OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Arunkumar (akumarOMNESYSINDIA.COM)
Date: Mon Mar 18 2002 - 22:48:10 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hi

    I was thinking of calling LogonUser and stuff to get a threadtoken
    to use for STATIC_CLOAKING in an attemt to impersonate
    But then it turns out there is no good way to do this than make the
    original exe a service (like Keith Browns cmduser utility)

    However Kieth Browns Security Briefs talk abt using the SSPI
    interface which will do the equiivalent for you without going to the
    service troubles and all , only you wont have the network credentials

    Now would that cause a problem if my COM+ app is on
    load balancing and tried accessing the components on
    another machine ?

    What abt database access for a database(through DSN) set to
    another machine?

     would all these have problems?

    arun

    ----------------------------------------------------------------
    Users Guide http://discuss.microsoft.com/archives/mailfaq.asp
    contains important info. Save time, search the archives at
    http://discuss.microsoft.com/archives/index.html .
    To unsubscribe, mailto:DCOM-signoff-requestDISCUSS.MICROSOFT.COM