16.01.2013 Views

Microsoft Sharepoint Products and Technologies Resource Kit eBook

Microsoft Sharepoint Products and Technologies Resource Kit eBook

Microsoft Sharepoint Products and Technologies Resource Kit eBook

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

376 Part V: Administration of Windows SharePoint Services<br />

Authentication Methods<br />

You configure authentication for websites based on <strong>Microsoft</strong> Windows SharePoint<br />

Services by configuring authentication methods in Internet Information Services<br />

(IIS). Windows SharePoint Services uses the authentication method you specify for<br />

a virtual server in IIS to control authentication for all top-level websites <strong>and</strong> subsites<br />

of that virtual server. Windows SharePoint Services works with the following authentication<br />

methods in IIS:<br />

■ Anonymous authentication. Anonymous authentication provides access to<br />

users who do not have <strong>Microsoft</strong> Windows NT server accounts on the server<br />

computer (for example, website visitors). IIS creates the anonymous account<br />

for Web services, which is often named IUSR_computername. When IIS<br />

receives an anonymous request, it impersonates the anonymous account.<br />

You can enable or disable anonymous access in IIS for a particular virtual<br />

server, <strong>and</strong> enable or disable anonymous access for a site on that virtual server,<br />

by using HTML administration pages for IIS Administration pages. Anonymous<br />

access must be enabled in IIS before you can enable it for a website on that<br />

virtual server.<br />

Once you have enabled anonymous access for the virtual server with the<br />

HTML administration pages for IIS, you will need to actually enable this same<br />

level of access for each individual website. To do so, from the website page<br />

itself (a feature that is not available from Central Administration), click Site Settings,<br />

click Go To Site Administration under the heading Administration, <strong>and</strong><br />

then click Manage Anonymous Access under the heading Users And Permissions.<br />

Note that by default, anonymous users can access nothing <strong>and</strong> you will<br />

need to choose either Entire Web Site or Lists And Libraries.<br />

■ Basic authentication. Basic authentication is an authentication protocol<br />

supported by most Web servers <strong>and</strong> browsers. Although Basic authentication<br />

transmits user names <strong>and</strong> passwords in easily decoded clear text, it has some<br />

advantages over more secure authentication methods in that it works through<br />

a proxy server firewall <strong>and</strong> ensures that a website is accessible by almost any<br />

Web browser. If you use Basic authentication in combination with Secure Sockets<br />

Layer (SSL) security, you can help protect the user names <strong>and</strong> passwords,<br />

making your user information more secure.<br />

Note It is strongly recommended that you use SSL any time you use Basic<br />

authentication to ensure a secure deployment.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!