Browse by Tags

Tagged Content List
  • Wiki Page: LDAPs(636) and MSFT-GC-SSL(3269) Service

    Table of Contents PortQry output after promoting a DC for SSL ports LDP.EXE output after connecting the SSL ports. NETMON capture for SSL Ports Network capture without netmon Cert server into a domain controller is not recommended. Publish a cert Template certutil -v -template LDAPSSL Find the Template...
  • Wiki Page: Configure SSL/TLS on a Web Site in the Domain with an Enterprise CA

    There are many web (HTTP) services that require secure sockets layer (SSL) / transport layer security (TLS). If you have an Windows Server-based Enterprise Certification Authority (CA), you can use the following instructions to get an SSL certificate configured for an Internet Information Services...
  • Wiki Page: FOPE TLS to a FOPE Customer

    Currently there is not an option to Force TLS delivery from the FOPE service to an org as the FOPE customer. The servers do attempt opportunistic TLS however if STARTTLS is presented to the FOPE servers delivering email to the FOPE customer MTA. Unfortunately this does not appear in the MTRT logs...
  • Wiki Page: 如何停用 IIS5 / IIS6 / IIS7 的 SSL v2 加密協定 (含原理說明) (zh-TW)

    在多年以前 SSL 第二版 (v2) 就已經被證實有編碼加密方面的瑕疵,因此駭客很輕易的就能對 SSL v2 加密過的封包進行反解,或可能會透過 中間人攻擊 ( Man-in-the-middle attack )手法加害於你的網站用戶,因此大多數的資安掃瞄軟體皆會建議在伺服器上關閉 SSL v2 的協定,以確保用戶端透過 SSL ( HTTPS ) 連上網站伺服器時是安全的連線。 我原本以為從伺服器上關閉 SSL v2 可能會導致部分舊版的瀏覽器無法登入網站,但理解 SSL 協定的 握手過程 (Handshake) 後,就知道不會導致客戶無法連線的問題,甚至想不到不停用 SSL v2 的理由...
Page 1 of 1 (4 items)
Can't find it? Write it!