Port80 Software
My Port80 Shopping Cart Sign up
Products
choose a product:
Stop Information Leakage -
Misdirect Hackers for Defense in Depth Security
NEW VERSION 4.0!

Web Server Anti-Reconnaissance and Anonymization

ServerMask for IIS Anti-Reconnaissance and Web Server Security
Click here to enlarge

Broadcasting your Web server's identity allows intruders to complete their first task -- identifying your operating system, Web server, and application technology.

ServerMask modifies your IIS Web server's "fingerprint" by removing unnecessary HTTP header data and adjusting other response information.

Click here to find out what your server is currently broadcasting

Successful anti-reconnaissance makes it more likely attackers will try the wrong exploits first and be snared by firewalls and intrusion detection systems. ServerMask augments these defenses to build more secure networks, return better results on security audits, and mitigate the risk of attack.

ServerMask is already protecting thousands of customers around the world, including financial institutions, governments, and Fortune 1000 companies.

With easy installation and configuration in minutes, secure your Microsoft IIS Web servers by downloading ServerMask today.

Features

New in v4.0 (Released Dec. 2008)
  • Application-layer error suppression for PCI compliance
  • Completely redesigned user interface, featuring 100% managed code
  • Multiple default profiles and the ability to create custom profiles
  • Per-site configuration, allowing unique settings to be applied per domain
  • 64-bit support
  • Auto-generated decoy cookies and headers
  • One-to-many cookie masking
  • Customizable HTTP error messages (CustomError functionality)
Product Highlights
  • Mask the Server name header in a number of ways:
    • Remove altogether
    • Replace with one of 30 other Web server signatures
    • Replace with one a custom server name you create
    • Select multiple false Web server signatures and randomize the response (you select how often a response is refreshed).
  • Emulate Apache's HTTP header order
  • Emulate the eTag and allow header formats of non-IIS servers
  • Remove unnecessary HTTP headers, such as Public, X-Powered-By and others
  • Rewrite identifying session cookie names such as ASPSessionID and ASP.NET_SessionId using one or more alternative names; fabricate decoy cookies to further confuse attackers
  • Rewrite 404 and application-layer errors for PCI compliance; suppress info leakage by converting 500-range errors to 404 errors, then presenting custom 404 responses (CustomError functionality)
  • Remove identifying file extensions such as .asp, .aspx and other Microsoft technologies from source code and URL display
All Port80 Software products are tested for compatibility with major versions of IIS/ ASP.NET and other common IIS applications. Port80 products are also extensively stress-tested to minimize performance impact. Installation and configuration are simple, and as always, our free customer support is just a phone call or email away.





"Port80 Software's ServerMask is clearly the best solution yet produced for managing IIS HTTP headers."

- Brett Hill
Microsoft MVP & IIS Guru of
IIStraining.com


"The ServerMask Security Solutions allowed us to surpass our government requirements for host and network anti-reconnaissance... helping us to defeat over 1,300 probe attacks in one audit."

- IT Manager and LAN Administrator
United States General Services Administration
(read case study)


System Requirements
  • IIS 6.0 / Windows Server 2003 (both 32-bit and 64-bit x86 versions)
  • IIS 5.1 / Windows XP (IIS 5.1 not recommended for production use)
  • IIS 5 / Windows 2000
  • IIS 4 / Windows NT
  • Note: IIS 7 / Windows Server 2008 and Vista not yet supported (sign up for the IIS 7 Beta Alert)

Pricing
Free 30-Day Trial Download Try
Single Server License (Unlimited Domains) - $199.95
Buy
Over Three (3) Servers / Site License Packs - Get a quote Quote

All Port80 Software products include free customer support,
free updates, and 65% discounts for major version upgrades.

Learn more about Port80 Software evaluation and licensing

Port80's Guarantee & Refund Policy:
Port80 Software stands behind our products 100%. Given the nature of Web server utilities, various environments and third party applications may cause new and unforeseen conflicts. Therefore, Port80 pledges to work with you to ensure our products run in all testing and production environments -- if you work with us, we will work with you to make your IIS Web server safer, faster and friendlier.


Microsoft Certified Partner Logo
Port80 Software
5252 Balboa Ave, Suite 707 San Diego, CA 92117
858.268.7960 tel | 858.268.7760 fax | 888.4PORT80 toll free
info@port80software.com