English 中文(简体)
出入控制和安全: 我是否应该有1个庞大的《京都议定书》条款表格?
原标题:Access control and security: Should I have 1 massive ARTICLES table?

如果您正在建立一种制度,使苏联能够书写《公约》条款,而其他成员国不能看到或查阅这些条文,那么你是否只有经过许可的单一《公约》条款表格?

我确信,有一个包含其中所有内容的单一表格对安全是有利的。 然而,我认为我不想再提出一个新表格,列出每一条款。

Is there a better way to model this?

问题回答

I don t believe that it is appropriate to make the database responsible for this sort of authorization check. The only "users" your database should be aware of are the applications allowed to access it. The business rules governing authenticating users and determining what those users are authorized to access belong within your application(s).

相反,研究现有的授权工具来管理获得你的模式。 例如:





相关问题
rails collection_select vs. select

collection_select and select Rails helpers: Which one should I use? I can t see a difference in both ways. Both helpers take a collection and generates options tags inside a select tag. Is there a ...

SSL slowness in EC2

We ve deployed our rails app to EC2. In our setup, we have two proxies on small instances behind round-robin DNS. These run nginx load balancers for a dynamically growing and shrinking farm of web ...

Auth-code with A-Za-z0-9 to use in an URL parameter

As part of a web application I need an auth-code to pass as a URL parameter. I am currently using (in Rails) : Digest::SHA1.hexdigest((object_id + rand(255)).to_s) Which provides long strings like : ...

RubyCAS-Client question: Rails

I ve installed RubyCAS-Client version 2.1.0 as a plugin within a rails app. It s working, but I d like to remove the ?ticket= in the url. Is this possible?

activerecord has_many :through find with one sql call

I have a these 3 models: class User < ActiveRecord::Base has_many :permissions, :dependent => :destroy has_many :roles, :through => :permissions end class Permission < ActiveRecord::...

Ordering a hash to xml: Rails

I m building an xml document from a hash. The xml attributes need to be in order. How can this be accomplished? hash.to_xml

Text Editor for Ruby-on-Rails

guys which text editor is good for Rubyonrails? i m using Windows and i was using E-Texteditor but its not free n its expired now can anyone plese tell me any free texteditor? n which one is best an ...

How to get SQL queries for each user where env is production

I’m developing an application dedicated to generate statistical reports, I would like that user after saving their stat report they save sql queries too. To do that I wrote the following module: ...

热门标签