473,471 Members | 1,964 Online
Bytes | Software Development & Data Engineering Community
Create Post

Home Posts Topics Members FAQ

security considertations in deploying asp.net web apps

Hi,

I am about to deploy an asp.net web app which will consist of a web server
in the DMZ invoking web services hosted inside the corporate firewall. Both
will be hosted on IIS 5 or 6 using windows 2000 or 2003 server

I am well versed in the general security considerations for this type of
architecture but I was wondering if there are any good books or papers with
guidelines specifically for asp.net.

I'm interested in any specific configuration options or relevant APIs
relating to things like preventing DOS attacks, parameter validation,
reverse proxying of SOAP messages etc etc

Andy
Nov 18 '05 #1
1 917
http://www.microsoft.com/downloads/d...C-BF9C6593F25E

Eliyahu

"Andy Fish" <aj****@blueyonder.co.uk> wrote in message
news:Yu*********************@news-text.cableinet.net...
Hi,

I am about to deploy an asp.net web app which will consist of a web server
in the DMZ invoking web services hosted inside the corporate firewall. Both will be hosted on IIS 5 or 6 using windows 2000 or 2003 server

I am well versed in the general security considerations for this type of
architecture but I was wondering if there are any good books or papers with guidelines specifically for asp.net.

I'm interested in any specific configuration options or relevant APIs
relating to things like preventing DOS attacks, parameter validation,
reverse proxying of SOAP messages etc etc

Andy

Nov 18 '05 #2

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

32
by: Mike MacSween | last post by:
Further to 'Security - more complex than I thought' Has anybody ever seen any studies? Or anecdotal evidence? Done any studies themselves? Done any lab testing - you know - 10 users asked to get...
2
by: Freeserve | last post by:
Not sure whether this is the right group, but I can't find anything in the ..NET groups and my apologies if this has already been covered or is considered "off subject". I am looking at using an...
2
by: Matt Theule | last post by:
Where can I find information about Runtime Security Policies? I have a winform that is hosted in a webform that needs to access the filesystem. Using the Configuration mmc snapin, I have created a...
3
by: Andrew | last post by:
Hi all, I am still learning ASP.Net, and .Net in general. Though I feel I have much of the "basics" down, I am running into some gray areas in more advanced topics. My question is how I make...
10
by: Bryan Dickerson | last post by:
I fairly have my Web Service working the way that I want, so my next step will be to deploy it on a server. Do I just add a deployment/install project, build it and install it on the server? ...
7
by: Ludwig | last post by:
Hi, Current situation: a number of C++ applications installed on multiple computers, some of them are dependent of each other. Updates are installed manually. Question: automate these...
3
by: Salad | last post by:
On one computer I am getting the message "This file may not be safe if it contains code that was intended to harm your computer. Open It?" and on my computer I didn't get that message when I...
7
by: PW | last post by:
Any suggestions, knowledge base articles, books? We are not going to go field level but now we have a couple clients that would like to limit what employees can see of our application (forms and...
6
by: bob | last post by:
Hi, Plain Vanilla VS2005 setup project. Install OK on XP machine and runs under administrator logon. Once client logs, program won't open. Just gives one of those Framework has encountered an...
0
by: Hystou | last post by:
There are some requirements for setting up RAID: 1. The motherboard and BIOS support RAID configuration. 2. The motherboard has 2 or more available SATA protocol SSD/HDD slots (including MSATA, M.2...
0
by: Hystou | last post by:
Most computers default to English, but sometimes we require a different language, especially when relocating. Forgot to request a specific language before your computer shipped? No problem! You can...
1
by: Hystou | last post by:
Overview: Windows 11 and 10 have less user interface control over operating system update behaviour than previous versions of Windows. In Windows 11 and 10, there is no way to turn off the Windows...
0
agi2029
by: agi2029 | last post by:
Let's talk about the concept of autonomous AI software engineers and no-code agents. These AIs are designed to manage the entire lifecycle of a software development project—planning, coding, testing,...
1
isladogs
by: isladogs | last post by:
The next Access Europe User Group meeting will be on Wednesday 1 May 2024 starting at 18:00 UK time (6PM UTC+1) and finishing by 19:30 (7.30PM). In this session, we are pleased to welcome a new...
0
by: conductexam | last post by:
I have .net C# application in which I am extracting data from word file and save it in database particularly. To store word all data as it is I am converting the whole word file firstly in HTML and...
0
by: TSSRALBI | last post by:
Hello I'm a network technician in training and I need your help. I am currently learning how to create and manage the different types of VPNs and I have a question about LAN-to-LAN VPNs. The...
0
by: adsilva | last post by:
A Windows Forms form does not have the event Unload, like VB6. What one acts like?
0
muto222
php
by: muto222 | last post by:
How can i add a mobile payment intergratation into php mysql website.

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.