Stop parameters from displaying in the URL

Hi All,
I've got a simple application with no login required and I have set up the session state protection at the page level.
Is there any way to not display the parameters within the URL?
If yes, what security method is better between the session state protection and hidding the params?
Many thanks

Javier,
What are the normal security recommendations?There is a lot to consider when it comes to security. Does your app has sensitive data? Does it run on the internet? How secure does it need to be?
Determining the level of security you are shooting for is the first step. After that, it is following processes that will get you to what you need. SSP is not enough--you need to consider security in everything you do--in Apex or any other tool.
As for hiding parameters, you could also use a frame, but the parameters are still there, they are just in a frame. You could also post them instead of using links, but they are still there, just view the source of the page. SSP will keep users from tampering with the URL and a few other things, but it won't keep them from changing post-able items.
If you have really sensitive data, you should consider your security holistically--database views, VPD, triggers, Apex validations, Apex conditions, Apex Authorization Schemes. Because it is html, the user can modify the html and post the page--you need to consider that. If you don't have (or display) a Delete button, the user can just add one in and post the page. If you have a process that is dependent on a delete button it will run, unless you check to see if it should. This is true for Apex and any other html application.
This probably poses more questions than it answers, but security is that way--no simple answers.
Anton

Similar Messages

  • Hi, can anyone advise me how i can stop any texts messages from displaying on the front screen of my mobile plz? despite my iphone requiring a password to get into it , texts can still be read from front screen.

    can anyone please advise me how i can steop any text messages from displaying on the front screen of my apple iphone 5c? Despite my phone requiring a password to get into it and this being locked when the text comes in, the text message is still actually visible on the front screen and could be read by anyone. Can anyone provide me with any resolution to this please?

    Settings > Notifications and turn off the ones you don't want.

  • How do I stop programs from running in the background?

    How do I stop programs from running in the background?  In the old system you could delete them.

    Most of those apps aren't running in the background, but what you are asking is how to close the apps.
    To close an app in iOS 7, drag the app up from the multitasking display. Double tap the home button and you will see apps lined up going left to right across the screen. Swipe to get to the app that you want to close and then swipe "up" on the app preview thumbnail to close it.

  • Please make a permanent solution to stop applications from running in the background

    'multitasking' is not a very usefull invention and should have a permanent solution, to stop applications from running in the background instead of having to go in and exit them. the only thing that is usefull is to go in and click on next song under music, everything else running in the background can just be exited as far as im concerned, its not like i have 400 applications, and i have to go searching through my phone to find them

    Push twice on the Home button to display running apps. Press on one and hold until they wiggle. Tap on the circled red "x" to remove each from the background. Note that backgrounded apps are not actually running until you access them except for those that have been written to run concurrently such as Music, which can continue playing while you are using other apps.

  • How can I stop Logic from displaying every Flam (grace not) with a "b"

    How can I stop Logic from displaying every Flam (grace note) with a "b" in drum notation? Every time I give the independent/ grace note attribute to a note it is shown with a "b" even if I klick on "display it without ' or b"
    many thanks for any useful advice
    George & the Clooneys

    Move them out of the Events and/or Projects folder!
    There is an App that will manage it for you, if you like..
    http://assistedediting.intelligentassistance.com/EventManagerX/

  • How do I stop firefox from automatically placing the cursor in a textbox?

    How do I stop Firefox from automatically placing the cursor in a text box? On certain pages such as Google.com the cursor will be moved to the search text box automatically after a couple seconds from the page loading. So I'll be typing in the address bar or something and then half of what I am typing in the address bar becomes cut off and starts being entered in the Google.com text box for search. The same happens on Facebook.com and the cursor is automatically moved to the Status Update text box. I assume this is a built in "feature" of the web page, but it's damn annoying. Especially when I start typing in my status update box on Facebook before the page completely loads and then halfway through typing (once the page is done loading) my cursor is moved to the starting position of the text area and my text is cut off.
    Just the be clear the actual mouse pointer isn't being moved, just the prompt for entering text.
    How can this be stopped?
    == This happened ==
    Every time Firefox opened
    == Started since I can remember

