Re: Advise please on asp.net security concepts.



<shamelessPlug />

Have a look here:
http://www.microsoft.com/mspress/books/9989.asp

-----
Dominick Baier (http://www.leastprivilege.com)

Developing More Secure Microsoft ASP.NET 2.0 Applications (http://www.microsoft.com/mspress/books/9989.asp)

Hi,

I've been studying asp.net for some months now, based on the
requirements for a project.

I seem to have a very difficult time grasping the security concepts of
asp.net 2.0.

I'll be building an online catalog, to display products.

I also need to build a customer section where they can add, update
their personal info. Check order status. Keep wish lists and shopping
lists.

So I need to authenticate the users, customers, and direct them to
their appropriate account page.

Can someone please advise me how to do this and where I can get info
about this.

I've been looking at a number of sites with asp.net membership, roles
and authentication.

Can you direct me somewhere or a book where I can see how asp.net
authentication works for the internet.

I hope I have explained myself clearly, because as I said the security
concepts of asp.net are a little difficult for me to grasp.

Thank you,

Kashaan.



.



Relevant Pages

  • Re: IS MY SERVER A RELAY?
    ... The IP addresses listed in your list are authorized to relay. ... Our users are using authentication to send messages. ... that send e-mail alerts from other servers. ... this lists the same two accounts described above. ...
    (microsoft.public.exchange.admin)
  • Re: KB 834489 - workarround
    ... The basic authentication is not 100% solution ... username / password - I mean I want them to pass it in the query string. ... >> The customer used basic authentication, ...
    (microsoft.public.inetserver.iis.security)
  • Re: Recommendation for a good two-factor authentication product
    ... two-factor authentication solution that meets the following ... customer support is severely lacking) ... Since DNL asked specifically about the RSA story, ... SecurID with RSA's Local Authentication Client. ...
    (microsoft.public.windows.server.security)
  • Re: Recommendation for a good two-factor authentication product
    ... two-factor authentication solution that meets the following ... customer support is severely lacking) ... Since DLN asked specifically about the RSA story, ... SecurID with RSA's Local Authentication Client. ...
    (microsoft.public.windows.server.security)
  • Re: Recommendation for a good two-factor authentication product
    ... two-factor authentication solution that meets the following ... customer support is severely lacking) ... Since DLN asked specifically about the RSA story, ... SecurID with RSA's Local Authentication Client. ...
    (microsoft.public.windows.server.security)