General discussion

Locked

Security on the Web!(ASP,VB, SQL7)

By a_adie ·
Hello, everyone!
I am using ASPs in my VB6 script to call an SQL 7 database. What security issues shd be considered? How will the IIS security be handled with NT4 & SQL7 security?
Any suggestions wld be highly appreciated!
Thanks in advance!
Adie

This conversation is currently closed to new comments.

5 total posts (Page 1 of 1)  
| Thread display: Collapse - | Expand +

All Comments

Collapse -

Security on the Web!(ASP,VB, SQL7)

Hi!

I would put the machine behind a firewall and only allow traffic to the necessary ports and nothing more.

I.e. 80 fot http, 20 & 21 for ftp and so on.

/Hasse

Collapse -

Security on the Web!(ASP,VB, SQL7)

by a_adie In reply to Security on the Web!(ASP, ...

The question was auto-closed by TechRepublic

Collapse -

Security on the Web!(ASP,VB, SQL7)

by compaqer In reply to Security on the Web!(ASP, ...

1) Is your SQL DB available to the world, or only to select users? IIS can configure each website to accept/reject a packet based on the IP address or IP domain name. This can provide a firewall-like capability, *IN ADDITION* to an existing firewall.

2) Are your web users known ahead of time, and have (or could have) NT logon accounts? Then you can configure IIS to require authentication before allowing access to a website. This would require the NT username/password.

In IIS right click on the website, select properties, select directory security tab, press the "edit" button for anonymous access..... Challenge/response is the most secure, but only works with MS IE.

3) If you can use NT authentication on your website, thenyou can also configure SQL 7.0 to accept the NT authentication from the website. Once the user is authenticated by the website, her credentials can be used to satisfy access controls within SQL.

Good luck,
Jerry

Collapse -

Security on the Web!(ASP,VB, SQL7)

by a_adie In reply to Security on the Web!(ASP, ...

The question was auto-closed by TechRepublic

Collapse -

Security on the Web!(ASP,VB, SQL7)

by a_adie In reply to Security on the Web!(ASP, ...

This question was auto closed due to inactivity

Back to Networks Forum
5 total posts (Page 1 of 1)  

Related Discussions

Related Forums