Securing ColdFusion Training, Securing ColdFusion Servers on Windows Training, Securing Coldfusion on IIS Training, Interent Information Server in Washington, DC, Atlanta, GA, Chicago, IL, Baltimore, MD, Virginia, VA - Adobe AuthorizedFig Leaf Training - Click here to return to the home pageContact UsSearchStudent Login
About TrainingLocationsInstructorsCourse AdvisorPoliciesVUEExtra Credit

Student Testimonials

"Course was useful in providing general overview of ITS/CF/OS security. Second half of day had tons of useful tidbits. Thanks."

"Super knowledgable instructor."

Curriculum Listing

Acrobat Training
Actionscript 3 Training
Acrobat Connect Training
After Effects Training
AJAX Training
Captivate Training
CISSP Training
Contribute Training
ColdFusion Training
CommonSpot Training
CSS Training
Dreamweaver Training
Flash Training
Flex Training
Google Training
JavaScript Training
InDesign Training
JRUN Training
LiveCycle Training
Photoshop Training
Premiere Training
Robohelp Training
SQL Training
Websense Training
XML Training

On-site Customer Locations

Birmingham, AL
Phoenix, AZ
Freemont, CA
Los Angeles, CA
San Francisco, CA
Hartford, CT
Washington, DC
Cape Canaveral, FL
Talahassee, FL
West Palm Beach, FL
Atlanta, GA
Boise, ID
Chicago, IL
Cedar Falls, IA
Baton Rouge, LA
Boston, MA
Newton, MA
Baltimore, MD
Detroit, MI
Kalispell, MT
Kansas City, MO
Raleigh, NC
Ithaca, NY
Melville, NY
New York, NY
Akron, OH
State College, PA
Philadelphia, PA
Pittsburgh, PA
Charleston, SC
Oak Ridge, TN
Austin, TX
Dallas, TX
Houston, TX
Arlington, VA
Reston, VA
Herndon, VA
Hampton, VA
Newport News, VA
Richmond, VA
Seattle, WA
Milwaukee, WI

Instructor Locations

Washington, DC
Atlanta, GA
Chicago, IL
Baltimore, MD
Alexandria, VA

Securing ColdFusion Servers on Windows

line separator
cfmx This one-day "RealWorld ColdFusion" seminar covers building secure ColdFusion application servers on the Windows platform, and keeping them secure. You'll learn how to secure the Windows OS, IIS and CF Server, find and eliminate security holes in your application code, and maintain security on your servers. See how attacks work, and how you can defend against them in depth.

 There are other security courses out there, but none that cover general Windows Internet server security as well as ColdFusion-specific security: from securing the ColdFusion server itself to securing ColdFusion applications and their dependencies.

 Not only will you learn the steps to security, you'll also learn how to perform those steps efficiently and quickly, and leave with ready-to-use tools and methodologies you can apply immediately. Lower your TCO and your stress with "Securing ColdFusion Servers on Windows"!

This is a lecture course - not hands on.



Price: $495.00
GSA Price: $473.81

Training Register Button

Course Prerequisites

There are no course prerequisites.

Course Objectives

Course Outline

Unit 1 ? Course Overview

This unit, following the Allaire precedent, provides a general description of the course. It includes an overview of the security ?process?, and the layering approach to security. It ends with a description of the lab materials.

Unit 2 ? The Threat

This unit describes ? and demonstrates - the array of potential attacks and their severity.

  • Purposes of attacks
  • Types of attacks
    • Denial of service
    • Impersonation
    • Buffer overflows
  • Targets of attacks
    • Operating system
    • IIS
    • CGI applications (CF)
    • Databases
    • Other network devices
  • Attack patterns and processes
    • Information gathering
    • Exploits
    • ?Island-hopping?
    .

Unit 3 ? Networking and Security Overview

This unit discusses the larger network infrastructure that will surround the web server, and examines different ways the server may be configured to work within that infrastructure.

  • Public vs private access
  • Security vs convenience
  • Microsoft Networking
  • DMZs and bastion hosts

Unit 4 ? A Layered Approach to Security

This unit describes in detail the general concepts to securing resources.

  • Multiple redundant layers
  • Minimizing privileges to the least possible
  • Removing unnecessary options

Unit 5? Securing the Operating System

  • Overview of Windows NT security
  • Server installation checklist
  • Building a bastion host

Unit 6 ? Securing IIS

  • IIS installation checklist

Unit 7 ? Securing CF Applications

  • CF Server configuration
    • Changing the service account
    • Disabling RDS
    • Securing the CF Administrator
  • Filtering input within applications
  • Code auditing

Unit 8 ? Maintaining Security

  • Auditing and monitoring
  • Remote console access
  • Applying patches and updates
  • Monitoring security issues ? public resources
  • Dealing with a successful attack

Class Schedule

Location Dates Instructor Register
No public classes are currently scheduled.
Call 1-877-FIG-LEAF for details on upcoming courses.
Don?t see your city? Call 1-877-FIG-LEAF or email training@figleaf.com for information on upcoming, onsite, and private classes.
 
Fig Leaf Software