Ask the Expert

Restricting anonymous user rights on Win2000

I have applied the restrict anonymous registry entry. How can you further limit the anonymous user rights native to a stand alone Windows 2000 Professional PC that is used for accessing the Internet?


    Requires Free Membership to View

Add the local user to the local administrator's group or local power users group (depending on what type of rights you want the user to have). First, unhide all hidden folders and files, or you will have problems with system files. Remove the everyone group from all partition NTFS rights. Add the groups Local/powerusers, Local/administrators, Creator, Owner and System to have full control and reset permissions on all folders and files (Local group will be the computer you are locking down). This will restrict all files to members of the groups above and permit someone from hacking in and changing or deleting important files.


For more information on this topic, visit these other SearchSecurity resources:
Best Web Links: Securing Microsoft


This was first published in June 2002

There are Comments. Add yours.

 
TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: