Sponsored White Papers, Webcasts, and Downloads
TechRepublic Resources
- MSDN Webcast: Role-Based Security With Microsoft Authorization Manager (Level 300)
- The increasing adoption of distributed application development has led to a heightened appreciation of application security. In the context of software, security involves asking two questions: "Who are you?" and "What can you do?" Microsoft Windows Server 2003 introduces an authorization policy that is role-based, making Microsoft Authorization Manager AzMan...
- Tags: Role-based Security, Microsoft Developer Network, Webcast, Role-based Authorization, Microsoft Corp., Microsoft Windows Server 2003, Software Development, Digital Media, Security, Servers, Operating Systems, Microsoft Windows, Software, Software/Web Development, Consumer Electronics, Personal Technology, Hardware
- Webcasts
- True role-based authorization in ASP.NET
- ASP.NET provides role-based authorization by way of Windows authentication, but problems like duplicated user maintenance make it harder than it should be. This simple, custom solution will do a lot of the heavy lifting for you.When I first heard that ASP.NET did role-based authorization, I was excited—until I found out...
- Tags: .NET, Middleware, Stephen Fraser, role-based authorization, Microsoft ASP.NET, Authorized Page, duplicated effort, Microsoft .NET
- Technical articles 2002-06-10
Additional Resources
- Implementing Authentication and Authorization With AD/AM and AzMan - Level 200
- Microsoft developers have been using SQL Server for authentication and Role Based Authorization since the days of ASP and Visual Basic 6.0. Although still effective, the industry has been moving towards LDAP authentication, and "Policy" servers for authorization. Security sub-systems based on AD/AM are compliant with the LDAP standard, and...
- Tags: Authorization, Server, Microsoft Corp., Authentication, LDAP, Directory Services, Security, Enterprise Software, Software
- Webcasts
- MSDN Architecture Webcast: Authorization Manager From the Developer Perspective (Level 200)
- As corporate security and regulatory compliance requirements increase, the need for a simple and common application authorization model grows. Application developers and enterprise administrators are aligning around Role-Based Access Control RBAC, but they are frustrated by the differences in terminology between various implementations of RBAC. This webcast discusses the Microsoft...
- Tags: Microsoft Developer Network, Role-based Access Control, Webcast, Microsoft Corp., Regulatory Compliance, Human Resources, Policies And Procedures
- Webcasts
- Distributed Authorization Using Delegation With Acyclic Paths
- This paper presents a new trust management scheme for distributed authorization which can be easily implemented using X.509-based certificate chains, but does not require globally unique role names. A principal proves that he has authorization for a particular action by demonstrating the existence of an acyclic chain of bindings from...
- Tags: Authorization, Principal, Delegation
- White papers 2007-09-10
- Authorization Concepts and Solutions for J2EE Applications
- Authentication and privacy are security issues that have been largely standardized and productized. Authorization, on the other hand, is generally an area where every solution tends to become unique, depending on specific characteristics of the application in question. That said, there are some fairly common patterns that are repeated in...
- Tags: Authorization, Application Server, J2EE Application, IBM Corp., Application Servers, J2Ee, Middleware, Enterprise Software, Software, Software Development, Software/Web Development
- White papers 2006-07-19
- Essentials of Application Security (Part 3) - Authorization - Level 300
- This webcast is the third of a 3-part series about the importance of Application Security and its best practices and guidelines. This part specifically addresses Authorization in the context of secure application development. After an overview of the costs of inadequate security and the benefits of developing secure applications, we...
- Tags: Authorization, Webcast, Best Practice, Application Security, Security
- Webcasts
- Leading Nonprofit Ensures Privacy and Compliance Through Role-Based Access Control
- As a nonprofit organization for people who are blind and partially sighted, Lighthouse International places the highest importance on protecting the privacy of the people relying on its services. To increase operational efficiency and address increased patient privacy regulations, Lighthouse set out to launch a new system for managing patient...
- Tags: Role-based Access Control, Patient, Compliance, Privacy, Microsoft Corp.
- Case studies
- MSDN Webcast: Windows Communication Foundation Top to Bottom (Part 11 of 15): Federated Security (Level 200)
- The security model in Windows Communication Foundation WCF supports a rich, claims-based approach to authorization. Virtually any security token can be represented as a set of claims, including tokens that contain Windows credentials, username and password, or X509 certificates. Normalized claims are at the heart of any federated security model,...
- Tags: Microsoft Developer Network, Webcast, Windows Communication Foundation, Claim, Security
- Webcasts
- Cisco combines identity and role-based security for a new security architecture
- Cisco's new security initiative, called TrustSec, will make it possible for enterprise-wide implementation of role-based access and authentication. An excerpt from InformationWeek: The most important feature of TrustSec is the security measures it assigns based on the roles and identities of users. For example, access to...
