Simple Public and Private Security Authentication Authorisation

Simple question:
I have an application with public access (No Authentication)
I want to Authenticate just one administration page with a logon screen. What do I need to do?
Do I use Page Authentication or Page Authorization on the restricted page?
Please spell out the steps in clear detail.
Also what is the difference between Application Authentication and Application level Authorization. They seem identical in function to me.
regards
Paul P

Paul - Building on what Jos said, you might have an application that used SSO for authentication and for which you wanted to block access to certain classes of users during certain time periods. For this, an application-level authorization scheme could be useful, checking the authenticated user's organizational role/job code and the other criteria dictating the application availability.
For your case, I recommend that you make the application use an authentication scheme that is suitable for controlling access to the admin page(s) and then set the Security (Authentication) attribute of every other page to 'Page Is Public'.
Scott

Similar Messages

  • I need to create public and private keys for security certificate and I can't find the certificate. Where is it?

    I purchased a security certificate, and the site tells me that it was successfully installed. I need to export the certificate so that I can create the public and private keys, but I cannot find the certificate to do so.

    Thank you.

  • SQL Installation for SharePoint 2013 - Windows Firewall - Profile - domain, Public and Private - Which ones to choose?

    Hi there,
    I am setting up SQL Server (to be used in our SharePoint 2013 farm).
    The Firewall exception for SQL server gives me three choices in Profile section as 
    Domain, Public and Private profiles 
    Which ones should I choose please? 
    Thank you so much.

    Hi,
    According to your description, my understanding is that you want to set the firewall exception for SQL server.
    Domain profile—This profile is active when the server is connected to an Active Directory (AD) domain via an internal network. This is the profile that's typically active, because most servers are members of an AD domain.
    Private profile—This profile is active when the server is a member of a workgroup. Microsoft recommends more restrictive firewall settings for this profile than for the domain profile.
    Public profile—This profile is active when the server is connected to an AD domain via a public network. Microsoft recommends the most restrictive settings for this profile.
    More information, please refer to the link:
    http://windowsitpro.com/windows/windows-server-2008-r2-firewall-security
    Please 'propose as answer'
    if it helped you, also 'vote helpful' if you like this reply.
    Prabhu

  • Mixing public and private networks on the same switch

    Hello Everyone,
    I know this may get some security engineers in frenzy but wanted to know if there is a safe way to mix public and private networks on the same switch. 
    We have many remote offices that we want to add public wifi and a couple of other services that would be completely outside of our internal network.  Each office has a 3750 with plenty of open ports.  How can I safely create a vlan for public access on these switches which currently have our internal network on.  I have read that people are doing this to save on the cost of purchasing a dedicated switch.  Some people are using access lists and one person mentioned creating a private vlan for the public network.  I looked up private vlan and it seemed bit confusing.
    Is this recommended?  If not what would be the safest way to do this?
    Thanks Everyone

    Disclaimer
    The  Author of this posting offers the information contained within this  posting without consideration and with the reader's understanding that  there's no implied or expressed suitability or fitness for any purpose.  Information provided is for informational purposes only and should not  be construed as rendering professional advice of any kind. Usage of this  posting's information is solely at reader's own risk.
    Liability Disclaimer
    In  no event shall Author be liable for any damages whatsoever (including,  without limitation, damages for loss of use, data or profit) arising out  of the use or inability to use the posting's information even if Author  has been advised of the possibility of such damage.
    Posting
    How "safe" is relative.  If your running just one VLAN on a switch, that's would be the safest (basically the same as mixing traffic on the same wire - separation is done else where).
    If you multiple VLANs on a switch, then you need to determine how likely someone might figure out a way to breach the VLAN barriers.  (This isn't so easy on newer switches.)  If the VLAN isolation is breeched, then you need to examine what does that imply from a security perspective (for example can someone now inject or receive other VLAN traffic).
    For most purposes, I don't see mixing public and private VLANs, alone, on the same switch as much of a risk.  More of a concern is what can be reached on either VLAN and how well it's protected.

  • Viewing document characteristics in Easy DMS public and private folders

    We have classified our documents in SAP Document Management System.  We are viewing the DIRs in Easy DMS.  In the public and private folders, the classification characteristics columns can be added to the screen report, however the values for the characteristics do not appear in the columns.  If we use the search function and view those same documents in the search screen, the characteristic values do appear.  How can we get these values to appear in the public and private folder views?  There does not seem to be an OSS notes which address this discrepancy.  In advance, any assistance is most appreciated.

