Re: Heop someone can help with this.. involves sessions.
| From: | CPT John W. Holmes | Date: | Thu, 28 Aug 2003 21:07:39 +0000 |
| Subject: | Re: Heop someone can help with this.. involves sessions. | ||
| References: | 1 | Groups: | php.db |
| Request: | Send a blank email to php-db+get-30274@lists.php.net to get a copy of this message | ||
From: "Aaron Wolski" <aaronjw@martekbiz.com>
> I really hope you don't mind the OT post but I've looked everywhere and
> can't seem to find a solution to my problem.
>
> I am passing a var in a session (not in the URL) to my secure checkout
> area and it's not capturing the variable.
>
> I know there is a problem with using sessions across non-SSL and SSL but
> I was hoping someone would have an idea as to how to accomplish this?
>
> Both domains are setup on the same box.. the secure SSL area is
> secure.mydomain.com
The session id is maintained in a cookie (by default), so when you switch
from "non-secure" to "secure" you are probably losing the cookie because of
the difference in domains.
You need to pass the session id in the URL when switching to "secure" mode.
---John Holmes...