    I&#039;m attempting to use forms security with this in my web.config file:<BR>&#060;authentication mode="Forms"&#062;<BR> &#060;forms loginUrl="Login.aspx" name=".ASPXAUTH"/&#062;<BR> &#060;/authentication&#062;<BR><BR>I thought that if someone hit a page in the application without going to login.aspx first, it would route them to login.aspx, but it doesnt seem to be working this way -- you can hit any page without logging in to login.aspx first -- is there something I&#039;m missing here<BR><BR>Thanks<BR><BR>Pete

    It is supposed to work that way. I had a problem with it not working correctly, which is outlined in this msdn article.;en-us;313116<BR><BR>Good luck.<BR>Sara

    Is this one:<BR>&#060;deny users="?" /&#062;<BR><BR>You can set forms authentication all day, but if you aren&#039;t denying access for anyone, to any page, why would it ever redirect to the login page?<BR>

