You are on page 1of 17

K nng bo mt v phn tch s c trn XP, Windows Server 2003.

Phn 1

Mng ngang hng c th tng nng sut s dng my tnh bi n c thit k n gin trong vic chia s thng tin v ti nguyn trn mng ca bn. Tuy nhin, kh nng ca cc my tnh ngi s dng truy cp vo my tnh ca h c th b nh cp thng tin, xa b d liu hoc thiu thn trng trong vic chia s thng tin. l nguyn nhn ti sao m bn cn thm vo cc chnh sch, quy nh s dng my tnh trong cng ty, bn c th chc chn rng bn v nhn vin cng ty hiu c cc kin thc c bn v bo mt mng ngang hng. Ni dung cc phn: 1. 2. 3. 4. 5. 6. 7. Gii thiu Bo mt h thng tp tin Bo mt ti khon S dng tng la Cp nht cc bn v li bo mt Kim tra tnh bo mt vi cng c phn tch MSBA Cc ti liu tham kho

Phn 1: Gii thiu tng quan y chng ti mun cung cp cho bn cc kin thc c bn bo mt tt nht bao gm:

Cp nht cc bn v li bo mt ca Windows mi nht S dng cc phn mm dit Virus S dng kt ni tng la khi truy cp Internet S dng mt khu an ton Khng chia s file hoc th mc vi cc my ch trn Internet Gii hn quyn trn cc th mc c chia s Hn ch thp nht cc th mc c chia s Ngt cc chia s khi khng c nhu cu

Ngy nay vi s gia tng ca cc on m nguy him nh cc su, virus, hacker chng c th lm t lit, ph hy d liu, nh cp thng tin trn my ca ngi dng.

Ti liu ny vi mc ch a ra cc gii php bo mt cho cc doanh nghip va v nh khi s dng mng ngang hng. Tr gip cc my tnh ca bn s dng h iu hnh Microsoft Windows 2000 Pro c bo mt hn trc cc mi e da bo mt nhm m qu trnh lm vic c hiu qu an ton trn my tnh Cc vn c hng dn trong ti liu ny bao gm Bo mt h thng tp tin Bo mt ti khon ngi dng Bo mt s truy cp t mng Kim tra phn tch nh gi mc bo mt vi phn mm Microsoft Baseline Thm vo cc hng dn nng cao tng bc trong ti liu ny, bn s cng tm thy cc thng tin v cc gii thiu bo mt hng u m Microsoft ang lm cho ton b khch hng, t nhng ngi dng gia nh cho n cc doanh nghip Ch quan trng: Ton b cc hng dn tng bc trong ti liu ny c pht trin theo dng mc nh khi bn ci t h iu hnh. Nu bn c thay i thanh Start menu, cc bc hng dn c th s khng cn ng Yu cu cp nht cc bn Service Pack Ti liu ny s dng tt nht cho cc h iu hnh Windows 2000 Professional Service Pack 4. Nu bn cha ci t hoc bn khng bit a ch ci t bn c th truy cp vo a ch Windows Update ca trang web Microsoft ti a ch: http://go.microsoft.com/fwlink/?LinkID=22630, v ti bn c th qut cc bn cp nht trn my bn. Nu Service Pack 4 c hin th trn danh sch cc bn v li, bn hy ci t n trc Cc yu cu qun tr Bn phi ng nhp vi ti khon truy cp cao nht l Administrator hoc vi ti khon l thnh vin ca nhm qun tr c th hon thnh cc hng dn ny. Nu my tnh ca bn kt ni ti Internet, cc chnh sch thit lp mng cng c th ngn cn s hon thnh ca cc hng dn ny Bo mt h thng File Mt h thng qun l tp tin l cc phng thc m cc file hoc th mc c t chc trn my tnh ca bn. C mt s phng php bo v h thng tp tin t cc truy cp tri php nhm mc ch thay i hoc xa b d liu. Trong mc ny ti mun gii thiu vi cc bn tng bc bo v h thng tp tin nh sau: Chuyn i h thng qun l tp tin thnh NTFS S dng cc phn mm dit Virus Bo v cc file c chia s Bo v cc th mc c chia s Ngt hoc xo cc account khng cn thit Chuyn i h thng qun l tp tin thnh NTFS

