Best Practices

  • Use a layered approach to security, with more than one mechanism in place to deter attackers.

  • After validating in a prototype environment, deploy Windows Server 2003 Service Pack 1 on SharePoint Servers to further protect the server against attack.

  • Use the Security Configuration Wizard (SCW) to harden a SharePoint server and reduce the surface attack area.

  • Utilize SharePoint site groups to allow for granular delegation of security to SharePoint sites, workspaces, and lists.

  • Physically secure SharePoint servers behind locked doors and in secure locations.

  • Consider the use of IPSec to encrypt traffic between SharePoint Servers.

  • Use the Microsoft Baseline Security Analyzer to audit the security of SharePoint servers.

  • Turn on SQL auditing ...

Get Microsoft® SharePoint™ 2003 Unleashed, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.