Ask a Question related to ASP.NET Security, Design and Development.
-
anjinho #1
URGENT: please help ASP.NET Forms authentication and recycling of application pool
Hello
Now and then while using a webapp written in asp.net I lose my
variables stored in sessions variables.
I lose them before the time out of 20minutes is over. Sometimes just
after a few minutes.
I think this is because of the application pool that gets recycled.
The webconfig is configured to inproc <sessionState mode="InProc" ....
Now my question is:
When I rewrite my application and start using forms authentication will
I lose my logged in userid that is stored within
HttpContext.Current.User.Identity.name?
Or is it always sent (within a cookie) to the website and when the
application is recycled it is rebuild so I never lose it within the
specified time out?
I just want a solution so I don't lose my userid.
And I can't use basic authentication or windows authentication because
the site is hosted for me and it doesn't have an ADS.
Thanks in advance
Andrew
--
anjinho
------------------------------------------------------------------------
Posted via http://www.codecomments.com
------------------------------------------------------------------------
anjinho Guest
-
Windows authentication breaks after configuring application pool identity
Hi group I run IIS 6.0 on W2k3 being an Active Directory Controller in a test lab. Create a virtual directory 'test' with Windows authentication... -
Sharing Forms Authentication between application and sub-application
Hi, I'm succesfully using Forms Authentication on a site I'm working on (MyMainApp). In a subfolder of this site, I have a seperate ASP.NET... -
Forms Authentication to protect a cgi application
I have enabled forms authentication on an IIS 6 W2k3 server to protect access to the application files until authenticated. The actual... -
Forms Authentication to protect .cgi application problem
I have enabled forms authentication on an IIS 6 W2k3 server to protect access to the application files until authenticated. The actual... -
Restrict access to resources like .doc, .ppt etc in .net forms authentication application
Hi, We are developing a .NET app which has forms authentication. When the user types in the direct URL which is an aspx page, he will be thrown... -
Dominick #2
Re: URGENT: please help ASP.NET Forms authentication and recycling of application pool
Hello anjinho,
Context.User is rehydrated on every request and does not rely on something
store InProc.
A quick way of mitigating the recycling problem is to use the StateServer
- change web.config to StateServer and enabled the local ASP.NET StateServer
service in computer manager.
---------------------------------------
Dominick Baier - DevelopMentor
http://www.leastprivilege.com
Dominick Guest
-
Ken #3
Re: URGENT: please help ASP.NET Forms authentication and recycling of application pool
Additionally, you should determine what's causing the Application pool
recycles. A web app pool should not be recycling every 20 minutes (or less).
Cheers
Ken
--
Blog: www.adopenstatic.com/cs/blogs/ken/
Web: www.adopenstatic.com
"Dominick Baier [DevelopMentor]" <com>
wrote in message news:microsoft.com...
: Hello anjinho,
:
: Context.User is rehydrated on every request and does not rely on something
: store InProc.
:
: A quick way of mitigating the recycling problem is to use the StateServer
: - change web.config to StateServer and enabled the local ASP.NET
StateServer
: service in computer manager.
:
: ---------------------------------------
: Dominick Baier - DevelopMentor
: http://www.leastprivilege.com
:
: > Hello
: >
: > Now and then while using a webapp written in asp.net I lose my
: > variables stored in sessions variables.
: > I lose them before the time out of 20minutes is over. Sometimes just
: > after a few minutes.
: > I think this is because of the application pool that gets recycled.
: >
: > The webconfig is configured to inproc <sessionState mode="InProc" ....
: >
: > Now my question is:
: > When I rewrite my application and start using forms authentication
: > will
: > I lose my logged in userid that is stored within
: > HttpContext.Current.User.Identity.name?
: > Or is it always sent (within a cookie) to the website and when the
: > application is recycled it is rebuild so I never lose it within the
: > specified time out?
: >
: > I just want a solution so I don't lose my userid.
: >
: > And I can't use basic authentication or windows authentication because
: > the site is hosted for me and it doesn't have an ADS.
: >
: > Thanks in advance
: >
: > Andrew
: >
: > --
: > anjinho
: > ----------------------------------------------------------------------
: > --
: > Posted via http://www.codecomments.com
: > ----------------------------------------------------------------------
: > --
:
:
:
Ken Guest



Reply With Quote

