Qeb Archives: SharePoint Security

"Saib tsis” mus Default.aspx rau ib SharePoint 2010 Sub Site

Ib tug ntawm kuv cov neeg mus nyob nrog lawv cov SharePoint 2010 chaw hnub no.  Peb sab tias ib yam los ntawm cov neeg tsis tau nkag tau cov nplooj ntawv vim lub tsev.  SharePoint teb nrog "Ntawv tsis pom zoo" thiab tus li ib txwm "tuaj sau npe rau hauv kom lwm tus neeg siv" lossis "thov mus saib" teb. 

Thaum twg peb siv lub nifty "Mus saib" kev ua nws yuav paub tseeb tias tus neeg siv cov kawg tiag puas tau.  Tsis tau, lawv tsis tau mus rau sab.

Kuv taug heev ntawm txoj kev mus txog hnub tuag kom txog thaum kuv yuav txiav txim siab los sib piv cov qhov Web site nyob rau sab tiv thaiv tsis tau ua hauj lwm sab zoo lawm.  Kuv puas uas tso rau sab hauv nkawm hom los ntawm kev ntxiv"?txheem = 1 "mus rau sab. Li ntawd, nws ntsia zoo li "http://server/subsite/subsite/default.aspx?txheem = 1 ". 

Qhov no tsom kuv ob tug web site qhov hu ua "Yuam kev" rau ib nqe lus piav li "Yuam kev" nyob rau lawm sab.  Kuv tsis xav tias yuav nqa ib cov nqi tshuaj ntsuam thaum lub sij hawm.

Kuv muab tshem lawv thiab solved qhov teeb meem uas.

Kuv pom ib nqe lus nug zoo li no tuaj txog rau hauv forums yav dhau los thiab kuv twb tsis tshua muaj neeg skeptical txog cov daim ntawv loj loj insistence uas nws tau teem kom ruaj.  Kuv * paub * kuv tau muaj kev ruaj ntseg uas txoj cai teem Luag nyav  Lwm zaus, Kuv mam li yuav qhib ntau thiab tsawg skeptical.

</kawg>

Subscribe rau kuv blog.

Raws li kuv nyob Twitter tom http://www.twitter.com/pagalvin

Siv Workflow Simulate plaws yam ruaj ntseg

Lwm hnub, lwm MSDN-forums inspired ncej.

Tus neeg ntawd nug seb lawv yuav luag ib txheej yam xws tias thaum twg tus neeg siv clicks rau lub khawm "tshiab" rau ib daim ntawv teev kev cai, tsuas kawm ntawd yam uas tus neeg ntawd pom zoo mus saib yuav tshwm nyob rau hauv daim ntawv nco-down.  Raws li peb paub, qhov no tsis txaus siab mus rau ntawm lub box.

Lo lus nug no los tam sim no ces thiab lub sij hawm no, Kuv muaj ib lub tswv yim tshiab.  Xav wb tias kom peb muaj scenario li no:

  • Peb muaj ib helpdesk ticketing rau lawv.
  • Cov helpdesk ticketing uas tso cai rau cov neeg nkag rau kev helpdesk pib info, xws li cov teeb meem hauv cheeb tsam, qhov teeb meem raws li txoj cai, yam.
  • Peb xav kom tso cai rau cov neeg siv los qhia ib lub tiaj "num" "super".
  • Lwm cov neeg siv tsis tau rau daim tiaj ntawd.  Lub kaw lus yuav ib txwm cob "nruab nrab" theem ces lawv thov.

Peb yuav ua li cas yog tsim tau ob cais SharePoint npe thiab ob chav ntawv kawm hom sib txawv, ib qho rau cov neeg siv cov "super" thiab lwm yam rau sawv daws ntxiv.

Workflow rau txhua seem copies cov ntaub ntawv rau daim ntawv npaj (daim ntawv pib sij helpdesk) thiab txoj kev proceeds los yeej muaj.

Kauj ua hauj lwm yuav ntws kem theem ruaj kom zoo ib yam. 

Kuv tsis tau sim nws, tab sis nws pom tau tias tsim nyog thiab muab ib haum yooj yim, Yog hais tias zoo nkauj ntxhib, yuav xaiv los siv ib hom kawm ntawd yam thiab txawm kem theem ruaj.

</kawg>

Subscribe rau kuv blog.

