Passing Tamper-Proof QueryString Parameters

Peace Be Upon You,

I faced a situation in which I needed to hide the user from playing with the query string parameters being passed to my webpage.

I found a nice technique to be able of hashing the query string in a manner such that even a hacker who knows your hashing
algorithm won’t be able of sending parameters different than those that should be passed to your webpage and be able of viewing un-authorized data or accomplish un-authorized actions.

Here is the post:
http://www.4guysfromrolla.com/articles/083105-1.aspx

Enjoy ! 🙂