in reply to file download security
My best suggestion would be that you let them select which file they want at the same time as they are offered the password login. Then, have the download script check that they have asked for a legitimate file AND that they have entered the password. If they don't give you any post/get data, redirect them to the front page and if they give you bad data show them an error. I think that is the best you are going to do.
And if you really are checking the password in javascript and you dared utter "secure" in the same breath, I'm never speaking to you again. =) =)
--
$you = new YOU;
honk() if $you->love(perl)
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Re: file download security
by lonewolf32 (Initiate) on Apr 15, 2002 at 15:54 UTC | |
by extremely (Priest) on Apr 15, 2002 at 16:08 UTC | |
by lonewolf32 (Initiate) on Apr 15, 2002 at 16:53 UTC | |
by swiftone (Curate) on Apr 15, 2002 at 19:10 UTC | |
by jerrygarciuh (Curate) on Apr 15, 2002 at 19:42 UTC | |
| |
by lonewolf32 (Initiate) on Apr 15, 2002 at 17:11 UTC |