Raws li kuv nyob Twitter tom http://www.twitter.com/pagalvin

Cov kev pom zoo li pluag txiv neej cov khoom tsis zoo no feem theem Security

Nws muaj nws ib qho lag luam scenario nrog InfoPath cov ntaub ntawv.  Peb xav pub cov neeg ua InfoPath ntaub ntawv thiab xa mus rau lub tsev qiv ntawv.  Peb xav mangers (thiab tsis muaj leej twg) muaj cov ntaub ntawv.

Lo lus nug no los tam sim no ces nyob rau hauv cov ntaub ntawv (e.g. http://social.technet.microsoft.com/Forums/en-US/sharepointadmin/thread/76ccef5a-d71c-4b7c-963c-613157e2a966/?prof=required)

Ib txoj kev ceev yuav kom daws tau qhov no yog pab kom cov kev tso cai rau lub tsev qiv ntawv hauv daim ntawv.  Mus rau lub tsev qiv ntawv version nqis thiab teem nws mus txog li:

image 

Nyem qhov ntawm "Yuav tsum tau pom zoo rau kawm ntawd" thiab uas yuav cia koj mus khaws ib tug nqi rau cua ntsawj ntshab yam ruaj ntseg.

Nws yog counter-intuitive me ntsis vim tias peb tsis txhob xav tias "pom zoo muab cov" ntawd tej thaum txhua yam peb xav puas yog tiv thaiv cov neeg ntawm mus ntsib lwm cov neeg siv cov ntaub ntawv.  Txawm li cas los, nws zoo xwb (ntawm kuv kev).  Cia li tsis pom cov ntaub ntawv, thiab lawv mam li nco ntsoov muab xam "ntawv los". 

Muab tso cai los ntawm txoj cai rau cov neeg uas yuav tsum tau mus ntsib lawv thiab koj twb kaw lub voj.

Qhov no tsis yog raws nraim loj xov xwm, tab sis, cov lus nug los muaj, ces kuv xav tias nws yuav muaj nqis posting.

</kawg>

Subscribe rau kuv blog.

Raws li kuv nyob Twitter tom http://www.twitter.com/pagalvin

Yog dab tsi tsuas siv Access lawm?

HLOOV TSHIAB 11/03/08: Nco ntsoov nyeem rau yav tom ntej thiab xav paub saib ntawm Dessie Lunsford mus no ncej.

Kuv twb tau ua hauj lwm ntawm lub zais cia tech editing project rau ib cov phau ntawv los tu thiab nws references no blog nkag ntawm Tyler Butler rau lub MSDN ECM blog. Qhov no yog thawj zaug kuv ntaub ntawv nyeem lub ntsiab txhais ntawm lub ntsiab lus tsuas siv cov ntaub ntawv. Ntawm no yog cov nqaij ntawm lub ntsiab txhais:

Nyob rau hauv SharePoint, cov neeg siv cov anonymous’ txoj cai txiav txim los ntawm kev tsuas siv cov ntawv tso cai lawm. Tsuas siv Access yog ib theem cov tso cai tshwj xeeb uas tsis tau muab rau ib tug neeg los yog pab pawg neeg ncaj nraim. Yog vim li cas nws tshwm sim yog vim yog tias koj muaj ib lub tsev qiv ntawv lossis subsite uas tau liam sim permissions ncaus, koj muab ib tug neeg los ib pawg saib los tsuas uas qiv/subsite, thiaj li yuav saib nws txheem, tus neeg siv/pab pawg neeg no yuav tsum tau muaj ib co ntawv kom lub cag web. Txwv tsis pub cov neeg/pab pawg neeg yuav tsis xauj lub tsev qiv ntawv/subsite, Txawm tias lawv puas muaj cai muaj, vim muaj ntau yam nyob rau hauv lub cag web uas tsim nyog los kav lub site los yog cov tsev qiv ntawv. Yog li no, Thaum koj muab ib pawg permissions xwb los ib lub subsite los yog cov tsev qiv ntawv uas yog txhawm permissions ncaus, SharePoint yuav tau muab tsuas siv Access rau ntawd pab pawg neeg los yog cov neeg siv ntawm lub cag web.

Lo lus nug no los tam sim no ces nyob rau lub MSDN forums thiab kuv nco ntsoov mus mas (tab sis tsis mas txaus los paub cov nws tawm no ua ntej hnub no :)).

</kawg>

Subscribe rau kuv blog.

Raws li kuv nyob Twitter tom http://www.twitter.com/pagalvin

Ntawv cim npe Technorati:

Nreeb taub: Configure kev ruaj ntseg mus pub cov Admins rau txhua qhov chaw kuv nyob SharePoint

Nyob rau hauv ib qho kev xam yog pib coj nrog SharePoint, Kuv pom ib muaj pes tsawg tus neeg kawm ntawv kuv hom lus nug. Ib hom lus nug txog tej yam zoo li no lawm:

"Kuv yog ib tug neeg khiav dej num thiab kuv yuav tau mus saib tau txhua qhov chaw kuv yuav. Kuv yuav ua li ntawd li cas?"

