Re: Can I add a NEW SECTION to URLSCAN?

From: Karl Levinson [x y] mvp (levinson_k@excite.com)
Date: 12/13/02


From: "Karl Levinson [x y] mvp" <levinson_k@excite.com>
Date: Thu, 12 Dec 2002 19:52:19 -0500


I doubt adding a new section would do anything. However, make sure you have
the latest version of URLScan and read the documentation that comes with it.
I could be wrong, but I seem to remember reading here that what you want to
do was possible in the latest versions.

"Clay Ramsey" <clayramsey@yahoo.com> wrote in message
news:efc4ab3d.0212121455.37521ea1@posting.google.com...
> Greetings all.
>
> As you are aware, URLSCAN has sections like [DenyUrlSequences].
>
> Can I *ADD* a new section to it? Like [AllowUrlSequences]?
>
> It would be pretty handy in that you could deny .exes, but allow a
> particular exe.
>
> As it is, I am allowing all .exes on a server, but disallowing
> cmd.exe, root.exe, and admin.dll. I'm not too keen on this since I am
> allowing ALOT of other attack vectors. The worst offenders are locked
> down, but.........



Relevant Pages

  • Re: Can I add a NEW SECTION to URLSCAN?
    ... See the previous post regarding URLScan. ... > As it is, I am allowing all .exes on a server, but disallowing ... > allowing ALOT of other attack vectors. ... The worst offenders are locked ...
    (microsoft.public.inetserver.iis.security)
  • Re: Setmaxurllength is it included in IISLockd/Urlscan
    ... I feel that the Microsoft documentation is lacking in this respect and I let ... After much re-re-reading of the documentation, ... copies of URLScan block max url length, ... > ability to disable WebDAV, ...
    (microsoft.public.inetserver.iis.security)
  • Re: urlscan 2.5 bug?
    ... as the file extension is the correct thing to ... do, instead of using AllowDotInPath, as mentioned in the documentation. ... myself with previous versions of URLScan. ... > want to deny requests that have no file extensions in the URL. ...
    (microsoft.public.inetserver.iis.security)
  • Re: Repetitive XML comments -- whats the point?
    ... If you are hired to develop a solution for a business and you realize they ... have no documentation of their rules or processes, you spend a lot of time ... so that developers who are not part of the project during ... Well, you can't really call into .EXEs, right? ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: urlscan 2.5, IIS4 and FP98
    ... Search for "URLSCAN FrontPage" ... fpexedll.dll has a "low" priority and urlscan has a "high" priority. ... find any documentation for this combination (FP2000 and higher is ...
    (microsoft.public.inetserver.iis.security)

Loading