All Tags > security > IIS6 (RSS)
  • ASP permission problem - HTTP Error 401.3

    Problem: a specific Global Security Group can not load ASP pages (but can load HTML pages). Goal: allow access to the secure website files and directories according to Global Group membership. This is a medical industry customer, so HIPAA compliance is mandatory (i.e. file access and restrictions must...
    Posted to Forum by JayRO on 01-10-2009, 1:25 PM
  • Secure Shared Hosting with PHP on IIS6

    Hi Everyone, I'm trying to secure a Shared Hosting Environment on a Windows 2003 Server / IIS 6 My approche so far: 1) created an Application Pool User for each of the Site (all members of the IIS_WPG Group) 2) created an Application Pool for each Site and assigned them to the Sites 3) assigned the...
    Posted to Forum by jfaxer on 12-02-2008, 11:47 AM
  • Re: Batch script to block ip ranges

    Try this blog, I think it would be perfect for your situation: http://www.west-wind.com/WebLog/posts/59731.aspx Nayden
    Posted to Forum by naydencho on 08-10-2008, 12:53 PM
  • You are not authorized to view this page

    Hello I have windows server 2003 and iis 6.0 and i installed the php zip package successfully( i can list the php info in the command prompt) but when i try to browse a php file in localy in my server or via internet i got this error You are not authorized to view this page The URL you attempted to reach...
    Posted to Forum by EMP on 07-24-2008, 8:23 AM
  • IUSR Account

    I have a new web master who is building a new web server and within IIS6 she is trying to set the accounts for the application pool. In the properties of the web object if she leaves the identity set to predefined then she is able to view the web pages with a browser. If however she changes this to configurable...
    Posted to Forum by kiffster on 07-08-2008, 10:32 AM
  • Re: White-Paper on Secure Scalability of IIS 6.0 web apps (Windows Server 2003 R2)

    This is excatly what I have been doing for a few years, A collegue and I are in the middle of writing it up as a high level design, hopefully if we can remove the corporate references we will publish this as a paper but a few thing to note so far are We use CIFS (windows shares on sep file server for...
    Posted to Forum by species5618 on 04-18-2008, 2:44 PM
  • Kerberos authentication not working, defaulting to NTLM

    At this point I imagine it's an Active Directory thing but I was hoping there was something I could change before I go get the infrastructure team to work on it. - IIS 6.0 is set to use Integrated Authentication with anonymous access disabled. - Permissions for the groups required are set on the...
    Posted to Forum by OriginalSyn on 08-03-2007, 11:07 AM
  • SSL 2.0

    Are there any known vulnerabilities for SSL 2.0 that would warrant disabling it and only allowing SSL 3.0?
    Posted to Forum by roddydan on 07-10-2007, 9:46 AM
  • Disable SSL v2 in IIS6?

    If I want to force SSL v3 for all browser connections to my web server, how would I do that?
    Posted to Forum by roddydan on 07-09-2007, 3:00 PM
  • Multiple Application Pool Identities on a single server vs. Kerberos authentication

    I'm hosting multiple web sites on a single server. As a security baseline I assigned a dedicated application pool for every site, each running its own user account for application pool identity. I also want to use Kerberos authentication with all my sites. So, to make Kerberos work, I have to register...
    Posted to Forum by pronichkin on 05-07-2007, 6:03 AM
Page 1 of 2 (16 items) 1 2 Next >
Microsoft Communities