Logs for

Page 346 of 211,267, showing 20 records out of 4,225,339 total, starting on record 6,901, ending on 6,920

# At Username Text
# Aug 9th 2008, 07:57 NetersLandreau TheBig: initial research proves lqdice__ is correct.. do not trust referring page as reported by apache
# Aug 9th 2008, 07:58 lqdice__ refer is a header sent by the client
# Aug 9th 2008, 07:58 TheBig So the best way is use session, of cuorse...
# Aug 9th 2008, 08:00 lqdice__ what are you trying to do ?
# Aug 9th 2008, 08:00 lqdice__ is it form submission?
# Aug 9th 2008, 08:01 [TSK] Hi. I remember reading somewhere about re-using the edit view for the add action, but I cannot for the life of me find any information on this anymore. I suspected that it might be something simple like setting $this->view = "edit" in the add action, but that errors out, so I'm guessing that might not be it after all. So, my question is simply this. How do I choose an alternate view template other than the default from a particular ac
# Aug 9th 2008, 08:04 lqdice__ [TSK]: $this->render('edit')
# Aug 9th 2008, 08:04 lqdice__ the add/edit view can be almost identical w/ the exception of the id field
# Aug 9th 2008, 08:04 [TSK] lqdice__: Ah. So, it WAS as simple as I'd thought, just not the exact means to go about it that I had thought from looking at the API docs. TYVM. :)
# Aug 9th 2008, 08:04 TheBig lqdice__, it works fine, in user register, i make $this->Session->write('invite.allow', true');
# Aug 9th 2008, 08:05 kamalcom yes, the difference, is that the edit view contain a hidden input named id
# Aug 9th 2008, 08:05 TheBig and then check (and unset) at the second page...
# Aug 9th 2008, 08:05 lqdice__ TheBig: are you making like a wizard?
# Aug 9th 2008, 08:05 lqdice__ im asking what you are doing because you are probably reinventing the wheel
# Aug 9th 2008, 08:06 Wisp hello all
# Aug 9th 2008, 08:06 TheBig I've a user registration form, in case of success of registration you go to a page which contains a form for inviting people by mail
# Aug 9th 2008, 08:06 lqdice__ [TSK]: just remember you should always check the ID to make sure its valid if you are doing something like users editing something that is access protected.. cause ppl can in the add form inject an ID and force an edit.. what you can do to prevent this is also using security component (which can be a pain but makes your forms secure)
# Aug 9th 2008, 08:07 lqdice__ TheBig: ok that method can work then .. there is also a wizard component in the bakery if you are doing step-by-step forms and things like that
# Aug 9th 2008, 08:07 [TSK] lqdice__: Indeed. I don't just check the ID. I tend to lean to the paranoid side and check EVERYTHING which might be risky, and aye. I do use the security component. Like it a lot. :)
# Aug 9th 2008, 08:07 TheBig right, I'll check it...