Thursday, 8 November 2018

Sensitive Pages and Files

Sensitive Pages and Files Accessible with insufficient Authentication 
To add restriction to all mentioned pages under -    
_vti_bin/
-vti_pvt/
-vti_log/
-vti_cnf/
-vti_adm/
-layouts/
Restriction can be NTLM Authentication 

How to restrcit above 


Un-Hidden Web Services
To add restriction to all mentioned pages under -

-copy.asmx?WSDL
-lists.asmx?WSDL
-alerts.asmx?WSDL 
-Authentication.asmx?WSDL
BusinessDataCatalog.asmx?WSDL
-copy.asmx?WSDL
-dspsts.asmx?WSDL
-dws.asmx?WSDL
-ExcelService.asmx?WSDL
-forms.asmx?WSDL 
-imaging.asmx?WSDL
-meetings.asmx?WSDL
-people.asmx?WSDL
-People.asmx?WSDL
-permissions.asmx?WSDL
-Permissions.asmx?WSDL
-search.asmx?WSDL
-SharepointEmailWS.asmx?WSDL
-SiteData.asmx?WSDL
-sites.asmx?WSDL
-spscrawl.asmx?WSDL
-spsearch.asmx?WSDL
-UserGroup.asmx?WSDL
-UserProfileService.asmx?WSDL
-versions.asmx?WSDL
-views.asmx?WSDL
-Views.asmx?WSDL
-webpartpages.asmx?WSDL
-WebPartPages.asmx?WSDL
-webs.asmx?WSDL
Restriction can be NTLM Authentication 

How to restrict how and is there in issues for other services

No comments:

Post a Comment