![]() | |
| ||||
| Password choices to avoid:
Good choices include combinations of :
See MS Password best practices You can change your password using the Control Panel (CP) ->User Accounts tool. If you are a Computer Administrator and create a user password for your account by using the User Accounts Control Panel tool, you are prompted to make your files and folder private. ALWAYS make your files private. While you’re there, create a new login (eg zMaster ) with ADMIN privileges using and create a password for it (hint: to make passwords easier to remember, add a prefix to your regular user login password). If your login password was 12345678 (very bad by the way), then you might add Adm- to it and then be able to login with Adm-12345678. Notice this fits the good choices noted above To actually create the users profile, you need to login to the new user id.There is one more account you need to modify: GUEST. This account can be accessed remotely and if not protected, you can get into trouble with File Sharing. First, set a password for the account (eg: guest- prefix to your normal password). Now DISABLE the account. Sounds crazy I know (but hey, you have to click START to shutdown the system too ) but disable only inhibits using the keyboard to login, not access by the network. By the way, there’s a hidden admin account and you ought to secure it too.
To allow easy access to your login names, change the way users login:
Now you can pick a login at boot time OR switch users without logging off
There are other ticks with user switching, but that’s discussed under the topic LUA vs. Admin. While we’re on login security, did you know Windows login passwords are easily hacked! The problem lies in the LMHASH technique of storing passwords. To thwart the hackers, there are three techniques you can use to protect your system.
See lmhash protection Also see NTLM version 2 (NTLMv2) and btw: compatibility to Win/98, Macintosh and Linux shares needs the setting · Level 1, Send LM and NTLM—use NTLMv2 session security if negotiated Security 101 table of contents next ->1.c Print/File Sharing contributed by jobeard [last edit] Jan 6, 2009[/edit]
__________________ J. O. Beard; you + tech-101.com => synergism. Secure your system now |
![]() |
| Tags |
| lmhash, ntlm, passwords |
| Thread Tools | Search this Thread |
| Display Modes | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Security 101 | jobeard | System Security | 1 | 04-25-2010 05:37 PM |
| another Forum re Web Security | jobeard | Tech-101 Chit Chat | 3 | 10-28-2009 06:28 PM |
| Security 101-6: Layered Security | jobeard | System Security | 0 | 02-16-2009 12:02 PM |
| Security 101-3c. IM, P2P Control | jobeard | Network Security | 0 | 01-06-2009 06:14 PM |
| Security 101-2c. GPO policies | jobeard | System Security | 0 | 01-06-2009 04:00 PM |
Copyright © 2009 Tech-101.com. All rights reserved.