CodeVerge.Net Beta


   Explore    Item Entry    Members      Register  Login  
NEWSGROUP
.NET
Algorithms-Data Structures
Asp.Net
C Plus Plus
CSharp
Database
HTML
Javascript
Linq
Other
Regular Expressions
VB.Net
XML

Free Download:




Zone: > NEWSGROUP > Asp.Net Forum > general_asp.net.security Tags:
Item Type: NewsGroup Date Entered: 8/1/2004 1:36:47 PM Date Modified: Subscribers: 0 Subscribe Alert
Rate It:
(NR, 0)
XPoints: N/A Replies: 1 Views: 17 Favorited: 0 Favorite
Can Reply:  No Members Can Edit: No Online: Yes
2 Items, 1 Pages 1 |< << Go >> >|
cesardelapaz
Asp.Net User
Security that persist8/1/2004 1:36:47 PM

0/0

Hello,

I've been experimenting on forms authentication recently and even used it on one of my web app. But the problem is it expires very soon that I expected which is 1 hour. What could be the thing that I missed? I like the security employed in this forum. It persists as long as I haven't logout.

I am thinking how this is working though I only want to persist the cookie, if that is the one being used here, for a day. Meaning if the date changes from today to tomorrow, the app will redirect back to the logon page.

Suggestions anyone?

Thanks,

Cesar
bdesmet
Asp.Net User
Re: Security that persist8/2/2004 12:37:04 PM

0/0

A few points that can help you to find the ideal solution:
- you can gain access to the forms authentication cookie by using the FormsCookieName/FormsCookiePath properties of FormsAuthentication to alter the expiration
- you can make the cookie persistent by using FormsAuthentication.RedirectFromLoginPage with the second parameter set to true
- you can configure forms authentication so that it uses sliding expiration (<forms slidingExpiration="true" />), which will cause the cookie to be refreshed on subsequent requests (to the authentication will expire xxx minutes after the last request, whereas without using sliding expiration, the authentication would expire xxx minutes after the initial request to do the authentication)

Hope this can help you further? Please remark that the source of the ASP.NET Forums is available via the Source Projects tab on top of this page. If you want, you can dive into that code to find out how exactly everything that has to do with authentication on these forums is configured.
Bart De Smet [MVP]



Visit www.msdn.be, www.bartdesmet.net
2 Items, 1 Pages 1 |< << Go >> >|


Free Download:

Books:
VA information systems: computer security weaknesses persist at the Veterans Health Administration : report to the Acting Secretary of Veterans Affairs Authors: unknown, Pages: 0, Published: -1
Information security weaknesses persist at federal agencies despite progress made in implementing related statutory requirements: report to congressional committees. Authors: unknown, Pages: 0, Published: -1
Information security: serious and widespread weaknesses persist at federal agencies : report to the Chairman, Subcommittee on Government Management, Information and Technology, Committee on Government Reform, House of Representatives Authors: unknown, Pages: 0, Published: -1
Challenges to Social Security: An International Exploration Authors: James Midgley, Martin Tracy, Pages: 160, Published: 1996
Managing Information in the Public Sector Authors: Jay D. White, Pages: 319, Published: 2007
Mastering Network Security Authors: Chris Brenton, Cameron Hunt, Pages: 490, Published: 2003
Access Cookbook: Solutions to Common User Interface & Programming Problems Authors: Ken Getz, Paul Litwin, Andy Baron, Microsoft Corporation, Pages: 810, Published: 2004

