Security with Struts

G

GuyBrush Treepwood

I'm making a web-based bookmark management system, using Struts.
To store bookmarks, one needs a useraccount. The link to your bookmarks
only is visible when you are logged in.

jsp excerpt:

<logic:present name="accountBean" scope="session">
<logic:equal name="accountBean" property="authenticated"
value="true" scope="session">
<html:link page="/service/signoff.do">Sign Off</html:link>|
<html:link page="/service/editAccountForm.do">Account</html:link>|
<html:link page="/tofillin">Preferences</html:link>|
<html:link page="/tofillin">Bookmarks</html:link>
</logic:equal>
</logic:present>


My question is: is it possible to view another user's bookmarks, without
knowing his password? Or is this enough security?
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Members online

No members online now.

Forum statistics

Threads
473,982
Messages
2,570,185
Members
46,736
Latest member
AdolphBig6

Latest Threads

Top