IIS Server Security - Unable to re-run or manually remove the IIS Lockdown Tool

This is Interesting: Free IT Magazines  
Home > Archive > IIS Server Security > July 2004 > Unable to re-run or manually remove the IIS Lockdown Tool





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author Unable to re-run or manually remove the IIS Lockdown Tool
Simon Stuart

2004-07-21, 2:48 am

The tool was installed. An unrelated problem led to the log file being
purged. As a result, the tool can not be re-run. The tool detects that
it has been installed and attempts to repair its prior action, but
fails as follows:

Starting undo...
Backing up IIS metabase...
Unable to backup IIS metabase
Undo did not completewish to remove this tool

Some suggestions as to how to manually purge this tool have been
followed, to no avail.

How does the tool detect that it has been run previously, so that this
behaviour can be overridden?

Simon
Yogita Manghnani [MSFT]

2004-07-21, 5:57 pm

Hello,
I believe it looks for the C:\Winnt\system32\inetsrv\oblt-log.log file to
detect if it was installed earlier or not. Try renaming or deleting this
file and run the Lockdown tool again. Let me know if that helps!

Thanks,
Yogita Manghnani
Microsoft Developer Support
Internet Information Server

****************************************
*****************************[vbcol=seag
reen]
account name for newsgroup participation only.<<

This posting is provided "AS IS" with no warranties, and confers no rights.
You assume all risk for your use.

© 2003 Microsoft Corporation. All rights reserved.
****************************************
*****************************

Simon Stuart

2004-07-22, 2:50 am

Thank you for your prompt reply.

I did actually rename this file, and the other Lockdown tool log files
in the same directory, prior to posting the original problem.

Something else must be telling the tool that it has been run.

When the tool is launched, the text "This Server Was Already
Configured" appears in the first wizard screen.

It is picking up something else. I searched the registry for
"lockdown" and cleared a few things out but did not find anything
glaringly obvious that at which the wizard might look.

I guess only the tool developer or program manager knows.
Yogita Manghnani [MSFT]

2004-07-23, 5:52 pm

Hey Simon,
Can you confirm if you have also removed/renamed the following files:

- Oblt-rep.log (in \System32\Inetsrv)
- Oblt-once.md0 (in \System32\Inetsrv\Metaback)
- Oblt-mb.md0 (in \System32\Inetsrv\Metaback)

If this doesn't help, I can try to ping the developer of this tool to find
out what else could be leading the tool to believe it was already run.

Thanks,
Yogita Manghnani
Microsoft Developer Support
Internet Information Server

****************************************
*****************************[vbcol=seag
reen]
account name for newsgroup participation only.<<

This posting is provided "AS IS" with no warranties, and confers no rights.
You assume all risk for your use.

© 2003 Microsoft Corporation. All rights reserved.
****************************************
*****************************

Sponsored Links






Free braindumps | Software forum | Database administration forum

Copyright 2003 - 2008 webservertalk.com