Eng

Настройки По Умолчанию В Windows XP Pro SP2 – Eng

Приводится список некоторых параметров после установки английской версии Windows XP по умолчанию. Эти параметры установлены для учетной записи, созданной при установке Windows XP Pro SP2. Аналогичный перечень для русской версии Windows – на странице /Настройки По Умолчанию В Windows XP Pro SP 2



Local Users and groups

Local Users

NameFull NameDescription
Administrator Built-in account for administering the computer/domain
Guest Built-in account for guest access to the computer/domain
HelpAssistantRemote Desktop Help Assistant AccountAccount for Providing Remote Assistance
PAPAFull NameDescription
SUPPORT_388945a0CN=Microsoft Corporation, L=Redmond, S=Washington, C=USThis is a vendor's account for the Help and Support Service

Local groups

NameDescription
AdministratorsAdministrators have complete and unrestricted access to the computer/domain
Backup OperatorsBackup Operators can override security restrictions for the sole purpose of backing up or restoring files
GuestsGuests have the same access as members of the Users group by default, except for the Guest account which is further restricted
Network Configuration OperatorsMembers in this group can have some administrative privileges to manage configuration of networking features
Power UsersPower Users possess most administrative powers with some restrictions. Thus, Power Users can run legacy applications in addition to certified applications
Remote Desktop UsersMembers in this group are granted the right to logon remotely
ReplicatorSupports file replication in a domain
UsersUsers are prevented from making accidental or intentional system-wide changes. Thus, Users can run certified applications, but not most legacy applications
HelpServicesGroupGroup for the Help and Support Center


Local Security Policy – User rights assingnmemt

PolicySecurity Setting
Access this computer from the networkEveryone, Administrators, Users, Power Users, Backup Operators
Act as part of the operating system
Add workstations to domain
Adjust memory quotas for a processLOCAL SERVICE, NETWORK SERVICE, Administrators
Allow logon through Terminal ServicesAdministrators, Remote Desktop Users
Back up files and directoriesAdministrators, Backup Operators
Bypass traverse checkingEveryone, Administrators, Users, Power Users, Backup Operators
Change the system timeAdministrators, Power Users
Create a pagefileAdministrators
Create a token object
Create global objectsAdministrators,INTERACTIVE,SERVICE
Create permanent shared objects
Debug programsAdministrators
Deny access to this computer from the networkSUPPORT_388945a0, Guest
Deny logon as a batch job
Deny logon as a service
Deny logon locallySUPPORT_388945a0, Guest
Deny logon through Terminal Services
Enable computer and user accounts to be trusted for delegation
Force shutdown from a remote systemAdministrators
Generate security auditsLOCAL SERVICE,NETWORK SERVICE
Impersonate a client after authenticationAdministrators,SERVICE
Increase scheduling priorityAdministrators
Load and unload device driversAdministrators
Lock pages in memory
Log on as a batch jobSUPPORT_388945a0
Log on as a serviceNETWORK SERVICE
Log on locallyGuest, Administrators, Users, Power Users, Backup Operators
Manage auditing and security logAdministrators
Modify firmware environment valuesAdministrators
Perform volume maintenance tasksAdministrators
Profile single processAdministrators, Power Users
Profile system performanceAdministrators
Remove computer from docking stationAdministrators, Users, Power Users
Replace a process level tokenLOCAL SERVICE,NETWORK SERVICE
Restore files and directoriesAdministrators, Backup Operators
Shut down the systemAdministrators, Users, Power Users, Backup Operators
Synchronize directory service data
Take ownership of files or other objectsAdministrators

