OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: McCammon, Keith (Keith.McCammoneadvancemed.com)
Date: Tue Aug 28 2001 - 11:57:11 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    ---------------------------
    1) First I would like a good document describing what it is supposed to
    do and how this tool does it.
    ---------------------------

    It looks like the .chm is as good as it gets.

    ---------------------------
    2) I would like to be able to run it from the command line.

    3) Logging to a text file, explaining what files have been deleted, what
    registry settings have been changed, and what metabase settings have been
    changed
    ---------------------------

    You can start it from a command-line, but it doesn't appear to behave any
    differently. It just runs its course as always.

    ---------------------------
    "The source code??"
    ---------------------------

    That's funny. I'll just leave that one alone...

    ---------------------------
    I was really hoping that this tool would allow me to remove unneed script
    mappings from all websites and virtual directory. It is easy to remove the
    script mappings using something like

    cscript c:\winnt\system32\inetsrv\adminsamples\adsutil.vbs set
    /w3svc/scriptmaps ".asa,C:\WINNT\System32\inetsrv\asp.dll,1,PUT,DELETE"
    ".asp,C:\WINNT\System32\inetsrv\asp.dll,1,PUT,DELETE"
    ---------------------------

    I think that the hisecweb security template should knock this out.

    Overall, I was pretty disappointed with the tool as well. So I do feel your
    pain. The more tools they put out, the more I realize that if you want it
    done right... (you know the rest).