Archived Months
June 2003
July 2003
August 2003
September 2003
October 2003
November 2003
December 2003
January 2004
February 2004
March 2004
April 2004
May 2004
June 2004
July 2004
August 2004
September 2004
October 2004
November 2004
December 2004
January 2005
February 2005
March 2005
April 2005
May 2005
June 2005
July 2005
August 2005
September 2005
October 2005
November 2005
December 2005
January 2006
February 2006
March 2006
April 2006
May 2006
June 2006
July 2006
August 2006
September 2006
October 2006
November 2006
December 2006
January 2007
February 2007
March 2007
April 2007
May 2007
June 2007
July 2007
August 2007
September 2007
October 2007
November 2007
December 2007
January 2008
February 2008
March 2008
April 2008
May 2008
June 2008


all groups > iis security > may 2006 > threads for may 22 - 28, 2006

Filter by week: 1 2 3 4 5

IP Address and Domain Name Restrictions button greyed out - Help !
Posted by Gregory I. Hayes at 5/28/2006 9:08:00 PM
I just re-installed XP Pro SP2 (Total wipe and install) on my computer and after installing IIS the IP Address and Domain Name Restrictions button in Directory Security is greyed out. The only IP allowed access to the server is 127.0.0.1 my own computer. Before the re-install all computers on...more >>

Private & Public Key storage location
Posted by Vicky at 5/28/2006 12:12:01 AM
hi, when I configure IIS server on a windows 2000 or 2003 server to use the ssl protocol, I have to make a certificate request, during which the web site generates a Key pair (public & private). My public key is sent to the CA alomg with my certificate request. I wish to know where is my...more >>

SSL enabled site & DNS
Posted by Vicky at 5/28/2006 12:07:01 AM
I created a test setup in a win 2003 std workgroup based network. sys 1 configured as DNS, IIS & CA service. Sys2 configured with two websites. The HHN for the fisrt web is www.abc.com with ssl enabled & for the second it was www.xyz.com. that is a normal site well every thing works fine...more >>

ASP error script and trojan
Posted by Eco at 5/27/2006 12:02:29 AM
Our web server is found that is hacked occassionally. The server will have the following issues. 1. webpage directory will be added some *.htm file, part of file contents are shown as follows. <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.w3.org/TR/ht...more >>

IIS HTTPS + Windows XP
Posted by abcd at 5/26/2006 3:14:58 PM
I want to enable secured communicaiton (HTTPS) for my web site. I am using Windows XP professional SP2 as my development box. In my Web applications settings in directory Security Tab the secured communcaiton setting is disabled...whereas the same setting is enabled on my other machine Windows...more >>

HOW TO IIS -Security
Posted by phil at 5/24/2006 9:44:15 PM
Hi!! & Hello!!! Well I have a server where I have hosted many sites on IIS 6.0. When the users I mean the public users (anyone from anywhere) if they go to their Start->Run-> from windows and type the IP address(for eg \\83.485.574.22) like this it opens up the default site with full director...more >>

Security in SMTP Virtual Server
Posted by aboni at 5/24/2006 5:47:32 PM
Hi! I'm using a POP3 service and SMTP Service of Windows 2003 server to setup a small Mail Server Enviroment. In my "Default SMTP Virtual Server" -> Properties -> Access -> Authentication I need to allow "Anonymous Acces". If I don't do that, people can't send me mail's. My question is: ...more >>

HELP --- FTP IIS
Posted by segis bata at 5/24/2006 4:10:36 PM
Hello, I have a question for you all; I'm new in IIS's FTP and this is driving me crazy. I created a user in Windows, that user should have (full) access to two folders in the FTP root; what I need to do is create the permission to that user so when he logs in the server he only sees those ...more >>



HTTP Error 403.6 - Forbidden: IP address of the client has been re
Posted by Richard Young at 5/24/2006 1:12:02 PM
Hello, I have a client running Windows 2003 Small Business Server. They have installed an app that runs under the default web site. When I am on the server or on the LAN and type in the URL: https://servername/bigtime the application comes up perfectly. However, when I try to do the same...more >>

