    hii,
After a login we have a menu from where we have access to different operations such as add ,delete,update.. but if a user enters the appropriate URL he has access to these operations with out proper do we solve this.
should we use cookies,if so how exactly?
or anyother method?
thank you

    To answer your question, though: 

Cookies are *NOT* secure. At all.
Even the SessionID cookie that ASP uses is 100% secure, though it's not bad (because it's the encrypted form of something that is date and time and sequence dependent).

