Key Recommendations/Guidelines:
ASP.NET 2.0 Security Guidelines: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGGuidelines0001.asp ASP.NET 2.0 Security Checklist: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGCK0001.asp ASP.NET 2.0 Security Practices at a Glance: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGPractices0001.asp
How Things Work:
Forms Authentication Explained: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGExplained0002.asp Windows Authentication Explained: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGExplained0001.asp
Security EngineeringWeb Application Security Engineering:Includes threat modeling web applications, security design review, security code review, and security deployment review. Home: http://msdn.microsoft.com/library/en-us/dnpag2/html/WebAppSecurityEngIndex.asp
ASP.NET 2.0 Security Code Review:
How To: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGHT000027.asp ASP.NET 2.0 Question List: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGQuestionList0001.asp
Cheat Sheets
Cheat Sheet: Web Application Security Threats, Attacks, Vulnerablities, and Countermeasures: http://msdn.microsoft.com/library/en-us/dnpag2/html/PAGQuestionList0001.asp
Index of ASP.NET 2.0 Security Guidance
ASP.NET 2.0 Security Guidance View: http://msdn.microsoft.com/library/en-us/dnpag2/html/ASPNET2SecurityGuidanceIndex.asp