View Single Post
Old 04-19-2008   #1 (permalink)
Sarasam
Guest
 
Posts: n/a

WCF Security Question

i have a WCF service(hosted in IIS) with the following configuration:
basichttpbinding
MTOM
Streaming(for file upload and download)
now i want to implement a security system where i receive username/password
only once. after which i want to issue a custom generated token which should
be used for all subsequent calls to service. i also want to control the
expiration and renewal of the issued token. what should be my approach in
order to acheive this?
please advice, if possible with some code sample.