro. Though a lot of the content is the same as the previous version much as been revised or added. Below are some that I considered of note though my list is not all inclusive of changes.

CH3. A much better table with descriptions of well known sids.
CH8. Using EFS with Webdav to keep files encrypted on the network and sharing of EFS files.
CH9. Full list AND description of all services for Windows 2000/2003/XP Pro.
CH10. Windows firewall including how to configure for scope and exceptions, using Group Policy or scripted intstallations using netfw.inf. Improvements for ipsec in Windows 2003 including default exemption handling.
CH.11 Group Policy for wireless networks and Software Restriction Policies.
CH.12 Interet Explore securtiy and pop up blocker.
CH.15 One of my favorite chapters on auditing. Includes tables with listing of more Event ID's for object access and policy change.
CH.17 Listed specific service recommendations for domain controllers for both Windows 2000/2003 and also listed a recommended ipsec filter for securing a domain controller.
CH.19 Much is changed in 2003 Terminal Servies. - Use of Software Restriction Policies, smart card logon, and SSL for TS with SP1.
CH.22 For RRAS a big change is the cability of remote access quarantine control. A step by step is given with a link to sample scripts to use or modify.
CH.23 Implementation of role separation for certificate authorities.
CH.24 IIS 6.0 is disussed with it's security capabilities such as default install state, Automatic Health Monitoring, and the all important Application Isolation.
Ch.25 A whole step by step chapter on 802.1X for wired and wireless networks including Remote Access Policies, IAS, and deploying user and computer certificates. 802.1X can greatly increase security of WEP by using dynamic wep and forcing key renewal if you still have to use WEP.
CH.27 Briefy discusses Windows Update Services and its advantages.
CH.29 How to install and use the Windows 2003 SP1 Security Configuration Wizard to help select a computer profile for "hardening" to disable uneeded servces, configure audit policy, and use ipsec filters to block uneeded ports! In my opinion this is a tremendous tool that also has a rollback capability. New features of netstat are shown [note that netstat -b can be used to show executeable to port use though not covered in the book]. Two extremely helpful new tools - portquery and port reporter.
CH.31 Great table on using built in and third party tools to capture state of the computer for incident response investigation. I am surprised however that msinfo32 was not mentioned as you can use it to generate a very useful report to a .nfo file.

There is much discussion throughout the book on use of ipsec to protect your network with either ESP/AH encryption/integrity or the use of an ipsec "filter" policy to manage access to computer ports. Included are examples of ipsec filters for domain controller, wins, and DHCP. As much as I like the book I disagree with the recommendation on pages 375-376 on implementing ipsec for the domain by implementing a client/respond policy for the domain and then a server require ipsec policy for the domain controller container. Refer to KB254949 for more details and be sure to throughly test and ipsec policies on a test domain before implementing. Poorly planned ipsec implementation can cause havoc on a domain. I highly recommend that you read the white paper on Improving Security with Domain Isolation to see ipsec can do to protect your domain with the proper ipsec policies.

All in all I still believe that the Microsoft Windows Security Resource Book is a top notch book for anyone to own who wants to learn how to maximize security on their computer or network within their risk manangement paramaters. The changes in Windows XP Pro SP2 and more so Windows 2003 are very significant. If you already own the First Edtition but have upgraded to Windows 2003 or want to learn more about how Windows 2003 can improve your security then this book is for you.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


1.0 out of 5 stars 17 Days late and still no book, August 17, 2011
Amazon Verified Purchase(What's this?)
This review is from: Microsoft® Windows® Security Resource Kit, Second Edition (Paperback)
I ordered my book on 8/5 and it's 8/22 today. Still no book and I am close to 10 chapters behind in my accelerated learning class. How convenient that they deleted my first review to make sure they don't look bad to the public. I ordered my book on the 5th and never got the book as of today. This company has made 0 attempt to make up for my inconvenience. Thanks for nothing.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


5.0 out of 5 stars Security is in, June 26, 2007
By 
Debra A. Brunson (Fredericksburg VA) - See all my reviews
(REAL NAME)   
This review is from: Microsoft® Windows® Security Resource Kit, Second Edition (Paperback)
Have not read the book totally but I have obtained very useful information from what I read.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews



Only search this product's reviews



Inside This Book (learn more)
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
terminal services, authentication infrastructure, security incidents, security templates, block inheritance, client authentication, global catalog, domain member, key recovery agent, default domain policy, batch job, object manager, token object, domain isolation, remote installation services, user remote access policy, incident response leader, system key password, multiple software updates, remote access account lockout, disabling this service, flooding attack protection, patch management tools, quarantine filters, security template settings
Key Phrases - Capitalized Phrases (CAPs): (learn more)
Windows Server, Active Directory, Group Policy, Service Pack, Internet Explorer, Microsoft Windows, Knowledge Base, Additional Information, Best Practices, Certificate Services, Windows Firewall, Securing Common Services, Securing the Core Operating System, Control Panel, Full Control, Domain Admins, Automatic Updates, Remote Desktop, Microsoft Office, Remove Programs, System Key, Enterprise Admins, Using Patch Management Tools, Microsoft Press, Windows Update
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Back Cover | Surprise Me!
Search Inside This Book:

What Other Items Do Customers Buy After Viewing This Item?


Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
 

Your tags: Add your first tag
 

Sell a Digital Version of This Book in the Kindle Store

If you are a publisher or author and hold the digital rights to a book, you can sell a digital version of it in our Kindle Store. Learn more

Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 


Active discussions in related forums
Search Customer Discussions
Search all Amazon discussions
   
Related forums



So You'd Like to...



Look for Similar Items by Category


Look for Similar Items by Subject