I need to use ISA to secure an IIS5 website which links to MSSQL 7 Db for Internet users. The SQL DB has very sensitive data i.e. ssn etc... I was considering Server/client certificates (too expensive) Server certificate only or VPN. Can someone give pointers to the most secure configuration for this alpha test project? What are the best practices?
Thanks in advance
Thanks in advance