Re: Session management module - thoughts
| From: | Rasmus Lerdorf | Date: | Fri, 28 May 1999 15:35:38 +0000 |
| Subject: | Re: Session management module - thoughts | ||
| References: | 1 | Groups: | php.dev |
| Request: | Send a blank email to php-dev+get-6168@lists.php.net to get a copy of this message | ||
> It's actually beyond marketing. As someone that doesn't like messing with
> PHP scripts too much, I haven't yet installed phplib, and thus, never used
> sessions. I'm sure there are many other people in the same situation...
I have never used phplib either, but I have done sessions many times. My
personal favourite way to do sessions is to have people login using http
auth and on the sql query where I check their password I also fetch their
user profile and whatever else I need to start the session. http auth
sessions are basically identical to cookie sessions in that the client
browser sends what amounts to a cookie with their unique identifier, but
unlike cookies, it is impossible for the user to disable these.
But, sometime http auth isn't an option for people and straight cookie
sessions are useful. It's still not much more than a SetCookie() call and
a couple of sql queries.
> Hmm, that's not true; Your browser opens many HTTP connections to the
> same web server with the same cookie - it may blow up.
Yeah, when I was thinking about it I figured that the other connections
would be for inline images where presumably no session stuff was needed.
I forgot about the frames case.
-Rasmus
--
PHP Development Mailing List http://www.php.net/
To unsubscribe send an empty message to php-dev-unsubscribe@lists.php.net
For help: php-dev-help@lists.php.net