Article ID: 166992 - Last Review: February 22, 2007 - Revision: 2.2

Standard Security Practices for Windows NT

This article was previously published under Q166992
Expand all | Collapse all

SUMMARY

Any security breach that requires access to administrative privileges needs to be dealt with using the appropriate security policy. This applies to all commercial operating systems, including Windows NT and UNIX.

MORE INFORMATION

Security is achieved through a combination of technology and policy. In order to maintain a highly secure environment, standard security practices should be followed, including:
  • Only trusted individuals should be granted Administrator privileges on the system.
  • The Administrator account should not be intended for casual use.
  • The Administrator account should only be used to administer the network or domain.
  • The Domain controllers should be physically secured.
  • Maintain a strong password policy. See http://www.microsoft.com/athome/security/default.mspx. (http://www.microsoft.com/athome/security/default.mspx)
  • Rename the Administrator account.
  • Never run untrusted programs while logged in as Administrator.
For more information on other security topics, see the Microsoft Security Advisor site at: http://www.microsoft.com/security/. (http://www.microsoft.com/security/)

APPLIES TO
  • Microsoft Windows 2000 Server
  • Microsoft Windows 2000 Advanced Server
  • Microsoft Windows 2000 Professional Edition
  • Microsoft Windows NT Advanced Server 3.1
  • Microsoft Windows NT Workstation 3.1
  • Microsoft Windows NT Workstation 3.5
  • Microsoft Windows NT Workstation 3.51
  • Microsoft Windows NT Workstation 4.0 Developer Edition
  • Microsoft Windows NT Server 3.5
  • Microsoft Windows NT Server 3.51
  • Microsoft Windows NT Server 4.0 Standard Edition
Keywords: 
kbinfo KB166992
 

Article Translations