Current location - Quotes Website - Collection of slogans - Develop server security policy
Develop server security policy
Summary of experience in setting up all navigation servers

Cancel anonymous access function

By default, the FTP server of Windows 2003 system allows anonymous access. Although anonymous access provides convenience for users to upload and download files, there are great security risks. Users can access the FTP server without applying for a legal account, and even upload and download files. In particular, some FTP servers that store important materials are easy to leak, so users are advised to cancel the anonymous access function.

In Windows 2003 system, click Start → Programs → Administrative Tools →Internet Service Manager to open the management console window. Then expand the local computer option on the left side of the window, and you can see the FTP server that comes with IIS5.0. The following network introduces how to cancel the anonymous access function by taking the default FTP site as an example.

Right-click the default FTP site project and select Properties from the right-click menu. Then the default FTP site properties dialog box pops up, switch to the tab of secure account, uncheck the box before allowing anonymous connection, and finally click OK, so users can't access FTP server with anonymous account, and must have a legal account.

2. Enable logging

Windows log records all the information of system operation, but many administrators do not pay enough attention to the logging function. In order to save server resources, the FTP server logging function is disabled, which is absolutely unacceptable. The FTP server log records the access information of all users, such as access time, client IP address, login account used, etc. This information is of great significance to the stable operation of FTP server. Once there is a problem with the server, you can check the FTP log to find out the fault and eliminate it in time. So be sure to enable FTP logging.

In the default FTP Site Properties dialog box, switch to the FTP Site tab and make sure that the Enable Logging option is selected so that you can view FTP logging in the Event Viewer.

Of course, what Tong Tong Net is talking about now is only the most basic and simple security settings, and it can't completely prevent the invasion of virus Trojans and hackers. If we want to strengthen the security of the server, we should further set up the server.