menu
Logo
  • Why azing?
  • Blog
  • Help
ENarrow_drop_down
  • DE
  • EN
Suche in Checklisten
search
azing Logo ENarrow_drop_down
  • DE
  • EN
  • Why azing?
  • Help
DNN Community
drive_folder_upload
  • homeChecklist Templates
  • south
  • fiber_manual_recordOperations and Security
  • south

folder_sharedHosting DNN

  • homeChecklist Templates
  • south
  • fiber_manual_recordOperations and Security
  • south

folder_sharedHosting DNN

Folders and checklists

  • check_circleConfigure IIS to use Windows File Server NAS Backend
  • infoHosting Model "Divide and Conquer"
  • check_circleSetup a Windows File Server as NAS for DNN Websites

Parts (0) expand_more

These are small document-parts which are used in other documents. They are not a starting point for any real activity. Because of this, they will be listed further down and the search will not list them unless requested. 

We really want to make sure that code running in a DNN website cannot access anything in C:\ no matter what. By default all Application Pool Accounts have some limited permissions which are not needed, so we want to ensure that these cannot be used either. 

  1. On the web server, open the permissions for the drive C:\
  2. Add Deny permissions for the IIS_Users group (which contains all automatically generated Application Pool Identities) like this:
  3. You'll receive warnings about the following objects, where the Deny cannot be applied. This is ok.
    1. c:\pagefile.sys
    2. c:\Program Files
    3. c:\Program Files (x86)
    4. c:\Windows

Note that Windows will automatically manage the permissions in C:\Windows etc. as needed, so you don't need to make changes there, unless you are using a setup where the web site files are stored on a remote file store (NAS). 

Special Cases

In case you're also hosting your website files on drive C (which you really shouldn't, they should be on another drive), remember to remove this newly added Deny-permission on those folders and harden that folder according to best practices. 

Logo
Legal | Content Copyright CC-BY 4.0
bug_reportReport Bug
  • info
  • Links
  • Permissions
code Share
code
URL copied to clipboard.
Embed Checklist close
Copy Copy
Content Copyright

CC-BY 4.0

Translations

None

DNN Community Logo

DNN Community

QR-Code
azing.org/dnn-community
/r/5E9XUKyG
View & Use

Public (can be used by everybody)

Edit & Admin

Default (all members can edit)

This catalog has a simple permission model, where all members have the same permissions. For advanced permissions, upgrade to Enterprise.

Here you can see how this document is used and linked by other documents

Used in (1)

Others referencing this

  1. Hosting Model "Divide and Conquer"
Uses these (0)

Documents linked from this document

How it Behaves

How this document is categorized changes how it behaves.

This is a partial document. It is listed below the normal documents, and is hidden in the default search.

Type

This is a Checklist. Lists are converted into checkboxes.

Get something to say?

Comment to start a discussion or make a note
send

please log on to chat

close

Durchsuche ganz Azing