Browse by Tags

All Tagssecurityweb application (RSS)
  • IIS Windows Integrated Auth - is it possible to deny multiple logins?

    Hi all :) Following up from my previous thread http://forums.iis.net/p/1150483/1874269.aspx#1874269 which is now thankfully resolved, another problem arises :/ Is there a way of allowing only 1 instance of someone using the credentials to access a directory? Example: Say I create a virtual directory...
    Posted to Forum by VaeVictis on 07-31-2008, 9:59 AM
  • Re: White-Paper on Secure Scalability of IIS 6.0 web apps (Windows Server 2003 R2)

    This is excatly what I have been doing for a few years, A collegue and I are in the middle of writing it up as a high level design, hopefully if we can remove the corporate references we will publish this as a paper but a few thing to note so far are We use CIFS (windows shares on sep file server for...
    Posted to Forum by species5618 on 04-18-2008, 2:44 PM
  • IIS Anonymous Security Issue

    Hi, We’re using content editor (as a backend) to update our website frontend contents (WYSIWYG). The problem is that when we try to update the contents through this backend, the server is denied and gives us the following message: ” r.a.d.editor5.6.0 Another process is using the resource (ascx/aspx file...
    Posted to Forum by redaatef on 09-11-2007, 4:48 AM
  • Kerberos authentication not working, defaulting to NTLM

    At this point I imagine it's an Active Directory thing but I was hoping there was something I could change before I go get the infrastructure team to work on it. - IIS 6.0 is set to use Integrated Authentication with anonymous access disabled. - Permissions for the groups required are set on the...
    Posted to Forum by OriginalSyn on 08-03-2007, 11:07 AM
  • Access a page in windows authentication website from Form authentication website

    Hi All, We have two websites - one is Customer website and another one is Reporting website. All the users login using their credentials (AD is available) to Customer websit which uses form authentication. Once they login then they will have an option to access a page (via link) from report website which...
    Posted to Forum by sgkgops on 07-05-2007, 1:32 AM
  • Multiple Application Pool Identities on a single server vs. Kerberos authentication

    I'm hosting multiple web sites on a single server. As a security baseline I assigned a dedicated application pool for every site, each running its own user account for application pool identity. I also want to use Kerberos authentication with all my sites. So, to make Kerberos work, I have to register...
    Posted to Forum by pronichkin on 05-07-2007, 6:03 AM
  • HTTPS Request Creates a blank page in Firefox

    I am using certificates for authentication. Everything was working normally until recently. Now when an https address is accessed on my server through IE everything works, but in Firefox the page does not load and no error is reported. How can I debug this? Thanks, Moses
    Posted to Forum by flamingvan on 04-04-2007, 3:07 PM
  • Unable to connect -- An Authentication error

    I'm getting the exact error described in this kb article , and have now restarted IIS about 5,000 times as well as checking the Directory Security settings and deleted the asp.net temp folders almost as many. I cannot shake this error for the life of me. Does anyone else have any other ideas on how to...
    Posted to Forum by Jayyde on 03-27-2007, 2:44 PM
  • Security Across Subdomains

    I am trying to keep users authenticated across subdomains that are all served by the same webserver. Each subdomain is a separate ASP.NET 2.0 Web Application. I am using the aspnetdb Profile Database to manage users and logins across each application. When I try to transfer an authenticated user from...
    Posted to Forum by e2biz on 03-26-2007, 1:33 PM
  • Prevent executables from being created or modified?

    How can this simple rule be enforced on Windows 2003 SP1: Only Administrators may create or modify executable files. e.g. IUSR_ and IWPD_ accounts cannot create executables, but can run existing applications, with full write access to data & directories. So only the administrator can: - Create a...
    Posted to Forum by Hulio on 02-27-2007, 5:56 AM
Page 1 of 2 (12 items) 1 2 Next >
Page view counter