Index_L


L

lack of individual accountability, 34
last name field, 79
layer separation, 375
least privileged accounts, 380
ASP.NET application and Web services, 568
data access, 373
database servers, 528529
and Enterprise Services server applications, 665
<processModel>, 663
least privileged accounts, 766768
least privileged code, lxvi
least privileged custom accounts, 557
least privileged domain accounts, 579
least privileged run-as accounts, 306
level final code groups, 190
library applications, 666667
<lifetime> element, 364
LIKE clauses, 378
link demands
calling methods with, 201
code access security, 184185, 199200, 201, 625627
described, 200201
and interfaces, 202
luring attacks, 200201
and luring attacks, 200
performance, 201
local administrators group membership, 445
local intranet zone permissions, 465
<location> element, 551552
for authentication, 279
configuring trust levels with, 225
lockout policies for end- user accounts, 81
log files
backing up, 96
IISLockdown.exe, 798
management policies, 124
securing, 96
URLScan, 802
logging. See also event logging
ASP.NET, 295296
checklists, 694, 699, 707, 710, 715, 726, 732
data server configuration, 675
database servers, 525526
enabling, 451
network security, 413, 415
remoted objects, 365
secure Web services, 341
serviced components , 308309
vulnerabilities, 429
Web applications, 9596
Web server configuration, 651652, 654
Web servers, 429, 451452
logical view of role-based security, 132, 133
logins
account configuration, 398
BUILTIN\administrators server, 530531
for database administrators, 530531
limiting in database, 566567
logons
auditing, 398
the importance of auditing failures, 525, 675
restricting local, 536
restricting remote, 672
logs
auditing, 469
key events, 96
loosely typed parameters, 328
LSA, 88
luring attacks
code access security, 200201
described, 33
link demands, 200201
and StrongNameIdentityPermission, 200



Improving Web Application Security. Threats and Countermeasures
Improving Web Application Security: Threats and Countermeasures
ISBN: 0735618429
EAN: 2147483647
Year: 2003
Pages: 613

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net