IIS hardening for OCSP

S

Sabine Ludewig

Hellowe are providing OCSP (Microsoft) services which run on IIS.In the process of hardening IIS the following findings have surfaced. May I ask for your input since the Internet does not provide any information:- Ensure global .Net trust level is configuredDoes OSCP utilize .Net? Which .Net trust level is needed- Ensure unlisted file extensions are not allowedWhich file extensions does OCSP need to be allowed in IIS?Any help is highly appreciatedThanks a lot

Continue reading...
 

Similar threads

D
  • Article
Replies
0
Views
19
David Weston, Vice President Enterprise and OS
D
C
Replies
0
Views
78
Craig Loewen
C
P
Replies
0
Views
12
Pavan Davuluri
P
A
Replies
0
Views
53
Amanda Langowski
A
Back
Top Bottom