Browse by Tags

Related Posts

  • Need to integrate CAC Card Authentication with ASP.NET Membership Provider

    I have worked on two web development projects for the DoD, and they use CAC cards for authentication. I have gotten as far as being able to pull information off of the CAC card, store it in a UserAuth table (SQL Server 2005 Std), however the problem is that my web.sitemap is using roles authentication...
    Posted to Security (Forum) by bfancett on 12-04-2008, 12:00 AM
    Filed under: multiple membership providers forms authentication, security issues, Security membership, Security membership Smart Client roles, "isa server" "forms authentication" cookie problem, .net 3.5, .net 3.5 security, 3.5, accounts, Application, ASP .NET 2.0 Membership, asp.net membership provider, asp.net 2.0 memembership, ASP.net 2.0 Security, ASP.NET 3.5, ASP.NET Authorization role profile provider, ASP.NET Membership, ASP.NEt membership provider, asp.net Security, asppnetdb membership, Authenticate, Authentication Mechanism, authentication mode, authentication problem, Authentication Security, Certifiate, certificate, Certificate Authority, certificates, certificates authentication, client certificates web service, client forms application, credentials, Cross Application Authentication and Session, custom, Custom Authentication, custom identity, custom membership, custom membership and personalization, custom membership multiple, custom membership provider, Custom MembershipProvider, Custom security, form security authentication, Forms authentication, Forms authentication., FormsAuthentication, Membership Provider, Membership provider profile provider, membership role, Membership Role Profile Provider, Membership Role Provider authentication parameters, membership roles, membership security roles profile, Membership Services, membership ssis, membershipprovider membershipuser custom, membershiprship validation ignore case validateuser method asp.net c#, Membershipship, Microsoft, Mixed Authentication, membership authentication, membership authentication redirect, Membership class, membership controls, membership cookies, membership login control, Multi-Factor Authentication, asp.NETconfiguration, asp.neTt 2.0 memembership, .ASPX [Edit Tags], .ASPXAUTH, Form Authentication problem, security without membership provider, "Security", certclientlib, client-side validation, .net security, form based authentication
  • Re: Reading the cookie generated by <authentication mode="Forms"> with javascript

    This probably happens because the cookie is delivered in the response with attribute "HttpOnly" which means it cannot be read using javascript. Check the response headers (using FireFox FireBug etc.) Read more about it here: http://www.codinghorror.com/blog/archives/001167.html?r=32206 You...
    Posted to Security (Forum) by naorrosenberg on 11-25-2008, 12:00 AM
    Filed under: 2008, Anonymous Access, AUTHCOOKIE, authentication, cookie .aspxauth, cookie problem, Cookies, cookies forms authentication, cookies forms authentication persistant session, .ASPXAUTH, anonymous user, <asp.net>, authentication cookie ticket, Authenticate, cookie
Page 1 of 1 (2 items)