Ask a Question related to ASP.NET Security, Design and Development.
-
andy miller #1
AzMan and ASP.Net
I have been able to use AzMan from the Enterprise Library in a Windows Form
app. However, I'm having difficulty with security settings when doing the
same thing in ASP.Net. I have tried using both stores in Xml and ADAM (this
is preferred). However, I cannot find the settings I need to change to make
this work.
Is there anyone else who has been able to get ASP.Net and AzMan working?
Here are some of the settings I've used and the COM Exceptions that I'm
getting. All of the examples work in Windows Forms.
Any help would be greatly appreciated.
Thanks,
Andy Miller
Web Settings:
Web.Config Authentication Mode: Windows
IIS WebSite Security: Authenticated
Test 1:
- XML Store - C:\securityTestStore.xml
- IIS Security: Authenticated Only
- .net Machine.Config Process Model: SYSTEM or machine(ASPNET)
- Xml File Rights:
[mydomain]\[myaccount] - Full
Result: Access is Denied
Test 2:
- XML Store - C:\securityTestStore.xml
- IIS Security: Authenticated Only
- .net Machine.Config Process Model: SYSTEM
- Xml File Rights:
[mydomain]\[myaccount] - Full
SYSTEM - FULL
Result: Parameter is incorrect
Test 3:
- ADAM Store -
msldap://localhost/CN=AppStore,CN=Security,DC=SALKEIZ,DC=K12,DC=ORG
- IIS Security: Authenticated Only
- .net Machine.Config Process Model: SYSTEM
- Xml Store File Rights:
[mydomain]\[myaccount] - Reader, Delegated
Result: System cannot find the file specified
andy miller Guest
-
Problem using AzMan url Authorization and HttpHandler
Hi, I Have a web application that uses IIS 6.0 URL Authorization and AzMan to control access to URLs based on custom user roles. In some pages... -
Problem when executing SQL script from AzMan BizRule
Hello. I'm investigating Authorization Manager (AzMan) and I have a problem with SQL 2000. I try to execute a stored procedure from BizRule, but... -
Problem when executing SQL script from AzMan BizRule.
Hello. I'm investigating Authorization Manager (AzMan) and I have a problem with SQL 2000. I try to execute a stored procedure from BizRule, but... -
AzMan IAzApplication InitializeClientContextFromStringSid method
Hello This method has a hande leak. When submited to a load test the handles rise to 50000 and the application sends an exception "Insufficient... -
Using AZman with ASP.NET
Greetings I am designing an Application Security system for an ASP.NET application using Azman. Questions: What is the performance impact of... -
Dominick Baier [DevelopMentor] #2
AzMan and ASP.Net
at least with the xml store - you prolly have to adjust the READER or ADMIN role -
go to azman.msc -> store properties -> security
---
Dominick Baier - DevelopMentor
[url]http://www.leastprivilege.com[/url]
nntp://news.microsoft.com/microsoft.public.dotnet.framework.aspnet.security/<uVbK2UoKFHA.576@TK2MSFTNGP15.phx.gbl>
I have been able to use AzMan from the Enterprise Library in a Windows Form
app. However, I'm having difficulty with security settings when doing the
same thing in ASP.Net. I have tried using both stores in Xml and ADAM (this
is preferred). However, I cannot find the settings I need to change to make
this work.
Is there anyone else who has been able to get ASP.Net and AzMan working?
Here are some of the settings I've used and the COM Exceptions that I'm
getting. All of the examples work in Windows Forms.
Any help would be greatly appreciated.
Thanks,
Andy Miller
Web Settings:
Web.Config Authentication Mode: Windows
IIS WebSite Security: Authenticated
Test 1:
- XML Store - C:\securityTestStore.xml
- IIS Security: Authenticated Only
- .net Machine.Config Process Model: SYSTEM or machine(ASPNET)
- Xml File Rights:
[mydomain]\[myaccount] - Full
Result: Access is Denied
Test 2:
- XML Store - C:\securityTestStore.xml
- IIS Security: Authenticated Only
- .net Machine.Config Process Model: SYSTEM
- Xml File Rights:
[mydomain]\[myaccount] - Full
SYSTEM - FULL
Result: Parameter is incorrect
Test 3:
- ADAM Store -
msldap://localhost/CN=AppStore,CN=Security,DC=SALKEIZ,DC=K12,DC=ORG
- IIS Security: Authenticated Only
- .net Machine.Config Process Model: SYSTEM
- Xml Store File Rights:
[mydomain]\[myaccount] - Reader, Delegated
Result: System cannot find the file specified
[microsoft.public.dotnet.framework.aspnet.security]
Dominick Baier [DevelopMentor] Guest



Reply With Quote

