Re: Session security
| From: | Stanislav Malyshev | Date: | Tue, 29 May 2007 20:16:41 +0000 |
| Subject: | Re: Session security | ||
| References: | 1 2 3 4 5 6 7 8 9 10 11 | Groups: | php.internals |
| Request: | Send a blank email to internals+get-29893@lists.php.net to get a copy of this message | ||
Because you don't have full control over the session cookie since it is generated by PHP. For an authentication cookie you want to layer other application-specific checks on top of it.Could you give an example of such checks? -- Stanislav Malyshev, Zend Products Engineer stas@zend.com http://www.zend.com/