Trong khi ci t Windows 2000, cc my tnh c cu hnh s dng h thng qun l tp tinFAT32 hoc NTFS. FAT32 l cng ngh c c s dng trong cc phin bn Windows trc y nh Windows 98, Me. H thng qun l tp tin NTFS nhanh hn v bo mt hn FAT32. Gii php ti u nht v thc thi v bo mt h iu hnh l s dng NTFS cho vic qun l tp tin trong my tnh ca bn. Kim tra h thng qun l tp tin trn my tnh ca bn. Trc khi chuyn i h thng qun l tp tin trn my tnh ca bn, bn cn phi

xc nhn l my tnh ca bn cha c chuyn i thnh NTFS. Bn hy theo cc hng dn sau kim tra. Nu cc bc kim tra xc nhn l bn ang s dng NTFS th bn khng cn chuyn i h thng qun l tp tin Kim tra h thng qun l tp tin hin ti trn my tnh bn: 1. Trn mn hnh Desktop, bn kich p chut phi vo My Computer 2. Kch chut phi vo cng m bn cn kim tra, sau chn Properties 3. Xc nhn l h thng qun l tp tin NTFS. Nu khng phi, bn c th s dng tin ch chuyn i ( convert.exe) c hng dn bn di chuyn di FAT16 hoc FAT32 thnh NTFS Kim tra ton b cc a cn li trn my tnh ca bn. Trong trng hp nu ton b cc cng hin thi trn my bn l FAT32 bn cng c th d dng chuyn i thnh NTFS theo cc hng dn bn di Chuyn i h thng qun l tp tin thnh NTFS chuyn i h thng qun l tp tin thnh NTFS, bn phi ch tn ca a m bn t v lm theo cc bc ch dn di y Chuyn i h thng qun l tp tin thnh NTFS 1. T menu Start bn kch vo Run g cu lnh cmd sau nhn OK 2. Sau khi ca s MS-Prompt DOS hin ra bn g cu lnh sau: Convert Tn__a: /fs:ntfs Sau bn phi nhp Volume a . Gi s bn cn Convert D vi tn a l KIEMTRA bn lm nh sau: Convert D: /fs:ntfs Sau mn hnh s nhc bn nhp tn a vo v bn g KIEMTRA 3. Tip theo bn nhp tn a v nhn ENTER 4. Khi vic chuyn i hon thnh, bn ng ca s bng cu lnh EXIT CH : Ch quan trng khi bn ang chy cc chng trnh ca h iu hnh th ng nhin h iu hnh s khng chuyn i ngay cho bn ti thi im . Tuy nhin h iu hnh s nhc bn rng vic chuyn i ny s c thc hin sau khi bn khi ng li my. V bn phi g Y ng S dng cc phn mm dit Virus Virus my tnh l cc chng trnh c ci t hoc ly nhim vo my tnh ngoi s cho php ca bn. Ngy nay cc virus ngy cng nguy him vi kh nng t sao chp v ly nhim qua Internet v email trn ton th gii vi tc rt nhanh trong vi gi Phn mm dit s gip bn bo v my tnh ca mnh vi nhiu loi virus, su, trojan v cc on m nguy him. Bng cch ny bn c th qut v dit virus. Tuy nhin cc phn mm dit virus ch gii quyt c mt phn vn . Nhiu my tnh mi c mua vi cc phn mm dit virus c ci t sn trn my tnh. Tuy nhin, phn mm dit virus ny yu cu bn phi ng k c th cp nht cc Virus mi nht. Nu bn khng ng k cp nht, my tnh ca bn s b

nguy him trc cc virus mi Bn hy s dng email an ton bng cch khng m cc file nh km, khng kch vo cc lin kt trn trn email (Tt nht hy copy v paste vo trnh duyt truy cp web). Nu bn ci phn mm dit virus th cc chng trnh ny s qut cc file c nh km bit c cc chng trnh dit virus v cc nh cung cp phn mm dit virus tt nht vi HH Windows mi bn tham kho ti a ch
http://go.microsoft.com/fwlink/?LinkId=22712 xem phn 2