Rau cov ua kom yuam kev ntawm no yog tias txhua qhov chaw kuv yog nws tus kheej qhov chaw sau ntawv. Txhua zaus SharePoint ruaj ntseg tswj ntawm kev kawm ntawv sau los lawm thiab no trips txog ntau tus neeg khiav dej num hauv SharePoint. Nquag, nws twb yeej mus configure kev ruaj ntseg nyob rau hauv "loj lub" qhov chaw collections thiab tej zaum yuav tsis twb koj paub lawm tias qhov no tsis tau ua haujlwm rau kuv qhov chaw.

Qhov chaw collections collectively nyob hauv lub thawv uas koj loj, Nws yog ib daim ntawv thov Web site. Admins ua liaj ua teb yuav tau configure cov ruaj ntseg web app teg thiab qhov no yog li cas admins yuav pab lawv tus kheej mus rau tej qhov chaw sau rau hauv daim ntawv thov li qhov web. No nkag teb chaws blog piav ib qho ntawm kuv tus kheej rua cov paub cai siv daim ntawv thov web. Kuv txhais txoj cai thov web los ntawm kev sib tsoo: http://paulgalvin.spaces.live.com/Blog/cns!1CC1EDB3DAA9B8AA!255.entry.

Web txoj cai daim ntawv ua tau rau yus thiab kuv hais tias lawv siv sparingly. Yog hais tias kuv tau ib qho admin (thiab thank goodness kuv tsis), Kuv yuav ua ib kem AD nyiaj hu ua ib yam dab tsi zoo li "SharePoint Web App khiav" thiab muab qhov nyiaj ib lub web thov ruaj ntseg luag hauj lwm yuav tsum tau. Kuv tsis xav configure no zoo tshaj plaws rau cov admin mus ua liaj ua teb los yog ib tug neeg kawm ntawv sau los admins. Nws yuav yuav zais tej teeb meem vim hais tias lub luag hauj lwm app web overrides tej theem kev ruaj ntseg chaw qis.

</kawg>

Subscribe rau kuv blog.

Raws li kuv nyob Twitter tom http://www.twitter.com/pagalvin

Ntawv cim npe Technorati: ,

Views thiab txhua rau npe thiab daim ntawv qiv tsis tau yuav ruaj

HLOOV TSHIAB (02/29/08): No yog ib qhov codeplex tshiab rau nkawd muab rau phiaj txhua tug: http://www.codeplex.com/SPListDisplaySetting. Yog hais tias koj muaj tej kev ua hauj lwm nrog nws, thov cia ib saib.

Rooj sab laj zog nquag hais ib lo lus nug li no: "Kuv muaj ib tug neeg saib xyuas pom thiab thiab tus neeg ua hauj lwm pom ntawm ib daim ntawv teev. Cas ua kuv luag cov neeg saib xyuas pom kom neeg ua hauj lwm yuav tsis siv nws?"

Lawv tseem pheej hais lwm yam lus nug: "Kuv xav kom muaj kev metadata sab kom tswj xwb tej zaum yuav txawv ntawd qhia kiag thaum lwm tus tsis txawm pom nws."

Cov lus teb hais txog leej WSS 3.0 thiab NTXHUAB:

  • SharePoint tsis muab qhov nyiaj them yug tawm-of-the-kem rau phiaj views.
  • SharePoint tsis muab qhov nyiaj them yug tawm-of-the-kem kev ruaj ntseg txhua.

Muaj ntau ntau hom kev kawm ib yuav ua raws li uas raws li tej yam kev ruaj ntseg yuav tsum. Ntawm no yog kuv yuav xav li cas txog:

