|
|||||||||||
|
RE: Bypass Traverse Checking?
From: Kolde, Jennifer E. <jkolde(at)nosc.mil>
Date: Tue Jan 21 2003 - 17:48:49 EST
"Bypass traverse checking" is a right that allows a user to navigate
With IIS 5.0, the IIS accounts (IUSR and IWAM) are part of the Guests standard group by default. IUSR and IWAM are also members of Authenticated Users, which is a special group with a dynamic membership. It's membership consists of anyone who happens to be logged in at the time with a valid userid and password. So...changing "Bypass traverse checking" from "Everyone" to "Authenticated Uses" should NOT affect IUSR and IWAM. (But I admit that I haven't done this in practice, so YMMV.)
In general, changing from "Everyone" to "Authenticated Users" is done to
exclude null session (effectively unauthenticated) users from accessing
resources. (Note that "Authenticated Users" can still include Guests -
because Guests can be logged in with a valid username and password - but
Regards,
-----Original Message-----
I'm working on procedures for servers in our organization. I keep coming across the recommendation to set the following on a Windows 2000 Server. My problem is I have another administrator who believes this could cause problems in IIS. What are the lists opinions? Anyone heard of this causing problems? User Rights Assignment - Set "Bypass Traverse Checking" - Remove Everyone and Replace with Authenticated Users. Thanks in advance for your time,
Michael Scott Williamson
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:01:25 EDT |
||||||||||
|
|||||||||||