HostedDB - Dedicated UNIX Servers

-->
IT Baseline Protection Manual S 2.148 Secure configuration of Novell Netware  4.x networks

S 2.148 Secure configuration of Novell Netware  4.x networks

Initiation responsibility: Head of IT Section, IT Security Management

Implementation responsibility: Administrators

A secure configuration of a Novell Netware  4.x network involves the following two steps:

Installation of the related software

To ensure secure installation of the Novell Netware  4.x software, the Installation manual for Novell Netware  4.x needs to be referred to beforehand. The following points must be observed on all accounts:

All other essential steps for installing Novell Netware  4.x software are described in the handbooks entitled Installation and Manual on Netware 4 Networks.

Availability requirements

To increase the availability of Novell servers and the stored data, the operating system offers a hierarchical set of fault tolerance levels which are described below. Each level contains the functionalities of the previous levels.

Configuration of the network environment

Novell Netware  4.x offers its own security system for the protection of the network and its resources. However, the corresponding functions must be activated manually by the administrator during configuration of a Netware  4.x network, so the administrator is responsible to a considerable extent for the security of the network.

The Novell Netware Administrator is an essential aid in administrating and securing a Netware 4.x network. This program comes in the following versions:

The program Netware Administrator allows a wide range of settings, such as setting a minimum password length or the maximum number of simultaneous connections for a user. In the following section, the security-relevant functions of the Netware administrator are listed and explained. The descriptions include specifications of the related parameter settings required for the secure operation of a Netware  4.x network.

One essential step involved in the configuration of a secure Netware  4.x network is the creation of user accounts. Templates for the standard users of each context should be created for this purpose. During the establishment of individual user accounts, the values set in the templates are transferred, which greatly reduces the time and effort involved. The option named USE TEMPLATE has been provided for this purpose. The following functions should be set in a template:

Login restrictions

Menu diagram: Netware Administrator Menu "Template: User template / Login time restrictions"

Password restrictions

Menu diagram: Netware Administrator Menu "Template: User template / Password restrictions"

Login time restrictions

Menu diagram: Netware Administrator Menu "Template: User template / Login time restrictions"

The following security mechanisms can additionally be set for individual container objects of the NDS:

Intruder detection

Menu diagram: Netware Administrator Menü "Organizational Unit :Lab/Intruder Detection"

Additional controls:


© Copyright by
Bundesamt für Sicherheit in der Informationstechnik
July 1999
home