Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

RE: Harden ASP.NET Configuration

From: Brian W. Spolarich <bspolarich(at)nephrostherapeutics.com>
Date: Tue May 13 2003 - 10:34:22 EDT


> [.net Application Mappings]

  Most of these application mappings return a response similar to "This type of page is not served", which is helpful in preventing folks from browsing the source files of your application, or the web.config file which might contain sensitive info like database connection strings and the like.

  I sympathize with and share the instinct towards having as little as possible marked as executable content by the web server. In this case it seems like asp_net.dll is doing the Right Thing.

  -bws



FastTrain has your solution for a great CISSP Boot Camp. The industry`s most recognized corporate security certification track, provides a comprehensive prospectus based upon the core principle concepts of security. This ALL INCLUSIVE curriculum utilizes lectures, case studies and true hands-on utilization of pertinent security tools. For a limited time you can enter for a chance to win one of the latest technological innovations, the SEGWAY HT. Log onto http://www.securityfocus.com/FastTrain-focus-ms
Received on Tue May 13 15:17:11 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:01:30 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library