Re: Configuration Differences

From: Matt (Matt_at_discussions.microsoft.com)
Date: 11/22/04


Date: Mon, 22 Nov 2004 08:45:42 -0800

I checked both sites. Both have Anon access enabled via IIS Mgr. Both sites
are using a domain-level account and the web.config on both is set to
impersonate. The behaviors on each are still different. Are there other
things I can check? Also, when the impersonation is enabled in web.config,
is it the user specified in the "Enable Anon Access" dialog that is
impersonated? Are there other settings in the machine.config and
security.config that may impact this?

"Paul Glavich [MVP - ASP.NET]" wrote:

> I think Joe is spot on. The only thing to add is that impersonation is
> enabled in both web.config files as well.
>
> --
> - Paul Glavich
> Microsoft MVP - ASP.NET
>
>
> "Joe Kaplan (MVP - ADSI)" <joseph.e.kaplan@removethis.accenture.com> wrote
> in message news:ur$6x8pzEHA.2568@TK2MSFTNGP10.phx.gbl...
> > My guess is that anonymous access is enabled in IIS on server 1 and is not
> > on server 2.
> >
> > Joe K.
> >
> > "Matt" <Matt@discussions.microsoft.com> wrote in message
> > news:69AEF6B7-159E-4739-96E9-7E8A9F24C05A@microsoft.com...
> > >I have two sites on separate servers configured. When I query a page
> that
> > > returns information on security/user context, I get two different
> replies.
> > >
> > > On Server 1:
> > > HttpContext.Current.User.Identity
> > > Name
> > > IsAuthenticated False
> > > AuthenticationType
> > >
> > > WindowsIdentity.GetCurrent()
> > > Name MACHINENAME\IUSR_MACHINENAME1
> > > IsAuthenticated True
> > > AuthenticationType NTLM
> > >
> > > Thread.CurrentPrincipal.Identity
> > > Name
> > > IsAuthenticated False
> > > AuthenticationType
> > >
> > >
> > > On Server 2:
> > > HttpContext.Current.User.Identity
> > > Name DOMAIN\USER
> > > IsAuthenticated True
> > > AuthenticationType Negotiate
> > >
> > > WindowsIdentity.GetCurrent()
> > > Name DOMAIN\USER
> > > IsAuthenticated True
> > > AuthenticationType NTLM
> > >
> > > Thread.CurrentPrincipal.Identity
> > > Name DOMAIN\USER
> > > IsAuthenticated True
> > > AuthenticationType Negotiate
> > >
> > > --
> > >
> > > My question is what is the likely configuration that is created these
> > > differing scenarios. I have not been able to locate the entries in
> > > machine.config,web.config or system.config that would be causing this
> > > since
> > > most of these files have the default configuration. Also, which of the
> > > above
> > > could I expect to see as a default configuration on a web in IIS?
> >
> >
>
>
>