I think the security of SP1 is a good idea. Perimeter firewalls are useless if there is an attack from the internal network. Locking down servers is a good thing. The Security Configuration tool makes it pretty easy. You tell it what the servers roles are etc. and it will leave the appropriate ports open.
|