GoogTech / sms-ssm

:school::mortar_board: 一个基于 SSM 的简单学生管理系统,项目概述全面,代码注释详细,逻辑结构清晰,对于初学 SSM 的同学非常具有参考与学习价值哟 !
MIT License
648 stars 146 forks source link

后端没有做数据校验和权限控制 #16

Closed zykzhangyukang closed 4 years ago

GoogTech commented 4 years ago

No description provided.

yeah because it's a project for beginner but please try to integrate it with Shiro Framework or others if you want to add the permission feature in back-end . . .

there had a project for shiro framework of beginner :

<%-- 通过JSTL设置用户操作权限: 将修改和删除按钮设置为仅管理员可见 --%>
<c:if test="${userType==1}">
  <div style="float: left;"><a id="edit" href="javascript:" class="easyui-linkbutton" data-options="iconCls:'icon-edit',plain:true">修改</a></div>
  <div style="float: left;" class="datagrid-btn-separator"></div>
  <div style="float: left;"><a id="delete" href="javascript:" class="easyui-linkbutton" data-options="iconCls:'icon-some-delete',plain:true">删除</a></div>