<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>ASP.NET Security</title>
	<link>http://aspnetsecurity.com</link>
	<description>Articles, News, and Resources about ASP.NET Security</description>
	<pubDate>Wed, 07 Nov 2007 03:33:45 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.3</generator>
	<language>en</language>
			<item>
		<title>IIS 7.0 - ASP.NET Integration</title>
		<link>http://aspnetsecurity.com/aspnet/security/iis-70-aspnet-integration/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/iis-70-aspnet-integration/#comments</comments>
		<pubDate>Wed, 07 Nov 2007 03:33:45 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[181]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=50</guid>
		<description><![CDATA[It means that only ASP.NET request will be carried out by managed modules. Now, if we want to employ ASP.NET modules to all our requests, we can write the following in the &#8230;
Here is the original post: IIS 7.0 - ASP.NET Integration
]]></description>
			<content:encoded><![CDATA[<p>It means that only ASP.NET request will be carried out by managed modules. Now, if we want to employ ASP.NET modules to all our requests, we can write the following in the &#8230;
<p>Here is the original post: <br /><a href="http://elczara.spaces.live.com/Blog/cns!554EC06D366AC9D5!261.entry" title="IIS 7.0 - ASP.NET Integration">IIS 7.0 - ASP.NET Integration</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/iis-70-aspnet-integration/feed/</wfw:commentRss>
		</item>
		<item>
		<title>web server how to</title>
		<link>http://aspnetsecurity.com/aspnet/security/web-server-how-to/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/web-server-how-to/#comments</comments>
		<pubDate>Tue, 06 Nov 2007 08:53:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[187]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=52</guid>
		<description><![CDATA[&#8230; running asp.net 1.0 web server sales web server sample web server script web server scripting language web server scripts web server secure web server security web server security 1 web server security assesment web server security &#8230;
View original post here: web server how to
]]></description>
			<content:encoded><![CDATA[<p>&#8230; running asp.net 1.0 web server sales web server sample web server script web server scripting language web server scripts web server secure web server security web server security 1 web server security assesment web server security &#8230;</p>
<p>View original post here: <br /><a href="http://amateur-home-sex-uk-video.blogspot.com/2007/11/web-server-how-to.html" title="web server how to">web server how to</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/web-server-how-to/feed/</wfw:commentRss>
		</item>
		<item>
		<title>ASP.NET Interview Questions</title>
		<link>http://aspnetsecurity.com/aspnet/security/aspnet-interview-questions/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/aspnet-interview-questions/#comments</comments>
		<pubDate>Fri, 02 Nov 2007 06:22:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<guid isPermaLink="false">http://aspnetsecurity.com/aspnet/security/aspnet-interview-questions/</guid>
		<description><![CDATA[If I’m developing an application that must accommodate multiple security levels though secure login and my ASP.NET web application is spanned across three web-servers (using round-robin load balancing) what would be the best approach to &#8230;
Read the rest here: ASP.NET Interview Questions
]]></description>
			<content:encoded><![CDATA[<p>If I’m developing an application that must accommodate multiple security levels though secure login and my ASP.NET web application is spanned across three web-servers (using round-robin load balancing) what would be the best approach to &#8230;</p>
<p>Read the rest here: <br /><a href="http://kkgaurav.blogspot.com/2007/11/aspnet-interview-questions.html" title="ASP.NET Interview Questions">ASP.NET Interview Questions</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/aspnet-interview-questions/feed/</wfw:commentRss>
		</item>
		<item>
		<title>ASP.NET authentication</title>
		<link>http://aspnetsecurity.com/aspnet/security/aspnet-authentication/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/aspnet-authentication/#comments</comments>
		<pubDate>Thu, 01 Nov 2007 23:49:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<guid isPermaLink="false">http://aspnetsecurity.com/?p=49</guid>
		<description><![CDATA[Authentication in ASP.NET is one of the best features of the web application&#8217;s security,  which it is divided into 3 different built-in providers: Forms-based, Passport and Windows Authentication. The Forms-based and passport &#8230;
Go here to see the original: ASP.NET authentication
]]></description>
			<content:encoded><![CDATA[<p>Authentication in ASP.NET is one of the best features of the web application&#8217;s security,  which it is divided into 3 different built-in providers: Forms-based, Passport and Windows Authentication. The Forms-based and passport &#8230;</p>
<p>Go here to see the original: <br /><a href="http://www.securiour.com/2007/aspnet-authentication/" title="ASP.NET authentication">ASP.NET authentication</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/aspnet-authentication/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Very Simple Shopping Cart</title>
		<link>http://aspnetsecurity.com/aspnet/security/very-simple-shopping-cart/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/very-simple-shopping-cart/#comments</comments>
		<pubDate>Wed, 31 Oct 2007 02:07:42 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[error]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=43</guid>
		<description><![CDATA[It should be made in VB ASP.NET only It&#8217;s a kind of shopping cart very simple, nothing of the complexitty of regular shopping carts on the web. Products to sell: images/files to download. Customers types: 2. One type are schools wich &#8230;
Read the original: Very Simple Shopping Cart
]]></description>
			<content:encoded><![CDATA[<p>It should be made in VB ASP.NET only It&#8217;s a kind of shopping cart very simple, nothing of the complexitty of regular shopping carts on the web. Products to sell: images/files to download. Customers types: 2. One type are schools wich &#8230;</p>
<p>Read the original: <br /><a href="http://www.project4hire.com/freelance_job_2267.html" title="Very Simple Shopping Cart">Very Simple Shopping Cart</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/very-simple-shopping-cart/feed/</wfw:commentRss>
		</item>
		<item>
		<title>ASP.NET built in Security Controls</title>
		<link>http://aspnetsecurity.com/aspnet/security/aspnet-built-in-security-controls/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/aspnet-built-in-security-controls/#comments</comments>
		<pubDate>Tue, 30 Oct 2007 00:36:10 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[190]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=53</guid>
		<description><![CDATA[Security controls for Web Applications, really cool, and slick- so far. Good tutorial: Securing Your Application.
More here: ASP.NET built in Security Controls
]]></description>
			<content:encoded><![CDATA[<p>Security controls for Web Applications, really cool, and slick- so far. Good tutorial: Securing Your Application.</p>
<p>More here: <br /><a href="http://www.garrettpatterson.com/?p=12" title="ASP.NET built in Security Controls">ASP.NET built in Security Controls</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/aspnet-built-in-security-controls/feed/</wfw:commentRss>
		</item>
		<item>
		<title>WebMethods Behind ASP.NET Pages are Web Services Too</title>
		<link>http://aspnetsecurity.com/aspnet/security/webmethods-behind-aspnet-pages-are-web-services-too/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/webmethods-behind-aspnet-pages-are-web-services-too/#comments</comments>
		<pubDate>Sun, 28 Oct 2007 19:23:43 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[systems]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=41</guid>
		<description><![CDATA[I&#8217;ve long been concerned that developers are adding AJAX functionality to their web sites without fully considering the security ramifications. In fact, I believe some of the high-level tools for AJAX-enabling sites actually encourage &#8230;
Read the original: WebMethods Behind ASP.NET Pages are Web Services Too
]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ve long been concerned that developers are adding AJAX functionality to their web sites without fully considering the security ramifications. In fact, I believe some of the high-level tools for AJAX-enabling sites actually encourage &#8230;</p>
<p>Read the original: <br /><a href="http://softwaredevscott.spaces.live.com/Blog/cns!1A9E939F7373F3B7!484.entry" title="WebMethods Behind ASP.NET Pages are Web Services Too">WebMethods Behind ASP.NET Pages are Web Services Too</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/webmethods-behind-aspnet-pages-are-web-services-too/feed/</wfw:commentRss>
		</item>
		<item>
		<title>4-Tier Architecture in ASP.NET with C#</title>
		<link>http://aspnetsecurity.com/aspnet/security/4-tier-architecture-in-aspnet-with-c/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/4-tier-architecture-in-aspnet-with-c/#comments</comments>
		<pubDate>Fri, 26 Oct 2007 02:05:31 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[169]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=46</guid>
		<description><![CDATA[using System.Configuration; using System.Web; using System.Web.Security; using System.Web.UI; using System.Web.UI.WebControls; using System.Web.UI.WebControls.WebParts; using System.Web.UI.HtmlControls; using System.Data.SqlClient; &#8230;
See the original post here: 4-Tier Architecture in ASP.NET with C#
]]></description>
			<content:encoded><![CDATA[<p>using System.Configuration; using System.Web; using System.Web.Security; using System.Web.UI; using System.Web.UI.WebControls; using System.Web.UI.WebControls.WebParts; using System.Web.UI.HtmlControls; using System.Data.SqlClient; &#8230;</p>
<p>See the original post here: <br /><a href="http://paul4live.spaces.live.com/Blog/cns!709AE7CE7784AECC!368.entry" title="4-Tier Architecture in ASP.NET with C#">4-Tier Architecture in ASP.NET with C#</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/4-tier-architecture-in-aspnet-with-c/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Mitigating XSS Attacks in ASP.NET Apps</title>
		<link>http://aspnetsecurity.com/aspnet/security/mitigating-xss-attacks-in-aspnet-apps/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/mitigating-xss-attacks-in-aspnet-apps/#comments</comments>
		<pubDate>Thu, 25 Oct 2007 07:12:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[184]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=51</guid>
		<description><![CDATA[However, I find several cases where the application team deviates from having this directive set to true for some business reasons. For eg. there is a rich text box in the web page which must allow any kind of input data. &#8230;
See the original post here: Mitigating XSS Attacks in ASP.NET Apps
]]></description>
			<content:encoded><![CDATA[<p>However, I find several cases where the application team deviates from having this directive set to true for some business reasons. For eg. there is a rich text box in the web page which must allow any kind of input data. &#8230;</p>
<p>See the original post here: <br /><a href="http://smartsecurity.blogspot.com/2007/10/mitigating-xss-attacks-in-aspnet-apps.html" title="Mitigating XSS Attacks in ASP.NET Apps">Mitigating XSS Attacks in ASP.NET Apps</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/mitigating-xss-attacks-in-aspnet-apps/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Using Active Directory to manage your web application security</title>
		<link>http://aspnetsecurity.com/aspnet/security/using-active-directory-to-manage-your-web-application-security/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/using-active-directory-to-manage-your-web-application-security/#comments</comments>
		<pubDate>Tue, 23 Oct 2007 23:22:44 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[execution]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=44</guid>
		<description><![CDATA[Now, even though we have the Active Directory managing our users and groups, we  still have to program what those groups can do in our application. The following example shows how to setup your WEB (ASP.Net) application to check if the &#8230;
Read the original: Using Active Directory to manage your web application security
]]></description>
			<content:encoded><![CDATA[<p>Now, even though we have the Active Directory managing our users and groups, we  still have to program what those groups can do in our application. The following example shows how to setup your WEB (ASP.Net) application to check if the &#8230;</p>
<p>Read the original: <br /><a href="http://planetchrisman.com/blog1/2007/10/24/using-active-directory-to-manage-your-web-application-security/" title="Using Active Directory to manage your web application security">Using Active Directory to manage your web application security</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/using-active-directory-to-manage-your-web-application-security/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Writing A Custom Membership Provider for your ASP.NET 2.0 Web Site</title>
		<link>http://aspnetsecurity.com/aspnet/security/writing-a-custom-membership-provider-for-your-aspnet-20-web-site/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/writing-a-custom-membership-provider-for-your-aspnet-20-web-site/#comments</comments>
		<pubDate>Sun, 21 Oct 2007 20:07:16 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[securing-aspnet]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=45</guid>
		<description><![CDATA[To maintain consistency with the location of databases in a typical ASP.NET 2.0 web application, save this database in C:\NewMembershipProvider\App_Data\. Give it the name Members.mdb. Create a new table in the Members.mdb database and &#8230;
See original here: Writing A Custom Membership Provider for your ASP.NET 2.0 Web Site
]]></description>
			<content:encoded><![CDATA[<p>To maintain consistency with the location of databases in a typical ASP.NET 2.0 web application, save this database in C:\NewMembershipProvider\App_Data\. Give it the name Members.mdb. Create a new table in the Members.mdb database and &#8230;</p>
<p>See original here: <br /><a href="http://290384427.qzone.qq.com/blog/1193011636" title="Writing A Custom Membership Provider for your ASP.NET 2.0 Web Site">Writing A Custom Membership Provider for your ASP.NET 2.0 Web Site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/writing-a-custom-membership-provider-for-your-aspnet-20-web-site/feed/</wfw:commentRss>
		</item>
		<item>
		<title>VB.NET Interview Questions #5</title>
		<link>http://aspnetsecurity.com/aspnet/security/vbnet-interview-questions-5/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/vbnet-interview-questions-5/#comments</comments>
		<pubDate>Sun, 21 Oct 2007 11:42:27 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[175]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=48</guid>
