Professional Documents
Culture Documents
Securing Windows 7
Desktops
Module Overview
• Overview of Security Management in Windows 7
Windows AppLocker™
Windows Defender™
What Is Action Center?
Action Center is a central location for viewing messages about
Select the items that you want checked for user alerts
your system and the starting point for diagnosing and solving
issues with your system
What Is Action Center?
Action Center is a central location for viewing messages about
your system and the starting point for diagnosing and solving
issues with your system
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Demonstration: Configuring Action Center Settings
In this demonstration, you will see how to:
• Change Action Center Settings
10 min
Lesson 2: Securing a Windows 7 Client Computer by
Using Local Security Policy Settings
• What Is Group Policy?
4. OU GPOs
4. OU GPOs
3. Domain GPOs
2. Site-level GPOs
1. Local GPOs
How Multiple Local Group Policies Work
1.Local Group Policy object that may contain both computer and user
settings.
10 min
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Demonstration: Configuring Local Security Policy
Settings
In this demonstration, you will see how to
review the local security group policy settings
10 min
Lesson 3: Securing Data by Using EFS and BitLocker
• What Is EFS?
• BitLocker Requirements
• BitLocker Modes
• Configuring BitLocker
• Configuring BitLocker to Go
10 min
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
What Is BitLocker?
Hardware Requirements:
• TPM mode
• Non-TPM mode
Non-TPM mode
TPM mode
••Uses
LocksGroup Policyboot
the normal to allow BitLocker
process to work
until the user without a TPM
optionally supplies a
• personal
Locks thePIN and/or
boot inserts
process a USB
similar drive
to TPM containing
mode, but thea BitLocker
BitLocker startup
startup
key must be stored on a USB drive
key
• The• encrypted disk must
The computer’s BIOSbemust
located in the
be able to original
read fromcomputer
a USB drive
• Performs system integrity verification
• Provides on boot components
limited authentication
•• If any items
Unable changed
to perform unexpectedly,
BitLocker’s systemthe drive ischecks
integrity locked to
and
verify
prevented from being accessed
that boot components or decrypted
did not change
BitLocker Modes
Windows 7 supports two modes of BitLocker
operation: TPM mode and Non-TPM mode
TPM mode
• Locks the normal boot process until the user optionally supplies a
personal PIN and/or inserts a USB drive containing a BitLocker startup
key
Non-TPM mode
• Uses Group Policy to allow BitLocker to work without a TPM
• Locks the boot process similar to TPM mode, but the BitLocker startup
key must be stored on a USB drive
• Provides limited authentication
Group Policy Settings for BitLocker
• AppLocker Rules
Benefits of AppLocker
• Controls how users can access and run all types of
applications
10 min
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Demonstration: Enforcing AppLocker Rules
In this demonstration, you will see how to:
• Enforce AppLocker Rules
• Confirm the executable rule enforcement
• Confirmthe Windows Installer rule
enforcement
10 min
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
What Are Software Restriction Policies?
Comparing
Software Restriction SRP and
Policies (SRP) AppLocker
allow administrators to identify
AppLockerwhich software
replaces is allowed
the Software toPolicies
Restriction run (SRP)
feature from prior Windows versions
• SRP was added in Windows XP and Windows Server 2003
SRP snap-in and SRP rules are included in Windows 7 for
• SRP was compatibility
designed to purposes
help organizations control not just hostile code, but
any unknown code - malicious or otherwise
AppLocker rules are completely separate from SRP rules
• SRP consists of a default security level and all the rules that apply to a
Group Policy Object (GPO)
AppLocker group policies are separate from SRP group policies
Definedoes
How AppLocker rules in a separate
SRP compare GPO to AppLocker?
to Windows ensure
interoperability between SRP and AppLocker policies
What Are Software Restriction Policies?
Software Restriction Policies (SRP) allow administrators to identify
which software is allowed to run
• SRP was added in Windows XP and Windows Server 2003
• SRP was designed to help organizations control not just hostile code, but
any unknown code - malicious or otherwise
• SRP consists of a default security level and all the rules that apply to a
Group Policy Object (GPO)
•UAC prompts the user for an administrative user’s credentials if the task
requires administrative permissions
•Windows 7 increases user control of the prompting experience
How UAC Works
Standard
Users
UAC prompts the
user for the
credentials of a
user with
administrative Administrative
privileges Users
UAC prompts the
user for permission
to complete the
task
Demonstration: Configuring Group Policy Settings
for UAC
In this demonstration, you will see how to:
• Open the User Accounts window
• Review user groups
• View the Credential Prompt
• ChangeUser Account Settings and View
the Consent Prompt
10 min
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Configuring UAC Notification Settings
UAC elevation prompt settings include the following:
• Always notify me
• Notify me only when programs try to make changes to my computer
• Notify me only when programs try to make changes to my computer (do not
dim my desktop)
• Never notify
Lesson 6: Configuring Windows Firewall
• Discussion: What Is a Firewall?
10 min
Configuring the Basic Firewall Settings
The Properties
Windows page
Firewall with is used to
Advanced configure
Security filtersfirewall
incoming and
outgoing
properties forconnections based on
domain, private, its public
and configuration
network
profiles, and to configure IPsec settings.
HTTPS
SNMP
SMTP
POP3
HTTP
DNS
FTP
TCP UDP
ARP IGMP
IPv4 ICMP IPv6
Ethernet
Demonstration: Configuring Inbound, Outbound,
and Connection Security Rules
15 min
Notes Page Over-flow Slide. Do Not Print Slide.
See Notes pane.
Notes Page Over-flow Slide. Do Not Print Slide.
See Notes pane.
Lesson 7: Configuring Security Settings in
Internet Explorer 8
• Discussion: Compatibility Feature in Internet Explorer 8
10 min
Enhanced Privacy Features in Internet Explorer 8
10 min
Notes Page Over-flow Slide. Do Not Print Slide.
See Notes pane.
Lesson 8: Configuring Windows Defender
• What Is Malicious Software?
10 min
Notes Page Over-flow Slide. Do Not Print Slide.
See Notes pane.
Module Review and Takeaways
• Review questions
• Common Issues
• Best Practices
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”
Notes Over-flow Slide
General information
• If you have too much Notes text associated with one slide
to fit in one Notes Page, use the hidden Notes Over-flow
Slide as page two of the Notes Page.
• The red line indicates that this slide must not be printed.
In an actual module, do not add content to this slide or
modify it in any other way. Only add content to the Notes
Page.
Printing Hidden Slides
• Ensure that you print hidden slides when / if printing the
Notes Pages. In the print dialog box, select “Print hidden
slides”
• Ensure that you do not print hidden slides when / if
printing the actual Slides. In the print dialog box, de-select
“Print hidden slides”