Lab 2 : The Goals of Information Technology Security

“Security” is use to describe the quality or state of being secure that is to be free from danger or to be protected from those who would do harm, intentionally or otherwise.
Information security involves the security in an organization regarding the application security, policies involves and Information Technology infrastructure to create a secure and protected computing environment for an organization.
The goals of an Information security are confidentiality, integrity and availability.
In contemporary computer network environments, another goal to be achieved is to provide legitimate use of resources which ensuring that resources are from the original source.
In creating a secure computing environment, one must know how to balance these three elements.
If one of the element is more or less it will affect the functionality of the system, for instance if you concentrate on providing the total confidentiality of the information
then the availability of the data is less. Thus the balance between the elements is very important and this is the challenge a security administrator has to face.


By the end of this lab, student should be able to:
* Understand What is Information Technology Security goals
* Determine if partition is NTFS or FAT32
* Implementing confidentiality in Windows Server 2003
* Implementing integrity in Windows Server 2003
* Implementing availibility in Windows Server 2003

The first task is Using NTFS to Secure Local Resources and second task is Data Confidentiality follow by the third and fourth tasks which are Data Availability and Data Integrity.



Okay, now time to do some review question :p

1.What is the default permission when a partition is formatted with NTFS?
Default permission when a partition is formatted with NTFS is Full Control.

2.Who has access to the volume when a partition is formatted with NTFS?
NTFS is better security because you can use permissions and encryption to restrict access to specific files to approved users. The Everyone group has access to the volume when a partition is formatted with NTFS. The everyone group with the Full Control permission for the shared folder. If all users are members of the everyone group, so they all have access.

3.What is the best way to secure files and folders that you share on NTFS partitions?
The best way to secure files and folders that you share on NTFS partitions is put the files that you want to share in a shared folder, and keep the default shared folder permission (the everyone group with the Full Control permission for the shared folder). Then, assign NTFS permissions to users and groups to control access to all contents in the shared folder or to individual files.

4.Data integrity can also be threatened by environmental hazards such as dust, surges
and excessive heat. True or False?

It True because data integrity refers to the validity of data, meaning data is consistent and correct. Data integrity can also be threatened by environmental hazards such as heat, dust, and electrical surges.

p/s : This lab very interesting i like it hehehe. ^_^