https://www.google.com/accounts/o8/id?id=AItOawm6VdLM7IKcNgkDiJ2YKHpcWli9bRLsZDk 2013-02-25 15:21:25 -04:00 committed by admin
parent c2dee16a10
commit a529d92d6f
1 changed files with 5 additions and 0 deletions

View File

@ -0,0 +1,5 @@
I have a folder with few administrative tasks, like a page showing the comments waiting for moderation.
There is no link from "normal/public" pages in my site to this administrative pages, but it doesn't prevent the possibility of any person writing down that address in the browser address-bar or finding that address in the browser navigation history.
Please, is there any way or best-practice restricting the access to this kind of pages? I know that these pages will eventually ask the user to log-in as admin, but I don't want them to see this stuff.