ASP technology keep the user's information by session , verify authenticity of userls identity and Determine whether they have access authorization in very web page using session variables. Session and IIS together determine the authorization and the identity of the user. The Provider Model---which is used throughout the ASP.NET 2.0 framework-- solve the problem of Web site security. The Membership Provider is used to store usernames and passwords, and the Role Provider is used to store user roles.The paper give a detailed description on how to config web.config and program to make management of members and roles more Practicality.
Computer Programming Skills & Maintenance