Re: SecureIIS
From: Duane Waddle (dwaddle@charter.net)Date: 08/28/02
- Previous message: fr@hush.com: "SecureIIS"
- In reply to: fr@hush.com: "SecureIIS"
- Next in thread: Josh B: "RE: SecureIIS"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 27 Aug 2002 19:04:25 -0500 To: focus-ms@securityfocus.com From: Duane Waddle <dwaddle@charter.net>
Can't offer a review per se - but I've deployed it on a couple of servers
to my complete satisfaction. To configure it with a high degree of safety,
you need to know a lot about the content you're hosting -- things like
maximum GET/POST variable lengths.
One of the nicest features is that when a rule is mistakenly tripped - the
user gets a reference # that can be grepped out of the logs.
The only bad thing (and this could be my missing it) is I've not found a
way to refresh the log viewer..
--D
At 8/27/2002 11:58 AM, you wrote:
>I am looking for a recent review of Eeye's SecureIIS. I need information
>about the security of the product as well as stability. Success stories
>would be cool as well. Basically I'm trying to find out if the product is
>trust worthy and if I can sleep at night while it's running. I have no
>choice but to deploy an IIS server in this case.
- Previous message: fr@hush.com: "SecureIIS"
- In reply to: fr@hush.com: "SecureIIS"
- Next in thread: Josh B: "RE: SecureIIS"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|