目录1账户管理..................................................................................................................................31.1用户管理.......................................................................................................................31.2弱口令修改...................................................................................................................31.3密码策略.......................................................................................................................31.4帐户锁定策略...............................................................................................................32本地策略..................................................................................................................................42.1审核策略:...................................................................................................................43服务..........................................................................................................................................53.1关闭不必须的服务.......................................................................................................54网络协议..................................................................................................................................74.1删除TCP/IP外的其他网络协议:.............................................................................74.2解除NetBios与TCP/IP协议的绑定:.......................................................................74.3使用TCP/IP筛选限制端口:.....................................................................................75注册表设置...............................................................................................................................85.1关闭默认共享...............................................................................................................85.2减少DDOS攻击的影响..............................................................................................85.3处理HTTP/FTP半连接请求.......................................................................................85.4禁用CD-ROM的自动运行.........................................................................................85.5删除OS2、POSIX子系统...........................................................................................95.6防止ICMP重定向报文的攻击....................................................................................95.7禁止响应ICMP路由通告报文....................................................................................95.8保护内核对象标志.......................................................................................................95.9禁止建立空连接...........................................................................................................95.10禁用路由功能...........................................................................................................95.11检查RUN...................................................................................................................106文件系统与权限.....................................................................................................................116.1使用NTFS文件系统...................................................................