Web security settings

Sitefinity CMS provides you with a variety of settings to fine-tune security and authentication.

You can configure access over an IP network through LDAP or configure SSL when you have sensitive information, such as login credentials or credit card information, transferred over the network. You can additionally secure cookies and configure authentication expiration.

When working with more than one website in Sitefinity CMS, to avoid logoff from one of the websites to login to the other, you can configure to login with the same credentials to different websites that run on the same localhost. You can also configure when and whether the self-logout dialog is displayed.

This section contains

Configure SSL
Install SSL certificate and configure all or specific pages to require SSL, especially when having sensitive information transferred over the network.
Secure cookies
Use this procedure to secure cookies for claims and forms authentication.
HTML sanitization
HTML sanitizer ensures HTML content is safe and avoids cross-site scripting (XSS) attacks while allowing users to contribute with content.
Global data processing
Use the global data processing framework to process all data that is sent to the database. Define data processors to track or modify the database entities.
Append nofollow attribute to untrusted links
Append a rel="nofollow" attribute to hyperlinks present in untrusted content. Untrusted content represents comments posted by site visitors.
Want to learn more?
Enhance your Sitefinity skills by enrolling in free training sessions. Become Sitefinity certified through Progress Education Community to strengthen your professional credentials.
New to Sitefinity?