Re: WebCatalog security on NT

This WebDNA talk-list message is from

2000


It keeps the original formatting.
numero = 27186
interpreted = N
texte = >So I assume that since people *do* host sites on NT, they still must >have devised a method of doing that... What are the prevention >steps that could be taken do have a somewhat secure hosting.Try subscribing to the ntbugtraq list at: http://www.ntbugtraq.com/You can spend a good amount of time studying and securing your NT server (or hiring an expert -- our recommendation), but you're at the mercy of the software you run. I think the CD-Universe security hole was due to a server running an older version of a package with a known bug. The key is keep your software current, your security measures on high, and watch the postings from M.S. and software vendors on security alerts.Last year, some on exploited a buffer overrun in a standard NT service that let them pipe in a program to re-map port 80 to the command line. This basically gave you access to the machine, at C:\ prompt level through port 80. Firewalls aren't a big help here !!!David Dantowitz -- DC&R www.dantowitz.com------------------------------------------------------------- Brought to you by CommuniGate Pro - The Buzz Word Compliant Messaging Server. To end your Mail problems go to .This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Associated Messages, from the most recent to the oldest:

    
  1. Re: WebCatalog security on NT (JHowarth@smithmicro.com 2000)
  2. Re: WebCatalog security on NT (Kenneth Grome 2000)
  3. Re: WebCatalog security on NT (David M. Dantowitz 2000)
  4. Re: WebCatalog security on NT (Kenneth Grome 2000)
  5. Re: WebCatalog security on NT (Serban Constantinescu 2000)
  6. Re: WebCatalog security on NT (Kenneth Grome 2000)
  7. WebCatalog security on NT (Serban Constantinescu 2000)
>So I assume that since people *do* host sites on NT, they still must >have devised a method of doing that... What are the prevention >steps that could be taken do have a somewhat secure hosting.Try subscribing to the ntbugtraq list at: http://www.ntbugtraq.com/You can spend a good amount of time studying and securing your NT server (or hiring an expert -- our recommendation), but you're at the mercy of the software you run. I think the CD-Universe security hole was due to a server running an older version of a package with a known bug. The key is keep your software current, your security measures on high, and watch the postings from M.S. and software vendors on security alerts.Last year, some on exploited a buffer overrun in a standard NT service that let them pipe in a program to re-map port 80 to the command line. This basically gave you access to the machine, at C:\ prompt level through port 80. Firewalls aren't a big help here !!!David Dantowitz -- DC&R www.dantowitz.com------------------------------------------------------------- Brought to you by CommuniGate Pro - The Buzz Word Compliant Messaging Server. To end your Mail problems go to .This message is sent to you because you are subscribed to the mailing list . To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to David M. Dantowitz

DOWNLOAD WEBDNA NOW!

Top Articles:

Talk List

The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...

Related Readings:

[LOOKUP] (1997) Fwd: AppleScript error (2003) Re:2nd WebCatalog2 Feature Request (1996) Fwd: Protect Tag and Groups (1998) Re:no [search] with NT (1997) WebCatalog can't find database (1997) WebDNA 5.0 Questions (2003) virtual virtual hosted store.... (1998) Loop wierdness? (2004) Why do extra quotation marks sometimes appear in my databases? (1998) Append command (2000) Bug Report, maybe (1997) WebDNA Solutions ... sorry! (1997) Hierarchy of form/text/math variables (renamed thread) (2000) Accented chars and emailer (1998) default error on NT? (1997) Calendar Snippet (1998) [WebDNA] Apple nixes Mac OS Server ("websites") and other services (2018) Re:WebCat Emailer & Liststar (1997) WebCatalog usage (1997)