473,396 Members | 1,942 Online
Bytes | Software Development & Data Engineering Community
Post Job

Home Posts Topics Members FAQ

Join Bytes to post your question to a community of 473,396 software developers and data experts.

Security Issues - help needed please

I have a small security problem. I have a number of pages on a server and I want things set-up so as the user can't get into other pages without going to the index page and logging in first. At present the user can easily type in the name of one of the pages in the system and get direct access to it. For exampl
typing in http://marketserv1:4000/Logon.asp gets them straight into the main page of the system.

Does anyone know how to set things so as you can only get to other pages from the index page which is:
http://marketserv1:4000/Index.asp
Jul 19 '05 #1
3 980
Do you have direct access to the server?

I assume you're running IIS (what version?)

IIS supports a number of authentication methods.

Anonymous access is enabled by default.

You can enable Basic authentication (clear text
passwords) or integrated windows authentication
where access is restricted using NTFS
permissions.
"Stephen Cairns" <st*****************@hotmail.com> wrote in message
news:96**********************************@microsof t.com...
I have a small security problem. I have a number of pages on a server and I want things set-up so as the user can't get into other pages without going
to the index page and logging in first. At present the user can easily type
in the name of one of the pages in the system and get direct access to it.
For example typing in http://marketserv1:4000/Logon.asp gets them straight into the main page of the system.
Does anyone know how to set things so as you can only get to other pages from the index page which is: - http://marketserv1:4000/Index.asp

Jul 19 '05 #2
Cheers for help, but managed to get things sorted using a session variable.
Jul 19 '05 #3
On Fri, 5 Mar 2004 04:06:05 -0800, "Stephen Cairns"
<st*****************@hotmail.com> wrote:
I have a small security problem. I have a number of pages on a server and I want things set-up so as the user can't get into other pages without going to the index page and logging in first. At present the user can easily type in the name of one of the pages in the system and get direct access to it. For example
typing in http://marketserv1:4000/Logon.asp gets them straight into the main page of the system.

Does anyone know how to set things so as you can only get to other pages from the index page which is: -
http://marketserv1:4000/Index.asp


Not an ASP issue. Use authentication, see here:

http://www.iisfaq.com/default.aspx?View=P78&P=145

Jeff
Jul 19 '05 #4

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

4
by: Archibald | last post by:
I want to improve security of a multiplayer online game written in php and mysql. Because I'm new to this stuff I would appreciate some tips. If you have time look here...
1
by: Sam Vanderstraeten | last post by:
Hi all, My situation: - VB.net & Visual Studio 2002 - IIS 6.0 - Windows XP Pro (development) and Windows 2000 server (release) I created a test-application (before I started to develop the...
5
by: isideveloper | last post by:
I'm building a new C# web application that will provide my company some administrative operations that were previously only completed by tweaking the data in the database. 1. Encrypted password...
3
by: michael sorens | last post by:
In the interests of increasing security, I came upon the DPAPI security library available from the GotDotNet user samples repository. What I want to do is create an applications that accesses a...
4
by: NormD | last post by:
I am running Windows XP, and IE version 6.0.2900 on my desktop. It has the ..Net Framework Service Pack 1 installed on it. Security was turned off on the machine using "CASPOL -s off". A .Net...
2
by: Aussie Rules | last post by:
Hi, The web site web application tool which allows you to manage users etc, has to strong a security requirement for me. Is there a way i can change the setting on this.. having 7 characters...
3
by: Aussie Rules | last post by:
Hi, I have setup a web site that uses the asp.net security features. I have setup the security provider to use a database that is different to my applications database. Within my...
1
by: nancy | last post by:
I am new to PHP but have done other programming can someone please hold my hand and slowly talk me through some simple security issues? I have seen in PHP documents that there are 'strip...
19
by: hansBKK | last post by:
Upfront disclaimer - I am a relative newbie, just starting out learning about PHP, mostly by researching, installing and playing with different scripts. I am looking for a host that will provide...
2
by: Ken Fine | last post by:
I want to add the security question and answer security feature to the ChangePassword control. I am aware that this functionality is built into the PasswordRecovery tool. I have implemented the...
0
by: ryjfgjl | last post by:
In our work, we often receive Excel tables with data in the same format. If we want to analyze these data, it can be difficult to analyze them because the data is spread across multiple Excel files...
0
by: emmanuelkatto | last post by:
Hi All, I am Emmanuel katto from Uganda. I want to ask what challenges you've faced while migrating a website to cloud. Please let me know. Thanks! Emmanuel
1
by: nemocccc | last post by:
hello, everyone, I want to develop a software for my android phone for daily needs, any suggestions?
1
by: Sonnysonu | last post by:
This is the data of csv file 1 2 3 1 2 3 1 2 3 1 2 3 2 3 2 3 3 the lengths should be different i have to store the data by column-wise with in the specific length. suppose the i have to...
0
by: Hystou | last post by:
There are some requirements for setting up RAID: 1. The motherboard and BIOS support RAID configuration. 2. The motherboard has 2 or more available SATA protocol SSD/HDD slots (including MSATA, M.2...
0
marktang
by: marktang | last post by:
ONU (Optical Network Unit) is one of the key components for providing high-speed Internet services. Its primary function is to act as an endpoint device located at the user's premises. However,...
0
jinu1996
by: jinu1996 | last post by:
In today's digital age, having a compelling online presence is paramount for businesses aiming to thrive in a competitive landscape. At the heart of this digital strategy lies an intricately woven...
0
by: Hystou | last post by:
Overview: Windows 11 and 10 have less user interface control over operating system update behaviour than previous versions of Windows. In Windows 11 and 10, there is no way to turn off the Windows...
0
agi2029
by: agi2029 | last post by:
Let's talk about the concept of autonomous AI software engineers and no-code agents. These AIs are designed to manage the entire lifecycle of a software development project—planning, coding, testing,...

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.