Monday, February 11, 2008

Beyond Permissions: Securing Your FrontPage Based Web

Microsoft FrontPage provides administrative tools that let you set permissions and limit access to webs that you create and edit on a Web server. When you click Security on the Tools menu and then click Permissions, you can assign groups (on Windows NT® servers), users, or computers the following types of permission:
Browse Users with browse permission can view the web in a browser, but they cannot modify it. You can restrict a web so that only a specified list of users is allowed to view it.
Author Users with author permission can view the web in a browser, and they can also create, delete, and modify files in the web.
Administer Users with administer permission can view the web in a browser and can create, delete, and modify files in the web, like users with author permission. They can also create and delete whole webs, and they can set permissions for the web.
In some cases, you cannot use the Security command in FrontPage. (You can enable security features by publishing your web to a Web server configured to support FrontPage security.) The command is disabled in the following circumstances:
Your web is on a disk (such as your hard disk or a network share) rather than published on a Web server.
Your web is on a server that does not have the FrontPage Server Extensions installed.
Your web is published on a Microsoft Personal Web Server, because Personal Web Server does not restrict access.
Your web is published on Microsoft Internet Information Server that uses the file allocation table (FAT) file system rather than the Windows NT file system (NTFS).
Your Web administrator has enabled the "manage permissions manually" setting for your web.
Setting permissions gives you a degree of security for your FrontPage-based web. This article presents additional strategies you can employ to keep your web and Web server safe from malicious or careless use. You can learn more about setting permissions in FrontPage online Help. For details about how FrontPage implements security features.

No comments: