[Cartoweb-users] Edition security (user can edit only his data)

Igor Evdokimov igev at mail.ru
Fri Jun 29 01:43:53 EDT 2007


Hi, List & Oliver!

Cartoweb allows to use Edition plugin via 'general.allowedRoles' option.
And if the user has allowed role, he can edit ANY editable data.

Is it very hard to do to allow user to edit only data that he added to
map database personally? Is there big problems?

For example: every record in editable object database contains field  
'USER' with
the name of user that added this record. When this user tries to  
modify/delete this record,
runs some checking to allow edition of this record to this user  
('USER'=='login name'), etc.
If this is not hard, maybe I'll try to develop this functionality. I  
need it.

Best regards, Igor.


More information about the Cartoweb-users mailing list