Win a copy of The Java Performance Companion this week in the Performance forum!
  • Post Reply
  • Bookmark Topic Watch Topic
  • New Topic

What should we do about Login?

 
Mark Lau
Ranch Hand
Posts: 120
  • Mark post as helpful
  • send pies
  • Quote
  • Report post to moderator
I am working on a web application.
What should I do after a userid and the password are verified according to the user database information?
Should I store the userid in a session object? This way, when a user orders something from my site, I can get the userid from the session object, and correctly bill him (instead of somebody else) in the database, right?
Otherwise, login or not, it does not make any difference. Right?
 
  • Post Reply
  • Bookmark Topic Watch Topic
  • New Topic