Welcome to the December edition of BH
Consulting's Security Watch Newsletter. In this month's issue we
provide some updates to what has been going on in BH Consulting, alert you to
some upcoming events in 2008. We also provide you with some links to
information we think may be of interest to you, give part II of our insight into Microsoft's Unified
Communications solution. We also cover how to integrate Active Directory
with LDAP, discuss how to protect your privacy on the Internet and how to
configure SNTP Time Servers.
Christmas Wishes To all our customers, readers of our
Security Watch Blog and
newsletter we at
BH
Consulting wish you all a very happy and peaceful Christmas and a
happy New Year.
Nollaig Shona daoibh go léir agus Athbhliain faoi shéan is faoi mhaise daoibh,
agus go mba seacht fearr sinn go léir ag an am seo ar an bhliain seo chugainn!
As part of our
Community Responsibility Programme BH Consulting is not sending out
Christmas cards this year, instead we have donated money to a very worthy
charity that does sterling work in helping those less fortunate than ourselves;
Focus Ireland
Focus Ireland
aims to advance the right of people-out-of-home to live in a place they call
home through quality services, research, and advocacy. The objectives of
Focus Ireland are to respond to the needs of people out-of-home and those at
risk of becoming homeless, through a range of appropriate high quality services,
to provide emergency transitional and long-term accommodation for people
out-of-home, to campaign and lobby for the rights of people out-of-home
and the prevention of homelessness. No sum is too small and all is
put to excellent use so please consider
donating to this worthwhile cause.
If you have found our Security Watch newsletter or our
Blog to be of
use or of interest, we ask you to
make a donation to
Focus Ireland. No sum is too small and all is
put to excellent use.
Here is a little wish from us all at
BH
Consulting - enjoy
About BH Consulting
BH Consulting was founded in answer to demands for an independent consulting
firm to assist clients gain a competitive edge by achieving IT Operational
excellence in deploying, managing and securing their IT infrastructure. With
over 20 year’s experience, we provide you with access to in-depth expertise,
experience and technical know-how. Backed with our quality processes and
commitment to deliver, BH Consulting provides clients with quality solutions at
cost effective rates.
BH CONSULTING NEWS Upcoming Event on
Emerging Information Security Threats & Solutions
As part of Trigraph
Professional Services' IT Security Series, Brian Honan will speak at
the upcoming
"Emerging Information Security Threats & Solutions"
briefing event scheduled for January 28th 2008. This Briefing provides
managers and key decision-makers in organisations with an overview of the latest
threats posed to their organisation while also outlining ways to reduce these
threats against critical organisational assets. More details on the
briefing is available from Trigraph Professional Services'
website.
BH CONSULTING WEBSITE UPDATE We strive at BH Consulting to provide information that is
relevant and useful in securing and running your business. To this end we
provide a range of free whitepapers available for download
free from our
white papers page.
LATEST THREAT LEVELS Get more information on the latest updates on current threats at
our online resources page;
The event will run from April the 7th to the
12th. This year's event was very successful. Not only is the quality
of the training superb, the networking opportunities to meet with information
security professionals from all around Europe, and indeed the World, are
fantastic.
SANS Dublin 2008 should be even better, and with the current euro to
dollar rate the courses are particularly good value for those of us based in
Europe.
Information Security Success Stories
It is not often that we in the information security field get to
read good news. Most publications seem to be full of stories relating to how
criminals are taking over the Internet, how countries are hacking each other and
more vulnerabilities than ever are being found in the software we use. So it is
refreshing to read the latest publication from the
SANS
Institute which highlights some of the success stories to come from
US Federal efforts to better protect their systems. The paper is called
“What Works in Implementing the US National Strategy to
Secure Cyberspace, Case Studies of Success in the War on Cybercrime and Cyber
Espionage”. The document is open for public comment until February
8th 2008. It is an interesting read and could provide you with some interesting
insight into how you can better defend your own systems.
LDAP Authentication
Executive Summary: Microsoft Windows Server 2003 R2’s Identity Management for
UNIX feature and Microsoft Windows Server 2003’s Services for UNIX (SFU) 3.5 let
you use Active Directory (AD) to integrate UNIX and Linux
clients into a Windows operating system (OS) environment. Identity Management
for UNIX and SFU let your AD domain...
Click
Here for more
Inexpensive Unified Communications Deployment,
Part II
In Part 1 I started writing about inexpensive methods of deploying Microsoft's
unified communications (UC) technology ("Inexpensive Unified Communications
Deployment, Part 1," November 8, 2007). I recommended downloading the free trial
versions of Exchange Server 2007 and Microsoft Office Communications Server
(OCS) 2007 to get started, and I mentioned... Click
Here for more
Protect User Privacy in Internet Explorer 7.0
Online interactions often involve the exchange of personal information—such as
physical and email addresses, gender, credit card number and personal
preferences—and you've probably wondered whether the Web site you're interacting
with is really using your personal information for only the reasons you
intended. For example, when you buy a book on the Internet, is the online
bookstore using your address information just to ship... Click
Here for more
Setting the SNTP Time Servers
You might wonder how to set the Simple Network Time Protocol (SNTP) time servers
that domain controllers (DCs) should synchronize with. You used to use the net
time command to set the SNTP servers that a DC should synchronize time with, as
in the following example: net time /setsntp:"server1.dom.com server2.dom.com
server3.dom.com" However, Microsoft has introduced the w32tm tool. You should
use w32tm, with the syntax... Click
Here for more
FREE SECURITY SCAN
In partnership with
Qualys, BH Consulting
are offering a for a free Network Security Scan so you can check how healthy
your network is. To find out more about what this service can do for you, visit
our free
Network Security Scan.
This issue of Security Watch is being brought to you by BH Consulting.
If you have found this issue to be of use please support our drive to raise funds
for
Focus Ireland.
Each
Security Watch eNewsletter, and the special Security Alert issues, are produced
independently by the Windows IT Pro Custom Media Group and is distributed by
various Microsoft security partners. Each eNewsletter contains up-to-date
information about security strategies, technologies, and alerts. Each Security
Alert contains the latest information about security threats.