Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Server security setup / suggestions?

Status
Not open for further replies.

FoxPacific

Programmer
Jun 22, 2001
70
US
Need to track well all intrusions or attempted intrusions. Not sure what software I need for this. Have been using some freeware, but not sure if it is truly within the licensing. Mostly, I want to know that no one is even attempting to hack my server. (Currently using MyNetWatchman, in conjunction with Kiwi Syslog Daemon, and Atomachron).

The router IP is supposed to be static (DSL). However, if it does change, I need to be notified, since VPN access depends upon the IP address. (Using DirecUpdate, DynDNS.org and Linksys router for this.)

I would like some cost-effective secure means of sending email. Note that our workstations are in multiple locations, and currently, we use outlook on the client machines rather that on the server, to keep the worms away. (Not currently using anything. PGP is the most promising I have looked at so far).

As I understand it, some web hosts filter email for viruses before sending/receiving. I'm thinking we should switch to one of these. Who are they?

While I'm looking at a new web host, I would really like it if they used SSL or certificates, or something more secure than vanilla SMTP and POP connections.

What other kinds of stuff should I be running on the server to insure that junk doesn't get down on it? (Running ZoneAlarm. Thinking of ZApro. Would like some server based anti-virus, like Norton, but have not gotten it done yet. Removed all email access from server instead, as a short term temporary solution. However, do not what to bring up the new server without this key functionality).

B. Here is a list of security/IP type applications that I have installed on the server that will be replace, or correctly licensed for the new server. I need similar functionality (at least), on the new machine.

Spybot search and destroy.
Popup Manager.
Kiwi Syslog Daemon.
MyNetWatchman.
Atomachron.
DirectUpdate (interfaces with DynDNS.org) (backup to linksys).
ZoneAlarm (I've been thinking we should upgrade to the pro version, and tie into router.).

Any insight or suggestions?

Aloha,

James
 
Have you tried enabling auditing and checking the event logs? Also running network monitor occasionaly to check out the network traffic?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top