[Solved] Asp.net dynamic User and activity based authorisation mixed with hide show site master html


You should switch from role based authentication to claims based authentication. Here’s an article describing the basics of claims based authentication:

http://dotnetcodr.com/2013/02/11/introduction-to-claims-based-security-in-net4-5-with-c-part-1/

Claims will give you fine grained control over the rights for each individual user. ClaimsPrincipal can also be used in webforms:

https://visualstudiomagazine.com/articles/2013/09/01/going-beyond-usernames-and-roles.aspx

An attribute can be applied to pages and methods in an ASP.NET Web Forms application (described in the article above):

[ClaimsPrincipalPermission(SecurityAction.Demand, 
  Operation="Update", Resource="Customer")]
public partial class CustomerUpdate : System.Web.UI.Page
{

solved Asp.net dynamic User and activity based authorisation mixed with hide show site master html