Important Notice: Our web hosting provider recently started charging us for additional visits, which was unexpected. In response, we're seeking donations. Depending on the situation, we may explore different monetization options for our Community and Expert Contributors. It's crucial to provide more returns for their expertise and offer more Expert Validated Answers or AI Validated Answers. Learn more about our hosting issue here.

I am seeing “Failed in VerifyRFC” errors in my SecureIIS logs. What is this and how does SecureIIS use it to protect my server?

0
Posted

I am seeing “Failed in VerifyRFC” errors in my SecureIIS logs. What is this and how does SecureIIS use it to protect my server?

0

RFC checking was introduced in SecureIIS 1.2.6. Basically, SecureIIS is verifying that web clients are abiding by the “rules of the road” for web traffic. In some cases an attacker can manipulate the HTTP protocol to exploit a certain class of IIS vulnerability. HTTP manipulation can also be used to bypass certain security systems (like IDS’s), so SecureIIS will catch these incoming attacks even if they are not directly exploiting a hole in the web server. If you are seeing an abnormal number of VerifyRFC errors in your SecureIIS logs, chances are you are running a web-based application that is violating an RFC rule, and the SecureIIS log entry can help you track down the location of the problem.

Related Questions

What is your question?

*Sadly, we had to bring back ads too. Hopefully more targeted.

Experts123