[jboss-user] [JBoss Seam] - Re: is link secure?

christian.bauer@jboss.com do-not-reply at jboss.com
Thu Mar 22 03:06:11 EDT 2007


That is also a novel approach to entity security. You should not obscure URLs but rather have a multi-layer approach, where at the lowest layer you can never even load an entity from the database you do not have the access rights for.


View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4030479#4030479

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4030479



More information about the jboss-user mailing list