Home > Domino Tips > Spam and Security > Secure HTTP Login
Domino Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

SPAM AND SECURITY

Secure HTTP Login


Zane Vogelsberg
08.11.2000
Rating: -3.50- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


How to ensure that your Domino HTTP usernames and passwords are secured during log in. Normal Domino logins are passed via clear text and can be easily captured by sniffers sitting outside of your firewall. This helps to encrypt those logins.

Code

There are 8 steps that I use to ensure that Domino HTTP passwords are encrypted:

1. Enable Session Authentication on the Internet Protocols, Domino Web Engine section of the server document.

2. Follow the instructions in the Domino Administration help to configure and enable SSL.

3. Create a database with a special login form in it. A sample database can be found at
www.notes.net/sandbox.nsf/DownloadPage?OpenForm
Under the Popular downloads, choose the Domino Custom Login Forms database.

4. Upload this database to the data directory


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Spam and Security
Securely connect Lotus Domino servers on different domains
Protect Lotus Notes from malicious code with the Domino ECL
How to correct Lotus Notes public key mismatches in four easy steps
A recipe for secure IM success
Telecommuter security kit
Spear phishing: Don't be a target
FAQ: Lotus Notes Domino password issues
Security awareness training: How to educate employees about spyware
Seven tips to strengthen your Domino e-mail security
Admin2005 preview: Tips, techniques, and a look at Notes/Domino Rel. 7

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


on your server with the name DCLF.nsf (can be any name but will use this for example)

5. In the database properties of any database you are publishing via Domino, set the Web Access: Require SSL Connection to yes.

6. Customize one of the forms in DCLF.nsf to your companies colours, logos, etc.

7. Create a Domino Configuration Database named domcfg.nsf (must be in the root). In that database, create a mapping to a custom login form. Point to the DCLF.nsf and form that you set up in steps 3 and 4.

8. Recycle the HTTP service >tell http restart

You will notice that when you go to login, you are presented the form in DCLF.nsf that you modified earlier, you will also notice that SSL has been activiated on your browser. When you login, your User Name and password are now passed to the server under SSL.

Rate this Tip
To rate tips, you must be a member of SearchDomino.com.
Register now to start rating these tips. Log in if you are already a member.


Submit a Tip




DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.



Domino & Lotus Notes Security Solutions: Authentication, Antispam, Encryption and Antivirus
HomeTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersDomino IT Downloads
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 1999 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts