Information Assurance Menu

About IA at NSA Partners Rowlett Awards Award Recipients Background Nomination Procedures Links IA News IA Events Open for Registration Closed for Registration Scheduled IA Guidance Media Destruction Guidance Security Configuration Guides Applications Archived Guides Cisco Router Guides Current Guides Database Servers Fact Sheets IPv6 Operating Systems Apple Mac Operating Systems Linux Microsoft Windows Sun Solaris Supporting Documents Switches VoIP and IP Telephony Vulnerability Technical Reports Web Server and Browser Guides Wireless Standards Profiles System Level IA Guidance TEMPEST Overview TEMPEST Products: Level I Certified Confirmed Deficiencies Suspended Terminated No Longer Produced TEMPEST Products: Level II Certified Confirmed Deficiencies Suspended Terminated No Longer Produced TEMPEST Company POCs Certified Suspended Terminated TEMPEST Zoned Equipment IA Academic Outreach National Centers of Academic Excellence in IA Education CAE/IAE Program Criteria CAE-R Program Criteria Colloquium Institutions SEAL Program Applying FAQs IA Courseware Evaluation Program Institutions FAQs Student Opportunities IA Business and Research IA Business Affairs Office Certified Product Sales and Support Commercial COMSEC Evaluation Program Commercial Satellite Protection Program Independent Research and Development Program User Partnership Program National IA Research Laboratory Partnerships with Industry NIAP and COTS Product Evaluations IA Programs Global Information Grid High Assurance Platform Releases Computing Platform Architecture and Security Criteria IA Training and Rating Program Inline Media Encryptor Suite B Cryptography IA Careers Contact Information
.
Skip Search Box

Microsoft Windows Operating System


Microsoft Windows XP

As part of a change in our development strategy for security guidance, NSA is no longer maintaining and updating security guides for Windows XP Professional beyond what was produced as a cooperative effort between the vendor and the security community. The "Specialized Security - Limited Functionality" (SSLF) security settings in Microsoft's Windows XP Security Guide track closely with the security level historically represented in the NSA guidelines. It is our belief that this guide establishes the latest best practices for securing the product and recommend that traditional customers of our security recommendations use the Microsoft guide when securing Windows XP.

Title File Size Updated
NSA Windows XP Security Guide Addendum
50 KB 12 Sep 06
Zipped Windows XP Security Configuration Guides** (zip file) 980 KB 12 Sep 06


Microsoft Windows 2000

Windows 2000 is NOT RECOMMENDED for security-critical environments. It lacks important security features that are available in Windows XP and Vista. Microsoft currently provides security patches for Windows 2000, but the product is in its Extended Support Period, and this will end in June 2010. NSA recommends upgrading as soon as possible.
To assist our Windows 2000 user community, NSA has developed security configuration guidance for Windows 2000, with the cooperation of other government agencies and industry partners who provided their expertise and extensive technical review. The configuration guide for Microsoft Windows 2000 is being posted on the NSA web site and is presented in three parts: ".INF" files, configuration guides, and supporting documents..
NOTE: Follow these instructions to ensure that Microsoft Exchange will work with the Windows 2000 Security Configuration Guide.
A description of the files and how to modify the settings is available in the Guide to Securing Microsoft Windows 2000 Group Policy: Security Configuration Tool Set.

 
Title File Size Updated
SCERegVl.INF 13KB 5 Mar 03
W2kDC.INF 32KB 5 Mar 03
W2K DOMAIN POLICY.INF 4KB  
W2k Server.INF 32KB 5 Mar 03
W2k Workstation.INF 31KB 5 Mar 03
ISA.INF 1KB  
Microsoft Windows 2000 Network Architecture Guide 227KB  
Guide to Securing Microsoft Windows 2000 Group Policy 328KB  
Guide to Securing Microsoft Windows 2000 Group Policy: Security Configuration Tool Set 1.2.2 755KB 12 Sep 06
Group Policy Reference 769KB  
Guide to Securing Microsoft Windows 2000 Active Directory 611KB  
Guide to Securing Microsoft Windows 2000 DNS 372KB  
Guide to Securing Microsoft Windows 2000 Encrypting File System 218KB  
Guide to Securing Microsoft Windows 2000 File and Disk Resources 420KB  
Guide to Securing Microsoft Windows 2000 Schema 133KB  
Guide to Securing Microsoft Windows NT/9x Clients in a Windows 2000 Network 231KB  
Guide to Secure Configuration and Administration of Microsoft ISA Server 2000 1,469KB  
Guide to Secure Configuration and Administration of Microsoft Windows 2000 Certificate Services 1,432KB  
Guide to Secure Configuration and Administration of Microsoft Windows 2000 Certificate Services (Checklist Format) 1,167KB  
Guide to Secure Configuration and Administration of Microsoft Internet Information Services 5.0 version 1.4 2,731KB 16 JAN 04
Guide to Using DoD PKI Certificates in Outlook 2000, version 2.0 800KB  
Guide to Windows 2000 Kerberos Settings 369KB  
Microsoft Windows 2000 Router Configuration Guide 688KB  
Guide to Securing Microsoft Windows 2000 DHCP 337KB  
Guide to Securing Microsoft Windows 2000 Terminal Services 662KB  
Microsoft Windows 2000 IPsec Guide 1,330KB  
Guide to Secure Configuration and Administration of Microsoft Exchange 2000 4,200KB 15 Dec 04
Zipped Windows 2000 Security Configuration Guides** (zip file) 16,300KB 28 Oct 05

Microsoft Windows Server 2003

As part of a change in our development strategy for security guidance, NSA does not intend to publish a separate security guide for Windows Server 2003 beyond what was produced as a cooperative effort between the vendor and the security community. The Special Security - Limited Functionality (SSLF) settings in Microsoft's Windows Server 2003 Security Guide track closely with the security level historically represented in the NSA guidelines. It is our belief that this guide establishes the latest best practices for securing the product and recommend that traditional customers of our security recommendations use the Microsoft guide when securing Windows Server 2003.

Title File Size Updated
The Windows Server 2003 - Security Guide, v2.1 4526KB 26 Apr 06
The Windows Server 2003 - Security Guide - Read Me, v2.1 20KB 26 Apr 06
The Windows Server 2003 - Security Guide - Release Notes, v2.1 24KB 26 Apr 06
NSA Windows Server 2003 Security Guide Addendum 49KB 12 Sep 06
The Windows Server 2003 - Security Guide - Tools and Templates, v2.1 (exe file) 320KB 26 Apr 06

Microsoft Windows Vista

As part of a change in our development strategy for security guidance, NSA does not intend to publish a separate guide for Windows Vista beyond what was produced as a cooperative effort between the vendor and the security community. The "Specialized Security - Limited Functionality" (SSLF) security settings in Microsoft's Windows Vista Security Guide track closely with the security level historically represented in the NSA guidelines. It is our belief that this guide establishes the latest best practices for securing the product and recommend that traditional customers of our security recommendations use the Microsoft guide when securing Windows Vista. Windows Vista FAQs

Title File Size Updated
Windows Vista Security Guide.msi 1650KB 13 Nov 06

**To download and uncompress zipped files you need to have winzip loaded on your local machine.

 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service