Use a session_id. See CGI::Session. There is lots of stuff here on sessioning. In essence store the session ID in a cookie or hidden field as you choose. Cookies are easiest but may not be active. A hidden field is a little more effort (not much with templates). With a session_id all the *real* data is stored on your server, well out of reach of naughty untrustworthy users.
cheers
tachyon
In reply to Re: Security/Ease of use Question
by tachyon
in thread Security/Ease of use Question
by Spidy
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |