all groups > iis security > may 2006 > threads for may 22 - 28, 2006
Filter by week: 1 2 3 4 5
IP Address and Domain Name Restrictions button greyed out - Help !
Posted by Gregory I. Hayes at 5/28/2006 9:08:00 PM
I just re-installed XP Pro SP2 (Total wipe and install) on my computer and
after installing IIS the IP Address and Domain Name Restrictions button in
Directory Security is greyed out. The only IP allowed access to the server
is 127.0.0.1 my own computer.
Before the re-install all computers on... more >>
Private & Public Key storage location
Posted by Vicky at 5/28/2006 12:12:01 AM
hi,
when I configure IIS server on a windows 2000 or 2003 server to use the ssl
protocol, I have to make a certificate request, during which the web site
generates a Key pair (public & private).
My public key is sent to the CA alomg with my certificate request.
I wish to know where is my... more >>
SSL enabled site & DNS
Posted by Vicky at 5/28/2006 12:07:01 AM
I created a test setup in a win 2003 std workgroup based network.
sys 1 configured as DNS, IIS & CA service.
Sys2 configured with two websites. The HHN for the fisrt web is www.abc.com
with ssl enabled & for the second it was www.xyz.com. that is a normal site
well every thing works fine... more >>
ASP error script and trojan
Posted by Eco at 5/27/2006 12:02:29 AM
Our web server is found that is hacked occassionally. The server will have
the following issues.
1. webpage directory will be added some *.htm file, part of file contents
are shown as follows.
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"
"http://www.w3.org/TR/ht... more >>
IIS HTTPS + Windows XP
Posted by abcd at 5/26/2006 3:14:58 PM
I want to enable secured communicaiton (HTTPS) for my web site. I am using
Windows XP professional SP2 as my development box. In my Web applications
settings in directory Security Tab the secured communcaiton setting is
disabled...whereas the same setting is enabled on my other machine Windows... more >>
HOW TO IIS -Security
Posted by phil at 5/24/2006 9:44:15 PM
Hi!! & Hello!!!
Well I have a server where I have hosted many sites on IIS 6.0. When
the users I mean the public users (anyone from anywhere) if they go to
their Start->Run-> from windows and type the IP address(for eg
\\83.485.574.22) like this it opens up the default site with full
director... more >>
Security in SMTP Virtual Server
Posted by aboni at 5/24/2006 5:47:32 PM
Hi!
I'm using a POP3 service and SMTP Service of Windows 2003 server to setup a
small Mail Server Enviroment.
In my "Default SMTP Virtual Server" -> Properties -> Access ->
Authentication I need to allow "Anonymous Acces". If I don't do that, people
can't send me mail's. My question is:
... more >>
HELP --- FTP IIS
Posted by segis bata at 5/24/2006 4:10:36 PM
Hello,
I have a question for you all; I'm new in IIS's FTP and this is driving me
crazy. I created a user in Windows, that user should have (full) access to
two folders in the FTP root; what I need to do is create the permission to
that user so when he logs in the server he only sees those ... more >>
Don't see what you're looking for? Search DevelopmentNow.com.
HTTP Error 403.6 - Forbidden: IP address of the client has been re
Posted by Richard Young at 5/24/2006 1:12:02 PM
Hello,
I have a client running Windows 2003 Small Business Server. They have
installed an app that runs under the default web site.
When I am on the server or on the LAN and type in the URL:
https://servername/bigtime
the application comes up perfectly.
However, when I try to do the same... more >>
How can digitally signed executable be "secure" ?
Posted by Polaris at 5/24/2006 12:55:58 PM
Hi Experts:
I know the purpose of signing an executable (say, by VeriSign) is to make it
more securer. But can anyone explain why ?
If I use my private key to sign an executable, I guess the content of the
executable is changed ? Is it just the exe file header change? What if some
hacker... more >>
WMV and IIS
Posted by Andrea :) at 5/24/2006 12:28:01 PM
Hello
i've some WebServer (windows 2000 and windows 2003).
I've a question about file Avi and Wmv : when a client call a link with a
wmv file (es. www.mio.com/video.wmv) IIS start a streaming.
There's a method to block this and prompt the file's Download?
I try to set mime type.....(single sit... more >>
Application Pool domain credentials
Posted by Steve Smith at 5/24/2006 9:01:00 AM
I am building a web page that will invoke a server-side process that needs
to query Active Directory.
I have set up a non-privileged account and have configured an application
pool for the virtual directory to use this account on the identity tab.
When I run the application, I am still not... more >>
Secure Communication
Posted by Eng.Rana NO[at]SPAM gmail.com at 5/24/2006 7:30:09 AM
hi all,
i was wondering how can i secure a communication between a web server
(IIS6.0) communicating or exchangeing data with a SQL Server at the
backend??
thanx
... more >>
Unable to get anonymous access working
Posted by M van Iren at 5/24/2006 6:54:02 AM
The development of a site is near completion and until now the site is
accessed trough integrated windows authentication with SSL
The site has to go public and therefore the IUSR_computername is enabled.
Also the permissions on the virtual site and its contence for the IUSR
account have bee... more >>
integrated authentication
Posted by Frédéric de Thysebaert at 5/24/2006 12:00:00 AM
Hi,
I have a intranet asp application runing on IIS6. with data on SQL server
runing on an other computer (the two servers are member server of our active
directory domain). Access to the data are based on the user account who
connect to the IIS application.
The application is runing on th... more >>
Wildcard Domain Restriction
Posted by wynne.tom NO[at]SPAM gmail.com at 5/22/2006 11:20:35 PM
Is it possible to add a wildcard for a domain name restriction?
For example, I want to restrict only users from a certain domain to access
the site but they may be coming from many subdomains.
Such as www1.mysite.com, www2.mysite.com, www3.mysite.com, etc.
I would like to enter *.mysite.com
Is ... more >>
Certificate Authority guidance requested
Posted by Steve B. at 5/22/2006 3:31:01 PM
I need to purchase and install a security certificate from one of the
Certificate Authorities. Does anyone have recommendations re specific CAs
that are good to work with (or not)? What do you believe are the most
important criteria for evaluating a CA? Thanks in advance for any assistance.... more >>
No access after requiring SSL
Posted by Richter1033 at 5/22/2006 1:11:02 PM
After I enabled SSL in IIS on my exchange 2003 server, I get no access to the
site what so ever. I'm running a CA locally on my server.(it's a stand-alone,
not part of the enterprise CA) If I remove the SSL requirement it works. Any
ideas? ... more >>
IIS Virtual Directory Hacks
Posted by jonathan haughey at 5/22/2006 12:02:38 PM
I am publishing a web application in asp that will allow my users to access
a sql database, each user will have a virtual directory that will give them
an interface to access their respective database.
My worry is that they will be able to access each others virtual directories
and hence mo... more >>
securing multiple websites using wildcard certificate - one IIS 6.0 server
Posted by nix at 5/22/2006 9:54:49 AM
My setup is as below -
Windows Server 2003 SP1
3 websites running in IIS 6.0
a.domain.com
b.domain.com
c.domain.com
internal IP 1.1.1.1
external ip 2.2.2.2
1-to-1 nat of 2.2.2.2 to 1.1.1.1 by firewall
currently all 3 websites are reachable from outside
What I want to do is enable... more >>
|