Slide 26
Slide 26 text
Least privilege
allowed($resource) {
return false;
}
/* Other permission checking here */
}
/* “Fail least” for user handling */
function checkAccess($user, $resource)
{
if ($user == null) { return false; }
if ($resource == null) { return false; }
/* Other permission checking here */
}
?>
Wednesday, February 27, 2013