Web:
EurasiaNet Business & Economics - BTC Security Questions Persist Jul 11, 2006 ... BTC Security Questions Persist - news and analysis about Central Asia and the Caucasus.
Persist Security Info Property The Persist Security Info property specifies whether the data source can persist sensitive authentication information such as a password. ...
Hosts Ban phpBB As Security Issues Persist - Netcraft Jul 8, 2005 ... Hosts Ban phpBB As Security Issues Persist. Some web hosts are banning the use of phpBB in the wake of persistent security problems for the ...
CSC: INFORMATION SECURITY CONCERNS PERSIST FOR CHIEF FINANCIAL ... Jul 13, 2006 ... Continuing a theme begun last year, information security emerged as the most pervasive concern in the eighth annual Technology Issues for ...
Persist Security Info = True in connection string seconds), call an UPDATE sproc with Persist Security Info set to False in .... Why does setting Persist Security Info=True make (so what is ...
can anyone tell me what is Persist Security Info=False ? Talk about can anyone tell me what is Persist Security Info=False ? ... in a connection string, Persist Security Info=False is for what ? ...
IM security fears persist > IM Security > Messaging > News > SC ... New research finds firms acknowledge business benefits but fear securitybreaches .
Public Hot Spot Security Concerns Persist - Network Sentry Aug 8, 2007 ... This story at USA Today does a good job of laying out for lay audiences — perhaps including corporate decision-makers — a problem that ...
WhiteHat Report Finds Web Site Security Vulnerabilities Persist Aug 27, 2008 ... WhiteHat Report Finds Web Site Security Vulnerabilities Persist: WhiteHat Security's latest report on Web site security shows cross-site ...
U.K.: A Year After Glasgow, Aviation Security Risks Persist ... U.K.: A Year After Glasgow, Aviation Security Risks Persist. By Matthew Harwood. 07/01/2008 -. Two articles from two separate British news outlets outline ...

Videos:
Afghanistan: Problems and Approaches Despite much progress in Afghanistan, serious security and developmental problems persist, causing strains within NATO as well as among donor countri...
Dead Rising Perfect Run 10-3: A Girl Needs A Gun Sometimes 10-3: ...on account of these rattlesnakes. While I'm in Carlito's Hideout, I get the call for "Simone the Gunslinger." I grab the handgun from the c...
China Tomorrow: Are Americans Worried About the Wrong Threat? Since China's entry into the World Trade Organization in December, 2001, U.S. leaders have assumed that economic policy with China would be smooth sa...
DPRK Hails Successful Nuclear Test Pyongyang, October 20 (KCNA) -- More than a hundred thousand servicepersons and citizens from all walks of life at a Pyongyang city army-people rally...
World Business: Cover Story Home Security 4/07/08 As the bite of the credit crunch persists, house prices in the west continue to fall. The US has already seen price corrections of around 20%, and pr...
President Eisenhower warns the U.S. "In the councils of government, we must guard against the acquisition of unwarranted influence, whether sought or unsought, by the military industria...
U.S.-Iran Relations During the Iran-Iraq War, 1980-1988: Account and Analysis of Jim Blight and janet Lang of the Watson Institute recently returned from an eleven-day visit to Tehran, during which they worked with their Iranian p...
Davos Annual Meeting 2005 - What Lies Ahead for Iraq? What Lies Ahead for Iraq? Six months after the transfer of sovereignty to the Iraqi interim government, instability and violence persist. What is the...
are we really addicted to oil? The Iraq War is Illegal Without a declaration of war by Congress, the war in Iraq violates the U.S. Constitution. Below is the Congressional author...
Institutional Antisocial Traceurs: New Lamp Post; Broken Bench; Rubbish Bin Vaulting; Slanted Wall Climbing and Bathtub Scenario 1. Thu 10.04.2008 at 1215: using newly installed lamp post as gymnast pole; jumping on bench next to broken slat that falls through; bathtub on grou...




Search This Site:










absolute paths hardcoded in web application projects

labels not changing when switching to another language

improve 4.x performance -- server-side viewstate

masterpage skinning

really broken forums

when a user is setup for administrator role -which table

is there a method i can use to capture the page a user was on before being directed to the login.aspx page?

creating a 'session'

photo album

query string?

replacing office smart quotes

from 2.1.2 to 3.0.13 and aspnet tables already there

soap header authentication in web service

file upload manager

vs 2005 install on vista - lockup

i need few answers for these dotnet questions.

no errors but code don't work

login page, logout after 3 attempts

configuration problem (aspnet user)

check box on tree view

finnish language

what is a good way to purge unathorized users?

dnn 3.2.2 error in log viewer...

urlbehavior property ... where is it?

how to check if a web site exist or no?

file upload script error -"object reference not set to an instance of an object."

roles within roles

how to make button use only specific validators

master page and content holder how to?

express codename "orcas" images now available!

 
All Times Are GMT