1) We wish to build an authentication and authorization system for a .NET
based HR application
2) We know we can use Active directory to authenticate the users
3) Can we store roles, and authorized functionalities on a per user basis ,
as well as a per role basis in AD or in ADAM, so that we can authorize the
form level functionalites using AD and / ADAM , and not have to use a DB
driven authorization mechanism ?
Regards,
Raj.
asp.net vulnerability ... From: Windows NTBugtraq Mailing List... More details on ASP.NET vulnerability... There has been some confusion with the ASP.NET forms authentication issue ...authorization issue, not an authentication issue. ... (microsoft.public.sharepoint.portalserver)
Re: application pool custom identity ...Kerberos becomes a possibility when the web server is in a Domain, ... The problem happens when the browser/server selects Kerberos authentication,... LocalSystem credentials will work for Kerberos; custom AppPool Identity...Authorization. ... (microsoft.public.inetserver.iis)
Re: Kerberos OpenLDAP Frontend ...Jonathan Javier Cordoba Gonzalez wrote: ... but then you are mixing the authentication with the authorization.... A KDC with passwords and LDAP ... (comp.protocols.kerberos)
Re: ASP.NET Authentication exception case ... It doesn't seem to like the authorization tag underneath the location tag ... This section sets the authentication policies of the application. ... <!-- SESSION STATE SETTINGS... (microsoft.public.dotnet.languages.csharp)
Re: ADAM - SSO and provisioning considerations ...ADAM and "custom" security principals and gives you ... for authentication, where you might ship some default providers (ADAM LDAP ... be used to link up to the authorization store.... > customer's identity store is a non-MS directory, ... (microsoft.public.windows.server.active_directory)