Guidelines on Securing Public Web Servers
Completed 
Action 
encryption, use self signed certificate 
For configurations that require server authentication and encryption, 
use third party issued certificate  
For configurations that require a medium level of client 
authentication, configure server to require username and password 
via SSL/TLS 
For configurations that require a high level of client authentication 
configure server to require client certificates via SSL/TLS 
Configure file integrity checker to monitor Web server certificate 
If only SSL /TLS is to be used on the Web server, ensure access via 
TCP port 80 is disabled 
If most traffic to the Web server will be via encrypted SSL/TLS, 
ensure that appropriate logging and detection mechanisms are 
employed on the Web server (because network monitoring is 
ineffective against encrypted SSL/TLS sessions) 
63




  

Home

About Services Network Support FAQ Order Contact
 

Web Hosting SSH

Our partners:Jsp Web Hosting Unlimited Web Hosting Cheapest Web Hosting  Java Web Hosting Web Templates Best Web Templates PHP Mysql Web Hosting Interland Web Hosting Cheap Web Hosting PHP Web Hosting Tomcat Web Hosting Quality Web Hosting Best Web Hosting  Mac Web Hosting 

Lunarwebhost.net  Business web hosting division of Vision Web Hosting Inc. All rights reserved