Most Recent Posts
I need to generate a report
by It's me - 12/19/2025 9:52 PM
AC 12.4
by JamesNT - 12/17/2025 6:41 PM
Closing up shop
by JamesNT - 12/14/2025 8:17 PM
Erx slowness
by Raj1 - 12/11/2025 11:12 AM
ACITIC user seat dilemma
by Enio - 12/10/2025 12:35 PM
Citrix
by Enio - 12/10/2025 12:32 PM
Updox replacement?
by ffac - 12/09/2025 12:53 PM
AC Version 12.3
by denvertech - 11/24/2025 12:23 PM
Member Spotlight
Posts: 53
Joined: July 2021
Newest Members
Enio, scfpmd1955, jpark, sara25, SmartRX
4,602 Registered Users
Previous Thread
Next Thread
Print Thread
Rate Thread
Joined: Jun 2010
Posts: 9
Tom_I Offline OP
Member
OP Offline
Member
Joined: Jun 2010
Posts: 9
Hello AC User Community,
We are going to be upgrading to a very nice new Dell Windows Server 2008 system in the near future. I don't think a "best practices" document exists in relation to security of the AC system. Does anyone have any security tips that they've come across specifically related to an AC install? I don't mean things like "backup your data" or "use RAID", but more operational improvements above and beyond what the standard installer of AC v6 does.

Anyone explored or came across anything to improve security? I know I'm seriously worried about having the entire Import Items subfolder in the same one as the AC startup file, but I don't know if there is a good way to tweak that problem.

Thanks,
Tom

Joined: Dec 2009
Posts: 1,210
Likes: 8
Member
Offline
Member
Joined: Dec 2009
Posts: 1,210
Likes: 8
The only thing you have to do is follow the usual best practices:

1. Have a firm password policy that is enforced. If you are in a domain, your server can do this for you.

2. Have a stateful firewall between yourself and the Internet. Those little routers the DSL providers give you don't count.

3. Do not allow users to log on as administrators.

4. Make sure you are not using the EVERYONE group on any file share.

5. Do NOT disable UAC, I don't care what anyone says.

6. Make certain your anti-virus is up-to-date. I recommend Trend Micro for domain environments.

7. Do not store anything important on workstations only. Use folder redirection to get user documents to the server.

8. Use Windows Server Update Services to deploy security and other updates to servers and workstations. WSUS is free.

Those above will solve the majority of your security issues.

What most fail to realize is that programs like Amazing Charts are totally dependant on your network's overall security. Scumbags don't have to log on to AC to get your stuff when they can just copy the entire database off the server if they can log on to that with an easy password.

JamesNT


James Summerlin
My personal site: http://www.dataintegrationsolutions.net
james@dataintegrationsolutions.net
Joined: Apr 2011
Posts: 2,316
Likes: 2
G
Member
Offline
G
Member
Joined: Apr 2011
Posts: 2,316
Likes: 2
This is cool. I did all of this without even thinking about it. Didn't even realize I was doing it.

Joined: Jun 2010
Posts: 9
Tom_I Offline OP
Member
OP Offline
Member
Joined: Jun 2010
Posts: 9
Thanks James, we've also got those covered. Anyone done any tweaking of NTFS permissions or anything else that makes those imported items more difficult to access directly from a user's workstation?

Joined: Dec 2009
Posts: 1,210
Likes: 8
Member
Offline
Member
Joined: Dec 2009
Posts: 1,210
Likes: 8
Tom,

There really isn't much you can do here. I assume users need to at least read those files. Once a user reads a file, they have it. You can stop them from making changes to the copy you have, but you can't stop them from saving that file on their machine and emailing it out to someone else - at least not easily.

Regardless of what anyone says, security boils down to two things:

1. Keep that bad guys out.

2. Make sure you can trust your employees.

The stuff I posted above will keep the bad guys out. But if you have an employee you can't trust and you either don't know or are unwilling to do anything about it, make sure your retainer for your bankruptcy lawyer is paid up.

JamesNT


James Summerlin
My personal site: http://www.dataintegrationsolutions.net
james@dataintegrationsolutions.net

Moderated by  ChrisFNP, DocGene, JBS, Wendell365 

Link Copied to Clipboard
ShoutChat
Comment Guidelines: Do post respectful and insightful comments. Don't flame, hate, spam.
Who's Online Now
1 members (ChrisFNP), 105 guests, and 36 robots.
Key: Admin, Global Mod, Mod
Top Posters(30 Days)
Raj1 4
Enio 3
ffac 2
JBS 1
Top Posters
Bert 12,899
JBS 3,000
Wendell365 2,367
Sandeep 2,316
ryanjo 2,084
Leslie 2,002
Wayne 1,889
This board is dedicated to the memory of Michael "Indy" Astleford. February 6, 1961 -- April 16, 2019




SiteLock
Powered by UBB.threads™ PHP Forum Software 7.7.5