Which functions would get permission checks in a "perfect" module? Every function that interacts with the database would obviously need a permission check, but beyond that, which other functions also require a check?
If a module consisted of the following basic admin functions, which would require a permission check?
pnadmin.php
Code
module_admin_main()
module_admin_view()
module_admin_new()
module_admin_create()
module_admin_modify()
module_admin_update()
module_admin_delete()
module_admin_modifyconfig()
module_admin_updateconfig()
module_admin_view()
module_admin_new()
module_admin_create()
module_admin_modify()
module_admin_update()
module_admin_delete()
module_admin_modifyconfig()
module_admin_updateconfig()
pnadminapi.php
Code
module_adminapi_create()
module_adminapi_update()
module_adminapi_delete()
module_adminapi_getlinks()
module_adminapi_update()
module_adminapi_delete()
module_adminapi_getlinks()
Less processing is good!
:)
edited by: alarconcepts, Jun 29, 2007 - 05:01 PM