K nng bo mt v phn tch s c trn XP, Windows Server 2003. Phn 2

Bo v cc file c chia s Trong bi trc ti a cc khi nim, chuyn i h thng tp tin NTFS. Phn ny s tip tc hng n bn cch bo v cc tp tin, th mc c chia s trong mng LAN. Mng ngang hng cho php bn to cc chia s d liu do ngi dng c th gii hn truy cp ch c hoc c th va c, thay i, xa file. Nu bn kt ni vi Internet, v khng s dng tng la, bn hy nh rng bt k mt file no bn chia s bn cng c th b truy cp t cc ngi dng khc trn mng Internet Theo mc nh, Windows 2000 cho php ton quyn iu khin, thay i v c vi bt k ngi dng no truy cp vo cc th mc c chia s (share). Tuy nhin bn hon tan c th thay i bng cch xa thuc tnh ny trn cc th mc c chia s hoc thay i gii hn truy cp ton quyn bng cc truy cp ch c c. Hoc bn c th thm cc ti khon truy cp theo ng ngi cn chia s. Vic xa b quyn Everyone trong Windows bn s c m bo rng khng c ai c th truy cp vo cc th mc cn bo v tr khi bn thm mt ngi dng mi vo ti khon truy cp. Hoc bn mun bo v cc chia s n trc ngi dng bn c th thm du $ vo sau cc th mc chia s. V d bn mun chia s mt th mc Du lieu bn c th thm Du lieu$ vo sau th mc ny khi nu bn mun truy cp vo th mc chia s ny th bn ch vic g tn my Tn chia s ca th mc+$ v d: Computerdata$ khi bn c th truy cp c vo th mc n ny ri. Tuy nhin cch ny cha thc s an ton vi mt ngi dng c hiu bit v my tnh. H ch vic xem th mc chia s ny bng cch vo Start, Run, type cmd , G cu lnh NET SHARE n s lit k ht cc chia s k c chia s n. Vy th bn phi lm g ? Xin mi bn tip tc n vi phn Bo v cc th mc chia s Mng ngang hng Windows cho php bn chia s cc thng tin vi my tnh khc trn mng. Bng mt vi thao tc nh bn c th chia s c cc file v cc th mc. Bng cc thay i mt vi cc thit lp mc nh, bn c th ngn chn cc truy cp bt hp php ti cc file v thc mc ca bn Cc bc bo v th mc chia s Bc 1: Trn mn hnh Desktop, kch p vo My Computer, sau m file hoc th mc m bn mun bo v Bc 2: Kch phi chut vo th mc bn mun bo v v chn sharing Bc 3: Trn tab Sharing, kch vo Permissions

Bc 4: Chn EveryOne v kch Remove nhm hn ch bt k ngi dng no mun truy cp

Bc 5: Kch vo Add sau chn ti khon truy cp thch hp m bn mun cho ngi dng chia s

Sau kch OK

Bn ch nu th mc bn cn chia s m ch cho ngi dng Copy th tt nht ch t quyn truy cp Read. Bc 6: Bn nhn Apply OK. Cng vic chia s by gi hon thnh. Bn c th yn tm rng file ca bn chc chn c bo v ch c nhng ngi c php truy cp mi c th truy cp c. Ch : Cc file hoc th mc chia s hot ng tt nht vi h thng NTFS

thay i quyn truy cp, bn ch vic thm hoc remove bt User hoc thay i quyn truy cp thng tin Trong cc Account v cc nhm ngi dng (Groups) nu bn t Full Control Permissions th ngi dng c th xa file, xa cc th mc con trong th mc c chia s Nhn tin y ti mun cnh bo vi cc bn mt iu cc k quan trng rng: Theo ch mc nh Windows 2000, XP, 2003 u chia s tt c cc a cng ca bn v cc th mc l: IPC, Admin theo hnh thc chia s n (c du $) m trn ti ni vi bn (Bn c th kim tra iu ny bng cch truy cp vo Control Panel Administrative Tools Computer management System Tool Share Folder.

