Results 1 to 6 of 6

Thread: What are the points should be considered while securing IIS web server?

  1. #1
    Join Date
    Feb 2010
    Posts
    154

    What are the points should be considered while securing IIS web server?

    Usually, the majority of Web site design goals are: the most vulnerable in a manner acceptable for visitors to provide immediate access to information. In the past few years, an increasing number of hackers, viruses and worms, security issues arising from a serious impact on Web site accessibility, even though Apache servers are often targets for attackers, but Microsoft's Internet Information Services (IIS) Web server are the real sense of the target of public criticism. So I need to know the points that should be considered for protecting IIS web server.

  2. #2
    Join Date
    Apr 2008
    Posts
    2,276

    To keep Windows Upgrade

    The first time you have to update all of the upgrades in a timely manner, and to lay all the patches for the system. To consider all of the updates downloaded to your network on a dedicated server and the machine on the Web-released them in the form of the document. Through these work, you can prevent your Web server to accept direct Internet access.

  3. #3
    Join Date
    May 2008
    Posts
    2,792

    Re: What are the points should be considered while securing IIS web server?

    This tool has many practical advantages, however, please use this tool carefully. If your Web server and other servers interact, first test the preventive tool to make sure it has been correctly configured to ensure that it will not affect the Web server and the communication between other servers. The easiest way to access a computer is through the FTP access. FTP itself is designed to meet the simple read / write access, if you implement authentication, you will find your user name and password through the form of clear text transmission on the network. SMTP is another folder to allow write permissions. By disabling the two services, you can avoid further hacking

  4. #4
    Join Date
    Apr 2008
    Posts
    2,572

    Re: What are the points should be considered while securing IIS web server?

    Many of the attacks were aimed at inetpub this folder, and placed inside a number of attack tools, resulting in paralysis of the server. To prevent this attack is the easiest way to IIS Lane will be the default site is disabled. Then, as Wang Chongmen through IP address to access your site (they may need to access hundreds of thousands of day, IP address), their request may be trouble. Your actual Web site points to a folder in the back partition, and must include the NTFS security permissions (NTFS in the later part of the detail).

  5. #5
    Join Date
    Oct 2005
    Posts
    2,358

    Re: What are the points should be considered while securing IIS web server?

    I have recently entered the classroom, from the event viewer found a lot of potential hackers. He or she entered the lab domain structures deep enough, so that any user can run the password cracking tool. If you have users weak passwords (for example, "password" or changeme "or any dictionary words), then the hacker can quickly and simply the invasion of these users account. If the network administrator is the only Web server has write access to people, there is no reason to allow any shares exist. Sharing is the greatest temptation to hackers. In addition, by running a simple loop batch file, hackers can view a list of IP addresses, use the command for Everyone / Full Control permissions to the share.
    I'm the Proud Owner of the most dangerous weapon
    known to man kind: Human Brain

  6. #6
    Join Date
    May 2008
    Posts
    2,134

    Disable TCP / IP protocol in the NetBIOS

    Disable TCP / IP protocol in the NetBIOS: This is cruel. Many users want to access through the Web server UNC path name. With the NETBIOS is disabled, they cannot do it. On the other hand, with the NETBIOS is disabled, hackers cannot see your LAN resources. This is a double-edged sword, if the network administrator to deploy this tool, the next step is how to educate Web users how to NETBIOS case of failure messages.

Similar Threads

  1. Points to be considered before buying Gaming Laptop
    By Zariah in forum Tips & Tweaks
    Replies: 2
    Last Post: 21-06-2011, 06:56 AM
  2. What are the important points to be considered safegaurd Google PR
    By Oms-waroop in forum Technology & Internet
    Replies: 5
    Last Post: 29-01-2011, 04:15 AM
  3. Which points should be considered for designing portal site?
    By Christina 80 in forum Technology & Internet
    Replies: 4
    Last Post: 07-03-2010, 04:54 AM
  4. Replies: 5
    Last Post: 13-02-2010, 06:37 AM
  5. Securing the Exchange mail server
    By AMISH in forum Networking & Security
    Replies: 4
    Last Post: 04-12-2009, 05:20 PM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,751,179,319.59113 seconds with 16 queries