Securing Network Servers (2000)

SEI Report
The practices recommended in this report are designed to help administrators configure and deploy network servers that satisfy organizational security requirements.
Publisher

Software Engineering Institute

CMU/SEI Report Number
CMU/SEI-2000-SIM-010

Abstract

The development of computer networks has resulted in an important class of computers: network servers. The primary purpose of these machines is to provide services, including both computational and data services, to other computers on the network.

Because of their service role, it is common for servers to store many of an organization’s most valuable and confidential information resources. They also are often deployed to provide a centralized capability for an entire organization, such as communication (electronic mail) or user authentication. Security breaches on a network server can result in the disclosure of critical information or the loss of a capability that can affect the entire organization. Therefore, securing network servers should be a significant part of your network and information security strategy.

Many security problems can be avoided if servers and networks are appropriately configured. Default hardware and software configurations are typically set by vendors to emphasize features and functions more than security. Since vendors are not aware of your security needs, you must configure new servers to reflect your security requirements and reconfigure them as your requirements change.

The practices recommended here are designed to help you configure and deploy network servers that satisfy your organization’s security requirements. The practices may also be useful in examining the configuration of previously deployed servers.

Cite This SEI Report

Allen, J., Kossakowski, K., Ford, G., Konda, S., & Simmel, D. (2000, April 1). Securing Network Servers (2000). (SEI Report CMU/SEI-2000-SIM-010). Retrieved August 10, 2026, from https://www.sei.cmu.edu/library/securing-network-servers-2000/.

@techreport{allen_2000,
author={Allen, Julia and Kossakowski, Klaus-Peter and Ford, Gary and Konda, Suresh and Simmel, Derek},
title={Securing Network Servers (2000)},
month={Apr},
year={2000},
number={{CMU/SEI-2000-SIM-010},
institution={Software Engineering Institute, Carnegie Mellon University},
url={https://www.sei.cmu.edu/library/securing-network-servers-2000/},
note={Accessed: 2026-Aug-10}
}

Allen, Julia, Klaus-Peter Kossakowski, Gary Ford, Suresh Konda, and Derek Simmel. "Securing Network Servers (2000)." (CMU/SEI-2000-SIM-010). Software Engineering Institute, Carnegie Mellon University. Software Engineering Institute, April 1, 2000. https://www.sei.cmu.edu/library/securing-network-servers-2000/.

J. Allen, K. Kossakowski, G. Ford, S. Konda, and D. Simmel, "Securing Network Servers (2000)," Software Engineering Institute, Carnegie Mellon University. Software Engineering Institute, SEI Report CMU/SEI-2000-SIM-010, 1-Apr-2000 [Online]. Available: https://www.sei.cmu.edu/library/securing-network-servers-2000/. [Accessed: 10-Aug-2026].

Allen, Julia, Klaus-Peter Kossakowski, Gary Ford, Suresh Konda, and Derek Simmel. "Securing Network Servers (2000)." (SEI Report CMU/SEI-2000-SIM-010). Software Engineering Institute, Carnegie Mellon University, Software Engineering Institute, 1 Apr. 2000. https://www.sei.cmu.edu/library/securing-network-servers-2000/. Accessed 10 Aug. 2026.

Allen, Julia; Kossakowski, Klaus-Peter; Ford, Gary; Konda, Suresh; & Simmel, Derek. Securing Network Servers (2000). CMU/SEI-2000-SIM-010. Software Engineering Institute. 2000. https://www.sei.cmu.edu/library/securing-network-servers-2000/