11.07.2015 Views

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

Improving Web Application Security: Threats and - CGISecurity

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

How To:Secure Your Developer WorkstationApplies ToThis information applies to developer workstations that run the following:●●Microsoft ® Windows ® 2000 Server <strong>and</strong> Professional, Windows XP ProfessionalInternet Information Services (IIS)● .NET Framework versions 1.0 <strong>and</strong> 1.1●Microsoft SQL Server 2000 <strong>and</strong> the Desktop EditionSummaryThis How To helps you improve your development workstation security. Developersoften have computers running software such as IIS, Microsoft SQL Server, or theMicrosoft SQL Server Desktop Engine (MSDE.) For example, Microsoft Visual Studio ®.NET is designed for local development with IIS, so it is common for a developer torun IIS locally. As a developer, you need to be able to secure these services againstattack, even if your computer is in a protected local area network.This How To provides quick tips to help you improve the security of your developerworkstation, along with tips about how to keep it secure. It also helps you avoidcommon problems that you are likely to encounter when you secure yourworkstation. Finally, it provides tips about how to determine problems <strong>and</strong> to revertsecurity settings if they prove too restrictive.Note This How To is not exhaustive, but it highlights many of the key issues.Before You BeginBefore you begin securing your workstation, you need the following tools:● Microsoft Baseline <strong>Security</strong> Analyzer (MBSA). Microsoft provides the MBSA toolto help analyze the security configuration of your computers <strong>and</strong> to identifymissing patches <strong>and</strong> updates. You can download the MBSA tool fromhttp://download.microsoft.com/download/e/5/7/e57f498f-2468-4905-aa5f-369252f8b15c/mbsasetup.msi.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!