C3 Security Consulting LLC
Confidentiality
Integrety
Availability
company banner
HomeSecurityServicesVistaInformationCompany
  
floating layer default test box
Services
Active Directory
Deployment and
Upgrades
Servers
Remote Access
On this page:
Active Directory
GPOs
Related Links
Benefits of Linux
If you are undecided on what OS to use, see some of the added value of Linux.
Cerberus
Cerberus, an IPsec implementation from NIST. This implementation contain many different encryption cypher (including all the AES finalists), but is subject to US export controls.
Micrsoft Midsize Business: Security
Use the resources below to find security solutions geared toward midsize businesses with 25 — 500 PCS.
Who better than the NSA for advice?
A little known resource, the NSA offers may guides on a range of topics.
NIST
NIST, Computer Security Resource Center.

Workgroups vs. Domains vs. Active Directory

Print view

If you use a smaller network of machines, using peer-to-peer or workgroups, it might be time to consider moving to an Active Directory infrastructure, and it's never been easier. The technology is firmly established, and it is the backbone of nearly all the larger companies' Windows infrastructure. With support for alternative operating systems by LDAP and integration with a host of software and 3rd party systems, it should be considered.

If you already have partners using Active Directory, you will be able to seamlessly integrate with them, without sacrificing security or a single sign-on ID.

At C3SC we have extensive experience with Active Directory integration and the process of migrating from earlier domain structures, seamlessly, in live environments. Through implementation of Active Directory we will provide:

For security:

  • Enhanced security with Kerberos authentication and PKI support.
  • Streamline access to external or security-enhanced domains.
  • Improved wireless security with support for smart cards, IAS, and the latest wireless encryption standards.
  • Improved internal security by controlling user access.
  • Group Policy control.

For integration:

  • With Exchange, IIS, and other Microsoft products.
  • DNS & zone transfers via Active Directory.
  • Implementation of secure DNS registration via Microsoft DHCP client.

For administrative cost reduction:

  • Centralized user management.
  • Centralized patch management and monitoring.
  • Software deployment.
  • Shadow Copy restore.

Whether you have 50 or 500 users, the upgrade is well worth considering and C3SC can give you an unbiased assessment.

Group Policy Objects

Frequently misunderstood and underutilized tools are the Group Policy Objects in Active Directory. GPOs provide the backbone for a centrally managed network. They enable settings to be applied to computers grouped together in a logical structure. The information is distributed to the clients automatically when the computer initially logs on to the domain. GPOs can be applied to both computers and users. GPOs can control more than 1,600 parameters across Active Directory, Windows family operating systems, and integrated applications such as Office.

C3SC will help you plan and deploy GPOs developed for your environment to make maximum use of this functionality.

▲Top of page
Did you know?
Scrolling system messages.
To view Linux system log messages in real-time, open a terminal window, su to root, and type tail –f /var/log/messages. You will see the system messages scroll up the screen as they occur.
Who is using your computer?
Don't leave your computer whilst you are logged on. It only takes a moment for someone to send an email with your account. Always shut down at night and set a password for your screen saver so your PC will remember even if you don't.
An average of $1,300 is spent per employee in companies of $10m revenue or less.
This is 10 times greater than companies with revenue of $100m - $1bn. Unable to realize the economies of scale, smaller companies spend disproportionately higher amounts on security - learn how to leverage lessons learnt by larger companies.
Wireless networks are more vulnerable to hackers - so they need additional protection.
Encryption technologies such as Wi-Fi Protected Access can help. Although there are weaknesses with WEP, some legacy systems do not support more modern protocols like WPA, and so WEP is still better than nothing and will deter most casual eavesdropping.
Almost half of all companies surveyed spend less than 2% of their IT budget on security.
And of that figure, 40% spent less than 1% citing the engagement of senior management as a significant obstacle.