Maarten Balliauw 12/31/2007

ASP.NET MVC framework - Security

Read Original

This technical article discusses securing an ASP.NET MVC application, focusing on the limitations of using Web.config for authorization in a dynamic routing environment. It demonstrates using Code Access Security (CAS) attributes like PrincipalPermission to enforce role-based access (e.g., 'Administrator') directly on controllers and methods, and covers handling security exceptions via Global.asax or custom attributes.

ASP.NET MVC framework - Security

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser

Top of the Week

2
Introducing RSC Explorer
Dan Abramov 1 votes
4
Fragments Dec 11
Martin Fowler 1 votes
5
Adding Type Hints to my Blog
Daniel Feldroy 1 votes
6
Refactoring English: Month 12
Michael Lynch 1 votes
8
10
You Gotta Push If You Wanna Pull
Gunnar Morling 1 votes