Secure User Sessions In ASP .net Using VB?
Oct 5, 2009procedure to create multiple secure user sessions in ASP.net.
View 1 Repliesprocedure to create multiple secure user sessions in ASP.net.
View 1 RepliesI am trying to create a system for users to login and have assigned roles ie user, manager, admin etc. but i cant seem to find a way to do it my code for login is below
Private Sub OK_Click(ByVal sender As System.Object, ByVal e As System.EventArgs) Handles Login_btn_OK.Click
Dim conn As New SqlClient.SqlConnection
Dim command As New SqlClient.SqlCommand
[code]....
Just after a way to recall user credentials to display appropriate content depending on their role?
A group of senior Computer Science students here has a problem with their thesis which is about securing a folder/file, that is, the only allowed person to access (read,modify,delete) the file is the one who is currently log-in to (I supposed) the program they will make.
View 2 RepliesI think it should be something related with "Local Security Policy".
View 1 RepliesI am trying to upload images using generic handler as shown below and I have a normal aspx page where I am showing all the uploaded images after uploading.Everything is working fine.
CODE:
Now I want to add a session variable by generating a random string and add the uploaded images to the newly created random string.
1.I have seen this Question on SO to use System.Web.SessionState.IRequiresSessionState for sessions and how do I create a folder with that and add my images to that folder after doing that how do I access this session variable in my normal aspx page.
2.(Or) the better way is create session variable in aspx page and pass that to handler?If so how can I do that?
3 .I am trying to find the control from my handler.Is that possible?If anyone knows how to get this then also my problem will get resolved so that I am trying to create a session from m aspx page.
As a followup to the previous question I have asked "ASP.Net Architecture Specific to Shared/Static functions" I am still struggling to understand the implications of using shared methods in ASP.NET.
So for example let us take the following code.[code...]
Even after numerous attempts, im unable to set different sessions for multiple webbrowsers (in tabs ) hosted on the same windows form.
So far, i have tried the following methods (and failed)Created a new form for each session (The WebBrowsers share the session)Used HttpWebRequest,HttpWebResponse to get and set separate sessions for each webbrowser ( Couldn't implement this properly)Could someone please point me out to a proper channel on how to implement this ?
When I start working on a Project I like to change the size of the Properties Window. (I like to make it taller than it is by default). But each time I start a new Project the Properties Window goes back to the original shape/location. Is there a way that I can customize the layout of that window so that the shape is retained across sessions?
View 6 RepliesI've thought long and hard on how to do this. Since I'm posting here, you see I haven't figured it out. I've found out how to login to a website with GetElementById, but I have another problem. I need to login with multiple web browsers. But when I login on the second, I can't because the session/cookie is already there. I thought usnig a proxy would work, but that just applies to both web browsers. Using the example below, would it be possible to apply this to only one web browser? Or make separate sessions for each web browser control?
[Code]...
just wanted to ask if it is possible to have different applications sharing the same session (i.e. database session)... i'm planning on creating a web-based application and a form-based application using asp.net for web and vb.net for forms but i need to have them share sessions since some global variables will be session based and also authentication to one application should also authenticate on the other.
View 2 RepliesI was wondering if someone could tell me if this is "bad practice" or is a perfectly acceptable way to pass an object to another form.I've cut out a lot of the code to summarise what im asking.
[Code]...
Dim myRetrievedObject as myObject = Module1.returnSavedObject()Is this a acceptable way of passing an object between forms or is it a completely bad idea?Ideally i would like to be able to "add" further objects to the initially created object in Form1 but then on reloading of Form1 , retrieve the new version of myObject with the newly added objects within the myObject class.My initial thinking is this creates an almost session like state for the initial object. So you can use the same object over all 3 forms or more and just simply add to it like a shopping cart type of functionality.
I have a ASP.Net VB.Net application, which I developed an deployed in about 2004. I have just upgraded it to a new server and IIS 6.0. The application requires users to login from IE it and maintains their State using sessions on the server. I would like the users to be able to have multiple browsers open, each running with unique data on their client system. Is this possible, if so, what do I need to do?
View 4 RepliesI would like to maintain a list of all of the strings entered into a ComboBox across all uses of an application on a given PC, for use as the AutoCompleteSource for that ComboBox, i.e., I enter in "Fred" in the ComboBox, commit the data, close the application, reopen the application, reopen the ComboBox, type "F", receive the suggestion "Fred".Assuming I already have in place code to create and maintain such a list in memory and add new elements to it as they are entered into the ComboBox, etc., what do you suggest as the best way to save/load this data in between sessions?Possible complicating factors: This application will be deployed via OneClick deployment, and will search for updates online every time the application starts. I would prefer that if the application updates, the list still exists after the update has completed.
View 2 RepliesI'm using a webbrowser control in my program and I navigate to a page that uses sessions. I need to delete them somehow and I tried to close IE and enter it again and it worked, the sessions were deleted. But I've done it manually, and I need to do it through my program, so is there a way to imitate the closing and reopening of my webbrowser control?
View 3 RepliesI have built and deployed an application in VB2008. If I start the program from the start menu a new session will start and there 'll be multiple sessions of the same programming running. I dont want this behaviour! I want the program to start only when no other session of the same program is running. How can I do that in VB2008?
View 9 RepliesI am using specific sessions calls in my *.aspx pages and i have 2 questions related to this:
1-Is there a difference between using this type of session declaration in your aspx age?
HttpContext.Current.Session.Item("Whatever") VS Session("Whatever")Would this give the same information for a specific user?
