Customer Reviews


5 Reviews
5 star:
 (2)
4 star:    (0)
3 star:
 (1)
2 star:
 (2)
1 star:    (0)
 
 
 
 
 
Average Customer Review
Share your thoughts with other customers
Create your own review
 
 
Only search this product's reviews

The most helpful favorable review
The most helpful critical review


6 of 7 people found the following review helpful:
5.0 out of 5 stars Know you're covered
Most people in the business world are likely familiar with the term "CYA", which is exactly what this book is designed to do. The authors intend that reading this book will give IIS administrators the information they need to keep their networks secure, and hence keep their jobs. This is the first CYA book I've read, and I was quite impressed by the nice balance between...
Published on October 3, 2004 by ueberhund

versus
2.0 out of 5 stars Maybe it won't...
This book does cover security in IIS. But, the content largely repeats Microsoft documentation which is available at no cost elsewhere. The presentation consists largely of screen shots plus instructions of what fields to fill in. Background and design information is mentioned but generally not integrated into the text for any practical result. There is very little...
Published on July 8, 2009 by Jay P. Vansanten


Most Helpful First | Newest First

6 of 7 people found the following review helpful:
5.0 out of 5 stars Know you're covered, October 3, 2004
By 
ueberhund "ueberhund" (Salt Lake City, UT United States) - See all my reviews
(VINE VOICE)   
This review is from: CYA Securing IIS 6.0 (Paperback)
Most people in the business world are likely familiar with the term "CYA", which is exactly what this book is designed to do. The authors intend that reading this book will give IIS administrators the information they need to keep their networks secure, and hence keep their jobs. This is the first CYA book I've read, and I was quite impressed by the nice balance between providing enough useful information without overkill. The book is designed to get right to the point by showing (not telling) exactly what is required in securing an IIS 6 installation.

Each chapter is focused on a specific section of IIS security. Chapters cover topics as varied as Basic IIS security, Advanced IIS security, monitoring, and general Server 2003 hardening. Each chapter contains the some information on the Microsoft recommended procedure for the particular practice (what the authors call "By the Book"). Additionally, you will find many sections throughout the book labeled "Realty Check", which is designed to highlight how to either do something different from what Microsoft recommends or what some of the problems associated with the recommended procedure might be. Finally, "Notes from the Underground" popup frequently, which help illustrate how hackers might utilize poor security around the illustrated practice in order to gain something.

I found the chapters to be well laid-out, easy to follow, and right to the point. This book helped provide some real insight to various security practices around IIS, and was quite interesting to read as well. This book is a must-have if you are responsible for monitoring or maintaining IIS 6 in your infrastructure.

I am definitely looking forward to reading the next in the series of CYA books!
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


3 of 4 people found the following review helpful:
5.0 out of 5 stars Excellent book!, August 11, 2004
This review is from: CYA Securing IIS 6.0 (Paperback)
Thank you guys for an excellent book! I have been developing applications for IIS for many years and think you have done a great job in explaining how it all works. I also very much like the "reality check" concept. Keep up the good work!
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


2.0 out of 5 stars Maybe it won't..., July 8, 2009
Amazon Verified Purchase(What's this?)
This review is from: CYA Securing IIS 6.0 (Paperback)
This book does cover security in IIS. But, the content largely repeats Microsoft documentation which is available at no cost elsewhere. The presentation consists largely of screen shots plus instructions of what fields to fill in. Background and design information is mentioned but generally not integrated into the text for any practical result. There is very little "system administrator" perspective offered to provide a coherent approach to addressing IIS security.

The check lists are a good idea. However, unfortunately, you'll often have to look outside the book itself for information about the topics: locking down Win 2003 is particularly eggregious in this respect.

You'll find little information about password technology in Windows. Approaching this correctly is critical for avoiding some serious vulnerabilities.

The value of the book is that it presents information relevant to IIS security in one place. However, other books present the same information more thoroughly, with better background and administration guidance. Check IIS 6 Administration or Microsoft® IIS 6.0 Administrator's Pocket Consultant (IT-Administrator's Pocket Consultant) for precisely that.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


0 of 4 people found the following review helpful:
2.0 out of 5 stars utterly worthless., November 21, 2005
By 
Amazon Verified Purchase(What's this?)
This review is from: CYA Securing IIS 6.0 (Paperback)
There's nothing here that you cant find yourself on the net
in less than five minutes. This book was written for the kind of
person that has trouble finding the "ON" switch - not a real
network administrator. If you know what you're doing, then dont
waste your money.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


0 of 10 people found the following review helpful:
3.0 out of 5 stars Your A** is Covered is rude, September 25, 2004
This review is from: CYA Securing IIS 6.0 (Paperback)
It is a practical book.
Each chapter is lacking of coherent.
I still feel there are more elegant ways than "Your A** is Covered".
It is better to have scenario to illustrate why this should be used or done.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


Most Helpful First | Newest First

This product

CYA Securing IIS 6.0
CYA Securing IIS 6.0 by Ken Schaefer (Paperback - April 1, 2004)
$41.95 $30.97
In Stock
Add to cart Add to wishlist