S
ECURING
Y
OUR
P
ATCH
M
ANAGEMENT
S
ERVER
- 333 -
Turn Off Non-Critical Services
The default installation of Microsoft Windows has most features and services active.
Therefore, there are a number of services that can be turned off (e.g.: RPC, Remote
Registry, etc.) to reduce the risk of outside attacks. Although Novell does not encourage this
type of lock down, it can be an effective method to reduce the risk of hacker attacks. The
following services are required to run ZENworks Patch Management:
•
World Wide Web Publishing Service
•
IIS Admin Service
•
MSSQLSERVER
•
ZENworks Patch Management
Lock Down Unused TCP and UDP Ports
Preventing network traffic on various unused and vulnerable TCP and UDP ports should be
completed through the use of a firewall. However, if a firewall is not available or additional
machine level locking is desired, TCP and UDP ports can be locked down as a function of
the network connection.
Locking Unused Ports
1.
From within the
Windows Control Panel
, select the
Network Connections
icon.
2.
Open the
Local Area Connection
.
Summary of Contents for ZENWORKS PATCH MANAGEMENT 6.4 SP2 - SERVER
Page 1: ...User Guide ZENworks Patch Management 6 4 SP2 ...
Page 44: ...USING ZENWORKS PATCH MANAGEMENT 28 ...
Page 138: ...WORKING WITH DEPLOYMENTS 122 ...
Page 212: ...USING GROUPS 196 ...
Page 236: ...REPORTING 220 ...
Page 308: ...CONFIGURING DEFAULT BEHAVIOR 292 ...
Page 332: ...USING THE AGENT 316 The Agent Control Panel opens Figure 10 19 Agent Control Panel ...