2-Is using Session really User Specific data? I know you can share information using cache but is there possibilities that we have 2 different users (different browsers) that would share information threw sessions. Keep in mind that i am using SQLStateServer for my sessions
Some of you may remember threads I posted a couple of weeks ago about a VB.NET application I've built where I want to have a form open that allows the user to create and send emails. So the form works absolutely awesome on my PC. Day before I went off on vacation, I installed it on my co-worker's laptop and ... it didn't work. The utility starts, but the Email form doesn't work. In the Unhandled Exception error message, AxInterop.MSMAPI Assembly Version 1.1.0.0 is listed as installed; however, when I run the application through Visual Studio2005, I'm getting the two following messages:
Type 'AxMSMAPI.AxMAPIMessages' is not defined
Type 'AxMSMAPI.AxMAPISeession' is not defined
I've gone into the References but the MAPI Reference is not available (which is probably because the assembly is loaded).
I'm using a webbrowser control in my program and I navigate to a page that uses sessions. I need to delete them somehow and I tried to close IE and enter it again and it worked, the sessions were deleted. But I've done it manually, and I need to do it through my program, so is there a way to imitate the closing and reopening of my webbrowser control?
View 10 RepliesI have just implemented an Ajax File Upload control that uses a progress bar. I am a little confused. When i use the control on pages that dont use sessions, the progress bar with no problems will show the user the actual progress of the file being uploaded from 0%,1%,2%,3%.......% to 100%. Now when i move this control onto a web page that uses a session, this session stores the user information such as screenname, email, etc... the file uploads with no problems but the problem is that the progress bar does allow the user to see the progress until the file is finised uploading and the progress bar jumps straight from 0% to 100% uploaded and doenst really show the full progress of the file whilst being uploaded.
Why is this behaviour occuring when i use sessions? where the progress of the file being uploaded isn't being shown to the user until the file uploads.
Links are broken for webcast series "Modern Software Development in Visual Basic .NET" for sessions 10-15 located at URL
[Code]...
i have some test code which i run at every load of a page in my asp.net website [Code] the "dotrace" simply add a record to a log table in the db. now the right result would be that i should have the entries in the db in order "entered","exiting","exited" but actually when i look in the db i see first 2 "entered" then 2 "exiting" etc. meaning that the multi-threading is working ok, but not the synclock. is that correct?
and how can this be fixed? the real code will be adding records to the db and might be called from several pages of different sessions, but the same code must not run twice concurrently. if i open multiple pages at once, they still clash some times. but if i'm correct, the issue is now not with the synclock as much as with the httpruntime.cache, because when using a standard property, on one page, the code works 100%. so how can i make sure that 2 threads, even from totally different sessions never run the trylock simultaneously?
I'm doing some maintenance on some software originally built by my predecessor at the company (who has since moved on to greener pastures). I'm currently rolling out a new version of the software. At this company, the installation procedure is basically to just shove the /bin/Release directory out into our automated program updater's magic directory, allowing it to automatically copy the contents of that directory over to the local /Program Files/ and let the magic happen. The magic always seems to happen, so there's no big issue, there, although it does weird me out somewhat, after many years of .msi installers...
[Code]...
What is best practice for securing DLL's for projects you are working on? Certain DLL's I am interested in developing will have data access layer (DAL) and business logic layer (BLL) functionality. There may be several apps that can eventually hit these DLL's to perform business specific functions. What is the best way to secure these DLL's so they can only be used by only creator's applications?Security for both blocking unauthorized use of the DLL's and security against possible decompilation are both desirable.
View 4 RepliesI am going to be creating a web service that will be passing confidential information across the network.
What would be the best way to secure the web service? how do I know if the application requesting the information is who it says it is, and it's not another application that is using another's user name and password?
I have one Database : ManageSell.mdb (Microsoft Access) with password is:P@ssW0rd..In database, i have table User with two column : Username and password. I create value: admin + admin..Then , i create form Login in vb.net 2005 with code below.[code]If user type three password trust , it will successfull, else note error
View 1 RepliesI have made a simple program which makes CV in english. this program is now beta version but i wanna develop it but i need some secure . I want people to not copy my program and give it without premission. I want to give that program to 10 people but i want to make secure like for CD-key but i dont know how .
View 2 RepliesI want to built an application using VB.NET so USB drive can be enabled/disabled [without OS Restart] to secure from file being copied without owner's permission! Before putting - or down vote, write your reason to do so
View 1 RepliesI have login form, and it works. but only if passwords are not MD5. I would like to ask how to improve my code, so my application can use MD5 instead of normal text password stored in my MYSQL database.
This is the code I;m using now.
Dim mMySQLConnectionString As String = E3MCEncrypter.Decrypt(My.Settings.MySetting)
Dim MyADOConnection As New MySqlConnection
MyADOConnection.ConnectionString = mMySQLConnectionString
[Code]...
I'm developing a VB.Net and SQL Server 2005 Express application.Q: How to encrypt string values in the database to secure them from the one using my software and from DBAs (people who have access to the DB Server)? Here is what I tried:First, I used a Symmetric Encryption provided by the .Net Framework. But I noticed that I could not make partial searches (LIKE keyword). So, this is not working.
Then, I used a logic similar to the ROT13 to hide text. Although this logic works fine from VB.Net, once data has been stored in the database, the logic fails to decrypt data correctly. After some tries, I thought that the reason the logic failed was the Collation of the database (I do not know much about Collation topic).So, the first way doesn't allow partial searches, and the second way is not secure and also does not work because of the Collation or maybe another reason.I want to encrypt data. I've successfully hidden the schema by giving meaningless names to tables and columns.
I need to ftp collection of files through secure ftp
1.i need to open connection then transfer all files and close connection, the connection should open only once
2.The FTP should be secure