Home | Contact Us | FAQ | Search & Site Map | Link to Us
Sign In | Join | Other 45 Sites in Network
HomeAnnouncementsFree MagazinesWhite PapersSubmit Content
Discussion GroupsASP.NETWindows FormsLanguages.NET FrameworkVisual Studio.NET
Articles.NET FrameworkASP.NETToolsWindows Forms
.NET DirectoryOpen Source ProjectsUser GroupsWeb Resources
Related Topics
Visual Basic 6SQL ServerMS AccessOther DB ProductsMS Server ProductsMore Topics ...

.NET Forum / .NET Framework / Security / October 2005

Tip: Looking for answers? Try searching our database.

Local AzMan XML store from Win32 Service Running as Local System

Thread view: 
Enable EMail Alerts  Start New Thread
Thread rating: 
owrt2@nospam.nospam - 24 Oct 2005 22:06 GMT
I'm having a problem trying to access an AzMan (Authorization Manager) XML
store from a process running as a Win32 service.

I get a  "System.ArgumentException: The parameter is incorrect" thrown from
AZROLESLib.AzAuthorizationStoreClass.Initialize().

The Win32 service is running as "Local System". If I run the service as my
domain account, it works fine. However, I need to be able to run the service
as "Local System".

The platform is Windows XP SP2 (which is one of the target platforms for the
software I'm building).

I've set the permissions on the XML store (validated the file permissions
and validated in the AzMan MMC plug-in) so that pretty much every
"well-known" system group has full control over the store. However, I was
unable to get it to work.

The only other mention of this I've seen is that it might work on Windows
Server 2003 but doesn't work on Windows XP. The writer of that post implied
the AzMan was broken under Windows XP.

Anyone got any ideas about how to make this work?

Thanks,

Chris
richlm - 26 Oct 2005 12:42 GMT
Experienced exactly the same problem. And it makes no difference if you use
an XML store or a store in AD/ADAM.

AzMan works fine on Windows Server 2003, but the other post your have seen
is - unfortunately - correct.
It gets worse: AzMan is not even officially supported by Microsoft on
Windows XP.

The only workaround I am aware of is to use a domain account.

We also chose a 3-tier architecture where all the AzMan access is made from
an application server (running on a Win2003 server).

Free Magazines

Get these publications absolutely FREE for up to 12 months. There are no hidden fees and no obligation. Simply choose a title, complete the application form and submit it. Read more ...

Oracle MagazineNetwork ComputingComputer WorldBio-IT WorldeWeekInformation WeekInfosecurity
 
Sign In
Join
My Latest Posts
My Monitored Threads
My Blog
My Photo Gallery
My Profile
My Homepage

Start New Thread
Enable EMail Alerts
Rate this Thread



©2008 Advenet LLC   Privacy Policy - Terms of Use
This website includes both content owned or controlled by Advenet as well as content owned or controlled by third parties.