Updates...
Posted in 1994
I'm working on a Requisition System, setup for many departments which users can make requests. I designed a screen that controls usage based on user's login. I've also created a logfile to track activity which datestamps additions and modifications. Everything works fine! Except, I'm dealing with 2 tables (reqhead,reqitems), all users have update permissions and the screen controls what the user is allow to enter/ update. I keep thinking that a user, (that knew how) could create a form using sformbld and update the data to whatever, bypassing the screen controls. Creating views for each dept doesn't seem like the answer as there are 35+ depts which are continuing to grow for which many users 60+ are linked to more than one. I thought about renaming sformbld to something else and write a c program named sformbld and if the req table is passed as a parameter, send an error: "Not authorized to create screens for req table!"; otherwise; pass the data to a system() call of the renamed sformbld. Any comments or ideas? Thanks, Bob bobb@netcom.com -- ------------------------------------------------------------------- * Bob Beaulieu (bobb@netcom.com) eztravel@netcom.com * * Tel: 408-978-0808 Fax: 408-978-7024 * * Corporate Travel Services * -------------------------------------------------------------------