FormsAuthenticationConfiguration.Protection Property


The .NET API Reference documentation has a new home. Visit the .NET API Browser on to see the new experience.

Gets or sets the encryption type used to encrypt the cookie.

Namespace:   System.Web.Configuration
Assembly:  System.Web (in System.Web.dll)

<ConfigurationPropertyAttribute("protection", DefaultValue := FormsProtectionEnum.All)>
Public Property Protection As FormsProtectionEnum

Property Value

Type: System.Web.Configuration.FormsProtectionEnum

One of the FormsProtectionEnum enumeration values. The default value is All.

Note   Be sure to use the default value for this property if you want both data validation and encryption to help protect the cookie. This option uses the configured data-validation algorithm based on the machineKey. Triple-DES (3DES) is used for encryption, if available and if the key is long enough (48 bytes or more).

To improve the protection of your cookie, you may also want to set the RequireSSL to true.

The following code example shows how to access the Protection property. Refer to the code example in the FormsAuthenticationConfiguration class topic to learn how to get the section.

' Get the current Protection.
  Dim currentProtection As FormsProtectionEnum = _

' Set the Protection property.
formsAuthentication.Protection = FormsProtectionEnum.All

.NET Framework
Available since 2.0
Return to top