Another technique is to set readable/writable in the controller. For example:
def user():
hide_last_name = True
if hide_last_name:
db.auth_user.last_name.readable = db.auth_user.last_name.writable =
False
return dict(form=auth())

