On 5 Mar 2014 10:05:58 -0800, in bit.listserv.ibm-main (Message-ID:<CADEq6i9SMRxz4fz3XNNTq+0eMWxk0E=atqga1w-awhjcyjj...@mail.gmail.com>) [email protected] (jan de decker) wrote:

I am building a small web application that interfaces with RACF.

On the client side I only have the IBM default supplied classes.

I want validate as much as possible on the client before sending it to the
server.

Never do validation on the client side. Someone might decide to write their own client, or something else silly, just to get by restrictions. It's especially important not to trust client-side *security* validation.


--
I cannot receive mail at the address this was sent from.
To reply directly, send to ar23hur "at" pobox "dot" com

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to