Printer Friendly
The Free Library
19,573,952 articles and books
Member login
User name  
Password 
 
Join us Forgot password?

Aelita Software Makes Recommendations Based On Windows 2000 Security Vulnerability.


Business Editors & High Tech Writers

COLUMBUS, Ohio--(BUSINESS WIRE)--Feb. 5, 2002

Case for Multi-Forest Architecture is Now Stronger says Company that

First Identified Domain Trust Vulnerability

Aelita Software Corporation, which provides enterprise management solutions for Windows-centric networks, today released information on how to minimize an organization's vulnerability to elevation elevation, vertical distance from a datum plane, usually mean sea level to a point above the earth. Often used synonymously with altitude, elevation is the height on the earth's surface and altitude, the height in space above the surface.  of privilege attacks that are made possible by the way domain trust relationships are handled in Windows 2000 and Windows NT (Windows New Technology) A 32-bit operating system from Microsoft for Intel x86 CPUs. NT is the core technology in Windows 2000 and Windows XP (see Windows). Available in separate client and server versions, it includes built-in networking and preemptive multitasking. . Microsoft issued a security bulletin on this vulnerability on Jan. 30.

Aelita, which was credited by Microsoft for identifying the vulnerability, has unveiled a special section of its Web site, www.aelita.com/ADSecurity, devoted to issues concerning the vulnerability. The company has also released a white paper titled "Protecting Active Directory from the Domain Trust Vulnerability," which can be downloaded from the special Web site section.

"Microsoft has clearly taken this vulnerability seriously and we are encouraging our customers to consider the SID filtering capabilities Microsoft released," said Ratmir Timashev, president and CEO (1) (Chief Executive Officer) The highest individual in command of an organization. Typically the president of the company, the CEO reports to the Chairman of the Board.  of Aelita Software. "At the same time, we want our customers to understand that because of the way these trust relationships are handled, the forest, not the domain, should be considered the true security boundary in Windows 2000. Organizations should take account of this fact when evaluating their current and future Active Directory designs and give more serious consideration to a multi-forest architecture."

According to according to
prep.
1. As stated or indicated by; on the authority of: according to historians.

2. In keeping with: according to instructions.

3.
 Timashev, organizations must balance security against collaboration and administrative overhead when creating an Active Directory architecture for Windows 2000 and Exchange 2000 enterprise environments. The multi-forest approach may also be justified for companies with autonomous divisions, or to comply with specific industry regulations.

Aelita discovered the vulnerability in the process of developing solutions for Windows 2000 migration, administration and recovery. The company immediately notified Microsoft and has been working with Microsoft on the issue so that a strategy for minimizing the vulnerability could be developed prior to release of the information.

According to Microsoft's security bulletin, the trust relationships between Windows NT or Windows 2000 domains do not verify that the trusted domain is actually authoritative for all the SIDs in the authorization data. This could allow a malicious Involving malice; characterized by wicked or mischievous motives or intentions.

An act done maliciously is one that is wrongful and performed willfully or intentionally, and without legal justification.


DESERTION, MALICIOUS.
 administrator with administrative privileges on the trusted domain, and the technical wherewithal where·with·al  
n.
The necessary means, especially financial means: didn't have the wherewithal to survive an economic downturn.

conj.
Wherewith.

pron.
Wherewith.
 to modify low-level operating system operating system (OS)

Software that controls the operation of a computer, directs the input and output of data, keeps track of files, and controls the processing of computer programs.
 functions, to extend their administrative privileges to the trusting domain and undermine network security policies.

Microsoft developed SID filtering in response to the vulnerability. SID filtering can be used to screen out access from domains with poor physical security or whose administrators may raise doubts.

The Aelita white paper, "Protecting Active Directory from the Domain Trust Vulnerability," describes this security threat in detail and provides expert knowledge that can help high-level administrators and managers design more secure Active Directory infrastructures.

About Aelita Software Corporation:

Aelita Software, a Microsoft Gold Certified See certification.  Partner, provides comprehensive Windows-centric enterprise management solutions that focus on migration and deployment, administration and provisioning, operations and security, and backup and recovery. Aelita solutions improve the usability and security of Windows 2000, Active Directory, Microsoft Exchange Messaging and groupware software for Windows from Microsoft. Exchange Server is an Internet-compliant e-mail system that runs under Windows NT/2000 and Windows Server 2003. It can be accessed by Web browsers, the Exchange client, versions of Outlook and the earlier Windows Inbox.  and .NET infrastructures, while also extending Windows-centric network management to multi-platform enterprises. Recent Aelita innovations include ZeroIMPACT(TM) technology migration, the first full-featured Active Directory recovery solution, and a new approach to operations management Operations management is an area of business that is concerned with the production of goods and services, and involves the responsibility of ensuring that business operations are efficient and effective.  that is enabling network managers, security directors and CIOs to use operating data in new ways. Aelita Software is headquartered in Columbus, Ohio Columbus is the capital and the largest city of the American state of Ohio. Named for explorer Christopher Columbus, the city was founded in 1812 at the confluence of the Scioto and Olentangy rivers, and assumed the functions of state capital in 1816.  and can be reached at (800) 263-0036. For more information on Aelita, go to www.aelita.com or contact sales@aelita.com.
COPYRIGHT 2002 Business Wire
No portion of this article can be reproduced without the express written permission from the copyright holder.
Copyright 2002, Gale Group. All rights reserved. Gale Group is a Thomson Corporation Company.

 Reader Opinion

Title:

Comment:



 

Article Details
Printer friendly Cite/link Email Feedback
Publication:Business Wire
Date:Feb 5, 2002
Words:582
Previous Article:Mount Lucas Management Asks: Will Commodities Lead Us Out of Recession -- Again? Investors are Looking At the Most Basic Items for Market Turn.
Next Article:FedEx Home Delivery Expands to 90% of the Country; Dedicated Residential Delivery Service Accounts for Half of FedEx Ground's Package Growth.
Topics:



Related Articles
Aelita Software Announces Intelligence Tool for Microsoft ISA Server 2000; EventAdmin Support Improves Management, Capacity Planning and Security...
Aelita Software Delivers Strong First Quarter Performance; Revenue Increases 103 Percent Over Q1 2000.
Aelita Software Previews Exchange Migration Wizard for Microsoft Exchange 2000 Migration; Coexistence With Exchange 5.5 Delivers Controlled...
Aelita Software and Hitachi Software Partner to Speed Migration to Windows 2000.
Aelita Software Joins HP OpenView Solution Alliance Program; Complementary Solutions Extend Capabilities for Active Directory and Microsoft Exchange.
Aelita Announces Support for Windows Server 2003.
Enterprise Directory Manager 5.0 Adds New Features to Aelita's Secure Management Platform for Active Directory; New Release Adds Features, is...
Aelita Products Receive Certification for Windows Server 2003 Through VeriTest.
Aggie Haslup Joins Aelita Software as Marketing Vice President; Software Veteran to Lead Product Management and Marketing Initiatives.
Quest new white paper.

Terms of use | Copyright © 2012 Farlex, Inc. | Feedback | For webmasters | Submit articles