Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
technoweenie
15y ago
0 comments
Save
Share
You can't send the headers unless you know if the person is authorized or not (and other common things you check in the before filters). So yes, this stuff would have to be checked before rendering a view.
0 comments
1 comments · 1 top-level
top
newest
oldest
aaronblohowiak
15y ago
I am willing to errantly send a 200 with a js redirect upon auth fail if it means faster load times.
j
/
k
navigate · click thread line to collapse