		<description><![CDATA[What criteria would you use to determine if a particular program should be written as a web based ASP.NET application or &#8230;
See the rest here: VB.NET Interview Questions #5
]]></description>
			<content:encoded><![CDATA[<p>What criteria would you use to determine if a particular program should be written as a web based ASP.NET application or &#8230;
<p>See the rest here: <br /><a href="http://vbnotebookfor.net/2007/10/21/vbnet-interview-questions-5/" title="VB.NET Interview Questions #5">VB.NET Interview Questions #5</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/vbnet-interview-questions-5/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Web Server in Windows Server 2008</title>
		<link>http://aspnetsecurity.com/aspnet/security/web-server-in-windows-server-2008/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/web-server-in-windows-server-2008/#comments</comments>
		<pubDate>Wed, 17 Oct 2007 04:54:25 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[172]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=47</guid>
		<description><![CDATA[With this model, ASP.NET is no longer employed with our Web server as a standalone application framework. It serves by now being a platform for extending the IIS Web server, facilitating ASP.NET components to turn into constituents of &#8230;
Continued here: Web Server in Windows Server 2008
]]></description>
			<content:encoded><![CDATA[<p>With this model, ASP.NET is no longer employed with our Web server as a standalone application framework. It serves by now being a platform for extending the IIS Web server, facilitating ASP.NET components to turn into constituents of &#8230;</p>
<p>Continued here: <br /><a href="http://elczara.spaces.live.com/Blog/cns!554EC06D366AC9D5!228.entry" title="Web Server in Windows Server 2008">Web Server in Windows Server 2008</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/web-server-in-windows-server-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Hacking The Code - Asp.net web application Security</title>
		<link>http://aspnetsecurity.com/aspnet/security/hacking-the-code-aspnet-web-application-security-2/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/hacking-the-code-aspnet-web-application-security-2/#comments</comments>
		<pubDate>Sat, 13 Oct 2007 19:57:00 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<category><![CDATA[account]]></category>

		<guid isPermaLink="false">http://aspnetsecurity.com/?p=42</guid>
		<description><![CDATA[ASP.NET Web Application Security; Chapter 1 - Managing Users; Chapter 2 - Authenticating and Authorizing Users; Chapter 3 - Managing Sessions; Chapter 4 - Encrypting Private Data; Chapter 5 - Filtering User Input; Chapter 6 - Accessing &#8230;
Read the original here: Hacking The Code - Asp.net web application Security
]]></description>
			<content:encoded><![CDATA[<p>ASP.NET Web Application Security; Chapter 1 - Managing Users; Chapter 2 - Authenticating and Authorizing Users; Chapter 3 - Managing Sessions; Chapter 4 - Encrypting Private Data; Chapter 5 - Filtering User Input; Chapter 6 - Accessing &#8230;</p>
<p>Read the original here: <br /><a href="http://calisanadam.blogspot.com/2007/10/syngress-publishing-inc.html" title="Hacking The Code - Asp.net web application Security">Hacking The Code - Asp.net web application Security</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/hacking-the-code-aspnet-web-application-security-2/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Professional ASP.NET 2.0 Security, Membership, and Role Management &#8230;</title>
		<link>http://aspnetsecurity.com/aspnet/security/professional-aspnet-20-security-membership-and-role-management/</link>
		<comments>http://aspnetsecurity.com/aspnet/security/professional-aspnet-20-security-membership-and-role-management/#comments</comments>
		<pubDate>Sat, 13 Oct 2007 03:17:31 +0000</pubDate>
		<dc:creator>admin</dc:creator>
		
		<guid isPermaLink="false">http://aspnetsecurity.com/?p=40</guid>
		<description><![CDATA[The book offers detailed information on every major area of ASP.NET security you’ll encounter when developing Web applications. You’ll see how ASP.NET 2.0 version contains many new built-in security functions compared to ASP. &#8230;
View original here: Professional ASP.NET 2.0 Security, Membership, and Role Management &#8230;
]]></description>
			<content:encoded><![CDATA[<p>The book offers detailed information on every major area of ASP.NET security you’ll encounter when developing Web applications. You’ll see how ASP.NET 2.0 version contains many new built-in security functions compared to ASP. &#8230;</p>
<p>View original here: <br /><a href="http://www.creativedesignzone.com/ASIN_0764596985.htm" title="Professional ASP.NET 2.0 Security, Membership, and Role Management ...">Professional ASP.NET 2.0 Security, Membership, and Role Management &#8230;</a></p>
]]></content:encoded>
			<wfw:commentRss>http://aspnetsecurity.com/aspnet/security/professional-aspnet-20-security-membership-and-role-management/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
