OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Kalyan Varma (kalyan_at_yahoo-inc.com)
Date: Tue Feb 04 2003 - 16:58:45 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    you could issue a cookie, and then write an ISAPI filter to validate each
    request as it comes in.

    - kalyan

    On Tue, 4 Feb 2003, Chris Neil wrote:

    > I am new to this mailing list and so hope this conforms to the guidelines as
    > I read them.
    >
    > How do people address the issue of non-authenticated users requesting html
    > pages directly from a site without logging in?
    >
    > FYI. This is an IIS server. Our asp pages check the user is logged in, but
    > with html pages we cannot.
    > My only idea so far is to convert all our html pages to asp. Is there
    > anything less drastic?
    >
    >
    > Chris Neil
    > Security Officer
    > Chris.Neilabs-ltd.com
    > -------------------------------------------
    > ABS
    > Tel: +44 (0) 1993 771221
    > Fax: +44 (0) 1993 775081
    > -------------------------------------------
    >
    >
    >