Cc chia s mc nh ny mc d khng truy cp c vi ti khan khch nhng nu bn v tnh to Account truy cp vi quyn Administrator cho ngi s dng th ng nhin rng may bn s b khai thc ht thng tin. Vy th bn phi lm g xa b cc chia s ny ? Bn ngt cc chia s t Computer Management? Hon ton sai lm! V sau khi khi ng li my chng li xut hin khng tin bn c th m xem. gii quyt vn ny ti hng dn ban cch xa cc chia s ny n gin m cc k hiu qu. u tin bn to mt File l secure.bat (T File trong My Computer New Text document bn t tn file l secure.bat. Ch rng nu phn m rng ca file khng c hin th th file ca bn vn c phn m rng l *.txt bn phi vo Tools Folder Options View B nh du Hide file extentions for known file types. Tip theo bn kch phi chut vo file secure.bat va to chn Edit v thm vo cc dng lnh sau: net share c$ /delete /y net share d$ /delete /y net share IPC$ /delete /y net share ADMIN$ /delete /y Sau Save li. By gi bn th chy file ny v kim tra li cc file share. Kt qu th no? Tuyt vi phi khng. Vy th bn hy copy file ny vo mc Startup ca Windows mi ln khi ng my s xa b cc mc chia s mc nh ny. Ht phn 2 Sang phn 3 chng ta s tip tc cp phng thc bo mt ti khan ngi

dng, bo mt mt khu, thit lp tng la, update cc bn v li

K nng bo mt v phn tch s c trn XP, Windows Server 2003. Phn 3

Bo mt ti khon ngi dng, mt khu, thit lp tng la. Phn ny chng ta tip tc hc cc k nng bao gm: V hiu ho ti khon ngi dng khng cn thit, bo mt cc ti khon, chng truy cp bng cc phn mm tng la, cp nht cc bn v li h iu hnh. V hiu ha hoc xa cc ti khon khng cn thit Bn to rt nhiu Account nhng sau mt thi gian cc Account ny khng c dng hoc c s thay i nhn s t pha ngi dng hoc cc chng trnh ci t t ng to Account m bn khng dng n. Vy th gii php tt nht l bn hy xa hoc v hiu ha cc Account ny nhm bo v my tnh v thng tin. Cc bc v hiu ha cc ti khan ngi dng: 1. T Start chn Settings, Control Panel 2. Kch p vo Administrative Tools, sau kch p vo Computer Management 3. Bn chn Local Users and Groups v kch vo Users 4. Kch phi chut vo cc Account m bn cn v hiu ha chn Properties 5. Trn tab General, bn chn Account is disabled , Apply, Ok

Ch : 1. Khi ti khon c v hiu ha th ng nhin ti khan ny khng th c s dng ng nhp v biu tng ca ti khan ny s bin thnh du X gch 2. Ti khon Administrator khng th v hiu ha c Xa ti khon ngi dng: 1. T Start chn Settings , Control Panel

2. Kch p vo Administrative Tools, sau kch p vo Computer Management 3. Bn chn Local Users and Groups v kch vo Users 4. Kch phi chut vo cc Account m bn cn xa b chn Delete Ch : 1. an ton bn hy v hiu ha cc ti khon trc khi xa chng 2. Mt ti khon b xa s khng c kh nng khi phc 3. Theo mc nh ti khon Administrator v Guest khng th xa c Bo mt cc ti khon ngi dng: Bng cch s dng mt khu, v hiu ha hoc xa b cc ti khon khng cn thit bn c th lm gim nguy c truy cp tri php vo my tnh ca mnh

