Solved

Should I allow an ISAPI-based url rewriter dll and ini file to be place within the application root's \bin file?  This is an ASP.net site (framework v2.0) using IIs v6 on windows 2003.

Posted on 2009-04-01
4
261 Views
Last Modified: 2012-05-06
Should I allow an ISAPI-based url rewriter dll and ini file to be place within the application root's \bin file?  This is an ASP.net site (framework v2.0) using IIs v6 on windows 2003.
0
Comment
Question by:VENUS1121
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
4 Comments
 
LVL 23

Expert Comment

by:Saqib Khan
ID: 24043011
I dont see a reason why not, this is the whole reason ASP.NET introduced the BIN folder idea, so we dont have to register DLL's. its secured dont worry.
0
 

Author Comment

by:VENUS1121
ID: 24044919
I'm not worried about the dll itself, just the corresponding ini file that needs to reside in the bin directory also.  Do you feel the ini is secured from exploitation even though this anonymous account has access to it?  Thanks
0
 
LVL 23

Accepted Solution

by:
Saqib Khan earned 500 total points
ID: 24046223
Bin directory is not visible to anonymous account.

A Better practice is to replace ini file with the web.config. is it possible for you to put the ini settings within web.config file and then simply access the KEYS within web.config  file.?
0
 

Author Comment

by:VENUS1121
ID: 24154101
I'm not sure, is it common practice to take ini files and place within the web.config?  Would you have an example of how to do it?
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Foolproof security solutions has become one of the key necessities of every e-commerce or Internet banking website. If you too own an online shopping site then its vital for you to equip your web portal with customer security features that can allow…
Introduction A frequently used term in Object-Oriented design is "SOLID" which is a mnemonic acronym that covers five principles of OO design.  These principles do not stand alone; there is interplay among them.  And they are not laws, merely princ…
This video teaches users how to migrate an existing Wordpress website to a new domain.
Use Wufoo, an online form creation tool, to make powerful forms. Learn how to selectively show certain fields based on user input using rules to gather relevant information and data from your forms. The rules feature provides you with an opportunity…

729 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question