FormSecurity

From: deepblue (deepblue168_at_hotmail.com)
Date: 05/30/03

  • Next message: Michel Gallant \(MVP\): "Re: MSDN Security Developer Center"
    Date: Fri, 30 May 2003 08:28:45 -0700
    
    

    I am using form security for my site. But after I logout,
    I am still able to go to some pages on my site
    (eg. "www.mysite.com\page1.aspx?number=1") by specifing
    the full path. The security cookie is already deleted
    when I logout. Is it coming from cache? How can I prevent
    that?
    Also, I don't want user to go to any pages by specifing
    the address. The form security would ask for login info
    FIRST, THEN direct user to the specified page(all the
    querystring stuff in the path). How can I prevent that?
    Thanks for your attention,
    Deepblue


  • Next message: Michel Gallant \(MVP\): "Re: MSDN Security Developer Center"

    Relevant Pages

    • Re: FormSecurity
      ... in element add loginpage.aspx in login element <forms ... This will redirect your requests which have no auth. ... I don't want user to go to any pages by specifing ... The form security would ask for login info ...
      (microsoft.public.dotnet.security)
    • Re: FormSecurity
      ... in element add loginpage.aspx in login element <forms ... This will redirect your requests which have no auth. ... I don't want user to go to any pages by specifing ... The form security would ask for login info ...
      (microsoft.public.dotnet.framework.aspnet.security)
    • Re: FormSecurity
      ... Forwarding to aspnet security. ... But after I logout, ... I don't want user to go to any pages by specifing ... THEN direct user to the specified page(all the ...
      (microsoft.public.dotnet.framework.aspnet.security)
    • Re: FormSecurity
      ... Forwarding to aspnet security. ... But after I logout, ... I don't want user to go to any pages by specifing ... THEN direct user to the specified page(all the ...
      (microsoft.public.dotnet.security)