Welcome Guest, Not a member yet? Register   Sign In
Handling confidential files
#2

[eluser]Mike Ryan[/eluser]
As long as your authentication/authorisation systems are reliable then yes, this system will prevent users from accessing files owned by other users. If you are not already doing so, you may want to consider using database sessions to help prevent user impersonation.

Encrypting the file and/or storing it in the DB will help protect against local users viewing the files, if that is a consideration.


Messages In This Thread
Handling confidential files - by El Forum - 10-23-2008, 08:36 AM
Handling confidential files - by El Forum - 10-23-2008, 12:08 PM
Handling confidential files - by El Forum - 10-23-2008, 12:35 PM
Handling confidential files - by El Forum - 10-24-2008, 01:08 AM
Handling confidential files - by El Forum - 10-24-2008, 01:17 AM
Handling confidential files - by El Forum - 10-24-2008, 01:25 AM
Handling confidential files - by El Forum - 12-09-2009, 04:48 AM
Handling confidential files - by El Forum - 12-09-2009, 04:59 AM
Handling confidential files - by El Forum - 12-09-2009, 10:38 AM



Theme © iAndrew 2016 - Forum software by © MyBB