Developing More-secure Microsoft ASP.NET 2.0 Applications

Cover
Microsoft Press, 2006 - 456 Seiten

Build your expertise for developing more-secure applications with ASP.NET 2.0. A leading security expert delivers best practices, pragmatic instruction, and extensive code samples in Microsoft Visual C# to help you develop Web applications that are more robust, more reliable, and more resistant to attack.

Discover how to:

  • Harden a Web server, operating system, communication protocol, and ASP.NET Validate input data with white listing, regular expressions, sandboxing, and other techniques
  • Understand design and security implications of various cryptography approaches
  • Integrate with Microsoft Windows security features such as impersonation, delegation and protocol transition
  • Implement Web farm, single sign-on, and mixed-mode authentication
  • Use provider-based features for user and role management and authentication
  • Trace attacks with error-handling, logging, and instrumentation
  • Lock down your application with partial trust

PLUS--Get code samples on the Web

Autoren-Profil (2006)

Dominick Baier splits his time between being an independent security consultant and an instructor for DevelopMentor - teaching and authoring the ASP.NET and the.NET security curriculum. He has a degree in computer science (German Diplom Ingenieur), is a certified BS7799/ISO17799 Lead Auditor and speaks at various conferences (WinDev, DevWeek, ADC) about application security. When not teaching he spends his time researching security, doing audits and penetration tests and helps other developers around the world to build more secure applications. Dominick maintains a security blog at http: //www.leastprivilege.com.

Bibliografische Informationen