Security Mode = "No

I have several colleagues who created the WCF service. Their security settings are as follows:

security mode="None"
   transport clientCredentialType="Windows" proxyCredentialType="None" realm=""
   message clientCredentialType="Windows" negotiateServiceCredential="true"   
       establishSecurityContext="true" 
security

Does it make sense to specify the security mode = "No" and then specify the transport / message security under it?

+3
source share
2 answers

This is generally just SAFETY in general - it does not make sense at all - with the possible exception of development time :-)

If you have <security mode="None">, then everything that you indicate below is not taken into account - you too can leave it.

+5
source

, mode = "None" , .

+1

Source: https://habr.com/ru/post/1718878/


All Articles