Re: Security on .htm files not working...?

From: Tom Kaminski [MVP] ((A_at_T))
Date: 07/21/03

  • Next message: Jeff Cochran: "Re: URL scan CGI"
    Date: Mon, 21 Jul 2003 08:44:06 -0400
    
    

    "Scott" <mcdonsco@yahoo.com> wrote in message
    news:%239iwS$oTDHA.2188@TK2MSFTNGP11.phx.gbl...
    > Okay, here's the deal, I want to have departmental intranet sites. I want
    to
    > have say an "accounting" version of the site that on all the users
    machines
    > in accounting that is their default site and when they open IE they can
    get
    > around etc without having to login. But if someone in say "buying" tries
    to
    > go to the accounting site they will be presented with a "not authorized to
    > view this site" or a login (either would be fine with me).
    >
    > I want this security based on who is logged onto the machine and what
    > "group" they are a member of.
    >
    > Does that make more sense?

    Sure - what you need to do is configure Windows Integrated authentication in
    IIS and IE so it will not prompt users.

    http://www.microsoft.com/windows2000/en/server/iis/
    Microsoft Internet Information Server
         Administration
             Server Administration
                 Security
                     Authentication
                     Access Control

    http://www.microsoft.com/technet/prodtechnol/windowsserver2003/proddocs/standard/gs_authentication.asp

    HOW TO: Configure IIS 5.0 Web Site Authentication in Windows 2000
    http://support.microsoft.com/?id=310344
    HOW TO: Configure User and Group Access on an Intranet in Windows 2000 or
    Windows NT 4.0
    http://support.microsoft.com/?id=325358
    HOW TO: Configure IIS Web Site Authentication in Windows Server 2003
    http://support.microsoft.com/default.aspx?scid=kb;en-us;324274

    In IE, Go to Tools -> Internet Options -> Security -> Custom Level -> User
    Authentication -> Logon and make sure it's not prompting for intranet use.
    You can also add your domain or IP to the no proxy setting to get IE to
    recognize it as the intranet. Tools -> Internet Options -> Connections ->
    LAN Settings -> Advanced.

    For security configuration you need to go Tools > Internet Options >
    Security > Local intranet > Sites... > Advanced > Add this web site or IP to
    the zone.

    -- 
    Tom Kaminski IIS MVP
    http://www.iistoolshed.com/ - tools, scripts, and utilities for running IIS
    http://mvp.support.microsoft.com/
    http://www.microsoft.com/windowsserver2003/community/centers/iis/
    

  • Next message: Jeff Cochran: "Re: URL scan CGI"

    Relevant Pages

    • Using NTFS to set restrictions pops up logon dialog
      ... We 're using IIS 5 for our Intranet. ... All domain computers are Windows ... So we used Windows Integrated Security for IIS for our ...
      (microsoft.public.inetserver.iis)
    • Re: create the username/password authentication dialog problem
      ... > I want to add security in ASP application. ... IIS 5 Documentation ... Configure IIS 5.0 Web Site Authentication in Windows 2000 ... Configure IIS Web Site Authentication in Windows Server 2003 ...
      (microsoft.public.inetserver.iis)
    • Re: create the username/password authentication dialog problem
      ... > I want to add security in ASP application. ... IIS 5 Documentation ... Configure IIS 5.0 Web Site Authentication in Windows 2000 ... Configure IIS Web Site Authentication in Windows Server 2003 ...
      (microsoft.public.inetserver.iis.security)
    • Re: create the username/password authentication dialog problem
      ... > I want to add security in ASP application. ... IIS 5 Documentation ... Configure IIS 5.0 Web Site Authentication in Windows 2000 ... Configure IIS Web Site Authentication in Windows Server 2003 ...
      (microsoft.public.inetserver.asp.general)
    • Re: Domain Authentication
      ... Microsoft Internet Information Server ... Configure IIS 5.0 Web Site Authentication in Windows 2000 ... Configure IIS Web Site Authentication in Windows Server 2003 ...
      (microsoft.public.inetserver.iis.security)