    Hi Barry - As Daniel explained, sometimes system behaves if the Default box is not checked but I want you to check the EasyDMS version/patch you are using. Below is the screenshot of latest version/patch.
    If you have old verison/patch, please implement the latest version/patch and check.
    /Tilak

  • BizTalkServer 2010 SFTP Adapter from CodePlex - Configuring send and receive locations with SSH public and private keys

    Hi there,
    I am looking for step by step instrcutions on how to configure SFTP Codeplex adapter for both receive and send ports.
    Out business partner with whom we push/poll the files from wants us to use SSH encryption/decryption etc.
    Just wondering if the following functionality is supported in Codeplex SFTP adatper without having to write any code.
    Appreciate if there is manaul to do this for SFTP. BTW I do have all the our public and private keys and business partners Public key for configuring.
    For Send port: 1. we would need to encrypt the file with our business partners public key
                          2. sign the file with our private key.
                          3. Send the file through to SSH client which eventually transfers to Remote server.
    Receive port:   1. Connect to SSH Server with SSH-2 key and receive the file
                          2. Verify the file's digital signature agaisnt the Business partners PGP public key
                          3. Decrypt the file using our PGP Public key
    Thanks in advance

    Yes it is supported.
    You can find its documentation in this link 
    You can find section X.509 Certificate Identity Keys
    You can set public and private key in property SSH Identity thumbprint  of send and receive port
    I prefer to test it using client tool like
    FileZilla or WinSCP then test it using sftp adapter
    When you see answers and helpful posts, please click Vote As Helpful, Propose As Answer, and/or Mark As Answer

  • Different physical networks for public and private IPs ?

    Hi,
    My ISP router, public sides and private sides of my servers are all plugged on the same switch. I was wondering if the troubles I experience with my home directories server, hanging all services very often, can come from that config. Does it make sense to usse different switches for public and private IPs ?

    It's a good practice to put external and internal traffic on different switches or, at least, on different VLANs on the switch to segregate the traffic.
    However, it's unlikely to cause the problems you describe unless there's something wrong with the network (e.g. it's overloaded or experiencing some kind of broadcast storm.
    If you have a separate switch it's worth trying. Without knowing the make and model of your switch it's impossible to tell whether VLANs are a viable option for you.

  • How to find public and private url for an EBS instance?

    I am asked to find public and private url for an instance. I did in the following way. Can u please correct me if following is wrong.
    1) Go to .xml file.
    2) found s_external_url and corresponding entry is public URL.
    3) found s_login_page and corresponding entry is private URL.
    Please correct me any thing is wrong.
    Regards
    DBA.

    please give a hand. online waiting....
    thanks....

  • Entourage, iCal, Exchange Server, public and private calendar items, PDA

    Hello all.
    I'm a recent escapee from Windows to MacOS, and I need your help to complete my switchover. I've got a complex calendaring situation I'd like to solve.
    I have a new Mac at work and one at home. At work I need to connect to Microsoft Exchange Server public calendar so I can set up appointments with others and they can see my calendar. But, I don't want private appointments to show up to others on the public exchange server calendar. In my calendaring app I do want to see one unified calendar on my machine at work and at home with both public and private appointments.
    Also I want to get a PDA that will deal with both public and private appointments, and synchronize appropriately to both work and home calendaring apps. This should also show one unified calendar with all appointments.
    Is there a right combo of software and PDA to accomplish this? My investigation so far points to Entourage at work (to work properly with Exchange Server), iCal or Entourage at home, and a PalmOS-based PDA. But I am unclear how the public-private stuff would work.
    The final part of this once I figure out the right software and PDA combo, is to import all my calendar stuff, emails and contacts from Microsoft Outlook on my Windows box to my Mac at home. I think Outlook2Mac does this but I'm not sure which calendaring apps it works with.
    Please let me know your thoughts. I'm an experienced Windows user brand new to MacOS so please keep that if you answer.
    Thanks
    -windows_escapee
    dual-core G5 Mac OS X (10.4)
    dual-core G5   Mac OS X (10.4)  

    Hello all.
    I'm a recent escapee from Windows to MacOS, and I need your help to complete my switchover. I've got a complex calendaring situation I'd like to solve.
    I have a new Mac at work and one at home. At work I need to connect to Microsoft Exchange Server public calendar so I can set up appointments with others and they can see my calendar. But, I don't want private appointments to show up to others on the public exchange server calendar. In my calendaring app I do want to see one unified calendar on my machine at work and at home with both public and private appointments.
    Also I want to get a PDA that will deal with both public and private appointments, and synchronize appropriately to both work and home calendaring apps. This should also show one unified calendar with all appointments.
    Is there a right combo of software and PDA to accomplish this? My investigation so far points to Entourage at work (to work properly with Exchange Server), iCal or Entourage at home, and a PalmOS-based PDA. But I am unclear how the public-private stuff would work.
    The final part of this once I figure out the right software and PDA combo, is to import all my calendar stuff, emails and contacts from Microsoft Outlook on my Windows box to my Mac at home. I think Outlook2Mac does this but I'm not sure which calendaring apps it works with.
    Please let me know your thoughts. I'm an experienced Windows user brand new to MacOS so please keep that if you answer.
    Thanks
    -windows_escapee
    dual-core G5 Mac OS X (10.4)
    dual-core G5   Mac OS X (10.4)  

  • Simple Plug and Play Secure Wireless?

    I am trying to setup a simple way to have wireless users on our network be able to connect to our access points, authenticate to our ACS Server (Cisco Hardware ACS applicance) but without having to go through special configurations on the client. This needs to be secure too and not easily broken. We are using Cisco 1200 and 1300 802.11G AP's and the clients vary from having integrated wireless NIC's to running Cisco Wireless cards, to running other branded cards. We are currently using PEAP, but it is time consuming to configure and sometimes confusing to the users. I was thinking of switching to open authentication on a isolated subnet and using a Cisco BBSM (Building Broadband Service Manager) to securely connect to our network, but Cisco just made this device end of sale, end of life, so I'm hesitant to go this route. WPA/WPA2 or some of the other PEAP/EAP/LEAP are configuration intensive too. Any suggestions? Does cisco have anything to replace the BBSM? What about PPOE? Would this be an alternative? Can I use a router or firewall to terminate these connections or would I need a specialized server or other device? I really need a simple way to securly connect end users to our wireless network without any undue configuration on their end.

    Probably the easiest would be to keep the wireless communications open, and use a VPN concentrator running to an SSL VPN client on the laptops/pcs.
    All they'd have to do is aim their browser that the VPN gateway, and allow the SSL client to be downstreamed to their computer.
    Beyond that, use your BBSM proxy or provide user auth at the VPN concentrator.
    Leave the SSID in broadcast mode ("guest").
    With this system, most clients can find the wireless system (SSID broadcast), the encryption via the SSL VPN is very strong, and there'd be no real configuration for the clients. Just aim the browesr at the VPN gateway/concentrator and enter the username and password.
    Also, make sure you enable "Public Secure Packet Forwarding" (PSPF) to prevent one client from attacking other clients on te wireless LAN.
    Users that use the system on a regular basis could get / use certificates for authentication. If they're on the system a lot, then the minor grief of setup would be worth it.
    The SSL client uses Java, I believe, so it should be fairly universal (i.e., not platform specific). I haven't tried te SSL client n any system other than MS Windows so I can't really comment on *nix or Mac.
    The SSL gate ( 3000 series) that we use for our Lab access seems to work pretty well.
    Good Luck
    Scott

  • How can I create public AND private access with a wireless VPN router?

    I am thinking about getting one of the new pre-n wireless routers that has a builtin VPN.  I will need to have a private net for my office and a public net for my customers.  On the private side- my employees will need to access all network resources and servers etc.  On the public side, my customers just need to get to the Internet and maybe print on that side too.
    Both sides will be DHCP.
    Can I set this up with 1 device ro do I need 2?  How can I do this?  Any help is greatlu appreciated.
    Thanks all.
    Message Edited by Gman on 10-14-200607:08 PM

    The only safe way to do this is to creat user groups On your server and give specific assess to the users who log into the network.
    Using a single router , bifurcating a public from a private network is not possible.You will not be able to use the VPN since the users hav e to be connected to the VPN to log into your network.

  • BEST PRACTICES: How to deploy apps with public and private content & data?

    Can anyone recommend a guide, blog post, etc. on best practices for:
    - designing & deploying apps that have publicly-accessible (http + https) content, and
    - content and data for which users must be authenticated and authorized?
    NOTE: In our environment users are authenticated via OID. We're using Apex 4.

