Re: RE: Session Problems
| From: | Roberto Cespa | Date: | Fri, 07 Jul 2000 00:13:57 +0000 |
| Subject: | Re: RE: Session Problems | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-5289@lists.php.net to get a copy of this message | ||
Well, I'm not so sure about this.
My site uses heavily the POST method (almost every page is a form) and the error
appears quite randomly.
Sometimes the system loose the session_id (it is passed via the url using the
--enable-trans-sid option), but I don't think
that PHP creates a new session for each POST form. I cannot find out the exact
condition to trace the error. As soon as I do I will post
a message here, or, maybe, a bug report.
If you want to spend some time, you can check my site
http://www.colombo2000.dyndns.org (or
www.colombo2000.it but it's in a frame, so
you cannot see the SID).
You will see that it works only with post forms. Maybe you can find those exact
conditions I were talking about few lines above.
[Continue reading the message, please...]
Thomas Deliduka wrote:
> I found I'm having the exact same problem you're having Bob Horton. But
> whenever I post or give any information, it seems to be ignored or people
> don't know what to respond so they don't.
>
> I have even filled out a bug report on this including a full script to test
> it.
>
> http://bugs.php.net/bugs.php?id=5360
>
> No reply from either the developers nor this list. You'll find at the
> bottom of the bug report that I say that changing the method to GET makes it
> work but the problem is passwords sent via the GET method are very insecure.
>
> <-- CUT -->
> >>> -----Original Message-----
> >>> are u using POST method for for going to the next page ???
> >>> i think in each POST a new session is started ... when u put a
> >>> session_start().... u can pass the session id .... to the next page
> >>> probably use a database to put in your session variables and .. query it
> >>> in the next page ....
> >>>
> >>> i dont kknow if this is what u want ....
> >>> otherwise if cookies is turned on then u should be having no problems ...
> >>>
> >>>> Hi,
> >>>>
> >>>> I can't figure out why my sessions aren't working right. I'm
> >>>> using PHP
> >>>> 4.0.0 under Apache as a module on RedHat 6.2
> >>>>
> >>>> I had 2 pages and the session was going back and forth between them
> >>>> perfectly. Then I added a login form with a script to test the
> >>> userid and
> >>>> password and set the previously hard coded user_id variable
> >>> (registered in
> >>>> the session) to the current user_id. How easy could it be!
> >>>>
> >>>> I remove the hard coded user_id from the two pages and I put in
> >>> a login page
> >>>> that calls another script DOLOGIN.HTML DoLogin checks the User_Id and
> >>>> Password and then does an INCLUDE of the first screen of the app.
> >>>>
> >>>> Looks like it worked perfectly except that everything I click
> >>> on to take me
> >>>> to the second screen causes the Login test to jump back to the
> >>> login form as
> >>>> if there is no variable set!
> >>>> So I check. There aren't any variables set. They all show up
> >>> like they're
> >>>> registered but no values are stored!
> >>>>
> >>>> Any ideas would be really appreciated!
Bob, are you using SSL? This is a problem I had while using php4.0.1 (statically
linked in Apache 1.3.12) with mod_ssl.
I already posted that I solved the problem upgrading to php4.0.1pl2 but somebody
answered me that he still had the problem, even with pl2.
Hope this helps,
Roberto
>
> >>>>
> >>>> Thanks.
> >>>>
> >>>> P.S. If you could please CC me directly as well so I get the
> >>> reply faster I
> >>>> would appreciate it!
> >>>>
> >>>> *******************************************
> >>>> * Bob Horton - PneumaSoft Inc
> >>>> * Custom Software Development Services
> >>>> *
> >>>> * Ph: (306) 949-5610 Fax: (306) 924-5326
> >>>> * bhorton@pneumasoft.com ICQ: 32058710
> >>>> *******************************************
> >>
--
Colombo2000
http://www.colombo2000.it
Il tuo prossimo viaggio comincia qui