all groups > iis security > september 2006 > threads for september 22 - 28, 2006
Filter by week: 1 2 3 4 5
pb with application pools
Posted by Eric bouxirot at 9/28/2006 4:27:47 PM
hi,
i have created a simple webservice (Helloworld example from VS2005)
i have put this webservice on my server and i setup a virtual directory
on IIS 6 (i have SBS 2003)
i have set a new application pool for this vistual server, with
standard identity (Network service)
i have disabled ano... more >>
Event ID 560
Posted by Kevin Wheeler at 9/28/2006 2:14:02 PM
Can anyone tell me why I'm getting the following error in my security log.
all of a sudden, my symantec reporting server isn't recieving updates.
Event Type: Failure Audit
Event Source: Security
Event Category: Object Access
Event ID: 560
Date: 9/28/2006
Time: 5:07:23 PM
User: Server... more >>
IIS Security Question
Posted by abcd at 9/28/2006 12:52:22 PM
I have a web application in IIS 5.0 (W2K). I have annonymous access (IUSR)
on for my web application. But my default web site have not enabled
annonymouus access. The default web site only have Integrated Windows
Security on. Whenever I access my web application I get windows user / name
passwo... more >>
SSL entire web site
Posted by Doug at 9/27/2006 6:56:36 PM
We will be launching a new WWW site in the next few weeks, and for internal
reasons (reasons I can't go into here), the new web site will need to be
entirely https. I'm trying to determine what issues, if any, there will be
when doing this.
The new site is entirely different, so we expect i... more >>
Export Security Cert
Posted by JT at 9/27/2006 5:29:02 PM
Hi all,
I have a Windows 2003 web server configured with a couple of production
websites and a couple of non production test web sites. My prod sites have
purchased security certificates. These have installed w/o problems.
I would like to export the same security certs and then import... more >>
Strange CN (Common Name) format with \x00 ...
Posted by Polaris at 9/27/2006 4:22:38 PM
Hi Experts:
I have a certificate (below). I just wonder, why the CN part (which is
*.test.com) appear in the format of "\x00 ..."?
Certificate Subject Name=/C=US/ST=CA/L=SanJose/O=Adobe/OU=Customer
Support/CN=\x00*\x00.\x00t\x00e\x00s\x00t.\x00c\x00o\x00m
I'd like to know WHY and WHEN ... more >>
ssl AD Domain not External Domain
Posted by DB at 9/27/2006 1:28:01 PM
I have a win2003 server with IIS that is on my active directory domain
(company.internal.com) and is accessible from the Internet by the domain name
(webserver.external.com). If I install an ssl certificate, will there be a
problem that the server is in a different domain (AD Domain) than the ... more >>
Hacker Problem
Posted by Neil at 9/25/2006 11:37:45 AM
Hi,
I have a website hosted on MS IIS.
It has a news section fed by a database to allow the owners of the site the
ability to update the news pages themslves.
Last week a message was added by an Iranian hacker (see the end of this
post.)
What I don't understand is how they were able ... more >>
Don't see what you're looking for? Search DevelopmentNow.com.
IIS 6 and Anonymous on Windows Server 2003
Posted by merkury1 NO[at]SPAM yahoo.com at 9/25/2006 7:52:33 AM
I have a brand spanking fresh install of IIS on Windows Server 2003 R2.
It has anonymous access enabled on the default website and NOT
integrated windows authentication. I only want anonymous access.
I have made sure that the Anonymous account (IUSR_computername) has
Read, "Read & Execute" and... more >>
FTP maximum password attempts
Posted by nx-2000 NO[at]SPAM winvoice.com at 9/25/2006 7:26:11 AM
I've done quite a bit of searching on this and I haven't found a
satisfactory answer besides a few expensive add-on packages. I'm
hoping someone has some ideas.
Basically, I'm getting brute forced to death on my IIS FTP sites. They
haven't found their way in yet, but, this weekend, I had 11 ... more >>
Integrated windows authentication problem
Posted by HDI at 9/24/2006 10:15:02 AM
Corporate intranet running on windows server 2003 web edition, IIS 6.0
When I turn on integrated windows authentication and turn off anonymous
access, my allowed users can only access static content. When they try to
access asp pages they get the message "You are not authorized to view this
p... more >>
Security implications of Virtual Directories vs Root websites?
Posted by Leythos at 9/23/2006 1:28:53 AM
I would like to know if anyone has links related to the implications of
running a SSL site as a virtual directory site rather than a root
website.
Thanks.
--
spam999free@rrohio.com
remove 999 in order to email me... more >>
Implications of a SSL site as a virtual directory rather than a root website?
Posted by Leythos at 9/22/2006 2:52:18 PM
I would like to know if anyone has links related to the implications of
running a SSL site as a virtual directory site rather than a root
website.
Thanks.
--
spam999free@rrohio.com
remove 999 in order to email me... more >>
|