RE: [PHP] phpbb / sessionid nightmare
| From: | Brad Sumrall | Date: | Mon, 30 Apr 2007 02:35:24 +0000 |
| Subject: | RE: [PHP] phpbb / sessionid nightmare | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-254125@lists.php.net to get a copy of this message | ||
You might be hitting the nail on the head.
That is why I am trying to get crafty and look for two sessions.
But, give me a sec and follow your lead!
I am back on this project now and finishing laundry at the same time.
Thank you sir!
Brad
-----Original Message-----
From: Chris [mailto:dmagick@gmail.com]
Sent: Sunday, April 29, 2007 6:45 PM
To: Brad Sumrall
Cc: ceo@l-i-e.com; php-general@lists.php.net
Subject: Re: [PHP] phpbb / sessionid nightmare
Brad Sumrall wrote:
> The cookie it's self says
> PHPSESSID=26b7974a5d71c7d0bfebbf71750dac7b
> Path=/
> Host=www.domain.com
>
> When I go to the jacked up page, I pickup this one
> PHPSESSID=a787e077dd18ed18cb824f664d38315d
> Path=/
> Host=domain.com
That will be your problem. A cookie created on domain.com is ONLY
readable by domain.com (unless you make it '.domain.com' which is
technically different to 'domain.com').
Check out 'session.cookie_domain', you can set it with an ini_set call:
ini_set('session.cookie_domain', '.domain.com');
See http://www.php.net/manual/en/ref.session.php
and http://www.php.net/setcookie for more info about how
cookie domains
work.
--
Postgresql & php tutorials
http://www.designmagick.com/