Should authorization be part of the model or controller?

前端 未结 6 660
独厮守ぢ
独厮守ぢ 2021-01-17 07:48

I\'m writing a web application with some ACL requirements: a user can make changes to some items, some items may be editable by several users, administrator can edit anythin

6条回答
  •  孤街浪徒
    2021-01-17 08:11

    I personally really like the way the Play! Secure module handles this (the tutorial is ever-helpful here). If you don't mind using the @Before annotation, it's pretty painless.

提交回复
热议问题