Re: passwords
| From: | Chris Adams | Date: | Fri, 07 Jul 2000 22:37:06 +0000 |
| Subject: | Re: passwords | ||
| References: | 1 2 3 4 5 6 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-5473@lists.php.net to get a copy of this message | ||
> On Fri, Jul 07, 2000 at 10:52:05AM -0700, Chris Adams wrote:
> > I'd avoid putting username/password in the form unless there's no
> > alternative. It'd be safer to use the PHP4 session library (which can be
> > used without cookies) for this sort of thing.
>
> How can the php4 session lib be used w/o cookies? From reading the pages
> it seems that if cookies are avaiable then the session_* stuff is going to
> use them regardless of if you want them used or not.
>
> Also, to use sessions I have to manually tack a SID onto the end of each
> link I write or will php4 take care of this for me?
session.use_cookies=0 will tell the session library not to use cookies
Then you either put the <?=SID?> at the end of each URL you use or compile
PHP with --enable-trans-sid.