Click here to Skip to main content
15,891,529 members
Please Sign up or sign in to vote.
0.00/5 (No votes)
See more:
In my asp.net application I am using form authentication, after logging as a normal partner, browse to/Admin using an HTTP proxy,the server attempts to redirect the user to the login page but the contents of /admin are still returned in HTTP response body.

When performing the authentication checks, the application should ensure that no data is returned if the user is not admin.
Posted
Updated 30-Mar-14 22:51pm
v2

This content, along with any associated source code and files, is licensed under The Code Project Open License (CPOL)



CodeProject, 20 Bay Street, 11th Floor Toronto, Ontario, Canada M5J 2N8 +1 (416) 849-8900