- Tags: Role-based Security, Network, Cisco Systems Inc., Identity, Security, Arun Radhakrishnan
- Blog posts 2007-12-07
- Provide secure reliable VPN connections with IPSec authentication and authorization
- This sample chapter, taken from IPSec VPN Design, explores authentication and authorization models for the IPSec telecommuter. Given that telecommuters can be anywhere in the Internet, the successful completion of authorization and authentication is critical for granting access to the VPN.This sample chapter, taken from IPSec VPN...
- Tags: Authorization, IPSec VPN, Authentication, IPSec, VPNs, Network Security, Networking, Security
- Book chapters 2006-04-17
- Automatic Placement of Authorization Hooks in the Linux Security Modules Framework
- The authors present a technique for automatic placement of authorization hooks, and apply it to the Linux Security Modules LSM framework. LSM is a generic framework which allows diverse authorization policies to be enforced by the Linux kernel. It consists of a kernel module which encapsulates an authorization policy, and...
- Tags: Authorization, Linux Kernel, Kernel, Linux Security Modules, Authorization Policy, Kernel Module, Linux, Open Source, UNIX, Operating Systems, Software
- White papers 2005-09-09
- Authorization models for .NET applications can make systems easier to manage
- Tim LandgraveProper design of authorization mechanisms can make your systems easier to deploy and manage. By taking advantage of authorization based on enterprise authentication mechanisms such as Active Directory, your applications can integrate seamlessly with your company’s existing security policies. Authorization can be used in each tier for an n-tier...
- Tags: Microsoft .NET, e Advantage, authorization, code access security authorization, code access security
- Technical articles 2003-05-21
- Administration of an RBAC System
- Recently RBAC (role-based access controls) was found to be among the most attractive solutions for providing access control in web-based e-commerce and e-government applications. Usually, such systems involve a huge number of heterogeneous users working with the systems under different rights and obligations. In an RBAC authorization and access control...
- Tags: Role-based Access Control, Administration, Access Control, E-government, Government
- White papers 2003-12-08
- Overview of Federal Government Authentication Efforts White Paper
- Currently, there are two major government-wide authentication efforts under way the E-Authentication Initiative EAI and the Personal Identity Verification PIV System. This paper highlights essential aspects of each effort, and compares and contrasts the two. Authentication is the process of establishing confidence in user identities. This is accomplished by establishing...
- Tags: Authorization, Government, Authentication, Security
- White papers 2005-06-06
- Using Samba: Accounts, Authentication, and Authorization
- Authentication is proving that the user is who he or she says they are. One does this every day, during such activities as printing a document or saving a file to a network drive. When things are working correctly, the steps taken by a server to authenticate a request are...
- Tags: Authorization, Network, Samba, O'Reilly Media Inc., Authentication
- Book chapters 2007-01-01
- BEFW11S4 (v4) Authorization
- i''m currently running a Linksys BEFW11S4 (Version4) router to link 5 PCs to the internet. decently I've been encountering a box asking my for a under name and password. It doesn't matter what I enter, it won't let me in. When I cancel out, I get a red "401 Authorization...
- Tags: dbrokof@...
- Discussion threads 2007-04-09
- Greenpass: Decentralized, PKI-Based Authorization for Wireless LANs
- In Dartmouth's "Greenpass" project, an experimental system is building to explore two levels of authorization issues in the emerging information infrastructure. On a practical level, the authors want to enable only authorized users to access an internal wireless network - while also permitting appropriate users to delegate internal access to...
- Tags: Authorization, LAN, WLAN, Dartmouth College, PKI, Authentication/Encryption, Digital Security, Network Security, Security, Wireless, Networking
- White papers 2005-10-28
- MSDN Webcast: Authentication and Authorization With ASP.NET 2.0 (Level 200)
- This webcast explores how Microsoft ASP.NET 2.0 features a flexible authentication and authorization architecture that supports Windows, certificates, and custom credential types.
- Tags: Microsoft Developer Network, Authorization, Webcast, Microsoft ASP.NET, Microsoft Corp., Microsoft ASP.NET 2.0, Authentication, .Net, Middleware, Digital Media, Software Development, Software/Web Development, Enterprise Software, Software, Consumer Electronics, Personal Technology
- Webcasts
- TechNet Support WebCast: Microsoft Windows SharePoint Services Security Primer
- This webcast focuses on the fundamentals of WSS security concepts by providing high-level logical views of WSS security and application architectures including Internet Information Services IIS architecture, worker process isolation mode, and processing HTTP requests. The webcast also discusses role-based security, the WSS authorization model, and Microsoft SQL Server connectivity....
- Tags: Microsoft Windows Sharepoint Services, Webcast, Microsoft Windows, Microsoft Corp., Microsoft TechNet, Digital Media, Security, Consumer Electronics, Personal Technology
- Webcasts 2005-07-20
- << Previous
- page 1 of 1
- Next >>