I am writing a web site that uses forms authentication to check a user's credentials against our ldap server.  Since I am very inexperienced in, I used the tutorial found here for guidance.  I can now log in to the app, but find that I don't know how to check whether a user belongs to a group or not programmatically.  It seems it should be simple, but I cannot find it in the tutorial.

9/3/2008 4:04:10 PM

superreview granted: [Bug 225809] Don't fall back to insecure authentication if "use secure authentication" is checked : [Attachment 136279] patch addressing mscott's comments
Lorenzo Colitti <> has granted Lorenzo Colitti <>'s request for superreview: Bug 225809: Don't fall back to insecure authentication if "use secure authentication" is checked Attachment 136279: patch addressing mscott's comments ------- Additional Comments from Lorenzo Colitti <> Carrying forward r= and sr= ...

Using "Windows" authentication to authenticate BUT "Forms" to maintain the user's session?
Is there a way to do this?Basically I want to ensure and pick up users who are already authenticated via AD but use Forms Authentication under the covers once they've been authenticated.  Ideally I'd like to roll this into a custom membership provider so that both internal users (who will have already logged into their machines and been authenticated via AD) and outside users (who will need to use a login control provided on a page) both can have their sessions as maintained in the same way ... AND be associated and use a common roles and profile provider.Any help would be appre...

Modifying user's group memberships using the System.DirectoryServices.Protocols (S.DS.P) Namespace
Hi everybody,I am connecting to an Active Directory server using the System.DirectoryServices.Protocols namespace (this is necessary as the AD server lives in a different, untrusted domain to the web server; and the ADSI security does not allow us to connect using the DirectoryEntry classes.)I am new to this namespace; but have made good progress recently. I can retrieve and modify user details, activate and deactivate their accounts, change their email address, telephone number, etc. and add new users into the directory. So I have got some familiarity with the classes and functionality whic...

changes made from one user's webpart's page, effects all user's
 I am just doing this offline right now in Visual Web Developer Express 2008I created the login inonce in the memberpage area, people can modify their webpart page. I created several users to test this out.  I loaded it in a browser.When I make changes as logged in user "A" .  Then logout and login as user "B", user "B,s" webpart page has been changed to user "A".This goes true for whomever I log in as.  It changes for everyone.Is there something specific I need to do in order to get everyone's changes to be unique for them...

Compare a Group's objectSid to a user's primaryGroupId
Dunnry, this question is related to my quest that you solved yesterday about how to get a primary group for a user. The difference is this time I try to a a list of users that are member of a given group.When using the member property to get a list of members of a given Group (e.g. GroupA), it didn't list those users whose primaryGroup is GroupA. So I am thinking to use a filter like (primaryGroupID= GroupA's Objectsid) when search users.However, the GroupA's objestSid is byte[] type, and the primaryGroupID is int type. Though the method in yesterday's post "CreatePrimaryGroupSID" ...

Displaying a user's group memberships
I need to capture a user's group memberships for further processing in a Perl script. The user's username is passed to the script via the command line and captured with ARGV. From there, I want to determine the group memberships (much like executing `groups` from the command line) and run those through a loop for processing. I seem to be having a problem locating a function that will do this. I've looked at several and tried a couple, but either I'm doing something wrong or I'm using the wrong functions. All of the ones I've tried are part of getgr*. ...

Checking what user's site group is
I'm making a web part which is just a list of links. I want to show/hide list item based on the current user's site group. Show how would I do something like the following? Thanks in advance. if (currentUser.SiteGroup == "Contributor") // I need working code for this line{  // show/hide item}     From the SDK: The Groups property of the SPUser class gets the collection of cross-site groups of which the user is a member. Paul Schaeflein Thanks. Now I know where to find the rest of the classes. Actually, I don't know how ...

Forms Authentication, Custom Membership Provider, nested web.config, the nested app ==> Parser Error Message: Could not load type 'MyCompany.Security.FrameworkRoleProvider'.
Hi, I have written a custom membership provider for our application (which is in the root of the "default web site" in IIS). In the default-web-site web.config, I've specified the MyCustomMembership Provider and all works well (see below for snippet of web.config file). However, if I want to put another application is a (sub) virtual-directory to this main directory, then run the app in this virtual directory, I get the error: Parser Error Message: Could not load type 'MyCompany.Security.MyCustomMembershipProvider'.Source Error: Line 113: <provi...

Impersonation: obtain the user's group membership
Hi, I have set up an ASP site which uses Impersonation, works fine. But I need to obtain the user's group membership somehow. Obtaining the Username is no Problem with Request.ServerVariables("LOGON_USER") (I'm using VBScript), but there is no variable for the user's groups. I read you can do it via ldap, and got folowing code: <% Set oConn = CreateObject("ADODB.Connection") Set oComm = CreateObject("ADODB.Command") oConn.Provider = "ADsDSOOBJECT" ' ADSI OLE-DB provider oConn.Open "ADs Provider" ...

Using an authenticated Forms user's credentials?
Hello,  First time poster here, and I hope someone here can answer my question. I am developing an ASP.NET site that is backed by a particular suite of web services.  Both the site and the web services reside on the same server, both use Forms authentication, and use the same Membership store coming from the same database. The web services I am using implement permissions logic of their own, so I am trying to find a way to pass the credentials of the authenticated ASP.NET user to the web services when I access the web services from the ASP.NET code. The code does ...

Authenticate Form with SAM's membership provider ?
Hello,  I'm using "Connexion"'s controls like Login or CreateUserWizard etc ... the authentication mode is Form. I don't want to use sqlproviders, i want to use the SAM system as provider, is it possible ?  My gaol is to provide an application reachable through internet, with user authentication mapped on SAM accounts, once authenticated application must be running under user identity. I know it's possible with Active Directory as provider but i dont need this complex infrastructure. Thank you for replying. ps: I tried to do manualy many thi...

accessing winnt user's security groups
I'm really new to this adsi security stuff and have been searching all over but have been unable to put 2 + 2 together to figure this out. I want to implement security logic in my program in c# to, for a particular user in a particular domain, get all winnt security groups that user is in. On the flip side, I want to find all members for particular winnt security groups which are set up specifically for security in my program. Can someone please provide me some code samples of how to do each in c#? Basically, my web app is going to have 3 security groups and each security group will ha...

Checking user group membership against a group?
Novell Identity Manager 3.5.1 Novell Identity Manager Provisioning Module 3.5.1 onLoad event of the from, I want to check user (recipient) group membership against a group in the Identity vault?, so that I can perform some actions on the form feilds. Any help guys? M. -- love anything that talks binary! ------------------------------------------------------------------------ belaie, It appears that in the past few days you have not received a response to your posting. That concerns us, and has triggered this automated reply. Has your problem been resolved? ...

Net security is everyone's problem not just Microsoft's, says Ballmer
Speaking at the Center for Strategic and International Studies in Washington DC, Microsoft chief executive Steve Ballmer declared that responsibility for cybersecurity falls on everyone---users, software vendors, and government agencies. Mr. Ballmer did not outline any new security initiatives, but continued to promote the upcoming Windows XP Service Pack 2, an update to the company's server operating system, and future versions of Internet Explorer that will block pop-up ads and unauthorized downloads. Mr. Ballmer outlined active protection technology, designed to stop worms...

