473,386 Members | 1,763 Online
Bytes | Software Development & Data Engineering Community
Post Job

Home Posts Topics Members FAQ

Join Bytes to post your question to a community of 473,386 software developers and data experts.

Minimium NTFS ACL's for ASP.Net to run on IIS5

PM
Does anyone know of a white paper that gives exactly what
are the minimial NTFS ACL permissions to get ASP.Net v1.1
to work on Windows 2000 and IIS5.0, i have followed the
instructions in the MS knowledge base article - 271071

http://support.microsoft.com/default.aspx?scid=kb;EN-
US;Q271071

This has tightned up the box but still prevents ASP.Net
from working, i have also granted the ASPNet user on the
box
1) Read & Execute, Read and List Folder Contents on the
web site(s) root location.
2) Read & Execute, Read and List Folder Contents on the
web site(s) root location partition so that it can watch
for web .config changes etc.
3) Full control over the ASP.Net application locations at
C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Tempora ry
ASP.NET Files

I haven't been able to find any white paper that gives me
a list of the additional permissions required and would
prefer to know these instead of just relying on what
IISLockdown will set.
Thanks in advance
Pat
Nov 17 '05 #1
1 1193
Hi,

Improving Web Application Security: Threats and Countermeasures (p&p)
http://msdn.microsoft.com/library/de.../en-us/dnnetse
c/html/ThreatCounter.asp

read the following sections:

1)Machine.Config and Web.Config Guidelines
2)Trust Levels in ASP.NET (table 19.3)

Natty Gur[MVP]

blog : http://weblogs.asp.net/ngur
Mobile: +972-(0)58-888377
*** Sent via Developersdex http://www.developersdex.com ***
Don't just participate in USENET...get rewarded for it!
Nov 17 '05 #2

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

4
by: Mark A. Richman | last post by:
I'm using the new System.Security.AccessControl stuff in 2.0. This is a snippet typical of what I've done (this example sets Read access for Network Service on 'myFolder' and all subfolders and...
1
by: BJS | last post by:
Hi there. I have been successfully running ASP on a W2K IIS5.0 server using Anon Access enabled, but would like to be able to restrict access to a particular folder containing some ASP content...
2
by: Jim Richards | last post by:
I have been told by a local PC club technician that 98SE cannot read NTFS drives in a network. Is this true? TIA, Jim.
1
by: Sebastian Sosna | last post by:
Hello NG! Iam trying to write Access Control Settings for Users in Active Dir. First what i do is to delegate a Trustee in a Container, with permissions. This works fine. Lets take Guests as...
9
by: Ben Dewey | last post by:
Project: ---------------------------- I am creating a HTTPS File Transfer App using ASP.NET and C#. I am utilizing ActiveDirectory and windows security to manage the permissions. Why reinvent...
0
by: wym | last post by:
I have written a web service that provides the following methods: UploadFile SetNTFSSecurity Their purpose is to allow a user to Upload a file to a shared folder with "Everyone" as permission...
1
by: Josef G. | last post by:
Hello! I'd like to read and set NTFS file and directory permissions. Is there a way to do this with vb.net? thank you, josef
3
by: Jeff Bunting | last post by:
I'm trying the VB code in KB article 818362, but keep getting a "member not found" exception on this line: objSecDes.DiscretionaryAcl = objDAcl any idea why this would happen? link to code...
0
by: arielkanat | last post by:
Hi I'm trying to make my DB2 CM ACL work, but there's seems to be a problem- I want users to be able to change their level of security , so others can or can NOT read the docs. when i let them...
0
by: taylorcarr | last post by:
A Canon printer is a smart device known for being advanced, efficient, and reliable. It is designed for home, office, and hybrid workspace use and can also be used for a variety of purposes. However,...
0
by: ryjfgjl | last post by:
If we have dozens or hundreds of excel to import into the database, if we use the excel import function provided by database editors such as navicat, it will be extremely tedious and time-consuming...
0
by: ryjfgjl | last post by:
In our work, we often receive Excel tables with data in the same format. If we want to analyze these data, it can be difficult to analyze them because the data is spread across multiple Excel files...
0
by: emmanuelkatto | last post by:
Hi All, I am Emmanuel katto from Uganda. I want to ask what challenges you've faced while migrating a website to cloud. Please let me know. Thanks! Emmanuel
0
BarryA
by: BarryA | last post by:
What are the essential steps and strategies outlined in the Data Structures and Algorithms (DSA) roadmap for aspiring data scientists? How can individuals effectively utilize this roadmap to progress...
1
by: nemocccc | last post by:
hello, everyone, I want to develop a software for my android phone for daily needs, any suggestions?
0
by: Hystou | last post by:
There are some requirements for setting up RAID: 1. The motherboard and BIOS support RAID configuration. 2. The motherboard has 2 or more available SATA protocol SSD/HDD slots (including MSATA, M.2...
0
by: Hystou | last post by:
Most computers default to English, but sometimes we require a different language, especially when relocating. Forgot to request a specific language before your computer shipped? No problem! You can...
0
Oralloy
by: Oralloy | last post by:
Hello folks, I am unable to find appropriate documentation on the type promotion of bit-fields when using the generalised comparison operator "<=>". The problem is that using the GNU compilers,...

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.