Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Network Neighborhood

Status
Not open for further replies.

jdavis37

MIS
Jul 9, 2002
233
0
0
US
I have a stand alone NT 4.0 Server w/IIS 4.0 and IE 6.0. I have the lastest service packs 6a. I'm using an external ip address. I have network gateway services installed. I'm using frame type 802.3. Under network neighborhood I can see somebody elses network and two workstations so I know they can see me. What do I need to remove or add to prevent them from seeing me? I know they have a Novell server "I think they have 802.2 setup for frame type" and I believe the two workstations are either XP or 2000
 
Remove file and print sharing for Novell, and MS if using it. That should work.
 
I can still see three 2000 workstations. Should I remove the following protocol - NWLink NetBios. I have the following services running Computer Browser, Novell Client for Windows NT, RPC Configuration Server, Simple TCP/IP Service Workstation.

Thanks.
 
If not in a blended network (Windows + Novell) then you shouldn't need the Novell Client at all.
Eryctus
 
Get a router. You are a sitting duck with out one. I got hacked 3 times in 2 weeks, had to reformat and re install all 3 times. I don't care what they (Microsoft, or anyone else who *thinks* they know what they are talking about(sorry to sound so rude)) says, the only way to keep your server safe (especially with IIS) is to disconnect it from the internet all together, unless you get a router.

A router, another box (not a Windows box, a *nix box) used as a firewall, or something, or you are just saying "Come right on in and mess my system up! Free coffee and BAWLS for all who attend!" (BAWLS is a cafinated beverage popular among hackers and gamers).

Look, I implemented everything I could find from securityfocus.org, Microsoft's website, other forums, this forum--the first time I got hacked. Then not 2 days later (I remained disconnected from the internet until it was all done), I got hacked again---and again. The only thing I dind't do was get a router, which was the first thing suggested to my by an associate. Nah, I had to be cheap about it, and think I knew more than the hackers. Ha! Look what happened.

Moral of the story? Get a router. It's the cheapest and easiest way to protect yourself. Your server will still work just fine, because most routers are highly configurable (I have a server running behind my router, it was a snap to set up). I got one of those Linksys 4 port jobs, and it was the best 80 bucks I ever spent. Now, *I* can't even hack my own system (mainly because I have "Remote Administation" disabled).

Good luck, I hope you get something in there soon. Scirpt kiddies have a stiffy for our systems (2000 and XP because of full Unix porting). Our boxes are the most perfect thing to put Sub7 Trojans on to carry out a balistic DoS attack. Without a router, or external firewall, your box can be turned into a trojan supernode. Do something, and do it fast. :) Hope I was of some help...
--OR--
Thanks for the help...
--Rich

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top