  • Siv cov khoom tawm-ntawm-tus-kem theem ruaj ntseg. Ib txwm views tsim yam ruaj ntseg kawm configuration. Tej receivers thiab/los yog workflow yuav automate cov ntus ruaj ntseg.
  • Siv koj tus kheej views rau "privileged" views. Cov no yog cov yooj yim txaus teeb. Txawm li cas los, vim lawv "koj tus kheej" xwm, Cov no yuav tsum tau configured rau txhua tus neeg. Siv kev ruaj ntseg txheem configuration tiv thaiv leej twg los ntawm peb tus kheej saib.
  • Siv ib cov ntaub ntawv saib web feem thiab siv tej yam kev ruaj ntseg rau AJAXy trimming kua.
  • Dov rau koj daim ntawv teev zaub functionality thiab teeb ruaj ntseg trimming nyob sab.
  • Hloov cov ntaub ntawv cov ntaub ntawv nkag teb chaws thiab siv JavaScript tau nrog rau cov qauv ruaj kom muaj kev theem sab kev ruaj ntseg trimming.
  • Siv ib daim ntawv InfoPath rau cov ntaub ntawv nkag teb chaws. Kev ruaj ntseg kem duas trimming ntawm cov Web site qhov kev pab hu SharePoint thiab conditionally nkaum tom teb raws li xav tau.
  • Dov rau koj tus kheej ASP.NET tej ntaub ntawv nkag teb chaws muaj nuj nqi uas implements kem theem kev ruaj ntseg trimming.

Yog tsis muaj cov kev xaiv tiag tiag li yawm suab, tiamsis nws muaj tsawg kawg yog ib txog kev ua raws li yog hais tias koj xav tau, Txawm hais tias nws yog ib qho nyuaj.

CEEB TOOM: Yog hais tias koj nqes ib yam ntawm cov paths, tsis txhob hnov qab txog "kev-> Qhib cov qhov rais Explorer". Koj yuav tau nco ntsoov tias koj kuaj mob ntawd feature kom paub tseeb tias nws tsis ua hauj lwm raws li ib tug "qhov rooj nram qab" thiab defeat koj lub tswvyim ruaj ntseg.

Yog koj muaj lwm cov tswv yim rau los yog rua cov paub phiaj txhua los views, thov email rau kuv los yog tawm ib saib thiab kuv mam hloov no xo raws li tsim nyog.

</kawg>

Subscribe rau kuv blog.

Ntawv cim npe Technorati:

Kua: System.IO.FileNotFoundException rau “SPSite = tshiab SPSite(url)”

HLOOV TSHIAB: Muab kuv lo lo lus nug no rau MSDN no (http://forums.microsoft.com/Forums/ShowPost.aspx?PostID=2808543&SiteID=1&mode=1) thiab Michael Washam txog Microsoft lub teb nrog ib cos teb.

Kuv tsim cov qhov Web site los ua ib tug BDC hauv façade rau ib daim ntawv teev SharePoint. Thaum kuv siv no ntawm kuv txoj kev loj hlob nyob, nws ua haujlwm fine. Thaum twg kuv migrated no rau ib tug neeg rau zaub mov tshiab, Ces yuav kuv tsum no yuam kev:

System.IO.FileNotFoundException: Cov ntaub ntawv Web site ntawm http://localhost/sandbox kuj tsis tau pom. Muaj tseeb uas koj tau ntaus qhov URL thwj. Yog hais tias muab rau qhov URL yuav tsum tau neeg cov ntsiab lus uas twb muaj lawm, cov neeg khiav dej num uas yuav tau ntxiv rau ib tug tshiab hais URL kuas cov ntaub ntawv intended. nyob Microsoft.SharePoint.SPSite.ctor(SPFarm ua liaj ua teb, Pas requestUri, Boolean contextSite, SPUserToken userToken) nyob Microsoft.SharePoint.SPSite.ctor(Txoj hlua requestUrl) tom Conchango.xyzzy.GetExistingDocument(Txoj hlua minId, Txoj hlua maxId, Txoj hlua titleFilter) hauv C:\Cov ntaub ntawv thiab SettingsPaulMy DocumentsVisual Studio 2005ProjectsxyzzyBDC_DocReviewBDC_DocReviewDocReviewFacade.asmx.cs:kab 69

Nov yog kab 69:

siv (Kawm ntawv SPSite = SPSite tshiab("http://localhost/sandbox"))

Kuv sim txawv variations ntawm qhov URL, xws li siv cov neeg rau zaub mov npe tiag tiag, nws qhov chaw nyob hauv tus IP, trailing slashes nyob rau hauv qhov URL, yam. Kuv yeej tau qhov yuam kev.

Kuv siv Hauv Google los ntsuam xyuas nws. Ntau tus neeg fim no qhov teeb meem, los sis variations ntawm nws, tab sis tsis muaj leej twg muaj solved seemed.

