Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
Although Windows EBS includes a variety of security mechanisms, there may be threats or vulnerabilities in your network infrastructure.
The following table describes identified threats or vulnerabilities in Windows EBS and the proactive steps that you can take to lessen the risks. The table does not list common threats and vulnerabilities that are mitigated by the default configurations of the Windows EBS servers and the network.
For a list of resources for threats and vulnerabilities mitigation, see the Microsoft Web site (https://go.microsoft.com/fwlink/?LinkId=128048).
| Threat or vulnerability | Description | Mitigation |
|---|---|---|
Components of Windows EBS may not have applied critical security updates from Microsoft Update. |
|
|
During the installation of Windows EBS and after deployment, the servers for Windows EBS may be vulnerable to certain password attacks. |
|
|
An add-in for Windows EBS may run malicious code during the installation or after it is deployed or enabled in the Windows EBS Administration Console. |
|
It is recommended that you carefully evaluate an add-in for Windows EBS before you install it and enable it on the Management Server. You should confirm that an add-in is published by a trustworthy source. For more information about managing add-ins, see the Microsoft Web site (https://go.microsoft.com/fwlink/?LinkId=108924). |
The Remote Web Workplace Web site may be vulnerable to denial-of-service attacks. |
If multiple connections are made to the Remote Web Workplace site, users may experience slow response, timeouts, or a denial-of-service. |
Users of Remote Web Workplace must belong to the Remote Web Workplace Users security group, and they must be authenticated by logging on to Remote Web Workplace. |
The Management Server may be vulnerable to denial-of-service attacks if users’ Documents are redirected to that server. |
If you use a shared folder on the system or data volume of the Management Server to redirect users’ Documents folders, a user could disable the Management Server by filling the shared folder to capacity. |
Configure a shared folder on a separate volume from the system volume or data volume to redirect users’ Documents folders. For information about configuring Documents redirection, see the Microsoft Web site (https://go.microsoft.com/fwlink/?LinkId=108928). |