Welcome to MobyThreads.com!
FAQFAQ      ProfileProfile    Private MessagesPrivate Messages   Log inLog in
All support for the MobyThreads Threaded phpBB MOD can now be found on welsolutions at this forum

ASP.NET Security

 
   Web Hosting and Web Master Forums (Home) -> IIS RSS
Next:  Is DNS Required on a SMTP Relay Windows 2000 Serv..  
Author Message
mailbox

External


Since: Jan 23, 2004
Posts: 3



(Msg. 1) Posted: Fri Jan 23, 2004 11:05 am
Post subject: ASP.NET Security
Archived from groups: microsoft>public>inetserver>iis (more info?)

Hi
I am wondering how to prevent IIS getting access to other folders for
write/read access using ASP.NET
In case I want to give a write access to a permission for a user so they can
write in their own web space, other users can get into it and write there as
well.
My total question is how to secure ASP.NET where I host many web sites on
one server.
Thanks in advance.

 >> Stay informed about: ASP.NET Security 
Back to top
Login to vote
atrax

External


Since: Aug 28, 2003
Posts: 101



(Msg. 2) Posted: Fri Jan 23, 2004 11:05 am
Post subject: Re: ASP.NET Security [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

here's an article that may help. it probably needs a re-write but it'll
give an insight if nothing else.

http://rtfm.atrax.co.uk/infinitemonkeys/articles/iis/986.asp

________________________________________
Atrax. MVP, IIS
http://rtfm.atrax.co.uk/

newsflash : Atrax.Richedit 1.0 now released.
http://rtfm.atrax.co.uk/infinitemonkeys/components/Atrax.RichEdit/

*** Sent via Developersdex http://www.developersdex.com ***
Don't just participate in USENET...get rewarded for it!

 >> Stay informed about: ASP.NET Security 
Back to top
Login to vote
mailbox

External


Since: Jan 23, 2004
Posts: 3



(Msg. 3) Posted: Fri Jan 23, 2004 3:00 pm
Post subject: Re: ASP.NET Security [Login to view extended thread Info.]
Archived from groups: per prev. post (more info?)

I know a user can't get access with that method, that's what I did. Removing
Everyones Access, if I don't do that even they can browser to other ftp
folders using their username.
The major problem is with IIS user. I should give write access to it for the
folders need write access. e.g. databases, file store folders and things
like that. In this case, other users will get access too!
"Atrax" <atrax.DeleteThis@dontspamatrax.co.uk> wrote in message
news:O#te3gY4DHA.1596@TK2MSFTNGP10.phx.gbl...
 > here's an article that may help. it probably needs a re-write but it'll
 > give an insight if nothing else.
 >
<font color=purple> > <a style='text-decoration: underline;' href="http://rtfm.atrax.co.uk/infinitemonkeys/articles/iis/986.asp</font" target="_blank">http://rtfm.atrax.co.uk/infinitemonkeys/articles/iis/986.asp</font</a>>
 >
 > ________________________________________
 > Atrax. MVP, IIS
<font color=purple> > <a style='text-decoration: underline;' href="http://rtfm.atrax.co.uk/</font" target="_blank">http://rtfm.atrax.co.uk/</font</a>>
 >
 > newsflash : Atrax.Richedit 1.0 now released.
<font color=purple> > <a style='text-decoration: underline;' href="http://rtfm.atrax.co.uk/infinitemonkeys/components/Atrax.RichEdit/</font" target="_blank">http://rtfm.atrax.co.uk/infinitemonkeys/components/Atrax.RichEdit/</font</a>>
 >
 > *** Sent via Developersdex <a style='text-decoration: underline;' href="http://www.developersdex.com" target="_blank">http://www.developersdex.com</a> ***
 > Don't just participate in USENET...get rewarded for it!<!-- ~MESSAGE_AFTER~ -->
 >> Stay informed about: ASP.NET Security 
Back to top
Login to vote
Display posts from previous:   
Related Topics:
Security - I have been told that there is a security threat to a network when running IIS personal web server. I am using PWS to test some pages that I am building. I did not know that there was a risk. Can some one help me understand what the risk is?

Don't want security - I have a machine running win2003 server IIS 6.0. It's within a intranet enviroment in the company. I use it to host a web application. The machine's name is "ABC", it's full name is: "ABC.company.com" The problem is when I access the...

IIS 5 security - Hi all, When I log on to my server as admin of the MACHINE I can open my website to edit it. I want to be able to logon to the server as admin of the DOMAIN and be able to edit the website. When I do this I'm prompted with a user, password, and domain...

Security on IIS 5.0 - I am running IIS 5.0 and trying to access a website that I maintain. When I try to open the web I get the generic <font color=green> ; ;>> The folder 'http://www.blahblah.com/' isn't </font> <font color=green>&am...

webdav security - Anyone know a way to use different security for webdav? Meaning like a local text file (username/password) instead of local security? I am afraid of local accounts getting hacked. I'd rather use a different security mechanism. Any ideas? I have a websit...
   Web Hosting and Web Master Forums (Home) -> IIS All times are: Pacific Time (US & Canada) (change)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum



[ Contact us | Terms of Service/Privacy Policy ]