# SSL and Dreamweaver MX

**URL:** <https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478>\
**Category:** programming\
**Created:** [November 3, 2003, 1:17am UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478 "2003-11-03T01:17:30Z")\
**Posts on this page:** 6\
**Page:** 1

<div class="post-metadata">

**Author:** ![flashermx](https://avatars.discourse-cdn.com/v4/letter/f/e5b9ba/32.png) [@flashermx](https://forum.kirupa.com/u/flashermx)\
**Post date:** [November 3, 2003, 1:17am UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478/1 "2003-11-03T01:17:30Z")

</div>

I have created a html login page using asp and storing the username, passwords, and level of security on a access database. The user logs in the database is quireed and if the password and user name match the user is brought to an admin control panel page, if not they are brought to an asp page notifiyng them of the incorrect enytry.

Which page or pages should be in the secured part of the server, the login page? the admin control panel page? or both? and why?

:stunned:

---

<div class="post-metadata">

**Author:** ![system](https://canada1.discourse-cdn.com/flex011/uploads/kirupa/original/3X/6/2/621e5c11736f46532526e61be85940af4230f3e5.png) [@system](https://forum.kirupa.com/u/system)\
**Post date:** [November 3, 2003, 3:19am UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478/2 "2003-11-03T03:19:26Z")

</div>

If you are worrying about encrypting the username/password transfer from browser to server then the login input page will need to be on a secure page so the data will be encrypted when sent to the login script to query the database.

If you’re only concerned with encrypting sensitive infomation within the admin area, then redirecting to a secure page after login is all you need to do.

---

<div class="post-metadata">

**Author:** ![system](https://canada1.discourse-cdn.com/flex011/uploads/kirupa/original/3X/6/2/621e5c11736f46532526e61be85940af4230f3e5.png) [@system](https://forum.kirupa.com/u/system)\
**Post date:** [November 3, 2003, 11:02am UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478/3 "2003-11-03T11:02:07Z")

</div>

:tb:

Thanks Abzoid.

---

<div class="post-metadata">

**Author:** ![system](https://canada1.discourse-cdn.com/flex011/uploads/kirupa/original/3X/6/2/621e5c11736f46532526e61be85940af4230f3e5.png) [@system](https://forum.kirupa.com/u/system)\
**Post date:** [November 3, 2003, 12:59pm UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478/4 "2003-11-03T12:59:29Z")

</div>

Abzoid, so if i have any forms where I am entering sensitive information to be either checked against the database or entered against the database they should be on a secured page?

:p:

---

<div class="post-metadata">

**Author:** ![system](https://canada1.discourse-cdn.com/flex011/uploads/kirupa/original/3X/6/2/621e5c11736f46532526e61be85940af4230f3e5.png) [@system](https://forum.kirupa.com/u/system)\
**Post date:** [November 3, 2003, 2:36pm UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478/5 "2003-11-03T14:36:10Z")

</div>

Yes, if you feel that there is a potential risk of the login data being “captured” if transmitted un-encrypted, and the consequences of un-authorized access into the password protected area warrants such caution.

In my opinion, unless you are dealing with customer credit card info or other sensitive data of a personal or financial nature, there really isn’t a need to encrypt the login, or even the admin area. However, if you already have a secure certificate for the domain the additional steps required to encrypt the login and admin are so are so minor that you may as well do so.

(_for those that may not know, all you need to do to activate SSL once the certificate is installed on the server, is use full paths in all links and use http **s** :\ in place of http:\_)

---

<div class="post-metadata">

**Author:** ![system](https://canada1.discourse-cdn.com/flex011/uploads/kirupa/original/3X/6/2/621e5c11736f46532526e61be85940af4230f3e5.png) [@system](https://forum.kirupa.com/u/system)\
**Post date:** [November 3, 2003, 10:30pm UTC](https://forum.kirupa.com/t/ssl-and-dreamweaver-mx/34478/6 "2003-11-03T22:30:41Z")

</div>

Thanks again Abzoid. Very thourough.  
:nerd:
