您好,前一段时间进行了Exchange 邮件服务器的PCI扫描测试。 测试结果显示邮件服务器 IIS Web Server Reveals its Internal IP Address.
Using a specially crafted request, it is possible to find out the internal IP address of the web server (i.e. its
real address, rather than the NAT address that is presented to the Internet). This creates an information
leak that may be of use to a hacker investigating the server prior to launching an attack.
目前系统信息如下:
服务器OS: Windows 2012 R2 Std
Exchange : Exchange 2013
麻烦提供下相应办法看看如何解决这个问题。
谢谢