Re: session data vs cookie data
| From: | Arpad Tamas | Date: | Wed, 30 Jan 2002 15:47:11 +0000 |
| Subject: | Re: session data vs cookie data | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-82759@lists.php.net to get a copy of this message | ||
> > Do you null the user if the IP changes? IPs can change
> > during a user's
> > session, so I wouldn't base the validity of the session
> > solely based on IP.
> When that happens a user has to relogin. No data will be lost.
Relogin? Huh, I'd never visit a site where I have to login on every
twice click.
For some reason our company share 5 ip adresses for it's employees
with NAT. We don't ever know what is our *current* request's ip, it's
always changes by chance. It could be that I use one ip while I'm
visiting a site (it's not likely), but it could be that my 5 requests
get to the site sitting on 5 different ips.
So I don't recommend using the visitors ip address for anything.
Arpi