Local Security Settings – Local Policies

Security Options

PolicySecurity Setting
Accounts: Administrator account statusEnabled
Accounts: Guest account statusDisabled
Accounts: Limit local account use of blank passwords to console logon onlyEnabled
Accounts: Rename administrator accountAdministrator
Accounts: Rename guest accountGuest
Audit: Audit the access of global system objectsDisabled
Audit: Audit the use of Backup and Restore privilegeDisabled
Audit: Shut down system immediately if unable to log security auditsDisabled
DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntaxNot defined
DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntaxNot defined
Devices: Allow undock without having to log onEnabled
Devices: Allowed to format and eject removable mediaAdministrators
Devices: Prevent users from installing printer driversDisabled
Devices: Restrict CD-ROM access to locally logged-on user onlyEnabled
Devices: Restrict floppy access to locally logged-on user onlyDisabled
Devices: Unsigned driver installation behaviorWarn but allow installation
Domain controller: Allow server operators to schedule tasksNot defined
Domain controller: LDAP server signing requirementsEnabled
Domain controller: Refuse machine account password changesNot defined
Domain member: Digitally encrypt or sign secure channel data (always)Enabled
Domain member: Digitally encrypt secure channel data (when possible)Enabled
Domain member: Digitally sign secure channel data (when possible)Enabled
Domain member: Disable machine account password changesDisabled
Domain member: Maximum machine account password age30 days
Domain member: Require strong (Windows 2000 or later) session keyDisabled
Interactive logon: Do not display last user nameDisabled
Interactive logon: Do not require CTRL+ALT+DELNot defined
Interactive logon: Message text for users attempting to log on
Interactive logon: Message title for users attempting to log onNot defined
Interactive logon: Number of previous logons to cache (in case domain controller is not available)10 logons
Interactive logon: Prompt user to change password before expiration14 days
Interactive logon: Require Domain Controller authentication to unlock workstationDisabled
Interactive logon: Require smart cardNot defined
Interactive logon: Smart card removal behaviorNo Action
Microsoft network client: Digitally sign communications (always)Disabled
Microsoft network client: Digitally sign communications (if server agrees)Enabled
Microsoft network client: Send unencrypted password to third-party SMB serversDisabled
Microsoft network server: Amount of idle time required before suspending session15 minutes
Microsoft network server: Digitally sign communications (always)Disabled
Microsoft network server: Digitally sign communications (if client agrees)Disabled
Microsoft network server: Disconnect clients when logon hours expireEnabled
Network access: Allow anonymous SID/Name translationDisabled
Network access: Do not allow anonymous enumeration of SAM accountsEnabled
Network access: Do not allow anonymous enumeration of SAM accounts and sharesDisabled
Network access: Do not allow storage of credentials or. NET Passports for network authenticationDisabled
Network access: Let Everyone permissions apply to anonymous usersDisabled
Network access: Named Pipes that can be accessed anonymouslyCOMNAP, COMNODE, SQL\QUERY, SPOOLSS, LLSRPC, browser
Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,
System\CurrentControlSet\Control\Print\Printers,
System\CurrentControlSet\Control\Server Applications,
System\CurrentControlSet\Services\Eventlog,
Software\Microsoft\OLAP Server,
Software\Microsoft\Windows NT\CurrentVersion,
System\CurrentControlSet\Control\ContentIndex,
System\CurrentControlSet\Control\Terminal Server,
System\CurrentControlSet\Control\Terminal Server\UserConfig,
System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration
Network access: Shares that can be accessed anonymouslyCOMCFG,DFS$
Network access: Sharing and security model for local accountsGuest only – local users authenticate as Guest
Network security: Do not store LAN Manager hash value on next password changeDisabled
Network security: Force logoff when logon hours expireDisabled
Network security: LAN Manager authentication levelSend LM & NTLM responses
Network security: LDAP client signing requirementsNegotiate signing
Network security: Minimum session security for NTLM SSP based (including secure RPC) clientsNo minimum
Network security: Minimum session security for NTLM SSP based (including secure RPC) serversNo minimum
Recovery console: Allow automatic administrative logon Disabled
Recovery console: Allow floppy copy and access to all drives and all foldersDisabled
Shutdown: Allow system to be shut down without having to log onEnabled
Shutdown: Clear virtual memory pagefileDisabled
System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signingDisabled
System objects: Default owner for objects created by members of the Administrators groupObject creator
System objects: Require case insensitivity for non-Windows subsystemsEnabled
System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links)Enabled

Состояние служб по умолчанию

Пустое поле в столбце Status означает состояние Stopped.

NameDescriptionStatusStartup TypeLog On As
AlerterNotifies selected users and computers of administrative alerts.If the service is stopped, programs that use administrative alerts will not receive them. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal Service
Application Layer Gateway ServiceProvides support for 3rd party protocol plug-ins for Internet Connection Sharing and the Windows Firewall.StartedManualLocal Service
Application ManagementProvides software installation services such as Assign, Publish, and Remove. ManualLocal System
Automatic UpdatesEnables the download and installation of Windows updates. If this service is disabled, this computer will not be able to use the Automatic Updates feature or the Windows Update Web site.StartedAutomaticLocal System
Background Intelligent Transfer ServiceTransfers data between clients and servers in the background. If BITS is disabled, features such as Windows Update will not work correctly. ManualLocal System
ClipBookEnables ClipBook Viewer to store information and share it with remote computers. If the service is stopped, ClipBook Viewer will not be able to share information with remote computers. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal System
COM+ Event SystemSupports System Event Notification Service (SENS), which provides automatic distribution of events to subscribing Component Object Model (COM) components. If the service is stopped, SENS will close and will not be able to provide logon and logoff notifications. If this service is disabled, any services that explicitly depend on it will fail to start.StartedManualLocal System
COM+ System ApplicationManages the configuration and tracking of Component Object Model (COM)±based components. If the service is stopped, most COM±based components will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
Computer BrowserMaintains an updated list of computers on the network and supplies this list to computers designated as browsers. If this service is stopped, this list will not be updated or maintained. If this service is disabled, any services that explicitly depend on it will fail to start. AutomaticLocal System
Cryptographic ServicesProvides three management services: Catalog Database Service, which confirms the signatures of Windows files; Protected Root Service, which adds and removes Trusted Root Certification Authority certificates from this computer; and Key Service, which helps enroll this computer for certificates. If this service is stopped, these management services will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start. StartedAutomaticLocal System
DCOM Server Process LauncherProvides launch functionality for DCOM services.StartedAutomaticLocal System
DHCP ClientManages network configuration by registering and updating IP addresses and DNS names.StartedAutomaticLocal System
Distributed Link Tracking ClientMaintains links between NTFS files within a computer or across computers in a network domain.StartedAutomaticLocal System
Distributed Transaction CoordinatorCoordinates transactions that span multiple resource managers, such as databases, message queues, and file systems. If this service is stopped, these transactions will not occur. If this service is disabled, any services that explicitly depend on it will fail to start. ManualNetwork Service
DNS ClientResolves and caches Domain Name System (DNS) names for this computer. If this service is stopped, this computer will not be able to resolve DNS names and locate Active Directory domain controllers. If this service is disabled, any services that explicitly depend on it will fail to start.Started AutomaticNetwork Service
Error Reporting ServiceAllows error reporting for services and applictions running in non-standard environments.StartedAutomaticLocal System
Event LogEnables event log messages issued by Windows-based programs and components to be viewed in Event Viewer. This service cannot be stopped.StartedAutomaticLocal System
Fast User Switching CompatibilityProvides management for applications that require assistance in a multiple user environment.StartedManualLocal System
Help and SupportEnables Help and Support Center to run on this computer. If this service is stopped, Help and Support Center will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
HTTP SSLThis service implements the secure hypertext transfer protocol (HTTPS) for the HTTP service, using the Secure Socket Layer (SSL). If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
Human Interface Device AccessEnables generic input access to Human Interface Devices (HID), which activates and maintains the use of predefined hot buttons on keyboards, remote controls, and other multimedia devices. If this service is stopped, hot buttons controlled by this service will no longer function. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal System
IMAPI CD-Burning COM ServiceManages CD recording using Image Mastering Applications Programming Interface (IMAPI). If this service is stopped, this computer will be unable to record CDs. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
