Hi Greg, You can try www.sans.org (The SANS institute) and www.cisecurity.org (The Center for Internet Security). I like the latter site for their system analysis tools. They have a tool which when run against the system will report "common" vulnerabilities and best of all, tell you how to "fix" them. Tools include linux, solaris, cisco and NT (I believe the first "fix" is load a different OS). Okay, okay sorry my prejudice is showing. NT is a security nightmare and IIS is laughable, if you aren't the one who has to try and stay ahead of the hackers. Cecil