Category Archives: Uncategorized

FXCop Rules for WCF Security

That may be worth a look: http://weblogs.asp.net/hernandl/archive/2006/10/03/FxCop-rules-for-securing-WCF-services.aspx  

Posted in Uncategorized | Leave a comment

Book in Stores

I finally made it ;) http://www.microsoft.com/mspress/books/9989.asp Feel free to write a review on Amazon :))  

Posted in Uncategorized | Leave a comment

DevelopMentor Connected Systems Roadshow

Rich, Niels and me will do a 2-day event at the Microsoft Campus Thames Valley Park in Reading 29th/30th November. Rich and Niels will build a system based on WCF, Service Broker and Biztalk on that day and have David … Continue reading

Posted in Uncategorized | Leave a comment

BASTA Nachtrag

Hallo, die BASTA ist vorbei und es hat sehr viel Spass gemacht! Anbei findet Ihr die Slides zu meinen drei Vorträgen – bei Rückfragen einfach eine Email/Comment an mich. Bis zum nächsten Mal! IntegrationInWindowsSecurityMitNET.pdf (983.13 KB) PluginArchitektur.pdf (296.85 KB) SmartClientDeploymentSecurity.pdf … Continue reading

Posted in Uncategorized | Leave a comment

Bye, Bye Ireland – See you soon…

Ireland was a blast! Though I was not feeling that good, it gave me a lot of energy talking about a topic I love to so many nice people. Thanks to everyone who attended my talks!!! I am very impressed … Continue reading

Posted in Uncategorized | Leave a comment

Back to Ireland

Next week I will be talking about ASP.NET security in Belfast, Dublin, Cork and Galway (Ireland). I really enjoyed the last time I’ve been there and I am looking forward to the next week. If you are around, come by … Continue reading

Posted in Uncategorized | Leave a comment

New AzMan Whitepaper

Very detailed read: http://msdn.microsoft.com/library/default.asp?url=/library/en-us/dnnetserv/html/AzManApps.asp On a related note, I can recommend Keith’s roadmap article for the big picture: http://msdn.microsoft.com/security/identityaccess/default.aspx?pull=/library/en-us/dnnetserv/html/DotNetIdM.asp  

Posted in Uncategorized | Leave a comment

ExpressionBuilder for SSL Redirects

In this post I explained why you have to use absolute URLs when you switch to SSL. I showed the GetAbsoluteUrl method which allows to pass in a relative URL and a protocol and returns an absolute URL. By using … Continue reading

Posted in Uncategorized | Leave a comment

Caching and SSL Pages

Browsers cache pages. We all know that. But most browsers also cache SSL secured pages. Such pages potentially contain sensitive data and you don’t want that anybody who has file access to your computer (administrator, remote attacker, virus or trojan) … Continue reading

Posted in Uncategorized | Leave a comment

Partially SSL Secured Web Apps with ASP.NET

Recently I have been revisiting several ways to implement web apps that are partially secured by SSL. That means that only parts of the application use SSL transport security whereas other parts transmit data over clear text. This can be a requirement … Continue reading

Posted in Uncategorized | Leave a comment