AppFuseSecurityMethods2 |
|
| Your trail: |
Difference between
version 10
and
version 9:
| At line 1 changed 1 line. |
| In [part one|AppFuseSecutityMethods] of this tutorial we got basic Method Invocation security working. But there still remains some holes in the security of our {{User}} object at the service level. For example if someone could get the controller to run {{UserManager.saveUser()}} on someone other than themselves, there is nothing at the service level to stop them. |
| In [Part I|AppFuseSecurityMethods] of this tutorial we got basic Method Invocation security working. But there still remains some holes in the security of our {{User}} object at the service level. For example if someone could get the controller to run {{UserManager.saveUser()}} on someone other than themselves, there is nothing at the service level to stop them. |
Back to AppFuseSecurityMethods2,
or to the Page History.
|