Generell Login question

Hello togehter!
I have a JSF project. The user has to log on first to access.
The problem is how I can I make sure that only one user is using my project.
I want to prevent that many persons use one login.
I thought that I write the IP of the user to the database and then one hour I don't allow any other IP addresses for this user.
Is this a good solution?
I would appreciate any help.
Thanks a lot.

That's a tough one. The best thing I can come up with is that you also include a timestamp in the same area you keep the user and logged in var. The timestamp can be the last time any activity occurred within your application from the user.
When a user attempts to log in, you can check your variables.
- if no entries exist, you're fine. Go ahead and log them in.
- if an entry exists, but it's from the same user/IP delete and re-log them in
- if an entry exists and it's from a different user/IP. Check timestamp. If the timestamp is x minutes old, it is safe to assume the other user is done. Log the other user out and log the new user in. If the timestamp is not x minutes old, then refuse the login attempt.
I must admit though, I'm not terribly impressed with this solution. But it should work.
There's just no way to tell when the users session goes dead. I don't think there's an event that occurs or anything.
CowKing
Message was edited by:
IamCowKing

Similar Messages

  • Custom login question

    C:\Program Files\Microsoft SQL Server\MSRS12.MSSQLSERVER\Reporting Services\ReportManager
    C:\Program Files\Microsoft SQL Server\MSRS12.MSSQLSERVER\Reporting Services\ReportServer
    Which of these two folder contains the web.config that must be modified when adding custom login/ forms authentication?
    When and how is the AuthCookie used?  Do I need to add any info to the ssrs auth cookie?
    scott

    Hi scott_m,
    According to your description, you want to add a custom login form authentication and use AuthCookie. Right?
    In Reporting Services, if we want to add custom login form, we need to modify the web.config in ReportServer folder. For the modification in configure files and usage of authcookie, please refer to the links below:
    http://www.codeproject.com/Articles/675943/SSRS-Forms-Authentication
    http://msdn.microsoft.com/en-us/library/ms345241.aspx
    If you have any question, please feel free to ask.
    Best Regards,
    Simon Hou

  • Active Directory Cached Domain Login question

    Hi all,
    I would like to seek assistance on the following scenario setup where I have 2 independent AD forest setup
    Production Forest #1 - Contoso
    Test Lab Forest #2 - Contoso
    Assuming both AD forests domain controllers are issued with Domain Controller Certs (to support smartcard login) from the same CA, and there exists a AD user acct - Mark in Production Forest #1 and this user is currently using a issued smartcard to perform
    AD login on desktop client #1
    Would it be possible to create a AD user acct - Mark in Test Lab Forest #2 and use the same issued production smartcard to perform AD login on laptop client #2 which is joined to Test Lab Forest #2? If not technically possible, why??? :(
    I am trying to find a solution where I can have the laptop clients support login using the issued production smartcard. The challenge here is not all the laptop clients site have access to the production domain controllers hence am thinking of building the
    Test Lab Forest #2 on another "server" laptop which provides a mobile means to allow the laptop clients to be joined to the Test Lab Forest and then supporting the issued production smartcard via domain cached login.

    So far I know the only requirement is that the UPN match and that the PKI is trusted (in NTAuth) in the forest, but I'm not a PKI expert. I suggest to ask this question in the security forum as well:
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/home?forum=winserversecurity
    Enfo Zipper
    Christoffer Andersson – Principal Advisor
    http://blogs.chrisse.se - Directory Services Blog

  • Failed logins question

    This should be a simple question. Where would I look if I want to know when and from what client host failed DB logins were occuring.

    hi:
    "app service account keeps getting locked and I'm wondering why and by who"
    Write a logon trigger against the above "app service account"
    http://www.dba-oracle.com/art_builder_sec_audit.htm

  • Automatic login questions

    i tried to find answers to this, but couldnt find the exact problem in other threads.
    i have 2 users on my iMac. we never shut down, so i dont really care if there is automatic login, but i would rather have it off and start up at the login screen. but is there a way that my wife does not have to enter her password to get into her profile? she just want to click on her icon and be on her profile instead of having to enter a password. it just gets laborious.

