I have a Windows 2000 server on my network, running SQL Server... I've been away from the main office where the server sits and I found there a full system log. Turns out it filled up since Sunday with Log on failure on Account "Administrator". Look like a brute force attempt. Any suggestions to prevent this? I DO have a public static IP for business purposes and have RDP terminal services, SQL server, and VPN ports open. What can I do??

Is that server behind any sort of hardware firewall? If not, it should be.

I have the server behind a router firewall... it port forwards to the server on certain ports.

And you've applied the most current patches to the OS, SQL, and all other relevant software?

Yes, patches have been applied... FYI, i'm running MS Windows Server 2000.

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.