Tech Quarto
Search Advanced SearchView Cart   Checkout   
 Location:  Home » Computer Science » Developing More-Secure Microsoft ASP.NET 2.0 Applications (Pro Developer)  
Categories
Computer Science
The Internet
For Dummies
Web Browsers
Windows
Digital Culture
Multimedia
Mobile & Wireless
Subcategories
Firewalls
Forensics
Linux Security
Unix Security
Windows Security
Wireless Security
New Releases
iPhone Forensics: Recovering Evidence, Personal Data, and Corporate Assets
Computer Forensics For Dummies (For Dummies (Computer/Tech))
Hacking Exposed Linux (Hacking Exposed)
Hacking Exposed Linux
Fedora 9 Linux Administration and Security
Cisco Secure Firewall Services Module (FWSM) (Networking Technology: Security)
Security in Wireless Mesh Networks (Wireless Networks and Mobile Communications)
Windows Lockdown!: Your XP and Vista Guide Against Hacks, Attacks, and Other Internet Mayhem (Absolute Beginner's Guide)
Cisco Secure Firewall Services Module (FWSM)
Nokia Firewall, VPN, and IPSO Configuration Guide
Visit Laptop Nirvana for the best Cheap Discount Laptops
Bestsellers
Linux Pocket Guide
Mastering Windows Network Forensics and Investigation (Mastering)
EnCase Computer Forensics, includes DVD: The Official EnCE: EnCase Certified Examiner Study Guide
File System Forensic Analysis
Rootkits: Subverting the Windows Kernel (Addison-Wesley Software Security Series)
iPhone Forensics: Recovering Evidence, Personal Data, and Corporate Assets
Hacking Wireless Networks For Dummies (For Dummies (Computer/Tech))
Windows Vista(TM) Resource Kit
Windows Forensic Analysis Including DVD Toolkit
Cisco ASA: All-in-One Firewall, IPS, and VPN Adaptive Security Appliance (Networking Technology)

Developing More-Secure Microsoft ASP.NET 2.0 Applications (Pro Developer)

Developing More-Secure Microsoft ASP.NET 2.0 Applications (Pro Developer)

zoom enlarge 
Author: Dominick Baier
Publisher: Microsoft Press
Category: Book

List Price: $39.99
Buy New: $3.93
You Save: $36.06 (90%)



New (35) Used (8) from $3.93

Avg. Customer Rating: 5.0 out of 5 stars 3 reviews
Sales Rank: 141067

Media: Paperback
Number Of Items: 1
Pages: 480
Shipping Weight (lbs): 2.2
Dimensions (in): 8.7 x 7.4 x 1.3

ISBN: 0735623317
Dewey Decimal Number: 005.276
EAN: 9780735623316
ASIN: 0735623317

Publication Date: October 25, 2006
Availability: Usually ships in 1-2 business days

Editorial Reviews:

Product Description
Get hands-on, expert guidance for developing more secure Web applications with ASP.NET 2.0 with this in-depth reference. The nature of the Web and its underlying communication protocols make Web applications harder to secure and, therefore, primary targets for hacking attacks and other kinds of compromises. This book guides you through the possible vulnerabilities of Web-based applications and shows you how to help mitigate them in your own applications. Start with the ingredients of security-enhanced Web applications from the ground up, beginning with Web server set-up, and learn how to harden that machine for a potentially hostile environment such as the Internet. Then move on to in-depth treatment of crucial topics such as how to use ASP.NET to perform proper input validation; choosing from the numerous options for authenticating and authorizing users; how to store application-related and user-related sensitive data in a secure fashion; how to incorporate detection; and error logging measures. This guide covers how to integrate ASP.NET into the Microsoft Windows security infrastructure and how to effectively use impersonation, delegation, and Active Directory directory service. You will also learn about new Microsoft Windows Server 2003 features, such as constrained delegation and protocol transition. Coverage extends to one of the most underutilized features of ASP.NETrunning in partial trust. The book concludes with guidance on how to conduct audits and penetration tests and how to integrate them in the development process. Written by a leading authority and trainer, this reference comes complete with best practices based on real-world experience and extensive code samples in C#.


Customer Reviews:

5 out of 5 stars Excellent book for learning the security related aspects of ASP.NET 2.0   March 18, 2008
 1 out of 1 found this review helpful

I am an ASP.NET newbie and found this book very helpful in understanding authentication, authorization, role based security, input validation etc. I am a desktop developer and found the web development model difficult to understand initially but this book cleared up my mind in the security related parts. The book is written in a very clear and concise manner and uses diagrams to explain concepts which which I found very helpful. There are practical advices sprinkled all over the book along with the "why" of it.
In short, this is a very well written book which improved my asp.net knowledge and skills considerably. Highly recommended.



5 out of 5 stars Highly Recommended   September 6, 2007
 3 out of 4 found this review helpful

I really wish I could give this book 6 stars, it has been an indespensable resource for learning techniques to develop more secure applications. With so many dangers lurking out there it is increasingly important to not only be able to develop secure applications but to understand the .net security mechanisms as well. This book will leave no questions unanswered, if for no other reason purchase this book for chapter 8 on partial trust, I have not come across any resource that covered this topic so thoroughly. It's treatment of sandboxing and code partitioning alone make the book worth every penny paid. If your looking to continually improve the quality of your code and sites don't leave this book off your list.


5 out of 5 stars Complete Guide to ASP.NET 2.0 Security   October 4, 2006
 4 out of 16 found this review helpful

This is a book by a MS Developer Security MVP for any and all developers writing ASP.NET 2.0 applications. Not only does it cover all the usual suspects and provides practical prescriptive guidance on how to deal with them with examples; it also deals with the tough "hot topics" like partial trust. The book is both complete in breadth and depth and really does provide a single good reference book on ASP.NET security.

I can not recomend it with more guster.

Confession I helped write the tools chapter which is why I know (and yes I am a fellow MS Developer Security MVP)!


Powered by Associate-O-Matic