Re: upgrading to IE6 on w2k servers

From: Ansgar -59cobalt- Wiechers (bugtraq_at_planetcobalt.net)
Date: 07/27/04

  • Next message: Ferino Mardo: "RE: Basic firewall filtering question"
    Date: Tue, 27 Jul 2004 19:10:59 +0200
    To: security-basics@securityfocus.com
    
    

    On 2004-07-27 Juan B wrote:
    > I want to know why is it recommended to upgrade my servers to IE6.
    >
    > I didnt find any reason at all !!! ( from the security point of
    > view..).

    From a security point of view, the recommended upgrade would be to
    install some other browser, not to upgrade IE.

    But there are some reasons for upgrading, e.g.:

    - Product lifecycle
    - OE 6 allows for displaying mails as plaintext
    - Better cookie-handling
    - You need at least IE 5.5 to manage a SUS through its web-frontend
    ...

    > I only found thie line in lits of site "it is recommended to update to
    > IE6". but why ?
    >
    > why I need to upgrade ?
    > I have IE5 on the servers and I surf the net from those servers.

    You shouldn't misuse servers as desktops.

    Regards
    Ansgar Wiechers

    -- 
    "Those who would give up liberty for a little temporary safety
    deserve neither liberty nor safety, and will lose both."
    --Benjamin Franklin
    ---------------------------------------------------------------------------
    Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
    any course! All of our class sizes are guaranteed to be 10 students or less 
    to facilitate one-on-one interaction with one of our expert instructors. 
    Attend a course taught by an expert instructor with years of in-the-field 
    pen testing experience in our state of the art hacking lab. Master the skills 
    of an Ethical Hacker to better assess the security of your organization. 
    Visit us at: 
    http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    ----------------------------------------------------------------------------
    

  • Next message: Ferino Mardo: "RE: Basic firewall filtering question"

    Relevant Pages

    • Re: Need urgent help regarding security
      ... There is plenty of security info out there ... email from even a dozen servers is small. ... an OS version upgrade should not be taken lightly. ... Given that your root password was apparently found on the servers, ...
      (freebsd-questions)
    • Re: Need security proposal for Win2K upgrade...
      ... Anticipating that you have already read the MS reasons to upgrade, ... biggest security reason to upgrade to 2000 is support. ... By the same token another much smaller customer (40 users, 2 servers) whose ...
      (Focus-Microsoft)
    • Re: NT4 to Win 03
      ... Easies is to upgrade your existing PDC. ... you have to set the AD domain in Native mode. ... If you upgrade you do not have to set your AD domain in native mode. ... > assume i will install the new 2003 servers one at a time. ...
      (microsoft.public.windows.server.migration)
    • Re: Graphical Interfaces
      ... A sampling of the things that Microsoft has never really understood: ... - You can't reboot servers to install software. ... you can't upgrade anything in less than two years. ... - Internal documentation of software is a good thing, especially for tech support. ...
      (comp.os.linux)
    • Re: NT4 to Win 03
      ... > users access to NT 4.0 file/application servers, ... In other words, if I upgrade my ... replication between NT 4.0 BDCs and AD DCs in the same domain. ... > the NT domain to the AD domain, or upgrade, by upgrading the NT PDC first. ...
      (microsoft.public.windows.server.migration)