Re: Form Authentication
This WebDNA talk-list message is from 2000
It keeps the original formatting.
numero = 35585
interpreted = N
texte = Kalin Mintchev wrote:Hi, Kalin, here are my comments. First I assume that you are giving access through the form login to pages protected to a specific group. Let's say it is the group DEMO> this is what i do:> page #1:> form with input names password and username, action=logon1.html.OK. BTW in my specific implementation I use a members.db that I manage separately from the WebCat users.db. (I do not encrypt username and password in it). As you seems using a db.db maybe you should also try the easy way first and then encrypt everything when ot works. > page #2: logon1.html> [showif NotFound=[lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=user¬Found=NotFound]]> [redirect page1.html]> [/showif]> [showif [password]![lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=pass¬Found=NotFound]]> [redirect page1.html]> [/showif]> [search> db=/db/db.db&groupsword=ww&wogroupsdatarq=DEMO&equserdatarq=[username]&eqpassdatarq=[password]] ^^^^Or pass a [groups] value from the previous page. BTW You also have to pass it to all following pages. > [showif [numFound]=0]> [redirect page1.html]> [/showif]> [/search]> [redirect> http://[encrypt][username]:[password][/encrypt]@www.mysite.com/login2.html]Change this: [redirect http://[username]:[password]@www.mysite.com/login2.html]> page #3: logon2.html> in the header:>
HTTP-EQUIV=REFRESH CONTENT=0;URL=http://www.mysite/protected.html>> the protected page has this in it:You can simply use [protect DEMO] instead of all this:> [showif NotFound=[lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=user¬Found=NotFound]]> [authenticate Unauthorized User]> [/showif]> [showif [password]![lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=pass¬Found=NotFound]]> [authenticate Unauthorized User]> [/showif]> [search> db=/db/db.db&groupsword=ww&wogroupsdatarq=[groups]&equserdatarq=[username]&eqpassdatarq=[password]]> [showif [numFound]=0]> [authenticate Unauthorized User]> [/showif]> [/search]Hope I could help. Brice--Brice Le Blevennec, Digerati, ListDad,
Ex Machina Interactive Architects S.A., Ex Nihilo Uno S.A. &Ex Machina Graphic Design S.P.R.L. Ex Machina Television SPRL NetBusiness S.A. ContactOffice Arkaos S.A. X-Pose 2.0 & Visualizer -------------------------------------------------------------This message is sent to you because you are subscribed to the mailing list .To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://search.smithmicro.com/
Associated Messages, from the most recent to the oldest:
Kalin Mintchev wrote:Hi, Kalin, here are my comments. First I assume that you are giving access through the form login to pages protected to a specific group. Let's say it is the group DEMO> this is what i do:> page #1:> form with input names password and username, action=logon1.html.OK. BTW in my specific implementation I use a members.db that I manage separately from the WebCat users.db. (I do not encrypt username and password in it). As you seems using a db.db maybe you should also try the easy way first and then encrypt everything when ot works. > page #2: logon1.html> [showif NotFound=[lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=user¬Found=NotFound]]> [redirect page1.html]> [/showif]> [showif [password]![lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=pass¬Found=NotFound]]> [redirect page1.html]> [/showif]> [search> db=/db/db.db&groupsword=ww&wogroupsdatarq=DEMO&equserdatarq=[username]&eqpassdatarq=[password]] ^^^^Or pass a [groups] value from the previous page. BTW You also have to pass it to all following pages. > [showif [numFound]=0]> [redirect page1.html]> [/showif]> [/search]> [redirect> http://[encrypt][username]:[password][/encrypt]@www.mysite.com/login2.html]Change this: [redirect http://[username]:[password]@www.mysite.com/login2.html]> page #3: logon2.html> in the header:> HTTP-EQUIV=REFRESH CONTENT=0;URL=http://www.mysite/protected.html>> the protected page has this in it:You can simply use [protect DEMO] instead of all this:> [showif NotFound=[lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=user¬Found=NotFound]]> [authenticate Unauthorized User]> [/showif]> [showif [password]![lookup> db=/db/db.db&lookinField=user&value=[username]&returnField=pass¬Found=NotFound]]> [authenticate Unauthorized User]> [/showif]> [search> db=/db/db.db&groupsword=ww&wogroupsdatarq=[groups]&equserdatarq=[username]&eqpassdatarq=[password]]> [showif [numFound]=0]> [authenticate Unauthorized User]> [/showif]> [/search]Hope I could help. Brice--Brice Le Blevennec, Digerati, ListDad, Ex Machina Interactive Architects S.A., Ex Nihilo Uno S.A. &Ex Machina Graphic Design S.P.R.L. Ex Machina Television SPRL NetBusiness S.A. ContactOffice Arkaos S.A. X-Pose 2.0 & Visualizer -------------------------------------------------------------This message is sent to you because you are subscribed to the mailing list .To unsubscribe, E-mail to: To switch to the DIGEST mode, E-mail to Web Archive of this list is at: http://search.smithmicro.com/
Brice Le Blevennec
DOWNLOAD WEBDNA NOW!
Top Articles:
Talk List
The WebDNA community talk-list is the best place to get some help: several hundred extremely proficient programmers with an excellent knowledge of WebDNA and an excellent spirit will deliver all the tips and tricks you can imagine...
Related Readings:
[WebDNA] "commerce tags" versus "shopping" tags? (specifically what is the Partner Edition?) (2009)
new PurgeDatabase command? (was NT vs Mac) (1997)
WebCat2b15MacPlugin - [protect] (1997)
sorting dates (1999)
authnet good news (2003)
WebDNA maxing out processor (2008)
updating with ProductEditor (1998)
searching multiple databases (1997)
WebCat editing, SiteGuard WAS:SiteAssociative lookup style? (1997)
Bug Report, maybe (1997)
webcat- multiple selection in input field (1997)
Document Contains No Data! (1997)
WC on Mac OS X or Mac OS X Server 2.x (2001)
OT Flash Stores (2003)
Problem displaying search result (1997)
[WebDNA] 6.2.1 fails on Apache 2.4.6 (2014)
RE: Languages (1997)
grep is really pathetic sometimes (2003)
[date format] w/in sendmail (1997)
SKU lookup (1997)