【正文】
build environment ? VC++ piler supported (/Gs) ? Revised canonicalization ? Removed old legacy code ? Low privilege accounts ? Security through Isolation ? Great patch management story ? New authentication and authorization schemes 實用措施 Best Practices ? Run IIS Lockdown wizard and URLScan ? Lock down your work with IPSec ? Do not use FAT! ? Have your content on a separate partition ? Use authentication ? Disable unneeded system services Stay Informed Security: A way of life ? Check for new security hot fixes ? Subscribe to the Security notification service tech/treeview/?url=/tech/security/bulletin/ ? Use HFCHECK /HFNETCHK tech/security/tools/tools/ ? Query Windows Update Stay Informed Security: A way of life ? Remain informed, vigilant, and educated! ? Audit ? Eventlog ? Monitor ? IIS Logs ? Make a plan for what needs to be done when ? A new security bulletin is released ? Hacked ? Do backups ? Use tools to detect intrusions ? URLSCAN 如果不幸被黑了 … ? Remove infected machines from the Net ? Forensics ? Take an image。 ) ( amp。k39。.39。 (strConnection)。 ()。 = 39。139。139。 2022 Microsoft Corporation. All rights reserved. This presentation is for informational purposes only. Microsoft makes no warranties, express or implied, in this summary.