Process & Steps to Securing Windows server for hosting environment
Process & Steps to Securing Windows server for hosting environment
Here, we will take Windows server 2008 OS in hosting environment and road map.
In Windows Hosting environment almost all service such as DB server for MSSQL, MySQL, Webserver, MailServer and bit more are severed by Single server.
Dont install/enable any other service that server is not going to perform.
Disable Administrator Account and create delegated Administrator account, this is most important when it comes to hosting environment.
Enable password policy, it's very Important. [More granular options are available for this policy, use them if you can]. Use this policy and make sure that you inform your client about this policy and things you have implemented on your hosting server
Enable and configure Firewall. Make sure that you allow access to specific IP's for server administrator console.
Use SSL access to hosting control panel.
Change Default port with SSL for RDP.
Disable DNS recursion, else your server can be used to resolve even if domain is not hosted on server.
Install Antivirus on server and scan server at midnight OR weekends as per hosting environment allows without hampering any service.
Always installed recommended security patches/ updates that Microsoft releases. [Usually install them on weekends as it might need server reboot]
Always set Mailserver policy and limit sending emails per hosted domain per hour.
Always have rDNS record set to fully qualified server name. This is necessary else most of mails send through hosting domain will be rejected by recipient server.
Enable SPF records OR Domain Keys.
Disable Relay in Mailserver and set policy that only authenticated hosted domain users can only send emails.
Always have Mail logs enable, this will allow to monitor / logs if any send /received emails are not received / sent.
Enable blacklist check on mailserver, this allows to block most of spam received by hosted server server
Always try to manage hosting account from control panel rather than managing them from RDP terminal.
Disable random ports for FTP and customize them and make sure that you inform clients to configure them on their FTP client.
Disable MSSQL remote connection if possible. Usually it's not done on shared hosting as it restricts user to connect from remote location. Disable FULL text catalog to increase server performance.
Disable indexing service it goes resource hungry as shared hosting server has large data.
Install Dynamic IP restriction for web-server on server and configure it as your Secure Windows Server hosting environment allows.
Most important, take care that making server secure should not hamper the hosting service it's going to serve.
Resolving MBR corruption in Windows 7 and performing Windows HDD recovery Remove Windows Lowlevel Solution Repair And Replacement Plumbing Services By Professional El Segundo Plumber How to Repair Car Damage Things To Remember Before You Opt For Roof Repair Repair Tutorial for Runtime Error 339 Repair the Error Code 39 Quickly Troubleshooting Windows error 1606 How to repair error 1316 on pc How to install Drupal 7 on windows shared hosting How To Fix Windows 7 651 Error Repair Disk Permissions to Speed Up Mac Resolving STOP errors in Windows XP and Windows Data Recovery