Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chris Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Disabling Port 80 and only Allow Port 443

Status
Not open for further replies.

netwalker1

Programmer
Feb 5, 2000
1,241
EG
I need to disable the Port 80 while the only need is to allow the port 443 on the IIS ...

Any idea ?

Mohamed Farid
[green]Know Me No Pain , No Me Know Pain !!![/green]
 
I need to completely disable it - not only redirecting the traffic ...

So that when anyone telnet the server - he shouldn't get an answer from my server ...

Mohamed Farid
[green]Know Me No Pain , No Me Know Pain !!![/green]
 
remove the TCP port 80 on the default website properties. and see what happens

_______________________________________
Great knowledge can be obtained by mastering the Google algorithm.
 
I can't remove it ...

I remove it but there is no Okay Button anymore !

Mohamed Farid
[green]Know Me No Pain , No Me Know Pain !!![/green]
 
Sorry, just ran through that one :)

You could just make the TCP 8080 which users would need to know to add that :8080 before they had access...I've alway did the redirect thing.

Any one else have an idea?

There is an IIS Forum here on Tek-Tips:

_______________________________________
Great knowledge can be obtained by mastering the Google algorithm.
 

Changing it is not protecting it from the same attacks port 80 is vulnerable against ...

I am doing this to close the port completely not only to change it ...


Mohamed Farid
[green]Know Me No Pain , No Me Know Pain !!![/green]
 
I would recommend an ISA/or other firewall in front of your IIS server

_______________________________________
Great knowledge can be obtained by mastering the Google algorithm.
 
I would hope your IIS box isnt connected directly to the internet. Just remove the NAT or port forwarding for port 80 on your router.



RoadKi11

"This apparent fear reaction is typical, rather than try to solve technical problems technically, policy solutions are often chosen." - Fred Cohen
 
This is not an option !
I have an internal Penetration Test which is overcome the Security Boundaries ( Firewalls and IPS ) ...

I am really shocked !
I can't close the http service on the IIS ?!

Mohamed Farid
[green]Know Me No Pain , No Me Know Pain !!![/green]
 

Use the built in Windows Firewall to block port 80. A firewall of some sort is the only way. The redirect link i sent above is standard practice. Maybe Windows built in TCP Filtering will help you as well.

_______________________________________
Great knowledge can be obtained by mastering the Google algorithm.
 
You close ports at your perimeter firewall. If you don't have a perimeter firewall, then you have a poorly designed network.

I'm Certifiable, not cert-ified.
It just means my answers are from experience, not a book.

There are no more PDC's! There are DC's with FSMO roles!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top