    Hi,
    Have a look at this Sample App for getting Auth Token from Instagram in windows phone app. 
    Also read the api documentation for more details from
    here.
    Pradeep AJ

  • Sonicwall TZ215W WIFI public and private

    Yes, totally possible with sonicwall guest services. Also, I would advise changing the WEP key to at least WPA2 PSK if not RADIUS/LDAP authentication.
    Anywho, I believe what you are looking for is detailed here https://support.software.dell.com/kb/sw4955
    Let me know if that isn't what you are looking for...

    Question for you networking guru's.  We have some of these devices on cable / fiber circuits with a VPN back to our data center and they broadcast our corporate WIFI for laptop users with a WEP password and such, all good, still with me?
    I would like to know if the device is also capable of broadcasting out some public Starbucks like WIFI we can give to a visitor and his Internet traffic will NOT go back to our datacenter as our Corp traffic does thru the Barracuda to track our employees web usage against policies we have setup (no porn, guns, etc, etc).  The public people will get a different DHCP scope so travel straight out onto the net so their traffic isn't mixed with ours in anyway, shape or form.  
    Lemme know your thoughts on this. 
    This topic first appeared in the Spiceworks Community

  • How to figure out which developer public and private keys to delete

    Hello everyone,
    In my Keychain Access utility, I have two iOS Developer public keys and two iOS Developer private keys. That was the result of a problem with setting up things for iOS development - I had to try it a second time in the Member Center part of the Apple developer website.
    How do I assess whether a key is actually being used for anything?
    I notice that the second private key has a disclosure triangle which reveals an iPhone Developer certificate underneath. The first private key has nothing like that.
    The two public keys look identical.
    Is it even necessary for me to do anything? I want to delete extra unused keys if they will cause a problem.
    Thanks for any guidance.
    Erik

    AliD wrote:
    System view is user_dependencies.no INDEXES
    SQL> select type, count(*) from user_dependencies group by type;
    TYPE               COUNT(*)
    RULE                   3
    JAVA DATA           3131
    PROCEDURE            551
    OPERATOR             30
    PACKAGE BODY           8175
    PACKAGE            1193
    RULE SET             13
    TYPE BODY            567
    TRIGGER              43
    UNDEFINED             66
    JAVA CLASS          21630
    TYPE               COUNT(*)
    VIEW               13636
    FUNCTION            405
    TABLE                 284
    EVALUATION CONTXT        22
    SYNONYM               8
    TYPE                2267
    17 rows selected.
    SQL> show user
    USER is "SYS"
    SQL>

  • WRT110 Public and private network

    I originally set up my router on an XP desktop configuring it as a public network.  Later I decided to set up a home network with a laptop using Vista.  The laptop setup advised me that the setup should be a private network in order to work.  The internet works fine, but the computers cannot find each other even though I can see them on the laptop network.  Do I need to change the router setup to a private network on the XP desktop?  If so, how do I do that?  Or is something else going on here?

    As you told that you are able to see your computer on your Laptop, but you are not able to access them. Have you enable File Sharing on other computer, Is there any Firewall or Antivirus on your Computer Disable it and try accessing your computer on the Network.

Maybe you are looking for

  • How can I download itunes from my windows vista to my ipod original?

    How can I download itunes from my windows vista to my ipod classic?

  • Ipod classic will not sync, help me!

    Running OSX 10.6.8 Macbook 2,1 Itunes 10.6.3 160gb Ipod classic not sure which generation The ipod appears empty in Itunes, I sync my entire library of music and all podcasts, it appears to sync normally and after the sync is complete, i eject the ip

  • Can't publish to .mac OR my ftp site... can someone help?

    Hi all... I tried my best to glean answers from existing posts, but alas could not, so I am posting my blurb in hopes that someone can just point me in the right direction. Problem: Since upgrading to iWeb '09, I can't publish to either my .mac space

  • Loss of Lightroom 4 catalog

    I have lost my Lightroom 4 catalog. This was caused by a loose connection to my external drive where I keep my recent photos. The loose connection caused Lightroom to crash with a message 'fatal error'. My Lightroom 4 catalog backup is kept on my mai

  • Running midlets on a cell phone

    Hi all How do I run my MIDlet on my cell phone? The app works fine on the emulator. I sent the .jar file of my application to my cellphone via IR but my phone keeps displaying it as an invalid app and it doesn't run. Am I doing something wrong?