COM+ Security Concepts

COM+ security is designed to suit the needs of a middle-tier, multiuser, enterprise-scale component system. This is a tricky apex of security considerations. You have the client world on one side, which might include HackUBill coming in over the Web, and the data center on the other side, which generally includes your business-critical data stores. Many e-commerce solutions simply rule out any behavior that is not completely benign and suitable for unidentified public consumption. Still other solutions work an application-specific security mechanism into their systems with user IDs and PINs. Both of these scenarios plot a relatively clear security course—no security at all versus develop everything yourself. Although both ...