    4217
    Hi dutchgenius,
    Now that you have Allan's answer about the situation you don't really care of (as you never shut down),
    here's an answer for your question,
    that is,
    having to enter a password when logging in from one User Account to the other:
    - Unfortunately, the only way is to set her account with no password
    (blank/mouseclick field + blank/mouseclick confirmation field)
    from the start,
    (this way there is not even a login window step)
    although I guess it is also possible to change her password to "blank/mouseclick" in the Accounts preferences
    (not sure in that case there is not still a login window but no more password needed).
    I wouldn't do that even for a standard account, though, oh well,
    but,
    if she has admin powers then no, definitely don't do it.
    Axl

  • CUCM EMCC Login question

    Hi All,
    I have a question in relation to EMCC which I cannot find a definitive answer on, I  have a number of clusters connected together with EMCC and when a user roams to a non-home cluster and logs in, the local logged in user on their office desk is not logged out of the cluster but the EMCC login works correctly and can work remotely.  Is there a way to force the locally logged in user to be logged out when an EMCC login event occurs?  If I login locally on the home cluster when logged in with EMCC it logs out the EMCC user which I would expect but I would like to achieve this both ways to stop the office phone ringing when a user is roaming and forgets to Logout.
    So would like to log out the locally logged in user on their home cluster when they login with EMCC on one of my other clusters.
    Thanks,
    Phil

    Hi Phil,
    EMCC multiple concurrent logins on different cluster using same user ID will always be allowed. Only way to control this enabling "Auto Logout" within specific time period.
    HTH,
    Regards,
    Mohammed Noor

  • Yosemite login question

    Hi everyone,
    **Sorry if this has already been asked, I looked and couldn't spot anything**
    I've updated my MacBook Pro to Yosemite, and it seems to be working well.
    The only thing i've got is that on the login page, it displays a grey screen, with just the black generic person outline, and under it says [update needed].
    It then takes longer to log in than i'd expect.
    There aren't any other App store updates for me to install, so i'm not sure what it means by 'update needed'.
    Has anyone else seen this or does anyone have any ideas?
    Ta!
    Nightcapamp

    I have the same problem after having used Yosemite for a day with FileVault on, then shutting down and starting the computer again. I logged into that account in question, saw the progress bar without caption (probably meaning that the update was being performed) and was taken back to the login screen, now with the user image originally used for that account. However, now the account won't accept the original password any more. I will try to reset it via the Admin account which was not affected by the problem.

  • Windows Login Question

    Hi! I know i'm missing something simple. On some 10.4 servers that I'm running (10.4.0, 10.4.5, 10.4.6) when a Windows user tries to connect, they don't get the login window. The servers are all OD masters, not PDC, no AD anywhere, standalone server as far as windows in concerened. No firwall issue (everything behind the firewall)
    The users can see the sharepoints, but can't connect, we can't even get the log in winodw under windows. Mac users can connect just fine uning SMB.
    What the heck am I missing??
    thanks

