Re: Suggestions



Bad Beagle wrote:
> I am doing some consolidation of Windows 2003 IIS servers. What is
> more secure - to have 1 ftp server shared by all IIS servers using
> virutual directories or running 4 individual ftp servers without
> virutual directories and using ntfs to lock it down? Any suggestions
> would be appreciated.

To add to Roger's advice, I'd say that I'd prefer to run as few FTP servers
as possible because the more services you have to administer the higher the
chance that a setting could be forgotten or applied incorrectly somewhere.

FTP isn't really designed for secure communication, and if you want to do
anything other than providing a simple download point via anonymous FTP then
Microsoft's FTP server relies on the administrator having a very good
understanding of both the FTP service itself and of general windows admin
skills in general.

As such, deciding which design provides you with the simplest possible
implementation, and sticking to that simple implementation is going to
greatly improve your security.

--
--
Rob Moir, MS MVP
Blog Site - http://www.robertmoir.com
Virtual PC 2004 FAQ - http://www.robertmoir.co.uk/win/VirtualPC2004FAQ.html
I'm always surprised at "professionals" who STILL have to be asked "Have you
checked (event viewer / syslog)".


.



Relevant Pages

  • Re: best way to secure an FTP server in IIS 5 and IIS in general ???
    ... How to secure any Windows computer, including IIS: ... > NTFS, just using list folder contents, returns a read error... ... > These questions are in response to having the FTP server hacked and had to ...
    (microsoft.public.inetserver.iis.security)
  • clientless windowsbased sftp / ssh server?
    ... secure ftp server so I can uplode/d-lode school papers and homework ... webserver then I think I can only download from it, ... to establish a secure connection to some sort of server i can build at ...
    (comp.security.ssh)
  • Re: Downloads Fail With IIS 6.0
    ... isn't very secure. ... we would have to rewrite many pages of our web ... > would recommend to set up a FTP server and put that file on it. ... >> appear to download, and show the correct number of pages, but have all blank ...
    (microsoft.public.inetserver.iis)
  • best way to secure an FTP server in IIS 5 and IIS in general ???
    ... What is the best way to secure an FTP server in IIS 5 and IIS in general ??? ... ftp outgoing account with correct virtual directories and associated NTFS ...
    (microsoft.public.inetserver.iis.security)
  • Re: Whats the best and easiest FTP server to use in Debian for a small LAN?
    ... most good applications will avoid lookups if the details are there. ... > Is there a basic and easy to use FTP server to replace wu-ftpd for my ... > huge file transfers in case I need to abort and do it later. ... Consider using the openSSH toolkit if you want to do local (secure) file ...
    (comp.os.linux.networking)