Windows NT and 2000 machines make up a large part of the typical IT infrastructure. Quite often, unfortunately, these systems are also the most difficult to effectively secure and control. This course will help you to apply the various strategies presented on day one to implement the high level objectives and controls also discussed on day one.
This is the key class to understanding what to look for on a compromised computer system and how to look for it. The course covers Windows NT and 2000 and the use of free and commercial tools to audit and assess a system. Throughout the day attendees will have the opportunity to use network based auditing tools to measure live systems, thus gaining necessary hands-on experience. The course material really drills down into critical security elements of these operating systems. The student will also learn the fundamentals of forensics-what to do when you find something that requires further investigation during an audit.
ERROR MSGOne of the key concepts presented during the course is the creation of a centralized, automated audit functionality for your NT and 2000 machines that will allow you to quickly and easily perform frequent audits of these systems with a minimal amount of human intervention. The application of these techniques will allow you to have a complete picture of what's happening in your NT and 2000 environments as well as providing an alerting mechanism to alert administrators and auditors when systems begin to experience unexpected change. While a number of commercial log analysis packages will be discussed, you will also learn how to centralize your windows event logs at a very low cost and apply yet another free tool to perform efficient and automated log analysis as well.
Course Topics Include
Auditing to Create a Secure Configuration - Building Your Own Auditing Toolkit
- File Integrity Assessment
- Fine Points of Find
hoteles PisaAuditing to Maintain a Secure Configuration
- Reading Logfiles
- Password Assessment Tools
- Risk Assessment
- What Tools to Use
- How to Go About It
Auditing to Determine What Went Wrong
- Finding Hidden Disk Space
- Event Reconstruction
- Kortrijk cheap hotelsIdentifying Back Doors
- Anatomy of a Rootkit
Forensics
- Building a Forensics Toolkit
- Backup Methods
- Chain of Custody
To see a full list of our courses please
click here