Ntsis NTXHUAB tricksy ntxiv li ib txog kev ua yuam kev uas nws tsis muaj tshwm sim rau kuv mus xyuas cov 12 nas muv cav. Nws thiaj li, hais txog 24 teev tom qab Kuv colleague pom zoo kom ua li ntawd, Kuv ntsuam xyuas kom paub cov 12 hive cav thiab nrhiav tau qhov no:

Kev zam tshwm sim thaum uas ua kom kis tau rau lub zos ua liaj ua teb:
System.Security.SecurityException: Npe thov ntawv tsis muaj cai.
tom System.ThrowHelper.ThrowSecurityException(Kev pab ExceptionResource) tom Microsoft.Win32.RegistryKey.OpenSubKey(Txoj hlua npe, Boolean writable) tom Microsoft.Win32.RegistryKey.OpenSubKey(Txoj hlua npe) tom Microsoft.SharePoint.Administration.SPConfigurationDatabase.get_RegistryConnectionString() tom Microsoft.SharePoint.Administration.SPConfigurationDatabase.get_Local() tom Microsoft.SharePoint.Administration.SPFarm.FindLocal(SPFarm& ua liaj ua teb, Boolean& isJoined)
Nyob zoo noj rau ntawm cov los ua ke uas tsis tau tejyam:  MyComputer

Qhov no qhib tau hom tshiab ntawm kev tshawb fawb, ces nws txawm rov qab rau hauv Google. Uas coj kuv mus rau qhov no rooj sab laj ncej: http://forums.codecharge.com/Posts.php?post_id = 67135. Uas tsis tshua pab kuv, tiam sis nws puas tau pib ua kuv xav tias yog ib qhov teeb meem database thiab ruaj ntseg. Kuv soldiered thiab Andrew Connell rooj vag triggered thaum kawg lub xav tias kuv yuav tsum tau qhia tias yog leejtwg tus account thov pas tus mob lub database tsim nyog siv cov. Kuv xav tias nws twb tsis. Txawm li cas los, Kuv tus colleague mus thiab muab txoj app pas yog leejtwg tus account daim ntawv qhia txog kev yuav SQL.

Thaum nws ua ntawd hloov, txhua yam kev pib ua hauj lwm.

Yog zoo li cas ntxiv mus uas happened expressed li ib haiku paj huam:

Teeb meem tsa tes.
Koj viav vias thiab nco. rov sim dua.
Zoo! Tab sis yuav ua li cas? Ua li cas?

Nws tsis xav kom tawm tej yam uas nyob ib leeg li ntawd, preferring, muab tus yam tsawg kawg yuav tsum tso cai rau (thiab tej zaum with an eye to sau ib tug nkag teb chaws blog; Kuv tuav nws kom cov punch, muhahahahaha!).

Nws tshem successive permissions ntawm lub app pas yog leejtwg account kom txog … muaj tug tsis tau nws kev tso cai qhia tau meej heev rau app nyiaj pas dej ua ke yog leejtwg txhua. Cov Web site qhov tseem ua hauj lwm xwb fine.

Peb mus ua rebooted lub servers. Txhua yam tseem ua hauj lwm fine.

Li ntawd, mus recap: peb tau muab txoj app pas dej ua ke yog leejtwg tiag cov kev thiab mam li muab nws tseg. Cov Web site qhov pib ua hauj lwm thiab tsis txhob tso tseg tsis ua hauj lwm. Bizarre.

Yog leej twg paub vim li cas uas yuav tsum muaj haujlwm, thov cia ib saib.

</kawg>

Ntawv cim npe Technorati:

Yam tsawg kawg yuav tsum tau cov ntaub ntawv InfoPath Security

Kuv yuav tsum tau mus ntsib ib tug ruaj ntseg yuav tsum tau ib daim ntawv InfoPath hnub no. No ua hauj lwm li, tsawg tus tus neeg muaj cai ua ib InfoPath daim tshiab thiab muaj ntau wider tuaj muaj cai hloov nws. (Qhov no yog daim tshiab-ntiav rau nce ntawv siv Human Resources ntawd launches ib workflow).

Kom tau raws li cov hom phiaj ntawd, Kuv tsim created ob tug tshiab tso cai ntxiv ("ua thiab hloov" thiab "hloov xwb"), rhuav ncaus rau lub tsev qiv ntawv hauv daim ntawv thiab muab permissions rau ib "tsim, hloov" neeg siv thiab hloov ib kem "tshiab xwb" neeg. Lub mechanics tas nrho ua haujlwm, tab sis nws muab tau involving me ntsis ntau tshaj li qhov kuv paub zoo. (Yog tias koj hnov thawv me ntsis rau SharePoint permissions, ntsuam xyuas dej no cov ncej blog). Lub configuration ruaj ntseg yuav tsum tau kev tso cai lawm tsis yog lub txheej ntau permissions cuab kev. Los ua ib theem tso cai hloov tshiab nkaus xwb rau ib daim ntawv InfoPath, Kuv puas tau qab:

  1. Tsim txoj kev tsocai npaum.
  2. Tshem tseg tag nrho cov kev xaiv.
  3. Xaiv hauv qab xwb no los ntawm "List permissions":
    • Kho kom raug khoom
    • Saib cov khoom
    • Thov saib nplooj ntawv

Xaiv cov kev tso cai rau tus neeg siv yuav hloov tau ib daim ntawv, tiam sis tsis tsim nws.

