AccountActionForm acctForm = (AccountActionForm) form;
int orderId = Integer.parseInt(request.getParameter("orderId"));
Order order = getPetStore().getOrder(orderId);
if (acctForm.getAccount().getUsername().equals(order.getUsername())) {
request.setAttribute("order", order);
return mapping.findForward("success");
}
else {
request.setAttribute("message", "You may only view your own orders.");
return mapping.findForward("failure");
}