General discussion

Locked

Web Server "banner"

By fimos ·
Dear all,

Recently I was asked about changing the web server "identity", such as changing IIS to something else (like we always say change telnet banner "SunOS 5.8" to something else), whether it is practical and whether it is a common best practice... any comment?

This conversation is currently closed to new comments.

3 total posts (Page 1 of 1)  
| Thread display: Collapse - | Expand +

All Comments

Collapse -

by cpfeiffe In reply to Web Server "banner"

From a security standpoint you absolutely should do this. It is a security "best practice". It falls under the same regard as changing the telnet banner. Many hacks are written specifically for application/version combinations that have a known vulnerability. This won't keep everybody away, but it does keep some away. A nice concept would be to make your UNIX server say it is ISS something. Most ISS hacks won't work at all.

Collapse -

by fimos In reply to

Poster rated this answer.

Collapse -

by fimos In reply to Web Server "banner"

This question was closed by the author

Back to Linux Forum
3 total posts (Page 1 of 1)  

Related Discussions

Related Forums