Link to home
Create AccountLog in
Avatar of jmatarranz
jmatarranzFlag for Spain

asked on

Question - CrossDomain XML Config - IIS 7.0

Hi to ALL,

We have had a security audit. Topic showed below has been raised. I would like to know where is this file located to delete that entry. (unregistered somain)

Thanks in advance,
David.

*********************************************************************
•      The Website cross domain policy file contains a unregistered domain.
A cross-domain policy file is an XML document that grants a web client—such as Adobe Flash Player, Adobe Reader, etc.—permission to handle data across multiple domains.
A malicious user could claim the unregistered domain exposing the website to cross domain privilege escalation by introducing  a malicious SWF File.
*********************************************************************
ASKER CERTIFIED SOLUTION
Avatar of Eduard Ghergu
Eduard Ghergu
Flag of Romania image

Link to home
membership
Create an account to see this answer
Signing up is free. No credit card required.
Create Account
Avatar of jmatarranz

ASKER

Ghergu,

Thanks for the link. I can understand it now but I can not find this file to change it. May be is due to is a sharepoint server??

Thanks again,
David.
Hi,
Could be the case... I'm not really sure. Do you have Flash on your pages?