Click here to Skip to main content
16,006,065 members
Home / Discussions / Database
   

Database

 
AnswerRe: Please Help Me Pin
Arun.Immanuel9-May-07 22:28
Arun.Immanuel9-May-07 22:28 
GeneralRe: Please Help Me Pin
Mkanchha10-May-07 0:20
Mkanchha10-May-07 0:20 
GeneralRe: Please Help Me Pin
Arun.Immanuel10-May-07 1:44
Arun.Immanuel10-May-07 1:44 
GeneralRe: Please Help Me Pin
Mkanchha10-May-07 1:57
Mkanchha10-May-07 1:57 
Questionproblem in SQL server 2005 desktop engine instalation Pin
amalatsliit9-May-07 16:31
amalatsliit9-May-07 16:31 
Questionsql server 2005 User defined datatype and PrimaryKey Pin
Asim N.9-May-07 9:00
Asim N.9-May-07 9:00 
AnswerRe: sql server 2005 User defined datatype and PrimaryKey Pin
andyharman16-May-07 8:03
professionalandyharman16-May-07 8:03 
QuestionDatabase Security Pin
Tristan Rhodes9-May-07 4:49
Tristan Rhodes9-May-07 4:49 
Hi chaps,

I've got a question about security. I understand that you don't want a user to be able to trash your database, so parameterised SQL / Stored procs are the sensible way of doing things. But i'm wondering more about permission based security, and at what locations it should be checked.

Lets say you have a web app, you would security check the following at the back end:
* View Record
* Perform Action

But what structure would you put in place to validate functionality on the Layer side of things and catch things further down the chain? Would this have to be performed on a per function basis? In which case, would it prohibit the use of ORM / Full Record Updating and merely refine the database access down to a rigid API?

Cheers

Tris

-------------------------------

Carrier Bags - 21st Century Tumbleweed.

AnswerRe: Database Security Pin
kubben9-May-07 14:35
kubben9-May-07 14:35 
GeneralRe: Database Security Pin
Tristan Rhodes10-May-07 1:49
Tristan Rhodes10-May-07 1:49 
GeneralRe: Database Security Pin
kubben10-May-07 1:56
kubben10-May-07 1:56 
GeneralRe: Database Security Pin
Tristan Rhodes10-May-07 2:44
Tristan Rhodes10-May-07 2:44 
GeneralRe: Database Security Pin
kubben10-May-07 3:23
kubben10-May-07 3:23 
GeneralRe: Database Security Pin
Tristan Rhodes10-May-07 3:47
Tristan Rhodes10-May-07 3:47 
GeneralRe: Database Security Pin
kubben10-May-07 3:51
kubben10-May-07 3:51 
GeneralRe: Database Security Pin
Tristan Rhodes10-May-07 4:46
Tristan Rhodes10-May-07 4:46 
QuestionUpdate a table from a data set Pin
G_Sankar9-May-07 3:02
G_Sankar9-May-07 3:02 
QuestionCan anyone reccomend a data access layer tool Pin
Andrew Torrance9-May-07 2:39
Andrew Torrance9-May-07 2:39 
AnswerRe: Can anyone reccomend a data access layer tool Pin
LongRange.Shooter16-May-07 7:48
LongRange.Shooter16-May-07 7:48 
QuestionCalling stored procedures within MFC code Pin
Ahmed Charfeddine9-May-07 2:29
Ahmed Charfeddine9-May-07 2:29 
QuestionDatabase Connection problem in sql server 2005 Pin
hbk_leo9-May-07 2:06
hbk_leo9-May-07 2:06 
AnswerRe: Database Connection problem in sql server 2005 Pin
Ahmed Charfeddine9-May-07 2:35
Ahmed Charfeddine9-May-07 2:35 
GeneralConnect Directly to SQL Server File Pin
Brady Kelly9-May-07 0:55
Brady Kelly9-May-07 0:55 
AnswerRe: Connect Directly to SQL Server File Pin
andyharman9-May-07 1:57
professionalandyharman9-May-07 1:57 
QuestionAccessing database file (.sdf) after changing extension (say .abc) causes error in connection string. Pin
ManishJape9-May-07 0:51
ManishJape9-May-07 0:51 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.