Setting Up Win2008 R2 Server - IIS_IUSRS Permissions
- by leen3o
I am setting up a web server and notice out the box it gives IIS_IUSRS read & execute (and as a result list folder contents) permissions on the wwwroot. I'm trying to make sure its secure as possible, and just wondering if its ok to leave that?
On my last server (Win2003) I only gave 'read' permissions to users on the wwwroot and then manually added the write / execute permissions on folders as needed.
Just wondering if everyone else leaves the permissions as they are?