【正文】
can ? Support ? 1866PCSafety, free security issue support ? Stay secure ? Bundle all security fixes since most recent Service Pack ? Windows 2022 Service Pack (SP3) ? Windows Update Corporate Edition ? Auto update – Scheduled install demo IIS Lockdown Tool URLSCAN 重要提示 ? Install new IIS Security Rollup Package ? SRP ? ?url=/tech/security/bulletin/ms02 ? URLSCAN ? asp?ReleaseID=37756 IIS 安全方面的新設(shè)計: ? Reduced attack surface ? IIS is not installed by default ? Server Lockdown: Static files only ? Secure defaults ? Code security ? Buffer overflow checks ? Automated in the Windows build environment ? VC++ piler supported (/Gs) ? Revised canonicalization ? Removed old legacy code ? Low privilege accounts ? Security through Isolation ? Great patch management story ? New authentication and authorization schemes 實用措施 Best Practices ? Run IIS Lockdown wizard and URLScan ? Lock down your work with IPSec ? Do not use FAT! ? Have your content on a separate partition ? Use authentication ? Disable unneeded system services Stay Informed Security: A way of life ? Check for new security hot fixes ? Subscribe to the Security notification service tech/treeview/?url=/tech/security/bulletin/ ? Use HFCHECK /HFNETCHK tech/security/tools/tools