Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Security

Posted on 1999-01-12
6
147 Views
Last Modified: 2010-04-09
Hi,

I created a webpage(Say Page A) asking the userId and Password,after the user entering the ID,password i am sending to the CGI program in a server,there i am checking .If the UserID and Password  is correct i am allowing to access another page(Say page B)

Suppose if the users knows the page B 's URL ,he can directly type the URL of Page B and he will enter in to the page B.Then what is the security ?then why we need the first page(Page A)UserID and Password.How i will protect the user directly entering in to the particular page instead of entering in to the UserId and Password page.please Help Me.
0
Comment
Question by:senthil_krn
6 Comments
 
LVL 5

Expert Comment

by:Christian_Wenz
ID: 1841613
you can try setting a cookie if the user enters the correct username/password combination, and make page B require this cookie.
However, why don't you just password-protect page B using htaccess?
0
 
LVL 11

Accepted Solution

by:
mouatts earned 20 total points
ID: 1841614
An alternative way is to check the environment variable HTTP_REFERER when a request for page B is made if this is anything other than page a then it indicates that access was not via the proper route.

Tied in with this is that the CGI can output the page which if you want stored as a normal html page can be stored in a location that the CGI can get to but the webserver can't.

There are a few other methods but when you start taking control of the security of a site, rather than leaving it to htaccess et al, you will soon find that you will need to generate all pages.

HTH
Steve
0
 
LVL 84

Expert Comment

by:ozo
ID: 1841615
@
0
Networking for the Cloud Era

Join Microsoft and Riverbed for a discussion and demonstration of enhancements to SteelConnect:
-One-click orchestration and cloud connectivity in Azure environments
-Tight integration of SD-WAN and WAN optimization capabilities
-Scalability and resiliency equal to a data center

 

Author Comment

by:senthil_krn
ID: 1841616
Sorry i am new to this Concept can u give a code.
0
 
LVL 5

Expert Comment

by:Christian_Wenz
ID: 1841617
what kind of web server are you currently using? do you have cgi access?
0
 

Author Comment

by:senthil_krn
ID: 1841618
I am Using a NetscapeServer (Webserver version 3.6) and i am having cgi access.
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Add box and text color changing for everything 1 34
How to change the link of an image using md5 in php ? 3 47
Javascript 2 21
IF statment In Powershell 12 15
Showing your events from Google Calendar in Google Maps Why? I travel all week and I thought it would be ideal if staff in office knew where I was based on my calendar. (OK real reason: my son wanted to see where I would be working, and I thoug…
Things That Drive Us Nuts Have you noticed the use of the reCaptcha feature at EE and other web sites?  It wants you to read and retype something that looks like this.Insanity!  It's not EE's fault - that's just the way reCaptcha works.  But it is …
In this tutorial viewers will learn how to embed an audio file in a webpage using HTML5. Ensure your DOCTYPE declaration is set to HTML5: : The declaration should display (CODE) HTML5 is supported by the most recent versions of all major browsers…
The viewer will learn the basics of jQuery including how to code hide show and toggles. Reference your jQuery libraries: (CODE) Include your new external js/jQuery file: (CODE) Write your first lines of code to setup your site for jQuery…

856 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question