Jump to content
Updating IPB tonight Read more... ×

Archived

This topic is now archived and is closed to further replies.

derekm

Sorry for dumb newbie question

Recommended Posts

I've been given the task of putting a website up for my department. Unfortunately our organizations IT division does not have MySQL installed on the server and the prospect of it looks dim. :(

Being [b]very[/b] new to PHP, I find myself in a quandry.

I have a form, to update my department heads message on the main page, that is an include based on a users cookie. However, I need to make sure that no one stumbles across this form and updates it unless they are authorized. Does PHP provide a way to detect the exact referring page? Would this be poor security due to, my understanding, some servers not reporting the referring page?

I've thought about splitting the form so the submit button is not in the include file but it looks like garbage when I do that.

Any help for a newbie would be greatly appreciated. Thanks.

Share this post


Link to post
Share on other sites
Could you not include a password in the php file and have that as one of the inputs on the form?

Share this post


Link to post
Share on other sites
I guess if you really wanted to, you can make a flat file database to store some user data like level. if level = 1 (admin) then you can see the form.

-Chris

Share this post


Link to post
Share on other sites
Thanks for the responses. I think I wil probably try the password as part of the form while I research how to do flat file database layout.

Thanks again.

Share this post


Link to post
Share on other sites
There is also the option of sqlite, much quicker than mysql in many situations.

Share this post


Link to post
Share on other sites
Why not use sessions, and user levels? The if the session is a certain user level it will show it etc.

Share this post


Link to post
Share on other sites
^ Agreed, use sessions. They're more secure and easy to use.

Share this post


Link to post
Share on other sites

×

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.