Types of authentications in ASP.NET ?
Answer Posted / ranjith nellikadan
1.---- With Windows-based authentication, the ASP.NET Web
application relies on the Windows operating system to
authenticate the user. ASP.NET uses Windows-based
authentication in conjunction with IIS authentication.
With Windows-based authentication, the user requests a
secure Web page from the Web application, and the request
then goes through IIS. If the user’s credentials do not
match those of an authorized user, IIS rejects the request.
The user then has to enter his or her name and password
into the logon form. The credentials are again verified by
IIS. If correct, IIS directs the original request to the
Web application. The secure Web page is then returned to
the user
2.------ Forms-based authentication refers to a system
where non-authenticated requests are redirected to a
Hypertext Markup Language (HTML) form by using Hypertext
Transfer Protocol (HTTP) client-side redirection. The user
provides credentials and submits the form. If the
application validates the credentials on the form, the
system issues an authentication cookie to the user.
Subsequent requests from the user are issued with the
authentication cookie in the request headers, and then the
user is authenticated based on those request headers.
3.---- Microsoft Passport authentication is a centralized
authentication service that offers a single logon option
and core profile services for member sites. Users who sign
up to use Passport are authenticated for access to Web
sites through a single Passport account. Microsoft Passport
is an XML Web service, and it is an integral part of
the .NET Framework
| Is This Answer Correct ? | 26 Yes | 2 No |
Post New Answer View All Answers
What is state management in .net?
Explain significance of routing? : asp.net mvc
What is the maximum number of classes that can be contained in one dll file?
Is asp.net a programming language?
What are ASP.NET Web Forms? How is this technology different than what is available though ASP?
What is the sequence in which ASP.NET events are processed?
What are client activated objects?
Dataset is the disconnected environment. suppose if you are binding records to gridview (disconnected environment) and you are making changes to the the grid but before updating the database if any other user modify the data, how will you avoid such problem?
Securitywise What are the Enhancements in 2.0?
Can we have a web application running without web.config file?
Give an example of cookie abuse.
what are the security certificates used in webservices?
How does a content page different from a master page?
What is the difference between a candidate key and primary key?
How you will handle session when deploying application in more than a server?