Qhov ua kom yuam kev ntawd yuav pab tus "saib daim ntawv sau tias". Muaj tsis muaj kev verbage rau kev tso cai lawm uas ntawd hais uas tau yuav tsum tau hloov tshiab nkaus xwb InfoPath ntawv, tab sis koj lem tawm nws yog.

Ua tau ib-thiab-hloov tshiab yog Hmoob tseem. Kuv taug tib yam, 1 mus txog 3 saum toj. Kuv yuav tsum tau hais ntxiv ib "kawm ntawv tso cai" xaiv: "Siv nyob hauv kev pab xws li nta". Dua, cov hauj lwm muaj tsis paub nws zoo li li nws mam mus yuav tau ib cov ntawv InfoPath, tiam sis nws tseem muaj.

</kawg>

Ntawv cim npe Technorati: ,

SharePoint tsis muaj “Leej twg tug” Fawb

HLOOV TSHIAB 01/28/08: Project no codeplex addresses no qhov teeb meem: http://www.codeplex.com/AccessChecker. Kuv tau tsis siv, tab sis nws tig pheej yog hais tias qhov no yog ib qhov teeb meem uas koj xav mus rau qhov chaw nyob hauv koj cheeb tsam.

HLOOV TSHIAB 11/13/08: Sau Joel Oleson tau saum ib tug ncej uas koj zoo heev rau cov loj ruaj ntseg tswj teebmeem ntawm no: http://www.sharepointjoel.com/ Lists/Posts/Post.aspx?Daim ntawv teev = 0cd1a63d % 2D183c % 2D4fc2 %2 D 8320% 2Dba5369008acb&ID = 113. Nws mus rau lwm yam kev pab uas pab tau ntau.

Rooj sab laj cov neeg thiab cov neeg feem ntau hais ib lo lus nug txog cov kab: "Cas ua kuv tsim ib daim ntawv teev tag nrho cov neeg uas muaj ib qhov chaw" los yog "li cas tau kuv tau qhia tag nrho cov neeg uas muaj daim ntawv teev txog cov kev hloov rau daim ntawv?"

Muaj tsis muaj tawm ntawm lub thawv rau qhov no. Yog hais tias koj xav txog nws ib pliag, nws tsi nyuab rau koj to taub txog vim li cas.

Saj zawg zog heev SharePoint ruaj ntseg yog. Muaj txog li plaub loj pawg ntawm cov neeg muaj:

  • Cov neeg siv cov anonymous.
  • SharePoint cov neeg thiab ib pawg.
  • Cov neeg Directory.
  • Cov ntaub ntawv raws li Authentication (FBA) cov neeg siv.

Qhov yooj nqe hais los ntawm ib cov foundations ruaj ntseg, yuav muaj SharePoint kawm zauv dramatically sib txawv ntawm lwm. Thiaj li yuav ua tau kom muaj ib daim ntawv qhia txog kev sau ntawv, ib pab ascertain li cas lub site no ruaj, query ntau hom neeg profile repositories thiab mam li muab rau ib pab zam. Tus ntawd yog ib qho teeb meem nyuaj los daws kom tau generically.

Soj seb cov koom haum ntsuam nrog no? Kuv yuav hlub mus hnov los ntawm koj hauv cov lus los yog email.

</kawg>

Ntawv cim npe Technorati: ,

SharePoint Security Fundamentals Primer / Tsis txhob muaj cov Pitfalls khaub

HLOOV TSHIAB 12/18/07: Saib Paul Liebrand tshooj rau ib co kev zoo kev tshem tawm los yog modifying lub neej ntawd pab pawg npe (koj saib nws saib cov hauv qab no kom zoo).

Txheej txheem cej luam:

SharePoint ruaj ntseg yuav yooj yim rau configure thiab hwj. Txawm li cas los, nws muaj proven tsis yooj yim rau ib co sij hawm ua ntej thawj xibfwb qhwv tes puag ncig ntawd yeej. Tsis tas li ntawd, Kuv pom muaj ib co thawj xibfwb tuaj nkag siab rau hnub Zwj Hli xwb los tau ploj ntawm Friday vim lawv tsis tau ua lus configuration nyob rau lub sij hawm intervening zoo meej. (Kuv yuav coj tau qhov teeb meem no muaj kuv tus kheej lees). No nkag teb chaws blog hopefully qhia ib pab SharePoint ruaj ntseg primer thiab cov ntsiab lus ntawm ib co ruaj ntseg configuration qha.

Lus tseem ceeb:

Cov hauj lwm no yog xyuas los ntawm mus rau ntawm lub box SharePoint ruaj ntseg. Kuv tus kheej kev yog oriented NTXHUAB thaj tsam li no tej zaum yuav muaj ib co NTXHUAB tej khoom no, tab sis kuv ntseeg tias nws yuav yog rau WSS. Kuv cia siab tias leej twg pom cov lus kom raug los omissions yuav taw tes uas hauv cov lus los yog email rau kuv. Kuv mam li ua corrections rooj vag mus ceev.

Fundamentals:

Rau cov hom phiaj ntawm qhov txheej txheem cej luam, muaj plaub siv kev kom ruaj: cov neeg los ib pawg, securable khoom, tso cai ntxiv thiab tej ncaus.

Cov neeg thiab ib pawg cia rau:

  • Cov neeg uas ib tug neeg: Rho tawm dhia daim keeb kwm los created hauv SharePoint.
  • Tej pawg: Mapped ntawm lub directory los yog tsim nyob rau hauv SharePoint. Pawg no tus sau los ntawm cov neeg. Yog ntiaj teb no nyob rau hauv ib qhov chaw sau tej pawg. Lawv yeej ib txwm tsis "tied" muaj kev tawm tsam securable.

Securable khoom khis cia kom tsawg:

  • Chaw
  • Daim ntawv qiv
  • Yam khoom ntawd npe thiab daim ntawv qiv
  • Folders
  • Ntau cov chaw BDC.

Muaj lwm yam khoom uas securable, tab sis, koj yuav tau daim duab.

Tso cai ntau ntau: Ib lub nras uas ntau / tej txoj cai uas tsis muaj kawm ntawv uas muaj tej yam li ua/nyeem/rho tawm nkag hauv lub npe.

Ncaus: Los ntawm cov chaw vim inherit cov chaw ruaj ntseg ntawm cov twj paj nruas uas muaj. Ncua lub chaw inherit txoj kev tsocai los ntawm nws niam nws txiv. Daim ntawv qiv ntawm lawv qhov chaw inherit. Hais txog thiab li ntawd.

Cov neeg siv thiab pawg txheeb securable khoom ntawm tso cai ntxiv thiab tej ncaus.

Cov tseem ceeb tshaj plaws Security cai To taub, Ever 🙂 :

  1. Pawg no cias collections ntawm cov neeg.
  2. Yog ntiaj teb no nyob rau hauv ib qhov chaw sau tej pawg (i.e. yog tsis muaj zoo li no uas yog ib cov lus sau tseg rau hauv ib qhov chaw tiaj).
  3. Pab pawg neeg lub npe tsis withstanding, pawg tsis, nyob rau hauv thiab ntawm lawv tus kheej, muaj tej tug theem ntawm kev ruaj ntseg.
  4. Pawg muaj kev ruaj ntseg hauv lub ntsiab lus teb ib securable hais kwv.
  5. Koj yuav cob cov qib sib txawv tso cai mus rau cov pab pawg neeg tib yam rau txhua txhua tus kwv securable.
  6. Web daim ntawv cai trump nov tag nrho (saib hauv qab).

Ruaj ntseg thawj xibfwb poob rau hauv lub hiav txwv los ntawm kev faib pab pawg neeg thiab cov neeg siv yeej ib txwm khi cov axioms los tswj thiab to taub txog cov kev ruaj ntseg configuration.

Hom Pitfalls:

  • Pab pawg neeg cov npe yees tsi tso cai: Mus rau ntawm lub box, SharePoint nyiaj thiab lub sij txheej pawg uas lawv cov npe teev ib theem ntawm kev ruaj ntseg xam qhovkev. Xav txog rau pawg "Contributor". Ib qho txawv uas ruaj ntseg SharePoint yuav zoo saib ntawd lub npe thiab tias tias pawg neeg yuav "pab txhawb kev pov plob" mus rau lwm qhov chaw/sau/tsev qiv ntawv hauv lub portal. Uas tej zaum yuav muaj tseeb tiam sis tsis tau vim tias cov pab pawg neeg lub npe zoo li yuav tau "contributor". Qhov no tsuas mus rau ntawm lub box muaj tseeb vim hais tias cov pab pawg neeg tau muab daim ntawv tso cai npaum li uas lawv mus ntxiv/hloov/rho tawm kawm ntawm lub hauv paus kawm ntawv enables. Los ntawm ncaus, "contributors cov" pab pawg neeg kuj yuav ntxiv/hloov/rho tawm ntsiab lus ntawm txhua qhov chaw ncua. Ib tug yuav "tawg" qhov ncaus saw thiab pauv kev tso cai lawm ib ncua ntawm tej tus neeg ntawm qhov sib "Contributor" pab tsis tau pab txhawb txhua, tab sis, tsuas nyeem (Piv txwv). Qhov no yuav tsis muaj ib lub tswv yim zoo, obviously, vim nws yuav ruam heev tag.
  • Pawg no tsis txhais ntawm ib qhov chaw tiaj. Nws yog ib qho yooj yim uas totaub los ntawm cov neeg interface. Microsoft muaj ib qhov txuas yooj yim rau cov neeg siv/pab pawg neeg tswj ntawm txhua qhov chaw tus "neeg thiab ib pawg" txuas. Nws yog ib qho yooj yim uas ntseeg tias thaum kuv tab tom kawm ntawv "xyzzy" thiab kuv tsim tau ib pab los ntawm xyzzy tus neeg thiab ib pawg txuas uas kuv twb nyuam qhuav yuav tsim cov ib pawg uas tsuas tshwm sim nyob xyzzy. Uas yog tsis tau hais. Kuv twb tau tsim ib pawg rau cov tseem kawm ntawv sau.
  • Pawg koom tsis txawv ntawm qhov chaw (i.e. Nws yog ib yam qhov txhia chaw siv rau pawg): Xav txog cov pab pawg neeg "tswv" thiab ob qhov chaw, "HR" thiab "Logistics". Ces yuav tsis xav tias ob dua lwm cov neeg uas yuav muaj cov chaw — tus HR cov tswv tsev thiab tus tswv tsev Logistics. Tus neeg siv interface ua kom yooj yim rau ib tug neeg khiav dej num ruaj ntseg rau mishandle no scenario. Yog hais tias kuv tsis paub zoo, Kuv yuav nkag tau rau neeg thiab ib pawg txog ntawm tus HR chaw, xaiv "tswv lub" pab pawg neeg thiab ntxiv kuv HR tswv rau ntawd. Ib hlis tom qab, Logistics los ntawm kab. Kuv saib cov neeg thiab cov neeg nyob ua ke ntawm lub Logistics site, ntxiv rub tau "tswv lub" ib pab. Kuv pom tus HR tswv muaj thiab tshem nws, xav tias kuv yuav hle nws los ntawm tus tswv tsev rau lub Logistics site. qhov tseeb, Kuv yuav hle nws los ntawm tus tswv neeg ntiaj teb no. Hilarity ensues.
  • Failing rau npe pawg raws li ib tug: "Approvers cov" ib pab neeg yog ib tug piv txwv zoo meej. Neeg no pab approve yuav zoo li cas? Lawv yuav pom tau tias qhov twg? Kuv yeej xav tsi neeg Logistics koom tau pom zoo HR cov ntaub ntawv? Tau kawg tsis. Yuav tsum rau npe pawg raws li lawv lub luag hauj lwm nyob rau hauv lub koom haum. Qhov no yuav pab txo kom tias cov kev pab yog muab ib theem tej kev tso cai rau ib qho securable kwv. Lub npe pawg raws cov luag hauj lwm intended. Nyob rau hauv tus HR/Logistics scenario dhau los, Kuv yuav tsum tau tsim ib pawg ob tug tshiab: "HR cov tswv" thiab "Logistics tswv" thiab cob cov paub tab paub xav tso cai ntau ntau rau neb thiab nyiaj yam tsawg kawg nkaus uas rau cov neeg siv cov ua lawv txoj hauj lwm.

Lwm yam chiv keeb uas pab tau:

Yog hais tias koj twb ua nws qhov no kom deb deb:

Thov qhia rau kuv paub tias koj kev xav mentsis ntawm cov lus los sis email rau kuv. Yog koj paub lwm yam chiv keeb zoo, thov koj ua zoo li qub!

Ntawv cim npe Technorati: