This might not be the right forum for this question, but, does anyone
have any templates for what needs to be locked-down for servers in the
domain and in a DMZ. What ports and services that do not need to be
running/open.
I don't know what role this server plays but take a look at this documents, I hope they will help You:
"Active Directory in Networks Segmented by Firewalls" http://www.microsoft.com/downloads/details.aspx?FamilyID=c2ef3846-43f0-4caf-9767-a9166368434e&DisplayLang=en
"Active Directory Replication over Firewalls" http://www.microsoft.com/serviceproviders/columns/config_ipsec_P63623.asp
-- Tomasz Onyszko [MVP] [EMAIL PROTECTED] http://www.w2k.pl
List info : http://www.activedir.org/mail_list.htm List FAQ : http://www.activedir.org/list_faq.htm List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/