A friendly place for programming greenhorns!
Big Moose Saloon
Register / Login
Win a copy of
Android Security Essentials Live Lessons
this week in the
Joined: Nov 11, 2008
Nov 11, 2008 07:42:00
How to prevent the successfully logged in User from typing the earlier remembered URL�s pointing to specific Action (without navigating through the specified Links).
's under Webcontent/resources)
Joined: Sep 29, 2008
Nov 11, 2008 07:51:00
If you're just concerned about not allowing access to JSPs then put them under /WEB-INF--the container has access to them, the user doesn't.
If you're concerned about enforcing application flow there are a number of solutions, many involving keeping session or request data holding current state, allowable "next state"s, etc.
I agree. Here's the link:
subject: Securing JSP's
Translation time error and run time errors
jsp question - errorPage
How to send data from one action class to another action class
Forte for Java
All times are in JavaRanch time: GMT-6 in summer, GMT-7 in winter
| Powered by
Copyright © 1998-2014