How can digitally signed executable be "secure" ?
Posted by Polaris at 5/24/2006 12:55:58 PM
Hi Experts: I know the purpose of signing an executable (say, by VeriSign) is to make it more securer. But can anyone explain why ? If I use my private key to sign an executable, I guess the content of the executable is changed ? Is it just the exe file header change? What if some hacker...more >>

WMV and IIS
Posted by Andrea :) at 5/24/2006 12:28:01 PM
Hello i've some WebServer (windows 2000 and windows 2003). I've a question about file Avi and Wmv : when a client call a link with a wmv file (es. www.mio.com/video.wmv) IIS start a streaming. There's a method to block this and prompt the file's Download? I try to set mime type.....(single sit...more >>

Application Pool domain credentials
Posted by Steve Smith at 5/24/2006 9:01:00 AM
I am building a web page that will invoke a server-side process that needs to query Active Directory. I have set up a non-privileged account and have configured an application pool for the virtual directory to use this account on the identity tab. When I run the application, I am still not...more >>

Secure Communication
Posted by Eng.Rana NO[at]SPAM gmail.com at 5/24/2006 7:30:09 AM
hi all, i was wondering how can i secure a communication between a web server (IIS6.0) communicating or exchangeing data with a SQL Server at the backend?? thanx ...more >>

Unable to get anonymous access working
Posted by M van Iren at 5/24/2006 6:54:02 AM
The development of a site is near completion and until now the site is accessed trough integrated windows authentication with SSL The site has to go public and therefore the IUSR_computername is enabled. Also the permissions on the virtual site and its contence for the IUSR account have bee...more >>

integrated authentication
Posted by Frédéric de Thysebaert at 5/24/2006 12:00:00 AM
Hi, I have a intranet asp application runing on IIS6. with data on SQL server runing on an other computer (the two servers are member server of our active directory domain). Access to the data are based on the user account who connect to the IIS application. The application is runing on th...more >>

Wildcard Domain Restriction
Posted by wynne.tom NO[at]SPAM gmail.com at 5/22/2006 11:20:35 PM
Is it possible to add a wildcard for a domain name restriction? For example, I want to restrict only users from a certain domain to access the site but they may be coming from many subdomains. Such as www1.mysite.com, www2.mysite.com, www3.mysite.com, etc. I would like to enter *.mysite.com Is ...more >>

Certificate Authority guidance requested
Posted by Steve B. at 5/22/2006 3:31:01 PM
I need to purchase and install a security certificate from one of the Certificate Authorities. Does anyone have recommendations re specific CAs that are good to work with (or not)? What do you believe are the most important criteria for evaluating a CA? Thanks in advance for any assistance....more >>

No access after requiring SSL
Posted by Richter1033 at 5/22/2006 1:11:02 PM
After I enabled SSL in IIS on my exchange 2003 server, I get no access to the site what so ever. I'm running a CA locally on my server.(it's a stand-alone, not part of the enterprise CA) If I remove the SSL requirement it works. Any ideas? ...more >>

IIS Virtual Directory Hacks
Posted by jonathan haughey at 5/22/2006 12:02:38 PM
I am publishing a web application in asp that will allow my users to access a sql database, each user will have a virtual directory that will give them an interface to access their respective database. My worry is that they will be able to access each others virtual directories and hence mo...more >>

securing multiple websites using wildcard certificate - one IIS 6.0 server
Posted by nix at 5/22/2006 9:54:49 AM
My setup is as below - Windows Server 2003 SP1 3 websites running in IIS 6.0 a.domain.com b.domain.com c.domain.com internal IP 1.1.1.1 external ip 2.2.2.2 1-to-1 nat of 2.2.2.2 to 1.1.1.1 by firewall currently all 3 websites are reachable from outside What I want to do is enable...more >>


DevelopmentNow Blog