Found these to be highly recommended
Building and Configuring More Secure Web Sites
Security Best Practices for Windows 2000 Advanced Server, Internet Information Services 5.0, SQL Server 2000, and the .NET Framework
*
http://www.msdn.microsoft.com/librar...l/openhack.asp
**very detailed resource below**
Building Secure ASP .NET Applications .pdf Download
Guidelines for authentication, authorization and secure communication across the tiers. Topics include ASP.NET, Enterprise Services (COM+), Web Services, Remoting, and data access (including ADO.NET and SQL Server).
*
http://www.microsoft.com/downloads/d...C-BF9C6593F25E
Hope this helps some out there
/JD