Breaking

Showing posts with label SERVER SECURITY. Show all posts
Showing posts with label SERVER SECURITY. Show all posts

Saturday, 6 January 2018

January 06, 2018

SQL Server Tutorials



The MS SQL server tutorials provide all the details needed for understanding the databases and how they perform. The user must know what SQL server is and what is required to make full use of it. SQL server 2008 and SQL server 2000 are the most widely used applications.

SQL Server: The tutorials about SQL Server have lessons about the server, different editions, how to create database, creating table, adding data, designer, views, stored procedures, logins, linked servers, and integration services. Basically the MS SQL server is a management system that is created to work on different platforms like laptops or large servers. It is used as the backend system for many websites and it can help a number of users. There are many tools that help in maintenance of database and other tasks like programming.

Server: The database systems that are based on server are programmed in such a way that they run with the help of a central server and any number of users will be able to have access to the data at the same time with the help of an application. The users can do multiple tasks like accessing the data, updating of data, and anything that they want to do. SQL server has features that help the application in all its functions.

Editions: There are many editions to SQL server 2008 and the user will choose the one that suits his requirements. For a free database management, the user will choose the Express or Compact edition. There is also an Evaluation edition which permits the user to try the Server 2008 for about 180 days. Some of the notable editions of SQL Server 2008 are:

Enterprise edition that has better availability and security for applications related to business; Standard edition that provides easy management of data management and to run departmental applications; workgroup edition for secured synchronization at the remote end, and to run branch applications; Developer edition that can be made use of by one user in testing, developing, and demonstrating the programs in any number of systems; Web edition for web hosters; Express edition for learning purposes; Compact edition meant for applications for desk tops, mobile services and web customers; and Evaluation edition for evaluating the purposes till the trial period is over.

Creating database: SQL server makes use of SQL Server Management Studio as the console for administration. It helps in creating databases, views, tables and so on, and to access the data, configuring the accounts, and to transfer data to other databases. The Object Explorer guides the user to databases and to files. The user can get results by writing queries on data. Any amount of databases can be created with SQL server Management. After creating a database, the user can change the configuration of the database with the help of options available. Tables can also be created with the help of the options. The user can control the type of data in each column and thus have integrity of the data maintained. Options such as editing and adding data are also available to the user. Re-entering the data is facilitated by writing a SQL script. The user can use and run the SQL query for inserting data, updating it or deleting it.

Query designer: This interface permits the user to create queries to be run against the database and to create queries which will include views or tables. It is very useful for the beginners who want to learn to use SQL as the syntax need not be remembered for creating queries.

View: A view in SQL server is store din the database and when run, it permits the user to see the outcome of it from multiple databases. This is particularly useful when many users want to access the data at various levels. They can have access to specific rows or columns of a table.

Stored procedures: These are of great value to the programmers when they work on databases. The programmers can make the procedures work from either the SQL Server management or any other application based on their requirement. The advantages of the stored procedures are many, such as quicker execution, less traffic, and security. The user can configure SQL server security accounts, create linked servers, database maintenance, create scheduled jobs, replication, text search and many more.

Logins: SQL Server helps in creating user logins for every individual who wants to access the server. Based on the requirement of the user, the logins can be created to enable access. Not everyone should be provided with access to server role. The server role is useful for performing any task in the server, create options of configuration, help in managing logins and permissions, and managing files.

Database Schema: It is a means of grouping the data and works as a container. The user can be assigned permission to a single schema so that he can access only the ones that they are permitted to. The schemes can be configured in a database. Linked Servers permit the users to connect to another server remotely.


January 06, 2018

NTP Time Server Security Solutions



The Network Time Protocol (NTP) is an Internet protocol designed to propagate accurate time around a computer network. NTP utilises UDP over TCP/IP to synchronise network time clients to an accurate time reference. This article describes the security aspects of the NTP protocol and specifically using MD5 keys to authenticate a time server.

The Network Time Protocol may be used to synchronise many time critical processes on distributed computers across a network. The NTP protocol is therefore a potential security risk. Hackers or malicious users could attempt to disrupt system synchronisation by attempting to modify or replicate NTP time stamps.

