Developing More-Secure Microsoft ASP.NET 2.0 Applications

本书提供专家级指导,帮助开发者利用 ASP.NET 2.0 构建更安全的 Web 应用程序。内容涵盖 Web 服务器设置、输入验证、身份验证与授权、敏感数据存储等方面,并介绍了如何进行安全审计与渗透测试。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >


Dominick Baier, "Developing More - Secure Microsoft ASP.NET 2.0 Applications"
Microsoft Press | ISBN 0735623317 | October 25, 2006 | CHM | 480 pages | 8.6MB

Get hands-on, expert guidance for developing more secure Web applications with ASP.NET 2.0 with this in-depth reference. The nature of the Web and its underlying communication protocols make Web applications harder to secure and, therefore, primary targets for hacking attacks and other kinds of compromises. This book guides you through the possible vulnerabilities of Web-based applications and shows you how to help mitigate them in your own applications. Start with the ingredients of security-enhanced Web applications from the ground up, beginning with Web server set-up, and learn how to harden that machine for a potentially hostile environment such as the Internet. Then move on to in-depth treatment of crucial topics such as how to use ASP.NET to perform proper input validation; choosing from the numerous options for authenticating and authorizing users; how to store application-related and user-related sensitive data in a secure fashion; how to incorporate detection; and error logging measures.

This guide covers how to integrate ASP.NET into the Microsoft Windows® security infrastructure and how to effectively use impersonation, delegation, and Active Directory® directory service. You will also learn about new Microsoft Windows Server™ 2003 features, such as constrained delegation and protocol transition. Coverage extends to one of the most underutilized features of ASP.NET—running in partial trust. The book concludes with guidance on how to conduct audits and penetration tests and how to integrate them in the development process. Written by a leading authority and trainer, this reference comes complete with best practices based on real-world experience and extensive code samples in C#.

 
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值