Re: What is the best way to protect the PHP page that returns the AJAX data? [solved]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, May 11, 2007 9:59 pm, heavyccasey@xxxxxxxxx wrote:
> Set ajaxObject.setRequestHeader("User-Agent","SecretName"); in
> Javascript and check for it in PHP. Not fool-proof, but the average
> person wouldn't be able to get in.

Unless the user "View Source" and read your AJAX code...

This is not going to stop any serious attempt, but as one more
defense-in-depth mechanism, it wouldn't hurt.

-- 
Some people have a "gift" link here.
Know what I want?
I want you to buy a CD from some indie artist.
http://cdbaby.com/browse/from/lynch
Yeah, I get a buck. So?

-- 
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php


[Index of Archives]     [PHP Home]     [Apache Users]     [PHP on Windows]     [Kernel Newbies]     [PHP Install]     [PHP Classes]     [Pear]     [Postgresql]     [Postgresql PHP]     [PHP on Windows]     [PHP Database Programming]     [PHP SOAP]

  Powered by Linux