asp.net - Preventing non-logged in members from accessing a certain page -


i'm using asp.net , 'member' site me, site-admin privileges. i'm setting can make small edits pages without having re-upload site every time.

i have "editpage.aspx" page i'm going have send me to-to edit page. how keep other nosy people accessing page without being logged in?

there lots of ways accomplish this. on sites, have login (i.e. there no need full-blow membership provider admin runs not logged in), after login, set flag in session variable. on each page need protect in page load:

protected void page_load(object sender, eventargs e)     {         if (session["myuser"] == null)             response.redirect("login.aspx", true);  

that way, arrives on page not logged in, gets redirected login page. pretty simple solution, , easy implement. wouldn't hide state secrets behind it...but have never had problem unauthorized users getting protected pages.

using session has benefit of timing out if logged in user walks away computer, after 20 minutes or session expires , no longer logged.


Comments

Popular posts from this blog

c# - How to set Z index when using WPF DrawingContext? -

razor - Is this a bug in WebMatrix PageData? -

visual c++ - Using relative values in array sorting ( asm ) -