12 Securing IIS and SQL Server

If you’re running a Windows Web server, odds are you skipped Chapter 11, “Securing Apache and MySQL.” Before you delve into this chapter, take a moment to read the first section in Chapter 11, “Programming Languages, Web Servers, and Operating Systems Are Inherently Insecure.”

Securing a Windows Server Environment

The first step in securing a Windows Web server is making sure that you’ve installed the latest patches from Microsoft. This isn’t to imply that you should upgrade Windows every time a newer version is released. Microsoft is notorious for releasing new versions of Windows before they’re really production-ready. Conventional wisdom is to wait until Service Pack 1 is released ...

Get Securing PHP Web Applications now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.