Five New Optimizely Certifications are Here! Validate your expertise and advance your career with our latest certification exams. Click here to find out more
AI OnAI Off
Five New Optimizely Certifications are Here! Validate your expertise and advance your career with our latest certification exams. Click here to find out more
Hi Freguz,
There's a nice article in the documentation on what we recommend:
http://world.episerver.com/Documentation/Items/Developers-Guide/EPiServer-CMS/75/Security/Securing-edit-and-admin-user-interfaces/
/T
Thanks a lot Toni!
The magic text was:
"Follow the description below to make the edit/admin user interfaces unavailable on a publicly facing server.
In web.config, both for <location path="EPiServer"> and <location path="EPiServer/CMS/admin">, remove any allow roles (WebEditors, WebAdmins, Administrators and additonal ones) so that the <authorization> sections only contain the following:"
Hi
In a load balanced environment, I would like to turn off the CMS from the www front servers (we have a dedicated cms server).
What is best practice when it comes to this, just empty the field for cms url in episerver.config or something else?
regards
Fredrik