473,396 Members | 1,884 Online
Bytes | Software Development & Data Engineering Community
Post Job

Home Posts Topics Members FAQ

Join Bytes to post your question to a community of 473,396 software developers and data experts.

Web Security Models with VS2005 and Windows Server 2003

AAJ
Hi all

I am a relatively experiences Windows/SQL Server database programmes and
have just started on my first ever web app.

I have managed with most of the simple stuff i.e. datagrids, crystal etc,
but I am finding the security model confusing (actually I'm a bit confused
over the event model and postbacks as well, but that's a different story).

Anyway, my first app is to run on our Intranet and the users are (possibly)
to be validated using windows authentication. I can get this working to a
certain extent by using the web site security configuration tool within
VS2005.

What I really need is the SIMPLEST of tutorials, answering things like...

What is the correct way to login, is the windows box that pops up ok, or
should I use a login page with the login components available under VS2005.

How do I validate the login against our network users. (Using windows
security, it looks as though this is already done automatically)?

The security wizard seems to allow access to 'levels' of the website, not
per particular page. I need to be able to control not only to page level,
but to what each user can return from the database on the particular page
(i.e. pass the user to the database). Is there an equivalent to windows
groups, where different people are members of groups, and its the groups
that have the privileges on the pages(I found roles, but couldn't really
figure out how they worked)

Do I first of all validate a login against the network, and then look up
what each user can do in the database?

Does each session somehow know whose logged in? Is there some 'CurrentUser'
class that can be used by any page to see if they first of all they can view
it, and secondly what they can do

so many questions......

So anyway, what I'm looking for is a nice simple tutorial, explaining from
first principles how basic security woks. Obviously I've googled for it,
bust most either assume that you already know what your doing, or show how
to do a certain thing but not how it fits in a bigger picture

thanks in advance

Andy
Apr 27 '06 #1
0 1104

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

5
by: Ken Cox [Microsoft MVP] | last post by:
MS has posted this here: http://www.asp.net/faq/ms03-32-issue.aspx Fix for: 'Server Application Unavailable' Error after Applying Security Update for IE...
2
by: Joseph Geretz | last post by:
I'm having a credentialing problem in my web application. Actually, I don't think this is an IIS security issue, since I'm able to access the page I'm requesting. However, the executing page itself...
7
by: Stephen | last post by:
I have my intranet setup on our web server. It contains multiple applications, but none are set up in the default application pools. In other words, I create a webform and plop it into a...
19
by: Diego F. | last post by:
I think I'll never come across that error. It happens when running code from a DLL that tries to write to disk. I added permissions in the project folder, the wwwroot and in IIS to NETWORK_SERVICE...
9
by: Jeff Gaines | last post by:
I have just installed VS 2005 (MSDN version) and I am having problems coping files to the Projects folder while VS2005 is running. The projects folder is on a network share and I have used...
0
by: Charles Leonard | last post by:
I am having yet another issue with Windows Server 2003. This time, the web service (a file import web service) appears to run except for one odd message: "ActiveX component can't create object". ...
3
by: Doug | last post by:
I'm having problems w/ the VS2005 debugger with C#. It blows past any breakpoints in even the simplest "Hello World" console application. I can't do any step-by-step debugging. I've provided the...
14
by: Developer | last post by:
Hello All, i have recently installed VS2005 and was trying to install SQL sever 2000. I have Win XP' SP2. But when I tried installing, it only installed client tools and not the database. Can...
0
by: Jason Huang | last post by:
Hi, I have IIS6+.Net Framwork2.0 on my Windows 2003 Server, this is my web server. I can edit the web server files in my Windows XP SP2 running the VS2005, however, when I start debugging, the...
0
by: Charles Arthur | last post by:
How do i turn on java script on a villaon, callus and itel keypad mobile phone
0
by: ryjfgjl | last post by:
In our work, we often receive Excel tables with data in the same format. If we want to analyze these data, it can be difficult to analyze them because the data is spread across multiple Excel files...
0
by: emmanuelkatto | last post by:
Hi All, I am Emmanuel katto from Uganda. I want to ask what challenges you've faced while migrating a website to cloud. Please let me know. Thanks! Emmanuel
0
marktang
by: marktang | last post by:
ONU (Optical Network Unit) is one of the key components for providing high-speed Internet services. Its primary function is to act as an endpoint device located at the user's premises. However,...
0
Oralloy
by: Oralloy | last post by:
Hello folks, I am unable to find appropriate documentation on the type promotion of bit-fields when using the generalised comparison operator "<=>". The problem is that using the GNU compilers,...
0
jinu1996
by: jinu1996 | last post by:
In today's digital age, having a compelling online presence is paramount for businesses aiming to thrive in a competitive landscape. At the heart of this digital strategy lies an intricately woven...
0
by: Hystou | last post by:
Overview: Windows 11 and 10 have less user interface control over operating system update behaviour than previous versions of Windows. In Windows 11 and 10, there is no way to turn off the Windows...
0
tracyyun
by: tracyyun | last post by:
Dear forum friends, With the development of smart home technology, a variety of wireless communication protocols have appeared on the market, such as Zigbee, Z-Wave, Wi-Fi, Bluetooth, etc. Each...
0
agi2029
by: agi2029 | last post by:
Let's talk about the concept of autonomous AI software engineers and no-code agents. These AIs are designed to manage the entire lifecycle of a software development project—planning, coding, testing,...

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.