Contact Us Forum Rules Search Archive
WebProWorld Part of WebProNews.com
Page One Link To Us Edit Profile Private Messages Archives FAQ RSS Feeds  
 

Go Back   WebProWorld > Webmaster, IT and Security Discussion > IT Discussion Forum
Subscribe to the Newsletter FREE!


Register FAQ Members List Calendar Arcade Chatbox Mark Forums Read

IT Discussion Forum Having IT issues? Got IT questions? Who doesn't? If you can't get your Apache to work with your MySQL or your php is choking on your ODBC... Let's see if we can help you come up with some ideas.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 03-09-2004, 05:30 PM
WebProWorld New Member
 

Join Date: Aug 2003
Posts: 20
yeshua14 RepRank 0
Default Hackers gettting in our server

We have an in-house server running on a T1, learning as we go, grins :) and double grins and, well you get the the point.

We are being hacked into. Maybe someone puts their music files on our server and has folks downloading from it. Or we might find a porn site trying to deposit it's ugly self on our server and transact business --

Regardless, we need to tighten the ship down.

Is there a Software or Hardware anyone uses that would allow us to monitor the ports we use.....

and have it send out an email to a few places if another port starts to be used, so we can check it out.

We know we can limit use to just certain ports, but if we miss listing one of the ports, since we ARE learning, then we may lose business we don't know about, as we have an on-line store which takes orders and ships etc. For the moment, we are hoping to find a means of being notified other than checking things once an hour.

Does anybody have any experience with these type of problems? and suggestions which have WORKED :)

Our server is running on Windows 2000 Advanced Server software.

Thanks,

Stephen
Reply With Quote
  #2 (permalink)  
Old 03-28-2004, 10:26 AM
WebProWorld Pro
 

Join Date: Sep 2003
Location: United Kingdom
Posts: 216
kikkertm RepRank 0
Default

Hi Stephen,

It sounds you have some serious problems !

You need a firewall at least. Then you need to lock down your webserver. I guess you have Anonymous FTP running. Disable all the services you do not need. If you are just running a website, no other ports that 80 (and maybe 443) need to respond to requests. Disable file and printer sharing...

Just a few pointers. There are many more.
Reply With Quote
  #3 (permalink)  
Old 03-28-2004, 01:45 PM
WebProWorld New Member
 

Join Date: Aug 2003
Posts: 20
yeshua14 RepRank 0
Default

kikkertm,

You are Right on the money!

Our learning as we go tech guys, did find

the Anonymous ftp was open. And they have

been locking down ports.... And, it is

working like it should now!

Thank you,

Stephen
Reply With Quote
  #4 (permalink)  
Old 04-29-2004, 11:26 AM
WebProWorld New Member
 

Join Date: Apr 2004
Location: Mpls
Posts: 4
Gresser RepRank 0
Default

Depending on how much $ you want to spend some good ideas might be:

A hardware firewall ~$1500 this will basically filter traffic from the outside world to your systems. not a perfect solution but a good first step.

build a second computer or grab an old one (like a 1ghz with 512 ram etc) and install microsoft ISA server. this is basically a software firewall which is good to use in conjunction with a hardware one. ~$1500 again.

Next: in the sharing / security properties of your server, delete the everyone and replace it with authenicated users.

I cant remember the URL, but I want to say at Labmice.com there was a good article with about 10+ things you can do to make the network more secure.
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > IT Discussion Forum
Tags: , , ,



Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Search Engine Optimization by vBSEO 3.2.0