| The University of Texas at Austin
|
|

| |
Securing Departmental Systems
UT Seal

This document lists significant changes that have been made to the Server Hardening Checklists.

Date Change description Original text
11/13/2007

Checklists and log moved from ITS Web site to ISO Web site and converted to HTML.

Typo referring to "Category II/II" data changed to "Category II/III" data.

Link to SANS Gold Paper on Multifunction devices added to MFP hardening checklist.

9/21/2007

Multi-function printer checklist: Updated standard # 7 to say "Ensure the MFP maintains its configuration state after power-down or reboot. If a full reset is performed, ensure that a process is in place to reconfigure the MFP back to its production state."

Updated UT Note # 18 with the following: "When a vendor is working on the MFP, the vendor's work is monitored to ensure that security measures are not removed during the course of troubleshooting. If they are removed, they must be put back in place."

#7: "Ensure the MFP maintains its configuration state after power-down or reboot."

Note 18: New list item.

9/13/2007

Updated various links to ITS content to reflect changes to file locations after ITS site redesign.

Changed UT Note 14 from Mac OS X checklist, UT Note 20 in Redhat-Linux, UT Note 33 in Solaris 10, and Windows 2003 UT Note 38 to reflect that ITS Software Distribution and Sales no longer carries Tripwire.

Corrected name of ITS Networking in Solaris 10 UT Note 36 and Windows 2003 UT Note 30.

"(ITS Software Distribution & Sales carries Tripwire, but the commercial version is not available for the Mac OS. There is an open source version, however.)"

"Tripwire is available from Software Distribution & Sales for a nominal charge. The Tripwire management console, which is also available from SDS for a nominal charge, can be very helpful for managing more complex installations."

"ITS Telecommunications and Networking"

9/13/2007 Added Multifunction Printer Checklist New
4/11/2007 Changed all checklists to PHP format. File content is unaffected, but the URLs have all changed from the .html to the .php extension. .html
12/02/2006

Edited the checklists to reflect language consistent with the Minimum Security Standards for Systems, practice 5.7.

http://security.utexas.edu/admin/macosx.html; Step 12

http://security.utexas.edu/admin/redhat-linux.html; Step 19

http://security.utexas.edu/admin/solaris10.html; Step 32

http://security.utexas.edu/admin/win2003.html; Step 38

Variations on "Secure (that is, encrypted) storage for Category-I data."

 

 



Last updated September 5, 2008.
Copyright © 2006-08, Information Security Office. All rights reserved.
Privacy | Accessibility | Emergency Preparedness, Safety and Security

Send computing questions to the ITS Help Desk or call (512) 475-9400.

 

| | | |