Re: IIS and .NET State

From: Bruce Barker (brubar_nospamplease__at_safeco.com)
Date: 03/30/05


Date: Wed, 30 Mar 2005 11:00:01 -0800

with typical load balancing, each request from the client goes to a
different box. so if you page has any images, javscript src, or iframes,
this request each go to a different server. then each page request should go
to a different server. in thsi case the user is not on a given server.

some load balancers support server affinity, when the user is locked to a
given server thru a cookie, but this systems are less reliable.

-- bruce (sqlwork.com)

"dm4714" <spam@spam.net> wrote in message
news:OmXrq6TNFHA.2736@TK2MSFTNGP09.phx.gbl...
> Hello --
>
> I'm using IIS on four W2K3 servers in a network load balancing server
> farm. There is one back-end state server running the .NET State Server.
> Each IIS server is configured with "StateServer" parameter pointing to the
> state server.
>
> My question is this... does anyone know of any scripts and/or programs to
> determine what IIS server a particular user is on? I'm trying to
> troubleshoot problems and want a reliable way to determine what server a
> user is accessing when a problem occurs.
>
> I've created a showip.htm file on each server that has the server's IP
> address in it so I can identify.
>
> Opinions?
>
>
>



Relevant Pages

  • [REVS] NTLM HTTP Authentication is Insecure By Design
    ... in front of a web server, and that proxy server shares a single TCP ... These are attacks that make use of non-RFC HTTP requests (HTTP Request ... the authentication is associated with the ...
    (Securiteam)
  • [NT] 04WebServer Multiple Vulnerabilities (CSS, Log File Injection, AUX DoS)
    ... 04WebServer is a HTTP server developed by Soft3304 for Windows platforms. ... Characters into Log File ... filtering on the request URL before writing it into the log file. ... following HTTP request, when submitted to a vulnerable 04WebServer, will ...
    (Securiteam)
  • Re: breaking the model
    ... > The forms data then is in the Request object. ... HTTP Request; in this case, the form POST Request from the Page. ... client and server. ...
    (microsoft.public.dotnet.framework.aspnet)
  • Re: Anonymous Anonymity - Request For Comments
    ... > and request that you reply directly to my e-mail address. ... > for the entity wishing to preserve their anonymity. ... > the machine can perform as a Intermediary Server and / or as a Intermediary ... > The software then attempts connection to a Intermediary Server. ...
    (Bugtraq)
  • Multiple Vulnerabilities in Sun-One Application Server
    ... Multiple Vulnerabilities in Sun-One Application Server ... on Windows 2000, SPI Labs discovered a number of vulnerabilities. ... the case of the file extension in the HTTP request. ...
    (Bugtraq)