For the hardening process, it is recommended to disable any unnecessary
components, leaving only components that you are using. So if you need to
use the IISADMPWD directory, then it is fine to have it. It's only
recommended to be removed because it is not usually used and thus not
necessary.
Hope this helps!
Kyle Terns, MCSD [MSFT]
***********************
>>Please do not send email directly to this alias. This is an online
account name for newsgroup participation only.<<
This posting is provided "AS IS" with no warranties, and confers no rights.
You assume all risk for your use.
© 2003 Microsoft Corporation. All rights reserved.
***********************
--------------------
| Thread-Topic: IISADMPWD and Security
| thread-index: AcQdW5V5XzKB/c+0Sc6zA4oAa05XzA==
| X-Tomcat-NG: microsoft.public.inetserver.iis
| From: "=?Utf-8?B?UlA=?=" <anonymous DeleteThis @discussions.microsoft.com>
| Subject: IISADMPWD and Security
| Date: Thu, 8 Apr 2004 04:21:06 -0700
| Lines: 2
| Message-ID: <5CEF2FC5-CF75-4C5D-9C6C-02B2BDA4D6FD DeleteThis @microsoft.com>
| MIME-Version: 1.0
| Content-Type: text/plain;
| charset="Utf-8"
| Content-Transfer-Encoding: 7bit
| X-Newsreader: Microsoft CDO for Windows 2000
| Content-Class: urn:content-classes:message
| Importance: normal
| Priority: normal
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.0
| Newsgroups: microsoft.public.inetserver.iis
| Path: cpmsftngxa06.phx.gbl
| Xref: cpmsftngxa06.phx.gbl microsoft.public.inetserver.iis:301280
| NNTP-Posting-Host: tk2msftcmty1.phx.gbl 10.40.1.180
| X-Tomcat-NG: microsoft.public.inetserver.iis
|
| We want to use the password update to allow the users on a NT4 IIS4
webserver to change the password when they time out after ninety days. Yet
in the hardening process it is recommended that the IISADMPWD directory is
removed?
|<!-- ~MESSAGE_AFTER~ -->
>> Stay informed about: IISADMPWD and Security