On Fri, Jan 8, 2010 at 17:07, Michel Servaes <[email protected]> wrote:
> I don't really like port 80 at all on an IIS server...

Please forgive my IIS ignorance (and this has gone far afield from
pfSense), but what's the difference?  Unless you're doing client
certificates, random clients are still free to connect, whether
encrypted or not.  I happen to see just as many scans for servers on
443 as I do on 80, so you're not to going to avoid random discovery
either.  Is there something intrinsically less secure about IIS
running clear HTTP versus HTTP over SSL (content notwithstanding)?

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Commercial support available - https://portal.pfsense.org

Reply via email to