Saturday, May 12, 2012

Is session variable a good place to store authorization info?

I created a Auth component to do some special authorization checking.
The Auth component gets called first before any controller isAuthorized
routines.
   I was thinking about saving some permissions in a session variable
inside the Auth component.
Then the controller could get this detail and perform additional checks
on access to record or field level data.
I could also have access to this data in the Views to help with
displaying different data.

Does this make sense?  Is this a good idea?  Is there a better way?


View this message in context: Is session variable a good place to store authorization info?
Sent from the CakePHP mailing list archive at Nabble.com.

--
Our newest site for the community: CakePHP Video Tutorials http://tv.cakephp.org
Check out the new CakePHP Questions site http://ask.cakephp.org and help others with their CakePHP related questions.
 
 
To unsubscribe from this group, send email to
cake-php+unsubscribe@googlegroups.com For more options, visit this group at http://groups.google.com/group/cake-php

0 Comments:

Post a Comment

Subscribe to Post Comments [Atom]

<< Home


Real Estate