D
Dumb Question
Okay...I cant figure this one out but then again I'm not
much of a programmer.
I have a website that the security is constructed in this
manner:
Login Page - Submits to Validation Page
Validation Page - Checks database for User/Password
Verified users are past to the requested URL.
I have 1 database with:
1 records table
1 Admin LogIN
1 Client LogON
The Admin can edit records and perform Admin duties with
no problems.
Clients can log on and view account info by entering
their account name.
The problem is even though the two LOGIN (Admin) & LOGON
(Client) pages are validating the user/pass out of
different tables...once validated the Client can click
the Admin LOGIN link and become the Admin...obviuosly
this will not work...sooo
The dumb question is ...how do I fix this mess ?
Would placing the Client page in a different directory
make a differnce..etc?
Thanks
much of a programmer.
I have a website that the security is constructed in this
manner:
Login Page - Submits to Validation Page
Validation Page - Checks database for User/Password
Verified users are past to the requested URL.
I have 1 database with:
1 records table
1 Admin LogIN
1 Client LogON
The Admin can edit records and perform Admin duties with
no problems.
Clients can log on and view account info by entering
their account name.
The problem is even though the two LOGIN (Admin) & LOGON
(Client) pages are validating the user/pass out of
different tables...once validated the Client can click
the Admin LOGIN link and become the Admin...obviuosly
this will not work...sooo
The dumb question is ...how do I fix this mess ?
Would placing the Client page in a different directory
make a differnce..etc?
Thanks