[Last Call] Learn about multicloud storage options and how to improve your company's cloud strategy. Register Now

x
?
Solved

Hardening Window Web servers(IIS 6, 7)

Posted on 2010-11-29
3
Medium Priority
?
955 Views
Last Modified: 2012-05-10
Hello Experts,

I just wondering if you can provide me with some docs, links, and your recommendations in how to hardening Windows Web servers IIS 6, IIS 7, and deploy full security on these boxes

Any feedback is really appreciated

Thank you in advance
0
Comment
Question by:Jerry Seinfield
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 1

Expert Comment

by:JrLz
ID: 34236263
Hi,

there's a tool called IIS LockDown from Microsoft, you can take a look for the details
before applying the tool.

hope it helps
0
 
LVL 9

Accepted Solution

by:
shalabhsharma earned 2000 total points
ID: 34236401
0
 
LVL 9

Expert Comment

by:losip
ID: 34236963
My favorite is "Improving Web Application Security: Threats and Countermeasures" which is a Microsoft publication and available online.  It complements the "out-of-the-box" security afforded by IIS6 and IIS7 by pointing out that the applications have to be secure, too.

It is a fairly old publication but still has relevant guidelines for application developers. It can be downloaded from: http://www.microsoft.com/downloads/en/details.aspx?FamilyId=E9C4BFAA-AF88-4AA5-88D4-0DEA898C31B9&displaylang=en 

The thread that shalabsharma pointed out on formus.iis.net has some useful pointers, too
0

Featured Post

Fill in the form and get your FREE NFR key NOW!

Veeam® is happy to provide a FREE NFR server license to certified engineers, trainers, and bloggers.  It allows for the non‑production use of Veeam Agent for Microsoft Windows. This license is valid for five workstations and two servers.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Background Information Recently I have fixed file server permission issues for one of my client. The client has 1800 users and one Windows Server 2008 R2 domain joined file server with 12 TB of data, 250+ shared folders and the folder structure i…
A phishing scam that claims a recipient’s credit card details have been “suspended” is the latest trend in spoof emails.
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…
Suggested Courses

650 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question