posted 19 years ago
I have an app that lets people register as members. When one opens an account, a new subdirectory in the app directory is being opened.
somthing like myapp/user_01, myapp/user_02, myapp/user_03....
My question is how do I prevent from user 01 accessing the files of user 02, by browsing to a place like: ../user_02/resume.doc
But I want to let him access files that are outside of the user directories, like login.jsp...
Thank you for your help
We must know, we will know. -- David Hilbert