T
T
tripguard2018-03-28 14:43:12
IIS
tripguard, 2018-03-28 14:43:12

Prohibit navigating to IIS7 absolute path?

Good afternoon !
There is IIS7 running a local site on it. Everything is connected to the default web site through a virtual application. Windows authorization is now enabled on the site through a specific group of AD users. Unauthorized users get 401 custom page with that everything is ok! But if you go to the absolute path https://hostname/filedir/page.html, the requested resource and its functionality is available... I dig the Internet, but there is no explicit pointer on how to make "prohibition of going to the absolute path" . Site hodgepodge, something self-written, something in ASP. Tell me how to clog holes, because it is unsafe !!!

Answer the question

In order to leave comments, you need to log in

1 answer(s)
A
Alexander Kuznetsov, 2018-03-29
@DarkRaven

filediris this a folder? If so, throw in a web.config indicating that authentication is required.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question