duanquanzhi5560 2011-04-08 14:24
浏览 11

权限位掩码应如何与view / edit / add / remove权限一起使用。 如何使用它?

User can view/edit/add/remove objects (categories, users, items etc.). What is the best practice to store (in MySQL), manage and check if user have such permissions.

Acl class will control if user allowed to execute controller's method or not.

  • 写回答

2条回答 默认 最新

  • duandeng2011 2011-04-08 14:44
    关注

    Are you sure you want to go with bitmasks?

    If you have many roles your bitmask number can get very high, and a query to search who has permission X would be bad performance wise.

    Personally, I like to store such data in a two column table (UserId, PermissionId), this way it's both scalable and easy to maintain. To check who has a permission or which permissions has a user, you only need a SELECT or a JOIN.

    评论

报告相同问题?

悬赏问题

  • ¥15 关于#hadoop#的问题
  • ¥15 (标签-Python|关键词-socket)
  • ¥15 keil里为什么main.c定义的函数在it.c调用不了
  • ¥50 切换TabTip键盘的输入法
  • ¥15 可否在不同线程中调用封装数据库操作的类
  • ¥15 微带串馈天线阵列每个阵元宽度计算
  • ¥15 keil的map文件中Image component sizes各项意思
  • ¥20 求个正点原子stm32f407开发版的贪吃蛇游戏
  • ¥15 划分vlan后,链路不通了?
  • ¥20 求各位懂行的人,注册表能不能看到usb使用得具体信息,干了什么,传输了什么数据