Re: IIS on Vista & IISLockdown/UrlScan



In IIS 7, you will get request filtering feature which is essentially
URLScan in a way
read - http://www.iis.net/default.aspx?tabid=2&subtabid=25&i=1040


--
Regards,
Bernard Cheah
http://www.iis.net/
http://www.iis-resources.com/
http://msmvps.com/blogs/bernard/


"Stephen" <Stephen @discussions.microsoft.com> wrote in message
news:050E1E0D-D881-4707-81F4-CD070966BB4B@xxxxxxxxxxxxxxxx
Does anyone have any suggestions for what security steps need to be taken
to
secure a basic web server in Vista running ASP.NET 2.0 pages with some
VB.NET?IISLockdown doesn't list Vista in supported products so am I right
to
assume it isn't needed in Vista? Should I take it URLScan functions are
already included? I don't mind reading some articles on it if they exist,
but
would appreciate any pointers n the right direction. Thanks a bunch.


.



Relevant Pages

  • Re: Problems with file names
    ... Are you sure you have uinstall urlscan? ... IIS Web log? ... >Bernard Cheah ... >>> what's the status in IIS for such request? ...
    (microsoft.public.inetserver.iis.security)
  • Re: Urlscan 2.5 unattended install
    ... so it is extract first then /q. ... > I just got heard from the developer for the UrlScan installer. ... >> files, set ACLs, register filters, ... >>> Bernard Cheah ...
    (microsoft.public.inetserver.iis.security)
  • Re: FrontPage Counter
    ... Use URLScan with FrontPage 2002 ... I understand the dot in path thing but it seems that it was ... >> Bernard Cheah ... >> Please respond to newsgroups only ... ...
    (microsoft.public.inetserver.iis.security)
  • Re: Dots in path on IIS 5.1
    ... Bernard Cheah ... Disabling the UrlScan will not make the IIS accept the dots, ... The application has a wildcard extension mapping set up, ... This extension mapping is causing the problems, but we need it for the ...
    (microsoft.public.inetserver.iis.security)
  • Re: Install/Use UrlScan on 6.0?
    ... IIS6 is secure without using URLScan. ... URLScan has additional features not in IIS6 ...
    (microsoft.public.inetserver.iis.security)