Is ASP.NET MVC suitable for highly secure public sites?

I am considering using ASP.NET MVC for the current project, but I have some security issues.

The site is viewed via HTTPS and should be very secure. Are there legitimate reasons why I should avoid ASP.NET MVC? Is there anything I need to know if I go this route?

+3
source share
5 answers

First, Microsoft would develop an ASP.net MVC framework using "Preventing Security Development Errors: Lessons Learned in Windows Live Using ASP.NET MVC . "

, Microsoft ASP.net MVC live.com. .

Stackoverflow

/fooobar.com/... ASP.net MVC . SO, . .

ASP.net vs ASP.net MVC

  • - ASP.net ASP.net MVC

, , .

+7

ASP.NET MVC -. , .

+5

, ASP.NET MVC?

. .

-, ?

, , - .
, .

.

+2

. , "" , , ASP.NET/MVC .

, , "" asp.net Web Forms, , MVC. , .

Asp.NET MVC

+1

, MVC, , . , - ASP.NET, , .

:

  • WebForms , , Cross Site Request Forgery, ( viewstate). ASP.NET MVC , ... ( Html.AntiForgeryToken), , .

  • MVC , , , . , MVC ( ), , .

, MVC, .

Regarding security, I think that the structure you use is much less important than a thorough understanding of common security problems, as well as your own application threat model.

+1
source

Source: https://habr.com/ru/post/1723722/


All Articles