disabling SSL v2 on IIS 6.0

From: Andy Cheung (andycheung2000_at_hotmail.com)
Date: 06/30/04


Date: 30 Jun 2004 07:41:48 -0700

Hello - the Microsoft Knowledge Base Article 187498 describes
disabling SSL v2 ciphers on IIS. However, in the "applies to" section
at the bottom, it does not list IIS 6.0 despite being last reviewed in
April 2004.

The instructions in the article are useful to me for IIS 5.0 servers
but I'm not sure if they're relevant for my IIS 6.0 server.

Can anyone tell me if the article is also relevant for IIS 6.0? If
not, how do I disable in IIS 6.0?



Relevant Pages

  • Disabling SSL v2 in IIS 6.0
    ... An intrustion test vendor has suggested disabling SSL v2 on my IIS 6.0 ... server. ...
    (microsoft.public.inetserver.iis.security)
  • Re: Microsoft Security Advisory MS 03-007
    ... > You say "IIS servers are actively being compromised already, ... -- permissions are checked on httpext.dll to see if Anonymous request using ... CONFIGURATIONS OF THE IIS LOCKDOWN TOOL DO LEAVE WEBDAV ...
    (Focus-Microsoft)
  • RE: Microsoft Security Advisory MS 03-007
    ... announcement covers IIS 5.1 but not IIS 6, ... > You say "IIS servers are actively being compromised already, ... -- permissions are checked on httpext.dll to see if Anonymous request ... CONFIGURATIONS OF THE IIS LOCKDOWN TOOL DO LEAVE WEBDAV ...
    (Bugtraq)
  • Re: Microsoft Security Advisory MS 03-007
    ... announcement covers IIS 5.1 but not IIS 6, ... > You say "IIS servers are actively being compromised already, ... -- permissions are checked on httpext.dll to see if Anonymous request ... CONFIGURATIONS OF THE IIS LOCKDOWN TOOL DO LEAVE WEBDAV ...
    (Bugtraq)
  • RE: Microsoft Security Advisory MS 03-007
    ... announcement covers IIS 5.1 but not IIS 6, ... > You say "IIS servers are actively being compromised already, ... through, and if it carried the exploit, compromise could occur. ... CONFIGURATIONS OF THE IIS LOCKDOWN TOOL DO LEAVE WEBDAV ...
    (Focus-Microsoft)