Re: Web Server Reverse Proxy Bug
From: Bernard Cheah [MVP] (qbernard_at_hotmail.com.discuss)
Date: 06/26/05
- Next message: Bernard Cheah [MVP]: "Re: Windows Authentication"
- Previous message: Bernard Cheah [MVP]: "Re: Resetting IUSR user token"
- In reply to: Pankaj: "Web Server Reverse Proxy Bug"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Sun, 26 Jun 2005 12:33:19 +0800
No idea, what Vunerability assessment service is that. didn't it tell you
how to solve it and the concept behind the reporting item?
-- Regards, Bernard Cheah http://www.microsoft.com/iis/ http://www.iiswebcastseries.com/ http://www.msmvps.com/bernard/ "Pankaj" <Pankaj@discussions.microsoft.com> wrote in message news:5444C950-E3CE-4494-BAFB-3F08BCD223FB@microsoft.com... > Hi - i recently used the vulnerability assessment service for our web > server > & the following was reported by the system "The remote Web server seems to > allow any anonymous user to use it as a reverse proxy. This may expose > internal > services to potential mapping and, henceforth, compromise." > > I am not sure i understand this issue & i was wondering if someone can > explain to me or point me in the right direction. > > How do i get rid of this bug? Please help. > > Windows 2000 , IIS 5.0 . > >
- Next message: Bernard Cheah [MVP]: "Re: Windows Authentication"
- Previous message: Bernard Cheah [MVP]: "Re: Resetting IUSR user token"
- In reply to: Pankaj: "Web Server Reverse Proxy Bug"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]