RE: [PHP] Protecting from session hijacking
| From: | Marius Andreiana | Date: | Wed, 04 Jul 2001 09:47:04 +0000 |
| Subject: | RE: [PHP] Protecting from session hijacking | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-56149@lists.php.net to get a copy of this message | ||
On 04 Jul 2001 19:34:03 +1000, Jason Murray wrote:
> > Now tell me what's wrong with my opinion, b/c it's too simple
> > to work :)
>
> Four words: "Load Balancing Proxy Servers".
I knew it! :)
So if someone on the net sees the URL and it has session id in it,
that session can be stolen?
--
Marius Andreiana