Web security settings
Sitefinity CMS provides you with a variety of settings to fine-tune security and authentication.
You can configure access over an IP network through LDAP or configure SSL when you have sensitive information, such as login credentials or credit card information, transferred over the network. You can additionally secure cookies and configure authentication expiration.
When working with more than one website in Sitefinity CMS, to avoid logoff from one of the websites to login to the other, you can configure to login with the same credentials to different websites that run on the same localhost. You can also configure when and whether the self-logout dialog is displayed.
This section contains
Configure SSL
Install SSL certificate and configure all or specific pages to require SSL, especially when having sensitive information transferred over the network.
Secure cookies
Use this procedure to secure cookies for claims and forms authentication.
HTML sanitization
HTML sanitizer ensures HTML content is safe and avoids cross-site scripting (XSS) attacks while allowing users to contribute with content.
Global data processing
Use the global data processing framework to process all data that is sent to the database. Define data processors to track or modify the database entities.
Append nofollow attribute to untrusted links
Append a rel="nofollow" attribute to hyperlinks present in untrusted content. Untrusted content represents comments posted by site visitors.
Want to learn more?
Enhance your Sitefinity skills by enrolling in free training sessions. Become Sitefinity certified through Progress Education Community to strengthen your professional credentials.
Get started with Integration Hub | Sitefinity Cloud
This free lesson teaches administrators, marketers, and other business professionals how to use Sitefinity Integration Hub to create automated workflows between Sitefinity and other business systems.
Web Security for Sitefinity Administrators
This free lesson teaches administrators the basics about protecting your Sitefinity instance and your sites from external threats. Configure HTTPS, SSL, allow lists for trusted sites, and cookie security, among others.
Foundations of Sitefinity ASP.NET Core Development
The free on-demand video course teaches developers how to use Sitefinity ASP.NET Core and take advantage of its decoupled architecture and modern development model.