Code Access Security and the .NET Framework

The security mechanisms discussed so far in this chapter all validate users by gathering and checking user credentials against trusted credential authorities. Just as there are users who might damage or compromise data, either intentionally or by accident, there are malicious or poorly written code fragments that, if executed unchecked, could violate the security of your portal site.

These code fragments can come from many sources: Internet pages, email messages, downloads by users, and so on. When Windows executes the code, in most cases it trusts the code implicitly (many script-based languages, like JavaScript and VBScript, have built-in restrictions on what they can do that limits their access to ...

Get Building Portals, Intranets, and Corporate Web Sites Using Microsoft Servers now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.