Indexing ServiceIndexes contents and properties of files on local and remote computers; provides rapid access to files through flexible querying language. ManualLocal System
IPSEC ServicesManages IP security policy and starts the ISAKMP/Oakley (IKE) and the IP security driver.StartedAutomaticLocal System
Logical Disk ManagerDetects and monitors new hard disk drives and sends disk volume information to Logical Disk Manager Administrative Service for configuration. If this service is stopped, dynamic disk status and configuration information may become out of date. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
Logical Disk Manager Administrative ServiceConfigures hard disk drives and volumes. The service only runs for configuration processes and then stops. ManualLocal System
MessengerTransmits net send and Alerter service messages between clients and servers. This service is not related to Windows Messenger. If this service is stopped, Alerter messages will not be transmitted. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal System
MS Software Shadow Copy ProviderManages software-based volume shadow copies taken by the Volume Shadow Copy service. If this service is stopped, software-based volume shadow copies cannot be managed. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
Net LogonSupports pass-through authentication of account logon events for computers in a domain. ManualLocal System
NetMeeting Remote Desktop SharingEnables an authorized user to access this computer remotely by using NetMeeting over a corporate intranet. If this service is stopped, remote desktop sharing will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
Network ConnectionsManages objects in the Network and Dial-Up Connections folder, in which you can view both local area network and remote connections.StartedManualLocal System
Network DDEProvides network transport and security for Dynamic Data Exchange (DDE) for programs running on the same computer or on different computers. If this service is stopped, DDE transport and security will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal System
Network DDE DSDMManages Dynamic Data Exchange (DDE) network shares. If this service is stopped, DDE network shares will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal System
Network Location Awareness (NLA)Collects and stores network configuration and location information, and notifies applications when this information changes.StartedManualLocal System
Network Provisioning ServiceManages XML configuration files on a domain basis for automatic network provisioning. ManualLocal System
NT LM Security Support ProviderProvides security to remote procedure call (RPC) programs that use transports other than named pipes. ManualLocal System
Performance Logs and AlertsCollects performance data from local or remote computers based on preconfigured schedule parameters, then writes the data to a log or triggers an alert. If this service is stopped, performance information will not be collected. If this service is disabled, any services that explicitly depend on it will fail to start. ManualNetwork Service
Plug and PlayEnables a computer to recognize and adapt to hardware changes with little or no user input. Stopping or disabling this service will result in system instability.StartedAutomaticLocal System
Portable Media Serial Number ServiceRetrieves the serial number of any portable media player connected to this computer. If this service is stopped, protected content might not be down loaded to the device. ManualLocal System
Print SpoolerLoads files to memory for later printing.StartedAutomaticLocal System
Protected StorageProvides protected storage for sensitive data, such as private keys, to prevent access by unauthorized services, processes, or users.StartedAutomaticLocal System
QoS RSVPProvides network signaling and local traffic control setup functionality for QoS-aware programs and control applets. ManualLocal System
Remote Access Auto Connection ManagerCreates a connection to a remote network whenever a program references a remote DNS or NetBIOS name or address. ManualLocal System
Remote Access Connection ManagerCreates a network connection. ManualLocal System
Remote Desktop Help Session ManagerManages and controls Remote Assistance. If this service is stopped, Remote Assistance will be unavailable. Before stopping this service, see the Dependencies tab of the Properties dialog box. ManualLocal System
Remote Procedure Call (RPC)Provides the endpoint mapper and other miscellaneous RPC services.StartedAutomaticNetwork Service
Remote Procedure Call (RPC) LocatorManages the RPC name service database. ManualNetwork Service
Remote RegistryEnables remote users to modify registry settings on this computer. If this service is stopped, the registry can be modified only by users on this computer. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal Service
Removable Storage ManualLocal System
Routing and Remote AccessOffers routing services to businesses in local area and wide area network environments. DisabledLocal System
