October, 2005

  • .NET Security Blog

    Test Key Signing

    • 10 Comments
    One feature that will start to show up on the latest CTP of Whidbey is test key signing -- basically delay signing++. Lets do a quick review of what delay signing is , and then see where test key signing takes over. Recall a delay signed assembly is one...
  • .NET Security Blog

    Host Protection

    • 5 Comments
    One of our new Whidbey hosting features is called Host Protection -- basically it allows an application hosting the CLR to declare some types of operations off limits for use by hosted code. This is orthogonal to CAS in that CAS allows an administrator...
  • .NET Security Blog

    Using Host Protection

    • 4 Comments
    Yesterday we looked at what host protection is and what it does. Today lets modify the ADMHost sample code so that it disables access to self affecting and external threading operations. We'll then attempt to run a bit of code that launches 10 threads...
  • .NET Security Blog

    Debugging Lightweight CodeGen in VS

    • 0 Comments
    Haibo just posted about his debugger visualizer for dynamic methods . This is a pretty sweet piece of code for anyone who uses lightweight code generation and needs to debug the code they've emitted. Basically it adds a visualizer to DynamicMethod objects...
  • .NET Security Blog

    Tour the CLR Security Team

    • 0 Comments
    Mike and I have been spending time this week meeting with the Visual Developer Security MVPs -- having plenty of discussion about what we can do in future releases of the framework and how CAS relates to some of the rest of Microsoft's products. It's...
  • .NET Security Blog

    New Security Features in Visual Studio 2005

    • 0 Comments
    Brian Johnson has a new article on MSDN about New Security Features in Visual Studio 2005 . Definitely worth a read -- he covers a lot of area, from Application Verifier, to ClickOnce, to PermCalc, right on down to unit testing.
  • .NET Security Blog

    Exploring the ADMHost Sample

    • 0 Comments
    When I first talked about AppDomainManagers , I mentioned that there were three ways to set them up. You can either setup an environment block, use some registry keys, or use the unmanaged hosting API. In most of my samples so far I've used the environment...
  • .NET Security Blog

    MSDN Security Issue

    • 0 Comments
    The annual MSDN Security Issue is now out, in addition to containing my article on hosting untrusted code, it also has one by Mike on What's New With Code Access Security in the .NET Framework 2.0 . We worked to make these two articles fit nicely together...
Page 1 of 1 (8 items)