    The minimum number of elements needed to allow users with Windows to connect to a 10.4 server are:
    1 server
    1 Windows client
    In your post, you stated you had more than one server and more than one OD master, no Active Directory and no Primary Domain Controller.
    Additionally, your post implies you are wanting your Windows clients to log into a Domain and possibly have automounting directories. I will cover only the basics. After you get this working, move to the next step and ask a more defined question, such as How do I set up home directories for Windows clients? Group folders?
    If you are wanting to log into a domain, please read the following Apple document:
    http://docs.info.apple.com/article.html?path=ServerAdmin/10.4/en/c2wn3.html
    This will help with setting up your PDC.
    Using OD requires a knowledge of directory services planning. While it is OK to run more than one OD master, you should have a clear understanding of which clients and servers are covered by each OD umbrella.
    For your problem, and to give you an answer that may help, I will give a scenario of one OD server and one additional server that is covered by that OD master with one Windows client. All of which are on the same subnet.
    The basic steps that you'll need to follow are:
    - Set up Open Directory as a master on one server with connectivity to clients and sharepoints
    - Set up users within OD.
    - Set up a second 10.4 server as an OD replica - REMEMBER 10.4 to 10.4 with OD. OD will not replicate backward or forwards, i.e. 10.3 to 10.4 = no, no. This server will also serve your share points.
    - Set up share points on the second server that is bound to your OD master.
    - Test with Windows client.
    When you try to connect to a share point on a Mac OS X server, your users are authenticating against a directory service. That directory service can be the local repository on the server or the OD database. It is wise to use the later with Workgroup Manager, otherwise you'll be creating a mess of user accounts all on different servers through the Accounts preference pane and is not the recommended method - even if you're talking about only 5 users. This WILL cause problems with file sharing (UID's, etc)...as well as allow each of those defined users to directly log in to the server if they have access to it.
    On the server holding your share points, you will need to turn on the Windows service.
    With Workgroup Manager, connect to the server that holds the share points to be shared.
    - Click on Sharing
    - Select the folder that you want to share. If you do not see it available (the problem may be here), click on All and locate the directory, if needed.
    - On the General tab, click "Share this item and its contents".
    - On the Access tab, select the owner and group - I will not go into PHD's or the like, but there's much to read about this. This is where OD comes into play and be sure you are selecting users from the OD service that is housing the Windows user. Above the user list, you should see Directory: /LDAPv3/127.0.0.1. Authenticate to the directory as the Directory Admin.
    - On the Protocols tab there is a drop down list that allows specific modification to the directory's access. The Windows File Settings are the point of interest. Be sure the folder is being shared via SMB and provide a name that is within your share point model.
    At this point, you should be able to touch the folder with the Windows client via IP or the name that you created on that server.
    Now, here are Apple's instructions:
    Setting Up a Share Point for Windows Access
    Using Workgroup Manager, you can allow Windows clients to access an existing share point via the standard Windows file sharing protocol, Sever Message Block/Common Internet File System (SMB/CIFS). You can optionally allow or disallow Mac OS client access via Apple Filing Protocol (AFP), UNIX client access via Network File System (NFS), and mixed client access via File Transfer Protocol (FTP). Workgroup Manager enables sharing via SMB/CIFS, AFP, and FTP by default for every newly created share point.
    Open Workgroup Manager and click Sharing.
    Click Share Points and select the share point that you want to configure.
    Click Protocols (on the right) and choose Windows File Settings from the pop-up menu.
    To provide SMB/CIFS access to the share point, select "Share this item using SMB."
    To allow unregistered users access to the share point, select "Allow SMB guest access."
    For greater security, don't select this item.
    To change the name that clients see when they browse for and connect to the share point using SMB/CIFS, type a new name in the "Custom SMB name" field.
    Changing the custom SMB/CIFS name doesn't affect the name of the share point itself, only the name that SMB/CIFS clients see.
    Select "Enable strict locking" to have clients use standard file locks with a share point that's also accessed by protocols other than SMB/CIFS.
    Do not select "Enable oplocks" for a share point that's using any protocol other than SMB/CIFS. For more information on oplocks, see File Locking With SMB/CIFS Share Points.
    Choose a method for assigning default UNIX access permissions for new files and folders in the share point.
    To have new items adopt the permissions of the enclosing item, select "Inherit permissions from parent."
    To assign specific permissions, select "Assign as follows" and use the Owner, Group, and Everyone pop-up menus.
    To prevent AFP access to the share point, choose Apple File Settings from the pop-up menu and deselect "Share this item using AFP."
    To prevent FTP access to the share point, choose FTP Settings from the pop-up menu and deselect "Share this item using FTP."
    To prevent NFS access to the share point, choose NFS Export Settings from the pop-up menu and deselect "Export this item and its contents to."
    Click Save.
    Windows services must be running to provide SMB/CIFS access to share points. For instructions, see Starting Windows Services.
    For additional information, see Managing SMB/CIFS Share Points and the share points section of File Services Overview.
    I hope this helps.

