?
Solved

ASP.Net MVC 4 C# -- simple membership, field security

Posted on 2013-06-04
1
Medium Priority
?
1,653 Views
Last Modified: 2013-06-20
I already have my simple membership setup and it works great on page level security, but I need it to work at the "field level" based on status.

What do you recommend ?
--------------------------------------------------------------------------------
Example
  ** 20 fields that must be disable based on a users role and a status of a order record
     currently have 5 roles and 3 status, 300 different possible conditions that I have to account for

Steps
    ** setup FIELD level security in edit.cshtml/etc
    ** if logged in user’s Role is Admin, xxxx, or xxxx
    ** and current database record’s ProcessID# column is xxxx
    ** then display this field as ReadOnly/etc

http://www.codeproject.com/Tips/403921/Field-Based-Security-in-ASP-NET-MVC-3-for-Differen
  ** like what I need, but does not base on "status of a order record"

http://stackoverflow.com/questions/450160/how-do-you-achieve-field-level-security-in-asp-net
  ** exactly what I need, talks about using http://www.cslanet.com, but I want easier

http://www.fluentsecurity.net
  ** maybe some type of 3rd part tool ?
0
Comment
Question by:finance_teacher
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 23

Accepted Solution

by:
Roopesh Reddy earned 2000 total points
ID: 39222672
Hi,

I recommend the Code Project article! Added to it, check this Stack Overflow thread - http://stackoverflow.com/questions/6737634/whats-the-best-practice-for-field-level-security-in-mvc-3

Hope it helps u...
0

Featured Post

On Demand Webinar: Networking for the Cloud Era

Ready to improve network connectivity? Watch this webinar to learn how SD-WANs and a one-click instant connect tool can boost provisions, deployment, and management of your cloud connection.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article is for Object-Oriented Programming (OOP) beginners. An Interface contains declarations of events, indexers, methods and/or properties. Any class which implements the Interface should provide the concrete implementation for each Inter…
Entity Framework is a powerful tool to help you interact with the DataBase but still doesn't help much when we have a Stored Procedure that returns more than one resultset. The solution takes some of out-of-the-box thinking; read on!
Michael from AdRem Software outlines event notifications and Automatic Corrective Actions in network monitoring. Automatic Corrective Actions are scripts, which can automatically run upon discovery of a certain undesirable condition in your network.…
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …
Suggested Courses

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question