Re: RE: Session Problems

From: Date: Wed, 05 Jul 2000 13:30:31 +0000
Subject: Re: RE: Session Problems
References: 1  Groups: php.general 
Request: Send a blank email to php-general+get-4928@lists.php.net to get a copy of this message
I found I'm having the exact same problem you're having Bob Horton. But whenever I post or give any information, it seems to be ignored or people don't know what to respond so they don't. I have even filled out a bug report on this including a full script to test it. http://bugs.php.net/bugs.php?id=5360 No reply from either the developers nor this list. You'll find at the bottom of the bug report that I say that changing the method to GET makes it work but the problem is passwords sent via the GET method are very insecure. I found it interesting that on 7/5/00 2:36 AM Subhrajyoti Moitra said: > can u give alittle bit for your codes ... > i mean the form as well as the susequent pages..... > > ------------------------------------------------------------------------------ > -------- > SECURITY IS A MYTH........!!!!!!!! > "Linux for people with avg. IQ above 98" > ------------------------------------------------------------------------------ > -------- > Subhrajyoti Moitra ------- C/212 Hall-I IIT-Kanpur India 208016 > email: subhra@iitk.ac.in > > > On Wed, 5 Jul 2000, Bob Horton wrote: > >>> From the login page to the login test page I use a form and a POST method. >> >> Everything after that I either put the Session_ID right on the URL (like the >> documentation says) or it comes from the Cookie (in other words, I always >> put SID into the URL and PHP handles the rest). >> >> Before I had the login form first everything worked fine but now with the >> login form in place it doesn't work at all! Very frustrating! >> >>> -----Original Message----- >>> are u using POST method for for going to the next page ??? >>> i think in each POST a new session is started ... when u put a >>> session_start().... u can pass the session id .... to the next page >>> probably use a database to put in your session variables and .. query it >>> in the next page .... >>> >>> i dont kknow if this is what u want .... >>> otherwise if cookies is turned on then u should be having no problems ... >>> >>>> Hi, >>>> >>>> I can't figure out why my sessions aren't working right. I'm using >>>> PHP >>>> 4.0.0 under Apache as a module on RedHat 6.2 >>>> >>>> I had 2 pages and the session was going back and forth between them >>>> perfectly. Then I added a login form with a script to test the >>> userid and >>>> password and set the previously hard coded user_id variable >>> (registered in >>>> the session) to the current user_id. How easy could it be! >>>> >>>> I remove the hard coded user_id from the two pages and I put in >>> a login page >>>> that calls another script DOLOGIN.HTML DoLogin checks the User_Id and >>>> Password and then does an INCLUDE of the first screen of the app. >>>> >>>> Looks like it worked perfectly except that everything I click >>> on to take me >>>> to the second screen causes the Login test to jump back to the >>> login form as >>>> if there is no variable set! >>>> So I check. There aren't any variables set. They all show up >>> like they're >>>> registered but no values are stored! >>>> >>>> Any ideas would be really appreciated! >>>> >>>> Thanks. >>>> >>>> P.S. If you could please CC me directly as well so I get the >>> reply faster I >>>> would appreciate it! >>>> >>>> ******************************************* >>>> * Bob Horton - PneumaSoft Inc >>>> * Custom Software Development Services >>>> * >>>> * Ph: (306) 949-5610 Fax: (306) 924-5326 >>>> * bhorton@pneumasoft.com ICQ: 32058710 >>>> ******************************************* >> -- Thomas Deliduka IT Manager ------------------------- New Eve Media The Solution To Your Internet Angst http://www.neweve.com/

« previous php.general (#4928) next »