Secondary LogonEnables starting processes under alternate credentials. If this service is stopped, this type of logon access will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
Security Accounts ManagerStores security information for local user accounts.StartedAutomaticLocal System
Security CenterMonitors system security settings and configurations.StartedAutomaticLocal System
ServerSupports file, print, and named-pipe sharing over the network for this computer. If this service is stopped, these functions will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
Shell Hardware DetectionProvides notifications for AutoPlay hardware events.StartedAutomaticLocal System
Smart CardManages access to smart cards read by this computer. If this service is stopped, this computer will be unable to read smart cards. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal Service
SSDP Discovery ServiceEnables discovery of UPnP devices on your home network.StartedManualLocal Service
System Event NotificationTracks system events such as Windows logon, network, and power events. Notifies COM+ Event System subscribers of these events.StartedAutomaticLocal System
System Restore ServicePerforms system restore functions. To stop service, turn off System Restore from the System Restore tab in My Computer->PropertiesStartedAutomaticLocal System
Task SchedulerEnables a user to configure and schedule automated tasks on this computer. If this service is stopped, these tasks will not be run at their scheduled times. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
TCP/IP NetBIOSHelperEnables support for NetBIOSover TCP/IP NetBT service and NetBIOSname resolution.StartedAutomaticLocal Service
TelephonyProvides Telephony API (TAPI) support for programs that control telephony devices and IP based voice connections on the local computer and, through the LAN, on servers that are also running the service. ManualLocal System
TelnetEnables a remote user to log on to this computer and run programs, and supports various TCP/IP Telnet clients, including UNIX-based and Windows-based computers. If this service is stopped, remote user access to programs might be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start. DisabledLocal System
Terminal ServicesAllows multiple users to be connected interactively to a machine as well as the display of desktops and applications to remote computers. The underpinning of Remote Desktop (including RD for Administrators), Fast User Switching, Remote Assistance, and Terminal Server.StartedManualLocal System
ThemesProvides user experience theme management.StartedAutomaticLocal System
Uninterruptible Power SupplyManages an uninterruptible power supply (UPS) connected to the computer. ManualLocal System
Universal Plug and Play Device HostProvides support to host Universal Plug and Play devices. ManualLocal Service
Volume Shadow CopyManages and implements Volume Shadow Copies used for backup and other purposes. If this service is stopped, shadow copies will be unavailable for backup and the backup may fail. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
WebClientEnables Windows-based programs to create, access, and modify Internet-based files. If this service is stopped, these functions will not be available. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal Service
Windows AudioManages audio devices for Windows-based programs. If this service is stopped, audio devices and effects will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
Windows Firewall/Internet Connection Sharing (ICS)Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network.StartedAutomaticLocal System
Windows Image Acquisition (WIA)Provides image acquisition services for scanners and cameras. ManualLocal System
Windows InstallerAdds, modifies, and removes applications provided as a Windows Installer (*.msi) package. If this service is disabled, any services that explicitly depend on it will fail to start. ManualLocal System
Windows Management InstrumentationProvides a common interface and object model to access management information about operating system, devices, applications and services. If this service is stopped, most Windows-based software will not function properly. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
Windows Management Instrumentation Driver ExtensionsProvides systems management information to and from drivers. ManualLocal System
Windows TimeMaintains date and time synchronization on all clients and servers in the network. If this service is stopped, date and time synchronization will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System
Wireless Zero ConfigurationProvides automatic configuration for the 802.11 adaptersStartedAutomaticLocal System
WMI Performance AdapterProvides performance library information from WMI HiPerf providers. ManualLocal System
WorkstationCreates and maintains client network connections to remote servers. If this service is stopped, these connections will be unavailable. If this service is disabled, any services that explicitly depend on it will fail to start.StartedAutomaticLocal System


Прочитано 1.386 раз

Общая оценка документа [показать форму]

страница еще не оценена