Luckily, NTP has an integral security feature to thwart attempts to tamper with system time synchronisation. NTP can use MD5 encrypted keys to authenticate time stamps received from a time server. Network time clients and devices can utilise secure keys to authenticate time stamps and ensure their source of origin.

NTP implements authentication by utilising an agreed set of keys between a server and client that are encrypted in time stamps. A NTP time server passes a timestamp to a client with one of a selection of keys encrypted and appended to the message. When a timestamp is received by the client, the security key is un-encrypted and checked against the list of stored secure keys. In this manner the client can ensure that the received timestamp originated from the expected time source.

The Network Time Protocol utilises MD5 (Message Digest Encryption 5) encrypted keys. MD5 is a widely used secure encryption algorithm that utilises a 128-bit cryptographic hash function. The algorithm outputs a fingerprint of the supplied key, which is appended to the timestamp.

UNIX and LINUX NTP installations store secure keys in a file named 'ntp.keys'. Each record in the file describes an authentication key in the format: 'key-number' 'encryption-code' 'key'. The 'key-number' is a reference to the key. The 'encryption code' describes the encryption algorithm in use, usually 'M' for MD5 encryption. The 'key' field is the agreed key that is to be encrypted by the encryption algorithm. A subset of 'trusted keys' may be specified in the NTP configuration file 'ntp.conf'. This allows a reduced subset of keys to be utilised by the server. Allowing compromised keys to be easily excluded from use. Trusted keys are specified using the 'trusted-keys' command followed by a space-delimited list of key references.

Many CISCO routers utilise secure MD5 authentication in the installed implementation of NTP. To enable a Cisco router to perform MD5 authentication you must follow a number of steps. Firstly, NTP authentication needs to be enabled using the 'ntp authenticate' command. Secondly, define an NTP authentication key using the 'ntp authentication-key' command. A unique reference number identifies each NTP key. The key reference number is supplied as the first paramater to the 'ntp authentication-key' command. Thirdly, use the 'ntp trusted-key' command to tell the router which keys are valid. The command's only argument is the reference number of the key defined in the previous step

The Windows 20002003XP operating systems adopt a SNTP (Simple Network Time Protocol) application for time synchronisation. The implementation used by Microsoft does not include authentication keys.

Essentially, secure key authentication is a method used to erradicate the possibility of the interception of timestamps for malicous purposes. Network time clients can be sure that timestamps have indeed emanated from the expected time reference and have not been intercepted for malicious purposes.
January 06, 2018

Online Proxies Server Security



One of the major problems faced by the internet is security. Spy ware, Trojan horses, viruses, malware, hacking and ad ware are some of the main issues. Most internet users don't want their credit card info and passwords to become visible to others. Nothing could offer 100% security.

Proxy servers hide your IP through unique numbers for every system. As it is static, one can't change it when messing up things. For hackers who find out the IP, they can get all info in case you are unlucky. Hence, it becomes highly important to hide the number.

Directions

While clicking on a button or link, the proxy browser sends information to web servers. When you have proxy at hand, the information is initially sent to the proxy server, and thereafter to the web server. In case the web server retrieves the IP, it would usually be of the proxy server.

It also functions from web server to computer. A major counter part of such proxies is that the proxy server owner could see all data (including credit card info and passwords) for installing proxies of someone trustworthy.

Write the port and IP of the proxy on a piece of paper after finding the proxy. Proxy installation process varies from one browser to another. After opening the internet explorer, check online options and click on connections tab.

Important Instructions

Check the LAN settings tab for those with LAN connection or DSL for those with dialup connection. Click on the settings button to choose your connection.

Now, enable the proxy server, typing the proxy port and IP in the port and address fields. Double click on OK till you are done.

