Re: forms authentication across multiple web servers

From: Roel (roel_at_pandora.be)
Date: 11/24/05


Date: Thu, 24 Nov 2005 17:17:59 +0100

Hi Dominick,

Thanks for your answer.

The domain names differ completely:

Server 1=
dev.xxx.biz
Server 2=
devnet.yyy.be

I will check the domain attribute.
should I set domain= .yyy.be in the web.config of server 2 and xxx.biz in
the web.config of server 1 ?

Roel

"Dominick Baier [DevelopMentor]" <dbaier@pleasepleasenospamdevelop.com>
wrote in message news:4580be6314c8ee8c7bf30365b41a8@news.microsoft.com...
> Hello Roel,
>
> what are the names of the machines from a client (=IE) perspective...
>
> A RFC compliant browser does not send a cookie form serverA.domain.com to
> serverB.domain.com - you have to adjust the domain attribute in the
> <forms> configuration to ".domain.com" - this means IE sends the cookie
> to all servers under the "domain.com" namespace.
>
> though i am not sure if this is already there in 1.1 - otherwise issue the
> cookie manually and set the .Domain property
>
> ---------------------------------------
> Dominick Baier - DevelopMentor
> http://www.leastprivilege.com
>
>> Hi,
>>
>> I want to provide a single sign on for 2 web applications hosted in
>> different environments.
>> I set the machinekey to the same value in both web.config files (also
>> i set
>> them to the same value in the machine.config files). The
>> <authentication
>> mode="Forms" > section is exactly the same in both applications:
>> <authentication mode="Forms" >
>> <forms name=".EuphAc" loginUrl="Main/loginForm.aspx"
>> protection="All"
>> timeout="60" />
>> </authentication>
>> The only time this works is if I do it on the same physical machine: 2
>> web applications sharing the same machinekey in web.config section and
>> <authentication mode="Forms" > section.
>>
>> If I try the same moving application 2 to another server (including
>> the web.config file which stays the same), or to localhost, I can
>> login on one system but it does not login on the other system.
>>
>> (Strange thing was it sometimes seemed(!) that it worked but after 1
>> second it redirected me back to the login page.)
>>
>> I hope I'm somewhat clear.....
>>
>> What am I doing wrong ?
>>
>> Any help much appreciated!
>>
>> Roel
>>
>
>



Relevant Pages

  • gdm hangs
    ... gdm will hang 9 of 10 times when logging out. ... with or without the client having been connected to the Server. ... # Timed login, useful for kiosks. ... Must output the chosen host on stdout, ...
    (Debian-User)
  • RE: OWA 2003 with ISA 2004
    ... OWA externally. ... i can login by any user. ... 825763 How to configure Internet access in Windows Small Business Server ... g. Reproduce this issue and send the logs to me. ...
    (microsoft.public.windows.server.sbs)
  • Re: Compromised Server? Anyone recognize the suspect Services?
    ... there are a bunch of logins for Website Accounts created by the ... The login accounts are for web sites that are on the ... Server management is ... right under Network Connections there were 3 ...
    (microsoft.public.windows.server.networking)
  • Re: IIS 6.0 FTP
    ... Server port: 21. ... I doubt IIS FTP has such feature. ... next, general 530 error indicating login failed, that could due to ... clients are using an order entry program created in Microsoft access. ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: Terminal Services Setup/Flaw
    ... This still allows everyone to hit the TS Server but denies the login to ... Terminal Server with this user and then .rdp into another server on the ... I found the Remote ...
    (microsoft.public.windows.terminal_services)