[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] Raq 2 & Raq 3 Filtered Login Security



On Wed, Apr 05, 2000 at 07:03:21PM +0200, Luka Muzinic wrote:
> Mark a user with a cookie when you check if he has privileges to surf
> 'forbiden pages'. In the beggining of each document check for that cookie
> and redirect user to a login page if he hasnt one or show page content.
> 
> I can't se this done with static pages. You MUST use some kind of server
> procesing pages, that way you will avoid bookmarking, and those pages also
> have permanent expire so they wont be cached either.

Umm, this is only accomplishing the same thing as directory level 
security with .htaccess files.  It checks for the AUTH_USER in the
post and so forth to verify the user has been authenticated for this
session.

-- 
Robert G. Fisher		     NEOCOM Microspecialists Inc. 
System Administrator/Programmer      (540) 666-9533 x 116