| Server IP : 185.208.173.17 / Your IP : 87.236.161.98 Web Server : Microsoft-IIS/10.0 System : Windows NT SRV8576125506 10.0 build 26100 (Windows Server 2016) AMD64 User : IUSR ( 0) PHP Version : 7.4.13 Disable Function : NONE MySQL : OFF | cURL : ON | WGET : OFF | Perl : OFF | Python : OFF | Sudo : OFF | Pkexec : OFF Directory : C:/Windows/System32/WindowsPowerShell/v1.0/Modules/Carbon/IIS/ |
Upload File : |
# Copyright 2012 Aaron Jensen
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
function Lock-IisConfigurationSection
{
<#
.SYNOPSIS
Locks an IIS configuration section so that it can't be modified/overridden by individual websites.
.DESCRIPTION
Locks configuration sections globally so they can't be modified by individual websites. For a list of section paths, run
C:\Windows\System32\inetsrv\appcmd.exe lock config /section:?
.EXAMPLE
Lock-IisConfigurationSection -SectionPath 'system.webServer/security/authentication/basicAuthentication'
Locks the `basicAuthentication` configuration so that sites can't override/modify those settings.
#>
[CmdletBinding(SupportsShouldProcess=$true)]
param(
[Parameter(Mandatory=$true)]
[string[]]
# The path to the section to lock. For a list of sections, run
#
# C:\Windows\System32\inetsrv\appcmd.exe unlock config /section:?
$SectionPath
)
$SectionPath |
ForEach-Object {
$section = Get-IisConfigurationSection -SectionPath $_
$section.OverrideMode = 'Deny'
if( $pscmdlet.ShouldProcess( $_, 'locking IIS configuration section' ) )
{
Write-Host ("IIS:{0}: locking" -f $_)
$section.CommitChanges()
}
}
}