  • Oracle 8i Lite login question

    I have installed Oracle 8i Lite on my notebook computer running Windows 98. When I tried to login to a SQl*Plus session (using all of the combinations of default usernames/passwords, I get the error message: "ORA-12203: TNS: Unable to connect to destination" Would appreciate any insights as to how to proceed further. Also--is it necessary to type something in the "Host String" field?

    I have installed Oracle 8i Lite on my computer, which has Windows 98. But I have been unable to access the database after trying several combinations of usernames & passwords such as tiger/scott and system/manager, among others. I must be missing a step somewhere in this process. I'd greatly appreciate any suggestions. Try "SYSTEM/P".

  • Javascript Login Question

    Hello,
    I am working on this site where there are javascript
    dropdowns for the user to use in navigating the site
    one of them is Login. See below for the calls form the DHTML
    which is an include from a different folder.
    this.item0 = "Home"
    this.item1 = "About"
    this.item2 = "Atlas"
    this.item3 = "Help"
    this.item4 = "LOG IN"
    What I want to accomplish is when the user is already logged
    in, then this.item4 = "LOGIN" should change to "LOG OUT"
    In my login page I am tracking the #session.loggedin# to know
    if the user is logged in. In Javascript is there a way to create a
    gobal variable that javascript can see in all pages to check for
    values and decide if User is logged in. Please I need HELO

    The cfml reference manual has an example. If you don't have
    one, the internet does.
    I should mention that this function became available with
    version 7 of coldfusion.

  • Cisco Router AP 1242 AG, iPod iPhone Re-login questions

    Hi,
    We used Cisco AP1242 AG as our wireless routers. Our co-workers want to use their iPod and iPhone in the office. They have to re-login everytime they turn off their iPod or iPhone. I believe that is because AP 1242 does not broadcasting its SSID, and users have to re-login everytime. Is their any way I can just configure their iPhone or iPod, instead of configure the APs?
    Or is there any other way to avoid this inconvenient scenario?
    Regard
    Kurt 

    Here's the right forum for your device: https://supportforums.cisco.com/community

  • DIServer Login Question - Invalid Credentials Web Service Hangs

    Hi everybody,
    I was able to successfully configure the DIServer and connect via a web service (similar to the SDK Samples provided). I am now able to login using a valid username/password and the <dis:Login> SOAP message, but if I provide a bad username or password it seems to just hang forever, without returning an 'invalid user/password' message - just nothing. Anyone else have this problem?
    The only workaround I can think of now is to just set the timeout on my web request to a short time span with a generic error message. But I'd like to be able to differentiate between invalid credentials and just a problem with the DI Server connection.
    Thanks for any help.

    Looks like a reboot of the DI Server has fixed the problem. Probably should've tried that before posting.

  • Remote login questions

    I have an account on my parent's mac at their place which I log into occasionally via screen sharing/back to my mac. Is it possible, instead of using screen sharing, to log into my account remotely, see and use my desktop, without disrupting their session? I could be at home seeing the screen as it appears in my profile and they can be using the computer at the same time in their profile.
    I vaguely remember this being done in windows (Server 2003) by some HP network engineers I used to work with.
    I played with the remote login feature in the sharing prefpane and using ssh, but that just logged me into my user account via terminal, which I'm completely unfamiliar with.
    Both their Mac and mine are running 10.5. Is it possible?
    Thanks,
    Sean

    Is it possible, instead of using screen sharing, to log into my account remotely, see and use my desktop, without disrupting their session
    No. Mac OS X supports only a single desktop, so all GUI users see the same thing.
    There was some project that aimed to implement this through some X11 hack, but I haven't seen anything about it in a while.

