Re: session vars between two host servers
| From: | John Lim | Date: | Thu, 31 Jan 2002 18:19:19 +0000 |
| Subject: | Re: session vars between two host servers | ||
| References: | 1 | Groups: | php.db |
| Request: | Send a blank email to php-db+get-16357@lists.php.net to get a copy of this message | ||
Your solution sounds good. That's what I use too.
<razorfish@surfinbox.com> wrote in message
news:56238.64.4.198.34.1012331600.squirrel@mail.surfinbox.com...
>
> Problem: hosts "http://www." and
> "https://secure." of the same domain need
> to work with the same browser session_id. This is a
> login/authenticate/redirect scenario. In this case the session data store
> is a common MySQL database, so the issues of /tmp sharing, NFS, etc. are
set
> aside. My platform is Apache 1.3.22 and RH Linux 7.1.
>
> What PHP v4.1.x method of exchanging the session_id and session_name is
most
> secure, most effective, and generally makes good soup?
>
> I've had some success with initial tests in appending
> '?PHPSESSID=29AE490...' to the URL and link hrefs, but that really seems
> ugly and unnecessary..... hopefully there's a better way!?
>
> This question seems to get asked a lot in the archives but there doesn't
> seem to be a "guideline" resolution.
>
> PLEASE and THANK YOU!
> RF.
>
>
>
>
>