Isolate users
Directory: localuser/+ user directory
SSL
Enable subverification in ii6
Set the running ID of the apppool to local system.
Register the sub-verification component, iissuba. dll
Rundll32 % WINDIR %/system32/iissuba. dll, registeriissuba
Set metabase attribute anonymouspasswordsync = true
Adsutil. vbs set w3svc/anonymouspassasswordsync true
View anonymous user passwords
C:/inetpub/adminscripts> cscript // H: cscript
Adsutil. vbs get w3svc/anonymoususername
Notepad adsutil. vbs
Issecureproperty
Add
Issecureproperty = false
Exit Function
Adsutil. vbs get w3svc/anonymoususerpass
Soft: wfetch
Iehttpheaders
? IIS Lockdown
? URLScan
Metabase Audit
Audit Object Access
C:/Windows/system32/cscript iiscnfg. vbs/enableaudit // R
Centralized W3C Logging
Adsutil. vbs set w3svc/centralw3cloggingenabled true
Selfssl
Cscript // H: cscript
Configuration File: % SystemRoot %/system32/inetsrv/metabase. xml
Architecture file: % SystemRoot %/system32/inetsrv/mbschema. xml
Log Analysis Tools
Log manager(logman.exe)
Tracerpt(tracerpt.exe)
Application tuning Tool
Web application strees tool (wast)
Application Center Test (ACT)
Start HTTP Compression
Website → properties → service → compressing Application Files
Mime of any type: *, application/octet-stream
IIS status code kb 318380
Service unavailable httperr. Log
Netstat-ano
Tlist PID
Netstat-ano | find "listening"> tcplisten.txt // obtain the TCP listener port list
Netstat-ano | find "UDP"> udplisten.txt // obtain the UDP listener port list
IMail activation: 156.21.1.22 156.21.1.171