Re: header() removes all header of the same name.

From: Date: Thu, 20 Oct 2016 11:41:36 +0000
Subject: Re: header() removes all header of the same name.
References: 1 2 3 4 5 6 7 8 9 10 11  Groups: php.internals 
Request: Send a blank email to internals+get-96518@lists.php.net to get a copy of this message
Hi Stephen, On Thu, Oct 20, 2016 at 8:24 PM, Stephen Reay <php-lists@koalephant.com> wrote: > The *only* solution that retains full control for the developer, is no > change. Any “magic” about “untouchable” cookie headers (e.g. forcing the > session cookie header after userland cookie headers) takes away options for > the developer. My cookie*() functions proposal allows developers to remove header by cookie_remove() and can send any cookie header by cookie_custom(). Therefore, developers have full control if they have to. The only pain is that users may have to use cookie*() functions if we disallow header('Set-Cookie') which will be a vote option. If there is fully functional cookie*() functions, it will mitigate wrong header('Set-Cookie') usage regardless of the vote result, hopefully. Regards, -- Yasuo Ohgaki yohgaki@ohgaki.net

« previous php.internals (#96518) next »