Re: Security
Posted in 1999
Quite a common solution goes like this : 1. Individual access control implemented at the front-end client 2. Database access is thru a common user Thus Users would log into the application using their individual login names and passwords. The program would then, using a hard-coded connect string, look up a "secret" table to determine what username and password it should use for database access. It would then use the original username to stamp records that are created or modified, but would use the 'database' username/password to make the connection. Query only users could work either way. Irrespective, the 'secret' table would need to be protected from unauthorized access. HTH Rudy On Fri, 3 Sep 1999 11:27:50 +0200, David Reed <david.reed@tollink.co.za> wrote: > >Can anybody please give me some advise on how the best way is to implement >access control. We have a Unix server with a Delphi front end. The user do >not want to login twice. > >Thanks >David Reed >david.reed@compuwin.co.za <mailto:David.reed@compuwin.co.za> >