Important security issues
- When using a report server on Microsoft Windows platform over the Internet, it is recommended to use a firewall between server and internet network.
- It is obligatory to use the authentication of the client program (section 3.8).
- Use the "allow/deny IP" function in local network (section 3.9).
- If you have any gateways to Internet in local network, then include IP addresses of these gateways to the "deny" list of the report server (section 3.9).
- Do not pass parameters to database connection from client if you use reports with internal database components.
- In reports folder, store only those reports, which you use in your application.
- Do not store any private documents in the HTTP root folder.
- If you find any bugs in security system of the FastReport Enterprise, send a note to the developers of the product.