S dng mt khu Mt iu cc k quan trng l phi t mt khu cho ton b cc ti khon ca Windows vi 02 nguyn nhn ch yu sau: Nguyn nhn th 1: Nu bt k mt ti khon no khng t mt khu th ng nhin rng bt k mt ngi dng no cng c th truy cp vo my tnh ca bn bng ti khon khng c t mt khu Nguyn nhn th 2: Theo mc nh, tt c cc ti khon khng t mt khu th ngi dng ch c th ng nhp vo my tnh ca bn trc tip khi h ngi trn my bn m khng th ng nhp t xa hoc iu khin my bn t xa. Nhng s gii hn ny s khng c hiu lc i voi cc ti khon tn min hoc ti khon Guest. Nu ti khon Guest khng b v hiu ha v khng t mt khu, n s c th b s dng ng nhp vo bt k mt ti nguyn no trn mng ngang hng thit lp hoc reset li mt khu ti khon c sn bn lm nh sau: 1. T Start, Settings ,Control panel 2. Kch phi chut chn Set Password . Bn hy nhp mt khu mi S dng tng la: Phn mm tng la hoc phn cng tng la s to hng ro bo v my tnh trc cc mi e da tim tng trn Internet. Nu my tnh bn s dng h iu hnh Windows 2000 s khng c tng la c ci t trn h iu hnh (tr Windows XP, Windows 2003), do Microsoft khuyn bn nn ci t tng la trc khi truy cp Internet. H iu hnh khng c cc hng dn s dng tng la m bn phi c cc ti liu hng dn t chnh cc nh cung cp phn mm hoc phn cng Cc phn cng v tng la: Phn cng tng la l la chn tt nht cho h iu hnh Windows trc khi bn c nh s dng Windows XP. Mt s mng my tnh nh cc im truy cp khng dy v cc cc b nh tuyn bng thng rng c xy dng sn tng la. Microsoft Broadband Networking Wireless l mt v d cho im truy cp khng dy c ci t sn phn cng tng la v cc mng khc trong tng lai.

Phn mm tng la Mt phn mm tng la c xy dng bi mt vi cc i tc nh BlackICE PC Proection, Computer Associates, McAfee Security, Symantec, Tiny Software, v ZoneAlarm. c th s dng cc phn mm hoc phn cng Firewall ca cc cng ty ny bn c th tham kho ti liu ti
http://go.microsoft.com/fwlink/?LinkId=22496 http://go.microsoft.com/fwlink/?LinkId=19713.

Cp nht cc bn v li Mt trong nhng iu ti quan trng l "Cp nht y cc bn v li ca Windows" trc cn i hng thu: Virus (Blaster,Netsky, Sasser, Lovegate,..), hacker, phn mm gin ip. Nu bn khng tun th quy tc ny my tnh ca bn s b h gc ch sau t 10 pht n 30 pht. Bn c tin khng? Nu bn tin ti th hy tip tc c v cp nht Windows cn nu khng tin tt nht bn hy chuyn sang cc bi c khc th v hn. Nhng nu c iu g xy ra vi my tnh ca bn th ng trch ti khng cnh bo nh! Cch tt nht gip bn tm hiu v cc bn v li bo mt v cc bn thng bo bo mt t hng Microsoft c m t ti http://go.microsoft.com/fwlink/?LinkId=22339. Ti y bn s ng k c th cp nht cc thng tin v bo mt, cc bn v li bo mt qua email. Thm na n cn cung cp cho bn cc kin thc v cng ngh gip bn t ng v li h iu hnh T ng cp nht Windows 2000 SP 4, XP, 2003 cung cp cho bn cc tnh nng t ng kim tra v download cc bn v li bo mt mi nht t Microsoft Automatic Update s c th cu hnh gip bn download t ng cc bn v m khng nh hng n cng vic bn ang lm trn my tnh sau n s nhc nh bn ci t sau khi download c hon thnh cu hnh h thng cp nht t ng bn lm nh sau: 1. T Menu Start, Settings, Chn Control Panel sau kch vo Automatic Updates 2. Chn Keep my computer up to date bt tnh nng cp nht t ng 3. Chn Automatically download the updates, and install them on the schedule that I specify.