Many people forget this step. Proxies, especially the free ones tend to become transparent, quit working or disappear. You, of course don't wish this to occur. Hence, it is important to check the proxy every then and now.
January 06, 2018

Fundamentals of Server Security



There are various threats to your server and with time the onslaught on the web environment is sure to increase, so to prevent any untoward incident from disrupting the growth of your business organization, you must definitely opt for server security and be aware of the fundamental requirements of securing your web server. You must be aware about hackers who are always on the lookout to flood servers with malicious software that might get installed in your network of computers automatically, without even your knowledge about it. You can opt for the best available server security to prevent any such threats that might disrupt your files and network applications.

Network servers and web servers are the backbone of your business, so you must be extra careful while dealing with them. Any malicious software that gets installed in your network has the power to invade all your other computers and destroy important files and applications, so to prevent it you must decide on a server security immediately. It doesn't matter whether your business is a big multinational company or a small one, you must be aware that every company faces similar problems and network invasion and server infringement is a very serious threat to all types and sizes of businesses. Servers store your important data, your employees data, valuable information, which if infringed or destroyed, might seriously impact your business. Your clients too need proper servers to contact you and your entire team for valuable exchange of information, which can only be guaranteed with functioning server security.

Ensuring the security of your server isn't easy and you must opt for professionals who would guarantee protection of your network. You can always backup your data, change passwords regularly, or even install anti-virus software and firewalls, but all these measures are only precautionary and do not give full-proof protection. However, subscribing to network security would give you maximum protection and your server security would be guaranteed if you opt for such measures. Besides you can block your employees from visiting suspicious, virus infected websites and take charge of your network's security by following these simple guidelines.

Again, server security can be maintained by not letting everyone access your website freely. You can do this by giving out least privileges to ensure security of your network. Privileges are like keys that allow several potential hackers to easily access your network files and folders and there is always a risk of corruption, so to prevent it you must definitely have server security. Giving out least number of user accounts and blocking the ones that have already been used, can also ensure security of your network. There have been reports about server threats via user accounts, so you should be aware and take steps immediately.

Lastly, server security shouldn't be taken lightly and you must immediately take the necessary steps to prevent disruption to the free flow of your business. You can search online and even download the numerous security seals that are available online to ensure server security of your network.


January 06, 2018

Server Security is of Utmost Importance



With the recent onset of technological advancement server security has become vulnerable to numerous threats throughout the web environment. Today, hackers are constantly looking out for any glitch in the web security to enter malicious software to your network that gets installed instantly and automatically. To address such issues every web hosting company needs to opt for the best server security systems and rely on top quality firewall to prevent atrocious software from inflicting their files and network applications.


Your network servers are most important for the existence of your business, so you must be extra careful to maintain the security of your web servers. If once your server gets compromised then your entire network is bound to get compromised too and then it would be very difficult for you to retrieve all your important documents and files. Whether you are a small business or big; and whether you have one server or many, it is essential for everyone to protect their servers because no matter what your entire network relies on your server security. Servers are essential because they store confidential information, valuable resources, your emails and also resources of your entire team. Your clients too rely on your server as it is an important mean of communication and if your server gets down or suffers from security threats then your entire business may come to a standstill. So, basically you tend to lose business, clients, productivity and your most important documents and files.

To ensure the security of your server, always protect your desktops and laptops. You must always backup your important data and protect your network from infiltration by subscribing to network security. Location of your server also matters a lot, so keep your server safely in a room that is far away from the public view. Changing passwords regularly can also be a good step towards ensuring server security. In any dedicated server a good firewall can act as a powerful weapon to detect hacking attempts and notify you of any impending threat. However, all these steps are only precautionary measures as no firewall or anti-virus is 100% effective unless you take care of your systems security by not engaging in mischievous applications and visiting virus infected websites.

Server security can also be maintained by providing least privileges to ensure that no one accesses your website for mischievous purposes. Privileges given on live production server or on the file and network services can induce any malicious user to access sensitive areas of your website such as your web application files and back end data. It is therefore important for your Webmaster to give least privileges to ensure maximum security of your server. User accounts too can be hacked to access your server so you must be sure that default user accounts are deactivated when they are not being used by anyone. Lastly, expert teams performing server security checks can be employed to maintain the security of your network. Today, there are numerous security seals available online that can be used to perform standard and advanced audit of your system to keep your system clean and free from hacking threats