What is a security baseline?
I am sure that you have all heard about security baselines or have a preconceived definition of them. However, I just want to make sure that my definition and your definition is the same for this article. The security baseline is a suite of security settings that are established for each type of computer in your organization. The security baseline is established in such a way that the computer performs it duties, but nothing else. The reason for this limited approach is that if the computer cant perform anything but its predetermined duties, the possibility for it being attacked successfully is much smaller. Windows computers need security baselines more than about any other type of computer for a couple of reasons. First, Microsoft is notorious for allowing the default installation of their operating systems to be insecure. I dont think I need to defend this statement much, considering the issues with Internet Information Services and Internet Explorer over the past couple of years. T