Hello all!
I got my site back up again after getting hacked and learning about security aspects. (I still have a lot to learn though!) After using the IIS lockdown tool, I was able to get all of my asp working again with slight changes to permissions on that folder.
I noticed that that the lockdown tool left my C: drive with full permissions for the everyone group. This sure does not sound right to me!
What are the minimum permissions for the everyone group so that I do not lock myself out of my server altogether?
If I reduce everyone on C: to read only, my asp sites on another drive cease. I need read/write on C: in order for them to work.... I have not tried rebooting with these permissions yet. One other time I deleted the everyone group... that was a mistake!! If I make everyone read only on my Web drive, it works ok. For some reason Everyone needs write for C:
Any suggestions?
I do have Server Admin/machine name/full and System/ full on C:
Also, regarding the anonymous account... I have read where setting this to a value of 2 in the registry is the best. I tried this with the snap in and after rebooting, logging in as admin, the only thing I could do as far as shutting down was to log off. All the rest of the options were gone. I read a lot and found nothing to speak of. Next, I reset the Anonymous back to 0, logged off and reset the machine with clenched teeth. Luckily, it returned to normal, or almost. Now when I try to view secutity in event viewer, I get this:
Unable to complete the operation "Security".
A required privledge is not held by the client.
I get this even though I am logged in under an admin acct. I created another admin acct with full privledges, logged in as that, and the same thing occured.
Any ideas??? Sure would appreciate some input here!
I got my site back up again after getting hacked and learning about security aspects. (I still have a lot to learn though!) After using the IIS lockdown tool, I was able to get all of my asp working again with slight changes to permissions on that folder.
I noticed that that the lockdown tool left my C: drive with full permissions for the everyone group. This sure does not sound right to me!
What are the minimum permissions for the everyone group so that I do not lock myself out of my server altogether?
If I reduce everyone on C: to read only, my asp sites on another drive cease. I need read/write on C: in order for them to work.... I have not tried rebooting with these permissions yet. One other time I deleted the everyone group... that was a mistake!! If I make everyone read only on my Web drive, it works ok. For some reason Everyone needs write for C:
Any suggestions?
I do have Server Admin/machine name/full and System/ full on C:
Also, regarding the anonymous account... I have read where setting this to a value of 2 in the registry is the best. I tried this with the snap in and after rebooting, logging in as admin, the only thing I could do as far as shutting down was to log off. All the rest of the options were gone. I read a lot and found nothing to speak of. Next, I reset the Anonymous back to 0, logged off and reset the machine with clenched teeth. Luckily, it returned to normal, or almost. Now when I try to view secutity in event viewer, I get this:
Unable to complete the operation "Security".
A required privledge is not held by the client.
I get this even though I am logged in under an admin acct. I created another admin acct with full privledges, logged in as that, and the same thing occured.
Any ideas??? Sure would appreciate some input here!