Security and authentication

Securing the content of your website and making sure the right users have access to the right features and privileges is crucial for a content management system. With Sitefinity CMS, you have a variety of options how to control security and authentication to your website and its content. In addition, you can fine-tune these settings to suit your custom scenarios.

Sitefinity CMS uses claims-based authentication, but according to your needs, you can switch to other authentication models. For example, you can switch to forms authentication or set up SSO or external STS login.

You can create and manage all users that have authentication to access Sitefinity CMS and its content. You can specify user details, password requirements, and create user profiles to simplify user management. For example, you can display different information for users or different groups of users.

You can also group users by the set of privileges they have, or, by role. Roles are an efficient way to manage permissions for groups of users as they classify users with similar characteristics and responsibilities. Roles also determine which parts of Sitefinity CMS a user can view. You can edit or delete the built-in Sitefinity CMS user roles or create new ones.

Once a user with a specific role is granted access to a specific part of Sitefinity CMS, they need permissions to do perform activities other than navigation.  Permissions are rights that define the type of actions a given user can perform. To manage permissions, you can assign permissions not only to users and roles, but also on global or  section level, as well as for individual items.

You can configure administration settings covering a range of security and authentication aspects.

Last, but not least, you have the option to manage all security and authentication related implementations and settings programmatically using the Sitefinity CMS API and its dedicated interfaces for security features and characteristics.


Increase your Sitefinity skills by signing up for our free trainings. Get Sitefinity-certified at Progress Education Community to boost your credentials.

Get started with Integration Hub | Sitefinity Cloud | Sitefinity SaaS

This free lesson teaches administrators, marketers, and other business professionals how to use the Integration hub service to create automated workflows between Sitefinity and other business systems.

Web Security for Sitefinity Administrators

This free lesson teaches administrators the basics about protecting yor Sitefinity instance and its sites from external threats. Configure HTTPS, SSL, allow lists for trusted sites, and cookie security, among others.

Foundations of Sitefinity ASP.NET Core Development

The free on-demand video course teaches developers how to use Sitefinity .NET Core and leverage its decoupled architecture and new way of coding against the platform.

Was this article helpful?