httpCookies httpOnlyCookies=”true” requireSSL=”true” – PCI vulnerability
If you have a Microsoft Exchange Server running OWA that failed a PCI vulnerability scan because of the following: <httpCookies httpOnlyCookies=”true” requireSSL=”true”/> Here what we can do to remediate it on the Windows server. Schedule a brief downtime for the Exchange Server while IIS restarts below. Launch IIS on the Exchange server, go to Default Web […]
