74
Network News Transport Protocol (NNTP)
Service
Name
Member Server
Default
Legacy Client
Enterprise Client
High Security Client
NntpSvc Not
installed Disabled Disabled Disabled
The
Network News Transport Protocol (NNTP)
system service allows computers running Windows
Server 2003 to act as a news server. This service is not a requirement for the baseline server policy.
Therefore, this service is configured to
Disabled
in the three environments defined in this guide.
NTLM Security Support Provider
Service
Name
Member Server
Default
Legacy Client
Enterprise Client
High Security Client
NtLmSsp Not
installed Automatic Automatic Automatic
The
NTLM Security Support Provider
system service provides security to RPC programs that use
transports other than named pipes and enables users to log on to the network using the NTLM
authentication protocol. The NTLM protocol authenticates clients that do not use Kerberos v5
authentication. If this service is disabled, users cannot log on to clients by using the NTLM
authentication protocol or access network resources. Therefore, this service is configured to
Automatic
in the three environments defined in this guide.
Performance Logs and Alerts
Service
Name
Member Server
Default
Legacy Client
Enterprise Client
High Security Client
SysmonLog Manual
Manual
Manual
Manual
The
Performance Logs and Alerts
system service collects performance data from local or remote
computers based on preconfigured schedule parameters; it then writes the data to a log or triggers an
alert. These features are needed in the baseline server environment. Therefore, this service is
configured to
Manual
in the three environments defined in this guide.
Plug and Play
Service
Name
Member Server
Default
Legacy Client
Enterprise Client
High Security Client
PlugPlay Automatic Automatic Automatic Automatic
The
Plug and Play
system service enables a computer to recognize and adapt to hardware changes
with little or no user input. If this service is stopped by using the MSCONFIG troubleshooting tool, the
Device Manager interface will appear blank, and no hardware devices will be displayed. Therefore,
this service is configured to
Automatic
in the three environments defined in this guide.