[Mono-list] asp.net web.config Forms authentication config issues

Get Bent motorhead9876 at yahoo.com
Thu Aug 16 16:37:11 EDT 2007

In my web.Config, I'm using a rather standard authentication scheme to authenticate users. Here's the web.config snippet...

               <authentication mode="Forms">

                        <deny users="?" />

The "?" means don't allow unathenticated users, or users without the auth cookie. This causes the user to be redirected to the login.aspx page to get the auth cookie set. Easy enough. But when loading the login page, mono thinks that authentication is needed for each javascript and css file included in the login.aspx page, requests for them redirect the user to the login page. Odd.

Here's the apache log: - - [16/Aug/2007:04:29:28 -0400] "GET /login.aspx?ReturnUrl=%2fstyle%2fmenu.css HTTP/1.1" 200 2192 - - [16/Aug/2007:04:29:28 -0400] "GET /style/master.css HTTP/1.1" 302 174 - - [16/Aug/2007:04:29:28 -0400] "GET /login.aspx?ReturnUrl=%2fstyle%2fmaster.css HTTP/1.1" 200 2194 - - [16/Aug/2007:04:29:28 -0400] "GET /js/jquery- HTTP/1.1" 302 183 - - [16/Aug/2007:04:29:28 -0400] "GET /login.aspx?ReturnUrl=%2fjs%2fjquery- HTTP/1.1" 200 2203

Do I have something misconfigured? Or should I just allow all access (including unauthenticated access) to my style and js directories?  Is there another solution to this?



