Re: What are the points should be considered while securing IIS web server?
I have recently entered the classroom, from the event viewer found a lot of potential hackers. He or she entered the lab domain structures deep enough, so that any user can run the password cracking tool. If you have users weak passwords (for example, "password" or changeme "or any dictionary words), then the hacker can quickly and simply the invasion of these users account. If the network administrator is the only Web server has write access to people, there is no reason to allow any shares exist. Sharing is the greatest temptation to hackers. In addition, by running a simple loop batch file, hackers can view a list of IP addresses, use the command for Everyone / Full Control permissions to the share.
I'm the Proud Owner of the most dangerous weapon
known to man kind: Human Brain
Bookmarks