Re: FTP Server HELP!!!

From: SuperGumby [SBS MVP] (not_at_your.nellie)
Date: 09/20/05


Date: Tue, 20 Sep 2005 09:40:56 +1000

yeah, remove IIS FTP and install a third party FTP service which uses it's
own account database.

"MCSEGURU" <mcseguruhere@aol.com> wrote in message
news:uWVpXMXvFHA.3100@TK2MSFTNGP12.phx.gbl...
> An unknown user used a program to try to script through about 8 different
> usernames, and like 300 passwords each in attempts to hack my FTP Server
> on my SBS 2003 Premium Server. Dilema, I hadn't ever created a "just in
> case" backup admin account. I try to never use admin privledges on the
> server, and with the negative implications of following the
> recommendations to rename Administrator, I have hesitated to do so,
> however after 300 failed login attempts, the Administrator account was
> locked out. Now I've recovered my access to my system, but I have some
> "obscurity" goals I'd like to try.
>
> I have found the following and implemented it:
> http://support.microsoft.com/default.aspx?scid=kb;en-us;826270
>
> Now I would like my FTP SVC to at the least broadcast external.domain.com
> rather than server.domain.local on the "Connected to:" line. Any other
> recommendation on securing my "Read Only" FTP server would be greatly
> appreciated.
>
> Thanks,
>



Relevant Pages

  • RE: Confused about FTP for IIS7 authorization
    ... ACL list includes your test account and that's why you can login without ... them are with allowed rules in FTP authorization. ... Microsoft Online Community Support ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: Secure FTP site
    ... Users must then provide a valid local account with ... For remote users to connect to the FTP service, ... You need to grant this right to any other ... the Administrative Tools folder. ...
    (microsoft.public.inetserver.iis.security)
  • Re: FTP
    ... Users must then provide a valid local account with ... For remote users to connect to the FTP service, ... You need to grant this right to any other ... Policies\User Rights Assignment, and then double-click the Log On Locally ...
    (microsoft.public.inetserver.iis.security)
  • Re: FTP
    ... > the necessary rights to log onto the FTP site. ... > Tip Although you could change the account that the FTP service uses ... > For remote users to connect to the FTP service, ... You need to grant this right to any other ...
    (microsoft.public.inetserver.iis.security)
  • Re: To tri-homed, or not to tri-homed... that is the question
    ... > It's just the site we test prior to pushing content to the live server. ... It sounded like you already have a Back-to-Back DMZ. ... In fact, if it is anything other than FTP, ... new account *locally* on the Web Server itself for them to use. ...
    (microsoft.public.windows.server.sbs)