Wrox Programmer Forums
| Search | Today's Posts | Mark Forums Read
ASP.NET 1.x and 2.0 Application Design Application design with ASP.NET 1.0, 1.1, and 2.0.
Welcome to the p2p.wrox.com Forums.

You are currently viewing the ASP.NET 1.x and 2.0 Application Design section of the Wrox Programmer to Programmer discussions. This is a community of software programmers and website developers including Wrox book authors and readers. New member registration was closed in 2019. New posts were shut off and the site was archived into this static format as of October 1, 2020. If you require technical support for a Wrox book please contact http://hub.wiley.com
 
Old February 17th, 2006, 11:42 AM
Registered User
 
Join Date: Dec 2005
Location: Santa Fe, NM, USA.
Posts: 1
Thanks: 0
Thanked 0 Times in 0 Posts
Default Windows Authentication in Web.Config

I'm hoping someone can help me...

I have an employee intranet with one folder I want to secure for admin staff only. I have tried: 1) to edit the web.config in the root and 2) create additional web.config in folder to be secured (and creating application for that folder in IIS). My problem is a little bizarre.

As long as the allow users for the admin folder is a single user, it works fine. When I add a second user or change the user to a windows group, it doesn't work. Can anyone help? Here is what I have in my web.config...

<configuration>
   <location path="Admin">
      <system.web>
         <authorization>
            <allow users="domain\group" />
            <deny users="*" />
         </authorization>
      </system.web>
   </location>

   <system.web>

      <compilation defaultLanguage="c#" debug="true" />

      <customErrors mode="RemoteOnly" />

      <authentication mode="Windows" />

      <authorization>
         <allow users="*" />
      </authorization>

And so on...
 
Old February 5th, 2014, 08:42 PM
Friend of Wrox
Points: 528, Level: 8
Points: 528, Level: 8 Points: 528, Level: 8 Points: 528, Level: 8
Activity: 0%
Activity: 0% Activity: 0% Activity: 0%
 
Join Date: Feb 2014
Posts: 136
Thanks: 1
Thanked 10 Times in 10 Posts
Default

domain\group is not a user you allow roles
Code:
<configuration> 
   <location path="Admin">
      <system.web>
         <authorization>
            <allow roles="domain\group" />
            <deny users="*" />
         </authorization>
      </system.web>
   </location>




Similar Threads
Thread Thread Starter Forum Replies Last Post
web.config vs. app.config darlo Visual Studio 2005 11 August 20th, 2008 07:23 AM
Windows authentication eresina General .NET 5 June 2nd, 2004 09:16 AM
IIS config for authentication using AD MSUser General .NET 0 March 26th, 2004 04:18 AM
Web Service & Integrated Windows Authentication TiongLip ASP.NET 1.0 and 1.1 Professional 0 September 17th, 2003 01:47 AM





Powered by vBulletin®
Copyright ©2000 - 2020, Jelsoft Enterprises Ltd.
Copyright (c) 2020 John Wiley & Sons, Inc.