WebApp Sec mailing list archives

Re: Securing through the IIS web server domain logon


From: Thomas Chiverton <thomas.chiverton () bluefinger com>
Date: Wed, 18 Aug 2004 16:35:43 +0100

On Tuesday 17 Aug 2004 22:21 pm, you said:
iusr access). This, as I understand it, would require the web server to
prompt for domain authentication. 

IE will silently perform this for you, and...

way to get the user name from the IIS domain logon? Is it accessible via

... IIS will fill in (iirc) the remote_user CGI enviroment variable.

-- 
Tom Chiverton 
Advanced ColdFusion Programmer

Tel: +44(0)1749 834997
email: tom.chiverton () bluefinger com
BlueFinger Limited
Underwood Business Park
Wookey Hole Road, WELLS. BA5 1AF
Tel: +44 (0)1749 834900
Fax: +44 (0)1749 834901
web: www.bluefinger.com
Company Reg No: 4209395 Registered Office: 2 Temple Back East, Temple
Quay, BRISTOL. BS1 6EG.
*** This E-mail contains confidential information for the addressee
only. If you are not the intended recipient, please notify us
immediately. You should not use, disclose, distribute or copy this
communication if received in error. No binding contract will result from
this e-mail until such time as a written document is signed on behalf of
the company. BlueFinger Limited cannot accept responsibility for the
completeness or accuracy of this message as it has been transmitted over
public networks.***


Current thread: