Jan De Clercq

De Clercq

Jan De Clercq is a member of HP’s Technology Consulting IT Assurance Portfolio team. He focuses on cloud security, identity and access management, architecture for Microsoft-rooted IT infrastructures, and the security of Microsoft products. He's the author of Windows Server 2003 Security Infrastructures (Digital Press) and coauthor of Microsoft Windows Security Fundamentals (Digital Press) and Cloud Computing Protected: Security Assessment Handbook (Recursive Press).

Exporting and Sharing Certificates and Private Keys
I need to export a certificate and private key from my Windows machine and need to share these with the different administrators of our branch offices, so they can import them on one of their local member servers. What’s the most secure and easy way to do this?
Trusted Platform Module (TPM) Key Attestation
What is Trusted Platform Module (TPM) key attestation and what additional security value does it bring for the protection of private keys?
Protecting the HOSTS File on Windows Systems
An unprotected HOSTS file could cause security problems for Windows systems.
Role of the User Access Logging service Included in Windows Server 2012
The User Access Logging (UAL) service is a new service that is enabled by default starting with Windows Server 2012.
How to Share Exported Certificates Securely and Easily
In Windows 8 and Windows Server 2012 it is now possible to select an AD account to protect the PKCS#12-formatted files.
Making Windows PKI Clients Request New Certificates from Local Active Directory
You can instruct Windows to populate this attribute automatically for all AD-integrated or Enterprise CAs, or you can also set the site name yourself.
Toggling Windows 8.1 Device Encryption ON and OFF 2
If you have performed a clean install of Windows 8.1, Device Encryption is turned on by default. If you have upgraded your system from a previous Windows installation, you can turn device encryption on by using PC info.
Device Encryption in Windows 8.1 and BitLocker Drive Encryption
What exactly is the Device Encryption feature that Microsoft supports in Windows 8.1 and how is it linked to BitLocker Drive Encryption (BDE)?
Windows Gatekeeper Q&As
Understanding and Enabling the Restricted Admin Mode for RDP
Restricted Admin mode for RDP allows administrators to connect to remote computers using RDP, without having their credentials stored on those computers.
Windows Gatekeeper Q&As
Resetting the Password of the KRBTGT Active Directory Account 1
When a domain controller is compromised, you should reset the password of the KRBTGT Active Directory account. Here's how to reset it.
Windows Gatekeeper Q&As
Understanding and Enabling Command-Line Auditing
Command-line auditing is a useful extension to the Windows auditing and event system, but it isn't enabled by default. Here's how to enable it.
Windows Gatekeeper Q&As
Blocking Internet Access from Administrators' Windows Machines
By changing the proxy address of a machine's web browser to an invalid proxy address, you can block Internet access.
Windows Gatekeeper Q&As
Forcing the Expiration of Locally Cached Certificate Revocation Lists
You can delete or invalidate locally cached certificate revocation lists (CRLs) so that the public key infrastructure client downloads more recent CRLs.
Windows Gatekeeper Q&As
Use New Security Accounts to Block Logons Through Remote Desktop Services
Two new security accounts introduced in Windows 8.1 and Windows Server 2012 R2 prevent people from using Remote Desktop Services to log on to domain-joined machines.
Windows Gatekeeper Q&As
Discovering the Details About a Domain's Password Policy
Using a command-line tool, authenticated domain users can learn the details about the policy that governs their passwords.

Windows Forums

The Windows IT Pro forums are moving to myITforum.com! Get answers to questions, share tips, and engage with the IT professional community.

Sponsored Introduction Continue on to (or wait seconds) ×