![]() |
|
Clear questions and runnable code get the best and fastest answer |
|
PerlMonks |
Re: Re: Plaintext passwords?by no_slogan (Deacon) |
on Mar 23, 2002 at 17:16 UTC ( #153805=note: print w/replies, xml ) | Need Help?? |
That all sounds good. I assume that once someone logs in successfully via SSL, you send them a cookie, and they continue using that over an unsecured connection? In that case, the cookie essentially becomes the user's password. Do you have a good solution for preventing the bad guys from capturing and reusing that cookie?
In Section
Perl Monks Discussion
|
|