PHP Developers Network

A community of PHP developers offering assistance, advice, discussion, and friendship.
 
Loading
It is currently Sat Jun 23, 2018 9:08 am

All times are UTC - 5 hours




Post new topic Reply to topic  [ 2 posts ] 
Author Message
PostPosted: Thu Mar 20, 2014 4:18 am 
Offline
Forum Newbie

Joined: Thu Mar 20, 2014 4:02 am
Posts: 1
In my application authorised users should be able to recieve specific data from server via Ajax. However, unauthorised users must not be able to recieve this data.

Authorised users are loged in with session. However, when making Ajax call, server cannot check this session. I can send only user's ID, but it doesnt help making sure that this user knows username and password.

How can I make sure only authorised users get access to this data via Ajax?


Top
 Profile  
 
PostPosted: Thu Mar 20, 2014 8:47 am 
Offline
Moderator
User avatar

Joined: Tue Nov 09, 2010 3:39 pm
Posts: 6424
Location: Montreal, Canada
Persist login tokens and include them in the request?


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 2 posts ] 

All times are UTC - 5 hours


Who is online

Users browsing this forum: No registered users and 1 guest


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
cron
Powered by phpBB® Forum Software © phpBB Group