  • Login questions - multiple servers - vpn

    My goal is to permit users to login from their home PCs over a Cisco
    VPN (IPSec client) without using the Novell client. Servers are
    running NetWare 6.5 sp7 with CIFS. Test client is XP. I can login
    and access the servers, but I am trying to simplify things.
    After the client connects over the VPN, I issued the following
    commands:
    net use L: \\192.168.1.1\data4
    net use N: \\192.168.1.3\apps
    I get prompted to login to each server. Is there a way to access
    multiple servers with a single login instead?
    Is it possible to use the Cisco VPN username and password to
    seamlessly login and not get prompted for another username and
    password to access my servers?
    Thanks for the help.
    Regards,
    Ken Etter
    Novell....it does a server good!

    On Wed, 24 Feb 2010 18:09:38 GMT, KeN Etter
    <kle@_remove_this_msktd.com> wrote:
    >After the client connects over the VPN, I issued the following
    >commands:
    >
    >net use L: \\192.168.1.1\data4
    >net use N: \\192.168.1.3\apps
    >
    >I get prompted to login to each server. Is there a way to access
    >multiple servers with a single login instead?
    >
    >Is it possible to use the Cisco VPN username and password to
    >seamlessly login and not get prompted for another username and
    >password to access my servers?
    A little searching solve this. I found this page:
    http://www.digitalissues.co.uk/html/...re-smb.html#18
    Short answer: If my Windows username and password matches my
    eDirectory username and simple password, then I can immediately access
    all servers without an additional login and without a login per
    server. If they do not match, then I will get a per server prompt to
    login.
    If anyone knows how to make that per server prompt into a single
    login, I would greatly appreciate it.
    Regards,
    Ken
    Novell....it does a server good!

  • Initial setup login question

    I'm playing with server and want to create a share that Windows clinets can attach to.
    Question: When I log into workgroup manager I get the message
    You are logging into a node that is not visible on the nework
    I then can't really do anything (i.e. create the share)
    I know I'm doing something dumb but I can't figure out what.
    Help

    That message may or may not be a problem depending on how your network is configured.
    What it's basically telling you is that you're looking at the local accounts on the server in question. If your users are authenticating via some other directory service they won't necessarily have an account on this machine, and therefore might not be able to get to their shares.
    Whether that's a problem or not depends on whether you expect this machine to act as a directory server, a client in an existing directory, or standalone.
    Either way, if it's connected to a directory server, you can switch which set of accounts you view (e.g. local or shared) by selecting an option from the small popup menu above the accounts list.
    Even so, that shouldn't prevent you from creating share points - it just might impact who can access it.
    To create the share, select the Sharing icon in the toolbar, then navigate to the directory you want to share and enable sharing for it,
    You can choose which protocol(s) to share the directory via, and each protocol has a subset of options relevant to that protocol.
    Once you've created your share(s) you can startup the appropriate file service using Server Admin.

Maybe you are looking for

  • Mac Pro boot failure

    Hello everybody. I recently bought a new Mac Pro (2x Quad-Core Intel Xeon, 2,4GHz, running OS X 10.6.8) and just encountered a very strange error at bootup. 1 out of 10 system boots take up much longer and end up in having the desktop with a light bl

  • Asset (Capital item purchase)

    Hi All, Please put some light on what all cases it is recommended to keep a material code for the Capital items (asset ) and in what all scenarios it is recomended to procure the capital item on the short description by NOT creating the material code

  • HT203167 Movie Download

    My download (movie) is taking a really long time... It's been going for 30 minutes and states it has another 16 hours to go.  Any suggestions on how to expedite download?

  • A very difficult challenge in Numbers

    Morning. I have a Numbers table, that calculates savings for future investments. But the investments take place surprisingly. That means, there are expenditures where no adequote savings has been done. In such case I want to diminish all the other sa

  • Extract

    hi, What does an extract statement do in the ABAP program? thnks.