Re: Defining Roles, Groups?
- From: Dominick Baier <dbaier@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx>
- Date: Sun, 26 Aug 2007 10:26:32 +0000 (UTC)
The roles system was not designed for multi client applications -. you will get something much better suited for your scenario by simply writing your own roles management...
-----
Dominick Baier (http://www.leastprivilege.com)
Developing More Secure Microsoft ASP.NET 2.0 Applications (http://www.microsoft.com/mspress/books/9989.asp)
Hi,
I want to use the default SqlMembershipProvider and SqlRolesProvider
for an
ASP.NET app. and I want to avoid writing Custom Providers if I can.
The problem I have is how to define the roles in the first place!
We have some standard User roles: Viewer, Author and Editor. But we
have
various clients and some users need to have a different role according
to
client ie. User Bob will have a Viewer role for Client A data BUT an
Author
role for Client B data.
Obviously, I don't want to create a role for every combination eg.
ClientAViewer, ClientBViewer, ClientCViewer, ClientAAuthor etc. etc.
and we dont want to force users to have a different username for each
client.
But if I want to use the default SqlRolesProvider, I don't see what
else I can do. Or am I just approaching this in the wrong way?
Thanks,
Adam
.
- Follow-Ups:
- Re: Defining Roles, Groups?
- From: ronscottlangham
- Re: Defining Roles, Groups?
- From: ronscottlangham
- Re: Defining Roles, Groups?
- Prev by Date: Re: Problem deploying forms authorization
- Next by Date: Re: Export / Import key problem
- Previous by thread: Re: User objects cannot be created in the specified container
- Next by thread: Re: Defining Roles, Groups?
- Index(es):
Relevant Pages
|
|