S
Sabine Ludewig
Hellowe are providing OCSP (Microsoft) services which run on IIS.In the process of hardening IIS the following findings have surfaced. May I ask for your input since the Internet does not provide any information:- Ensure global .Net trust level is configuredDoes OSCP utilize .Net? Which .Net trust level is needed- Ensure unlisted file extensions are not allowedWhich file extensions does OCSP need to be allowed in IIS?Any help is highly appreciatedThanks a lot
Continue reading...
Continue reading...