4. Chn lch cp nht 5. Sau kch OK v ng System Properties Ch : Ngai ra, Cc bn thng bo bo mt c pht hnh thng qua Security

Notification Service. Vi h thng ny s t ng r sot my tnh ca bn v nhc nh bn download v ci t chng trn my tnh ca bn
Phn cui

K nng bo mt v phn tch s c trn XP, Windows Server 2003. Phn cui Kim tra bo mt vi cng c Microsoft Baseline Security Analyzer Nm trong chin lc bo mt ca Microsoft, phn mm Microsoft Baseline Security Analyzer (MBSA), s bo co cho bn cc cu hnh khng bo mt v cc bn v li Windows 2000, XP v Windows Server 2003. Chng trnh ny bn c th s dng trn my bn hoc trn mt my iu khin t xa. Phn mm ny khng th thiu cho nhng nh qun tr mng cn phn tch hin trng ca my ch. K c nhng ngi dng bnh thng n cng a ra c li khuyn v cc ch dn cn thit v bo mt Cc bc ci t v s dng chng trnh MBSA ci t MBSA bn cn phi download phn mm ny (Dung lng khong 1.56 Mb): Download MBSA Sau bn ci t bnh thng nh cc phn mm khc theo tng bc. Qu trnh ci t c hon thin bn tip tc thc hin cc bc pha di y Qut cc bn cp nht v v li 1. T Start menu chn Programs Microsoft Baseline Security Analyzer 2. Kch vo Pick a computer to scan 3. B cc la chn sau: Check for Windows vulnerabilities Check for weak passwords Check for IIS vulnerabilities Check for SQL vulnerabilities

Sau kch vo Start Scan Qut cc cu hnh bo mt qut cc cu hnh bo mt bn lm nh sau: 1. Loi b la chn Check for security updates, v chc chn rng cc la chn sau phi c nh du: (Cch lm ny ngc vi cch lm trn) Check for Windows vulnerabilities Check for weak passwords Check for IIS vulnerabilities Check for SQL vulnerabilities 2. Sau kch vo Start Scan 3. Sau khi qut xong, bng bo co kt qu s xut hin ging nh khi bn qut cc bn cp nht ca Windows Update. N ch khc ch l ti khc ng lin kt trong kt qu c tm thy. Khi bn kch vo lin kt, mt trang s xut hin vi chi tit cc kt qu tm thy, cc gii php c a ra 4. Vy th bn phi lm g v gii php nh th no?Xin vui lng kch vo lin kt How to correct this bn s c lit k cc ni dung chi tit, gii php, cc gii thch v bn phi lm g v tng bc gii quyt vn V d sau khi kim tra my tnh th nghim ti c kt qu nh sau:

Khi kch vo lin kt Result details ta s c cc bng m t chi tit sau:

Trong bng thng bo ny ta s thy ti khan khch (Guest) ca my ang c m v khng t mt khu hoc l mt khu qu ngn (t 1 n 7 k t) khng an ton. R rng l khng an ton ri (Nh trn ti phn tch v bo mt cc chia s) Bn kch vo How to correct this

Ti y cng c s a cho bn cc li khuyn, cc hng dn khc phc. Phn mm ny rt hu ch cho tt c cc nh Qun Tr mng v n c th p dng cho my tnh c nhn ca bn kim tra an ton ca my tnh mnh. Trn y ch l mt s hng dn c bn s dng phn mm mong rng n s hu ch i vi bn c. Bi hc ca chng ta n y kt thc. Chc cc bn bo v my tnh an ton v hiu qu. (Ht)

You might also like