Com+ security configurations

 
 

 
 
 
 
 
Com+ security configurations on both Servers (Windows server 2003 R2)
 
 
 
 
 
Prepared by:        Tom
Date:                     2008-06-4
 
Introduction:
 Customer requires more security system to running CAS application. And the Microsoft company system software windows server 2003 is meeting customer’s requirement. But more security means more fussy configurations. So we should provide some documents to showing the steps.
This document introduces how to configure com+ security both on CAS server (Windows server 2003 R2).
Basic configure document after installed CAS.
If CAS Application and Presentation were installed on different Windows2003 Server, com+ security configure must be consider, other way CAS would be report “Access is Denied” or “Permission Denied” error.
Two methods configure com+.
1.     The com+ security setting steps with the two servers belong to the same domain;( Recommend)
 
COM+ security configuration on CAS Presentation server (PS) steps.
 
Add CAS PS to a domain. For example “TomDNS”.
 
 
COM+ security configuration on CAS Application server (AP) steps.
 
Add CAS AP to a domain. The domain is same with PS. For example “TOMDNS”.
 
 
 
 
 
 
 
 
 
 
 
 
 
Login CAS AP with administrator (Local account) or a domain account.
 
Open “Windows Components Wizard”, be sure selected the checkbox “Enable Network COM+ access” .
 
 
Open “Component Services”, Right click “ ”, properties.
 
Launch and activation Permissions: Click button “Edit Limits…”, change “Everyone” permissions .
 
 
Reset two servers to check it again.
 
 
2.     The com+ security setting steps with the two servers not belong to the same workgroup;
 
COM+ security configuration on CAS Presentation server (PS) steps.
 
Using default setting as basic configure document.
 
COM+ security configuration on CAS Application server (AP) steps.
 
  Open “Windows Components Wizard”, be sure selected the checkbox “Enable Network COM+ access” .
 
 
Open “Component Services”, Right click “ ”, properties.
Access Permissions: Click button “Edit Default” to edit the com+ access permission users. Add “Everyone” and “NETWORK” or “ ANONYMOUS”.
Launch and activation Permissions: Click button “Edit Default”, add “Everyone” and “NETWORK” or “ ANONYMOUS”.
 
Launch and activation Permissions: Click button “Edit Limits…”, change “Everyone” permissions .
 
 
MSDTC security configures.
Open “Component Services”, right click “My Computer”, select Properties, select the tab “MSDTC”, Click button “Security configuration”.
 
 
Configure MSDTC security.
 
 
Open “Component Services”, right click “My Computer”, select Properties, select the tab “Default Properties”, the “Default Authentication Level” setting to “None”;
 
 
Right click “Com+ Applications”->”X Products Core”, select menu “Properties”. Setting “Authentication Level for Calls” to “None”.
Enable user “Guest” .
Note: If you also meet error “Access is denied”, change two servers administrator password to the same password.
Reset two servers to check it again.
 
 
 
 
 
 
 
 
 
 
  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值