On Tue, May 6, 2008 at 5:11 PM, Bruce Sorge <[EMAIL PROTECTED]> wrote:
> Yeah, that would work. When they log in, their role is stored in a
>  session variable so I could just do the check that way.

That's the ticket!

Then all you gotta watch out for is XSS session stealers...  :-P

--
Limit the vectors whenever possible...
/me tells himself

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
Adobe® ColdFusion® 8 software 8 is the most important and dramatic release to 
date
Get the Free Trial
http://ad.doubleclick.net/clk;192386516;25150098;k

Archive: 
http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:304826
Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm
Unsubscribe: 
http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=11502.10531.4

Reply via email to