Hi all,

I'm trying to upgrade our dev server from cf5 to cfmx and am having a little
problem... (btw its win2k & iis5 & sql2k).

The security on our websites depends on an isapi filter which redirects the
user to a secure login page, sets a cookie then allows the user back to the
website. The cookie is only persistent during the open browser session.

After having installed cfmx there appears to be some kind of conflict
between our security isapi filter and the CFMX Jrun Connection Filter - in
that sometimes our security isapi filter runs first and the user can login,
or the Jrun isapi filter runs first and ignores the security. The means that
sometimes you can login and sometimes not. It seems to be in a similar vein
to a message posted in the macromedia forums (though no solution has been
offered yet):
http://webforums.macromedia.com/coldfusion/messageview.cfm?catid=12&threadid
=500822&highlight_key=y&keyword1=isapi

Unfortunately, we are required to use the university's security isapi
filter, so we can't remove that, so am I stuck with going back to cf5? or
are there any other options open to me?

One thought I had was that we move to apache as the problem above is partly
due to iis.

Any thoughts, suggestions (or even a solution!) would be much appreciated.

TIA

Alex Little
Web Developer
Institute of Educational Technology
Open University, UK
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Archives: http://www.houseoffusion.com/cf_lists/index.cfm?forumid=4
Subscription: 
http://www.houseoffusion.com/cf_lists/index.cfm?method=subscribe&forumid=4
FAQ: http://www.thenetprofits.co.uk/coldfusion/faq
This list and all House of Fusion resources hosted by CFHosting.com. The place for 
dependable ColdFusion Hosting.

Reply via email to