    This problem has grown worse over the last couple of years. I use Firefox on Mac and Windows. I consider this problem to be a bug. Here's why: Event Driven interfaces, e.g., OSX and Windows, are never supposed to change typing-cursor focus WHILE SOMEONE'S TYPING!!!
    Firefox allows websites to change focus WHILE USERS TYPE!
    Hey, sorry for the caps, but I haven't used those for awhile and that's kind of fun. But really, more and more websites steal typing-cursor focus WHILE USERS TYPE.
    Efff them, but really, Eff Firefox for allowing this.
    It's almost like a symptom of our hyper scattered age where our attention jumps here and there.
    But really... I love Firefox, some of my best friends are Firefox, they're good people, don't get me wrong, but damn it, WHEN SOMEONE IS TYPING THE UNASSAILABLE RULE OF EVENT DRIVEN DESIGN IS NOTHING ELSE SHOULD CHANGE FOCUS WHILE SOMEONE IS TYPING!!!!
    FIX THIS PLEASE.
    Oh, I just ran out of capital letters. :) :) :)

  • Desktop files disappeared from displaying on the Desktop

    My existing Desktop files disappeared from displaying on the Desktop--the files still exist, and newly added files appear on the Desktop; I did not enter any "hide my files" command. How do I have them display? Running OS X Yosemite 10.10.2

    Do a backup.
    Go to Finder and select your user/home folder. With that Finder window as the front window, either select Finder/View/Show View options or go command - J.  When the View options opens, check ’Show Library Folder’. That should make your user library folder visible in your user/home folder.  Select Library. Then go to Preferences/com.apple.finder.plist and com.apple.desktop.plist.  Move the .plists to your desktop.
    Re-launch Finder by restarting the computer and test. If it works okay, delete the plists from the desktop.
    If the same, return the .plists to where you got it  from, overwriting the newer one.
    Thanks to leonie for some information contained in this. 

  • How can i stop apps from running in the background with the new ios7 update

    How can i stop apps from running in the background with the new ios7 update

    Double tap the Home button...slide the last used view of the app(above the icon) up. Tap Home button when finished.

  • How do you stop apps from running on the iPad with the new ios7?

    How do you stop apps from running on the IPad with the new ios7?  I have an app for animation that pops up a message to stop other apps from running.  If I press onto a app and it starts shaking there are no -, just x's.

    Close inactive apps
    1. Double tap the home button to bring up the multi-tasking view
    2. Swipe the app's windows upwards to close
    3. The app will fly off the screen
    http://support.apple.com/kb/ht5137

  • Stop thunderbird from automatically populating the To: field when replying

    Is there a way to stop Thunderbird from automatically populating the To: field when replying to an email?.
    Also is there a way to get Thunderbird to request confirmation of addresses emails are to be sent to?

    'Reply' is supposed to do exactly that. Use 'Forward' instead.
    Wrt return receipts check this article.
    http://kb.mozillazine.org/Figuring_out_whether_the_recipient_read_your_message

  • How do I hide the Dynamic Page parameters from being displayed in the URL

    Hello,
    I am using a form to call a Dynamic Page and to send parameters to it ,
    is there a way to hide the parameters values from being diplayed in the URL
    when the Dynamic Paged is called .
    Thanks .

    Hi,
    You cannot hide the parameters in the url. The GET method works like that. You can use the POST method to submit the parameters. But in your case the POST method may be not be appropriate.
    Thanks,
    Sharmila

  • How do I stop Safari from automatically loading a URL when I start typing the first few letters in the URL/search bar?

    My question concerns a bug (or feature, I'm not sure which) that I've been seeing for some time on my Safari installations.
    I'm running Lion (the latest patched version) with Safari (ditto). I've noticed that every so often, if I open a new tab and start typing something in the search/URL bar, Safari will not only suggest something based on my history, but will actually begin loading the page as though I had accepted that suggestion.
    For example, today, I typed the letter "b" in the search/URL bar, paused for a few seconds while I was thinking of what to type next, and Safari went ahead and loaded "bugzilla.gnome.org" based on that being the last URL starting with "b" that I happened to have gone to. And the same thing has happened to me on earlier occasions with different web sites. In other words, it's not merely giving me a suggestion, it then proceeds as though I had accepted that suggestion. Sometimes it might happen to be right, but it's the principle of the thing.
    Needless to say, I hadn't inadvertently bumped the Enter key.
    Of course, ordinarily, Safari will just offer a list of suggestions based on my bookmarks and browsing history, maybe filling out the URL bar with the topmost suggestion (while giving me the option of overtyping it if I wish). And, of course, this happens without fail if I've just had Safari preempt me by loading a page and am trying to find out why. Like the best Heisenbugs, this "feature" goes away as soon as I make a concerted attempt to study it.
    I have completely disabled AutoFill in the Preferences dialog. I would clear the cache and history, except that I kind of resent having to do that every time (or turn on private browsing, possibly another option) just to stop the computer from executing an instruction that I haven't even finished giving it yet (and in many cases intend to change).
    Has anyone else seen or been able to disable this feature?

  • How do I stop my iWeb site folder name from showing in the URL?

    I have looked through the forum but cannot find exactly what I need.
    I am sure there is a way to stop this from happening but I do not want my iWeb site name to show in the URL. Anyone else had this problem that can spread some light on the situation?
    Here is how it is showing:
    www.ilovehopetown.com/ILove_Hope_Town/The_Ultimate_Guide_To_HopeTown.html
    I want to to just be www.ilovehopetown.com and then the page name.
    Any help will be appreciated.
    Rob

    What happens if I leave Site name blank?
    Try it and see.
    If you are using iWeb 09, the right forum to ask things in is here:
    http://discussions.apple.com/forum.jspa?forumID=1309
    Two options you could try are naming your site the same as the default folder used by your sever (e.g. public_http or whatever) or forwarding www.myname.com to www.myname.com/sitename

  • How to I stop safari from automatically resizing the bookmark bar when I click on the search bar?

    there is probably an eloquent way to ask this but I don't even know what the feature is called.
    Here is what it's doing:
    I'm using safari in landscape mode on my iPad.
    I click on the search bar and then the bookmarks come up below.
    It takes a second to automatically resize to a size that make no sense, usually cutting off bookmark titles...and the delay of it resizes drives me nuts.
    Safari did not used to do this until I guess ios 8. Any ideas how to stop this annoying "feature"??

    Try deleting the Cache.db...
    Quit Safari.
    Go to ~/Library/Caches/com.apple.Safari/Cache.db
    Move the Cache.db file from the com.apple.Safari folder to the Trash.
    Relaunch Safari ...
    You may want to try the Safari Reading List as an alternative to tabs.
    Click the eyeglass icon just to the left of the Bookmarks icon top left side of the Safari window.
    Drag the url to the window or click Add Page

  • How to stop Google from making site the top search result

    I created a website for a clinic that's part of a large hospital. Unfortunately when someone googles the name of the large hospital, the clinic's website with address, map and phone number, comes up first on the search results. So the poor clinic receptionist is fielding a lot of phone calls from people thinking the clinic's number is the hospital's general phone number.
    So first I removed the name of the hospital (except in an image) from the home page, and took the hospital name out of the address text. I tried using Google's URL removal tool to tell them to stop using the clinic website for the hospital name search. But each request there is marked denied after a few days. Even tried the Google option to have them reindex the site. So far nothing has worked, and it's been a month.
    So does anyone have any other ideas to try and get Google to de-rank or remove the clinic site from the hospital name search results?

    Thanks for the robot.txt idea. I didn't know about that.
    It seems that won't work though, as I still want all pages to be indexed so people can find the site when they are looking for just the clinic. It's just stopping the query for the hospital from returning the site.
    But I've now noticed that the actual site link is further down the search results, but the tiny map and address that show up at the top of the query ( i.e. when you search for a business) is being taken from the clinic address and website.
    I'm wondering if it's because I used the Google Map widget in the website. I'm going to try and replace the map widget with a gif of the map and see if that helps. Open to other ideas here too.

Maybe you are looking for

  • Hello! I am having trouble creating a still picture time lapse! I am trying to create a 20 or 25 fps

         Hi! i am really looking for some help here using lightroom 4! i am using the free trial version (not sure if that has anything to do with it but on the adobe website it says it is the full version) I have a list of all my pictures and i go to sl

  • SYSVOL on Win8 Clients DFS link points to wrong path

    Since I introduced a secondary DSfW DC I experience wrong DFS paths on my only Win8 DSfW member computer, if the active path of \\domain\sysvol points to the secondary DC. It points to the sysvol on the secondary DC instead of the sysvol-msdfs. This

  • Sending email with Entourage worked, but Apple Mail fails

    I want to migrate from Entourage to Apple Mail. However sending emails using the smtp of my hosted website, fails every time. I use the same SMTP settings as configured in Entourage, but the connection manager cannot connect to these smtp servers. Wh

  • Find all images that have no Keyword assigned?

    Is it possible to create a smart album to show all the pictures WITHOUT a keyword? When I create the smart folder and click Keywords, the only options are "contain one or more of the following" and "contain all of the following".

  • InDesign CS6 Installation

    I have a computer running XP and i want to buy and install InDesign CC. The technical requeriments forces me to install InDesign CS6, cause it is the last versión that runs in XP. I know that it is posible to buy an InDesign CC license and install a