Audit and Apply IIS Crypto Security Templates [Windows]
Audits current Windows TLS and cipher suite settings or applies an IIS Crypto security template to enforce a security baseline. Audit results are stored in the cPVAL IIS Crypto Info custom field.
Control Server Best Practice Ticket
This document outlines the process of auditing and implementing hardening rules and policies for CW Control (on-prem) servers, focusing on security enhancements and compliance with best practices as per the recent CW guidelines.
cPVAL - Server Role - Web Servers
A group tailored for Windows Servers that have the Web Server (IIS) role installed
cPVAL IIS Crypto Info
Stores an HTML table of Windows TLS and cipher suite settings captured by the IIS Crypto audit, including setting category, setting name, current value, and data collection time. Populated automatically by the Audit and Apply IIS Crypto Security Templates automation.
IISWebMonitor_Service
This document outlines a service designed to ensure that IIS websites remain online by automatically restarting the message queue when a site goes down and generating alerts based on specific event IDs.
Invoke-IISCrypto
Retrieves current settings or applies an IIS Crypto template on the system
Purge IIS Logs Older than 3 Days
This document provides a detailed overview of a PowerShell script designed to remove IIS log files older than 3 days from a specified directory. The script logs actions taken, including successes and failures, and outlines the command execution process along with example agent procedure logs.
TLS Version Check - Server
This document outlines the setup and usage of a remote monitor designed to check and return the enabled TLS server version on a computer. It details the requirements, cautionary notes against alerting, and suggestions for implementation in managed Windows environments.