    I am connecting to a SQL server database. I have a file that holds the connection string for this database. I have a user name and password in the file. <BR><BR>1. Is there a better was to hold my connection string?<BR>2. How unsecured is it to hold the connection string in an .asp file that no one has access to?<BR><BR>Thanks<BR>

    not "unsecured" at all, but also not "secured", if someone really wanted to they coiuld probably hack you server and get that file, but they&#039;d have to know what they where looking for.<BR><BR>chances are extremely minimal....<BR>D.

