4.2 - Reconnaissance Countermeasures
4.2 - Reconnaissance countermeasures
Information Sharing Policies
Companies should control all information being shared around the business. This includes press releases, annual reports, website information, product catalogues, and social media.
DNS Hardening
DNS is the most targeted service in the reconnaissance phase. DNS hardening can include things such as installing patches in DNS servers, keeping the servers up to date, cleaning up information and running vulnerability tests. A split DNS can also be used to assign clients who are accessing the DNS from the internet, a public IP address and clients who are accessing the DNS internally, internal IP addresses. This means permissions can be managed so internal IP addresses are given more permissions and can access more things.
Comments
Post a Comment