#31369 [Bgs->Opn]: session_destroy() and/or session_write_close() should unregister URL handler
| From: | baafie at planet dot nl | Date: | Sun, 16 Jan 2005 18:00:40 +0000 |
| Subject: | #31369 [Bgs->Opn]: session_destroy() and/or session_write_close() should unregister URL handler | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-72261@lists.php.net to get a copy of this message | ||
ID: 31369
User updated by: baafie at planet dot nl
Reported By: baafie at planet dot nl
-Status: Bogus
+Status: Open
Bug Type: Session related
Operating System: Linux Red hat 9 -2.4.20
PHP Version: 4.3.10
New Comment:
I reopened this bug to allow another person to comment. Please leave
the status as it is, until he has done so.
Re: your comment - why are session_destroy() and/or
session_write_close() not supposed to unregister the handler? Is there
another function that has this functionality?
Previous Comments:
------------------------------------------------------------------------
[2005-01-16 18:54:16] derick@php.net
Because it's not supposed to unregister the handler.
------------------------------------------------------------------------
[2005-01-16 18:38:03] baafie at planet dot nl
Reopened by request. Comment pending.
------------------------------------------------------------------------
[2005-01-02 15:46:14] baafie at planet dot nl
Would you mind explaining why this is not a bug?
------------------------------------------------------------------------
[2005-01-02 07:17:36] sniper@php.net
Thank you for taking the time to write to us, but this is not
a bug. Please double-check the documentation available at
http://www.php.net/manual/ and the instructions on how to
report
a bug at http://bugs.php.net/how-to-report.php
------------------------------------------------------------------------
[2004-12-31 16:33:49] baafie at planet dot nl
Description:
------------
According to the php manual, session_start() will register internal
output handler for URL rewriting when trans-sid is enabled. Should
session_destroy() and/or session_write_close() not unregister this
handler?
Reproduce code:
---------------
<?php
ini_set ('session.use_trans_sid','1');
session_start();
echo '<a href="index.php">a page</a>\n';
session_destroy();
echo '<a href="index.php">a page</a>';
?>
Expected result:
----------------
Only the link that was printed before session_destroy() should contain
the session ID:
<a href="index.php?PHPSESSID=2382309823823...">a page</a>
<a href="index.php">a page</a>
Actual result:
--------------
Both URLs contain the session ID;
<a href="index.php?PHPSESSID=2382309823823...">a page</a>
<a href="index.php?PHPSESSID=2382309823823...">a page</a>
------------------------------------------------------------------------
--
Edit this bug report at http://bugs.php.net/?id=31369&edit=1