Re: scramble the code-sneaky solution
| From: | Lindsay Adams | Date: | Thu, 05 Apr 2001 17:11:20 +0000 |
| Subject: | Re: scramble the code-sneaky solution | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-47288@lists.php.net to get a copy of this message | ||
If you don't want to rewrite any of your existing code, consider the
behavior of frames.
If you make a frameset with a 0 height for the top frame, and then use the
bottom frame for everything, then the URL in the location/address bar in the
browser will not ever change.
This only requires that you create a frameset as your default page, and
rename your old default page. (don't forget to create a blank page for that
invisible top frame, or you will get a no data present or file not found
error, and your user won't know why)
While this won't prevent people from seeing the code if they open the lower
frame in a new window, but they probably won't think of it.
This is a fast solution, not necessarily ideal, but, you can do some
weird/interesting things by periodically hiding data in that hidden frame.
On 4/5/01 8:36 AM, "maatt" <kynaston@GREENEGGSANDyahoo.com> wrote:
> Save yourself the scramble, use sessions:
> http://www.php.net/manual/en/ref.session.php
>
> --
> Matt Kynaston
> remove the green eggs before replying
>
> ""Scott Fletcher"" <scott@abcoa.com> wrote in message
> news:9ai09g$9d$1@toye.p.sourceforge.net...
>> I see it! The login page when use the html form, the action is the
>> $PHP_SELF, allowing hte page to refresh itself and then the following
> script
>> elsewhere check for the variable to see if it is true or not. If true
> then
>> the script use the php header();. The header contain the data, so that
>> explain why it display the data in the URL. The data in the URL doesn't
>> include the data from the login page.
>>
>> Thanks for the clarification! Now I'll give it a shot in scrambling one
> of
>> the variable data that come with the header and then unscramble it on the
>> next page.
>>
>> Scott
>>
>> ""Scott Fletcher"" <scott@abcoa.com> wrote in message
>> news:9ahvj6$m67$1@toye.p.sourceforge.net...
>>> Um, well, it show up on Internet Explorer and Netscape Navigator and
>>> Netscape. Oh well.
>>>
>>> Scott
>>>
>>> ""Scott Fletcher"" <scott@abcoa.com> wrote in message
>>> news:9ahuft$612$1@toye.p.sourceforge.net...
>>>> Well, mine does!!!
>>>>
>>>> Scott
>>>>
>>>> ""Joe Sheble (Wizaerd)""
>>>> <JustForMailingLists@wizaerd.com> wrote in
>>> message
>>>>
>>>> news:5.0.2.1.0.20010405070723.00a8c7a0@mail.wizaerd.com...
>>>>> This isn't quite accurate. WHen a form's method is set to
>>>>> "GET"
>> (which
>>>> BTW
>>>>> is the form's default method) the variables and their values are
>> passed
>>>>> along the URL. If your form's method is set to "POST" then
>>>>> nothing
>>> should
>>>>> get passed along on the URL. If you see all your data in the URL,
>>> you're
>>>>> not using a POST method or the forms action is specified as a url
> with
>>>>> parameters.
>>>>>
>>>>> At 09:06 AM 4/5/01 -0400, Scott Fletcher wrote:
>>>>>> For the data in the "post", when the user type in the data and
> press
>>> the
>>>>>> submit button, the data is then carry over to the nextpage.html.
> In
>>> the
>>>> URL
>>>>>> bar, I can clearly see the data, so is there to scramble hte data
>> where
>>>>>> anyone won't see it in the URL box at the top of the web browser?
>>>>>> Thanks,
>>>>>> Scott
>>>>>>
>>>>>>
>>>>>>
>>>>>>
>>>>>>
>>>>>> --
>>>>>> PHP General Mailing List (http://www.php.net/)
>>>>>> To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
>>>>>> For additional commands, e-mail: php-general-help@lists.php.net
>>>>>> To contact the list administrators, e-mail:
>>> php-list-admin@lists.php.net
>>>>>
>>>>>
>>>>> --
>>>>> PHP General Mailing List (http://www.php.net/)
>>>>> To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
>>>>> For additional commands, e-mail: php-general-help@lists.php.net
>>>>> To contact the list administrators, e-mail:
>> php-list-admin@lists.php.net
>>>>>
>>>>
>>>>
>>>>
>>>> --
>>>> PHP General Mailing List (http://www.php.net/)
>>>> To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
>>>> For additional commands, e-mail: php-general-help@lists.php.net
>>>> To contact the list administrators, e-mail:
> php-list-admin@lists.php.net
>>>>
>>>
>>>
>>>
>>> --
>>> PHP General Mailing List (http://www.php.net/)
>>> To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
>>> For additional commands, e-mail: php-general-help@lists.php.net
>>> To contact the list administrators, e-mail: php-list-admin@lists.php.net
>>>
>>
>>
>>
>> --
>> PHP General Mailing List (http://www.php.net/)
>> To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
>> For additional commands, e-mail: php-general-help@lists.php.net
>> To contact the list administrators, e-mail: php-list-admin@lists.php.net
>>
>
>